Show filters
13,145 Total Results
Displaying 281-290 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2024-28947

Disclosure Date: August 14, 2024 (last updated September 13, 2024)
Improper input validation in kernel mode driver for some Intel(R) Server Board S2600ST Family firmware before version 02.01.0017 may allow a privileged user to potentially enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2024-25576

Disclosure Date: August 14, 2024 (last updated September 07, 2024)
improper access control in firmware for some Intel(R) FPGA products before version 24.1 may allow a privileged user to enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2024-39402

Disclosure Date: August 14, 2024 (last updated August 15, 2024)
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could lead in arbitrary code execution by an admin attacker. Exploitation of this issue requires user interaction and scope is changed.
Attacker Value
Unknown

CVE-2024-39401

Disclosure Date: August 14, 2024 (last updated August 15, 2024)
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could lead in arbitrary code execution by an admin attacker. Exploitation of this issue requires user interaction and scope is changed.
Attacker Value
Unknown

CVE-2024-39400

Disclosure Date: August 14, 2024 (last updated August 15, 2024)
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. This vulnerability could allow an admin attacker to inject and execute arbitrary JavaScript code within the context of the user's browser session. Exploitation of this issue requires user interaction, such as convincing a victim to click on a malicious link. Confidentiality and integrity impact is high as it affects other admin accounts.
Attacker Value
Unknown

CVE-2024-38483

Disclosure Date: August 14, 2024 (last updated September 19, 2024)
Dell BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.
Attacker Value
Unknown

CVE-2024-37373

Disclosure Date: August 14, 2024 (last updated August 16, 2024)
Improper input validation in the Central Filestore in Ivanti Avalanche 6.3.1 allows a remote authenticated attacker with admin rights to achieve RCE.
Attacker Value
Unknown

CVE-2024-38160

Disclosure Date: August 13, 2024 (last updated August 17, 2024)
Windows Network Virtualization Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2024-38159

Disclosure Date: August 13, 2024 (last updated August 17, 2024)
Windows Network Virtualization Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2024-38123

Disclosure Date: August 13, 2024 (last updated August 17, 2024)
Windows Bluetooth Driver Information Disclosure Vulnerability