Show filters
1,947 Total Results
Displaying 181-190 of 1,947
Sort by:
Attacker Value
Unknown
CVE-2024-6359
Disclosure Date: August 06, 2024 (last updated August 20, 2024)
Privilege escalation vulnerability identified in OpenText ArcSight Intelligence.
0
Attacker Value
Unknown
CVE-2024-6358
Disclosure Date: August 06, 2024 (last updated August 20, 2024)
Incorrect Authorization vulnerability identified in OpenText ArcSight Intelligence.
0
Attacker Value
Unknown
CVE-2024-6357
Disclosure Date: August 06, 2024 (last updated August 20, 2024)
Insecure Direct Object Reference vulnerability identified in OpenText ArcSight Intelligence.
0
Attacker Value
Unknown
CVE-2024-7084
Disclosure Date: August 06, 2024 (last updated August 06, 2024)
The Ajax Search Lite WordPress plugin before 4.12.1 does not sanitise and escape some parameters, which could allow users with a role as low as Admin+ to perform Cross-Site Scripting attacks.
0
Attacker Value
Unknown
CVE-2024-4607
Disclosure Date: August 05, 2024 (last updated September 11, 2024)
Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel Driver: from r41p0 through r49p0; Valhall GPU Kernel Driver: from r41p0 through r49p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p0.
0
Attacker Value
Unknown
CVE-2024-2937
Disclosure Date: August 05, 2024 (last updated September 11, 2024)
Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel Driver: from r41p0 through r49p0; Valhall GPU Kernel Driver: from r41p0 through r49p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p0.
0
Attacker Value
Unknown
CVE-2024-39663
Disclosure Date: August 01, 2024 (last updated August 02, 2024)
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Epsiloncool WP Fast Total Search allows Stored XSS.This issue affects WP Fast Total Search: from n/a through 1.68.232.
0
Attacker Value
Unknown
CVE-2024-23444
Disclosure Date: July 31, 2024 (last updated February 05, 2025)
It was discovered by Elastic engineering that when elasticsearch-certutil CLI tool is used with the csr option in order to create a new Certificate Signing Requests, the associated private key that is generated is stored on disk unencrypted even if the --pass parameter is passed in the command invocation.
0
Attacker Value
Unknown
CVE-2023-49921
Disclosure Date: July 26, 2024 (last updated September 12, 2024)
An issue was discovered by Elastic whereby Watcher search input logged the search query results on DEBUG log level. This could lead to raw contents of documents stored in Elasticsearch to be printed in logs. Elastic has released 8.11.2 and 7.17.16 that resolves this issue by removing this excessive logging. This issue only affects users that use Watcher and have a Watch defined that uses the search input and additionally have set the search input’s logger to DEBUG or finer, for example using: org.elasticsearch.xpack.watcher.input.search, org.elasticsearch.xpack.watcher.input, org.elasticsearch.xpack.watcher, or wider, since the loggers are hierarchical.
0
Attacker Value
Unknown
CVE-2024-41707
Disclosure Date: July 25, 2024 (last updated July 31, 2024)
An issue was discovered in Archer Platform 6 before 2024.06. Authenticated users can achieve HTML content injection. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable application.
0