Show filters
1,167 Total Results
Displaying 21-30 of 1,167
Sort by:
Attacker Value
Unknown

CVE-2021-30299

Disclosure Date: November 22, 2024 (last updated January 05, 2025)
Possible out of bound access in audio module due to lack of validation of user provided input.
Attacker Value
Unknown

CVE-2024-10177

Disclosure Date: November 21, 2024 (last updated January 05, 2025)
The Beds24 Online Booking plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's beds24-link shortcode in all versions up to, and including, 2.0.26 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
Attacker Value
Unknown

CVE-2024-36282

Disclosure Date: November 13, 2024 (last updated November 14, 2024)
Improper input validation in the Intel(R) Server Board S2600ST Family BIOS and Firmware Update software all versions may allow a privileged user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown

CVE-2024-34167

Disclosure Date: November 13, 2024 (last updated November 14, 2024)
Uncontrolled search path for the Intel(R) Server Board S2600ST Family BIOS and Firmware Update software all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown

CVE-2024-31158

Disclosure Date: November 13, 2024 (last updated November 14, 2024)
Improper input validation in UEFI firmware in some Intel(R) Server Board S2600BP Family may allow a privileged user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown

CVE-2024-31154

Disclosure Date: November 13, 2024 (last updated November 14, 2024)
Improper input validation in UEFI firmware for some Intel(R) Server S2600BPBR may allow a privileged user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown

CVE-2024-49409

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Out-of-bounds write in Battery Full Capacity node prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-49408

Disclosure Date: November 06, 2024 (last updated November 13, 2024)
Out-of-bounds write in usb driver prior to Firmware update Sep-2024 Release on Galaxy S24 allows local attackers to write out-of-bounds memory. System privilege is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2024-38423

Disclosure Date: November 04, 2024 (last updated November 08, 2024)
Memory corruption while processing GPU page table switch.
Attacker Value
Unknown

CVE-2024-38422

Disclosure Date: November 04, 2024 (last updated November 08, 2024)
Memory corruption while processing voice packet with arbitrary data received from ADSP.