Show filters
37 Total Results
Displaying 11-20 of 37
Sort by:
Attacker Value
Unknown

CVE-2024-1023

Disclosure Date: March 27, 2024 (last updated October 22, 2024)
A vulnerability in the Eclipse Vert.x toolkit results in a memory leak due to using Netty FastThreadLocal data structures. Specifically, when the Vert.x HTTP client establishes connections to different hosts, triggering the memory leak. The leak can be accelerated with intimate runtime knowledge, allowing an attacker to exploit this vulnerability. For instance, a server accepting arbitrary internet addresses could serve as an attack vector by connecting to these addresses, thereby accelerating the memory leak.
0
Attacker Value
Unknown

CVE-2024-24699

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network access.
Attacker Value
Unknown

CVE-2024-24698

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access.
Attacker Value
Unknown

CVE-2024-24697

Disclosure Date: February 14, 2024 (last updated October 10, 2024)
Untrusted search path in some Zoom 32 bit Windows clients may allow an authenticated user to conduct an escalation of privilege via local access.
Attacker Value
Unknown

CVE-2024-24696

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an authenticated user to conduct a disclosure of information via network access.
Attacker Value
Unknown

CVE-2024-24695

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an authenticated user to conduct a disclosure of information via network access.
Attacker Value
Unknown

CVE-2024-24690

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper input validation in some Zoom clients may allow an authenticated user to conduct a denial of service via network access.
Attacker Value
Unknown

CVE-2023-38418

Disclosure Date: August 02, 2023 (last updated October 08, 2023)
The BIG-IP Edge Client Installer on macOS does not follow best practices for elevating privileges during the installation process.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2023-36858

Disclosure Date: August 02, 2023 (last updated October 08, 2023)
An insufficient verification of data vulnerability exists in BIG-IP Edge Client for Windows and macOS that may allow an attacker to modify its configured server list.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2014-125028

Disclosure Date: December 31, 2022 (last updated October 08, 2023)
A vulnerability was found in valtech IDP Test Client and classified as problematic. Affected by this issue is some unknown functionality of the file python-flask/main.py. The manipulation leads to cross-site request forgery. The attack may be launched remotely. The name of the patch is f1e7b3d431c8681ec46445557125890c14fa295f. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217148.