Show filters
1,462 Total Results
Displaying 181-190 of 1,462
Sort by:
Attacker Value
Unknown
CVE-2024-22448
Disclosure Date: April 10, 2024 (last updated February 26, 2025)
Dell BIOS contains an Out-of-Bounds Write vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to denial of service.
0
Attacker Value
Unknown
CVE-2024-27247
Disclosure Date: April 09, 2024 (last updated February 26, 2025)
Improper privilege management in the installer for Zoom Desktop Client for macOS before version 5.17.10 may allow a privileged user to conduct an escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2024-27242
Disclosure Date: April 09, 2024 (last updated February 26, 2025)
Cross site scripting in Zoom Desktop Client for Linux before version 5.17.10 may allow an authenticated user to conduct a denial of service via network access.
0
Attacker Value
Unknown
CVE-2024-24694
Disclosure Date: April 09, 2024 (last updated February 26, 2025)
Improper privilege management in the installer for Zoom Desktop Client for Windows before version 5.17.10 may allow an authenticated user to conduct an escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2023-45590
Disclosure Date: April 09, 2024 (last updated February 26, 2025)
An improper control of generation of code ('code injection') in Fortinet FortiClientLinux version 7.2.0, 7.0.6 through 7.0.10 and 7.0.3 through 7.0.4 allows attacker to execute unauthorized code or commands via tricking a FortiClientLinux user into visiting a malicious website
0
Attacker Value
Unknown
CVE-2024-2653
Disclosure Date: April 03, 2024 (last updated April 10, 2024)
amphp/http will collect CONTINUATION frames in an unbounded buffer and will not check a limit until it has received the set END_HEADERS flag, resulting in an OOM crash.
0
Attacker Value
Unknown
CVE-2024-1300
Disclosure Date: April 02, 2024 (last updated February 26, 2025)
A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. When processing an unknown SNI server name assigned the default certificate instead of a mapped certificate, the SSL context is erroneously cached in the server name map, leading to memory exhaustion. This flaw allows attackers to send TLS client hello messages with fake server names, triggering a JVM out-of-memory error.
0
Attacker Value
Unknown
CVE-2024-1023
Disclosure Date: March 27, 2024 (last updated February 26, 2025)
A vulnerability in the Eclipse Vert.x toolkit results in a memory leak due to using Netty FastThreadLocal data structures. Specifically, when the Vert.x HTTP client establishes connections to different hosts, triggering the memory leak. The leak can be accelerated with intimate runtime knowledge, allowing an attacker to exploit this vulnerability. For instance, a server accepting arbitrary internet addresses could serve as an attack vector by connecting to these addresses, thereby accelerating the memory leak.
0
Attacker Value
Unknown
CVE-2024-23482
Disclosure Date: March 26, 2024 (last updated February 26, 2025)
The ZScaler service is susceptible to a local privilege escalation vulnerability found in the ZScalerService process. Fixed Version: Mac ZApp 4.2.0.241 and later.
0
Attacker Value
Unknown
CVE-2023-41973
Disclosure Date: March 26, 2024 (last updated February 26, 2025)
ZSATray passes the previousInstallerName as a config parameter to TrayManager, and TrayManager constructs the path and appends previousInstallerName to get the full path of the exe. Fixed Version: Win ZApp 4.3.0.121 and later.
0