Show filters
662 Total Results
Displaying 11-20 of 662
Sort by:
Attacker Value
Unknown
CVE-2025-24483
Disclosure Date: February 06, 2025 (last updated February 06, 2025)
NULL pointer dereference vulnerability exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker provides specially crafted data to the specific process of the Windows system where the product is running, the system may cause a Blue Screen of Death (BSOD), and as a result, cause a denial-of-service (DoS) condition.
0
Attacker Value
Unknown
CVE-2025-23236
Disclosure Date: February 06, 2025 (last updated February 06, 2025)
Buffer overflow vulnerability exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker performs a specific operation, SYSTEM privilege of the Windows system where the product is running may be obtained.
0
Attacker Value
Unknown
CVE-2025-22894
Disclosure Date: February 06, 2025 (last updated February 06, 2025)
Unprotected Windows messaging channel ('Shatter') issue exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker sends a specially crafted message to the specific process of the Windows system where the product is running, arbitrary files in the system may be altered. As a result, an arbitrary DLL may be executed with SYSTEM privilege.
0
Attacker Value
Unknown
CVE-2025-20094
Disclosure Date: February 06, 2025 (last updated February 06, 2025)
Unprotected Windows messaging channel ('Shatter') issue exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker sends a specially crafted message to the specific process of the Windows system where the product is running, arbitrary code may be executed with SYSTEM privilege.
0
Attacker Value
Unknown
CVE-2025-22890
Disclosure Date: February 06, 2025 (last updated February 06, 2025)
Execution with unnecessary privileges issue exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker performs a specific operation, SYSTEM privilege of the Windows system where the product is running may be obtained.
0
Attacker Value
Unknown
CVE-2024-49839
Disclosure Date: February 03, 2025 (last updated February 06, 2025)
Memory corruption during management frame processing due to mismatch in T2LM info element.
0
Attacker Value
Unknown
CVE-2024-45571
Disclosure Date: February 03, 2025 (last updated February 06, 2025)
Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.
0
Attacker Value
Unknown
CVE-2024-45569
Disclosure Date: February 03, 2025 (last updated February 06, 2025)
Memory corruption while parsing the ML IE due to invalid frame content.
0
Attacker Value
Unknown
CVE-2024-13225
Disclosure Date: January 31, 2025 (last updated January 31, 2025)
The ECT Home Page Products WordPress plugin through 1.9 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
0
Attacker Value
Unknown
CVE-2024-23921
Disclosure Date: January 31, 2025 (last updated January 31, 2025)
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint Home Flex charging stations. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the wlanapp module. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root.
0