Show filters
381 Total Results
Displaying 31-40 of 381
Sort by:
Attacker Value
Unknown
CVE-2024-33044
Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
0
Attacker Value
Unknown
CVE-2024-33039
Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Memory corruption when PAL client calls PAL service APIs by passing a random value as handle and the handle is not validated by the service.
0
Attacker Value
Unknown
CVE-2024-7130
Disclosure Date: November 21, 2024 (last updated January 05, 2025)
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kion Computer KION Exchange Programs Software allows Reflected XSS.This issue affects KION Exchange Programs Software: before 1.21.9092.29966.
0
Attacker Value
Unknown
CVE-2024-51807
Disclosure Date: November 19, 2024 (last updated November 20, 2024)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Black and White Digital Ltd AgendaPress – Easily Publish Meeting Agendas and Programs on WordPress allows Stored XSS.This issue affects AgendaPress – Easily Publish Meeting Agendas and Programs on WordPress: from n/a through 1.0.8.
0
Attacker Value
Unknown
CVE-2020-26067
Disclosure Date: November 18, 2024 (last updated November 19, 2024)
A vulnerability in the web-based interface of Cisco Webex Teams could allow an authenticated, remote attacker to conduct cross-site scripting attacks.
The vulnerability is due to improper validation of usernames. An attacker could exploit this vulnerability by creating an account that contains malicious HTML or script content and joining a space using the malicious account name. A successful exploit could allow the attacker to conduct cross-site scripting attacks and potentially gain access to sensitive browser-based information.Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
0
Attacker Value
Unknown
CVE-2023-1932
Disclosure Date: November 07, 2024 (last updated November 07, 2024)
A flaw was found in hibernate-validator's 'isValid' method in the org.hibernate.validator.internal.constraintvalidators.hv.SafeHtmlValidator class, which can be bypassed by omitting the tag ending in a less-than character. Browsers may render an invalid html, allowing HTML injection or Cross-Site-Scripting (XSS) attacks.
0
Attacker Value
Unknown
CVE-2024-34681
Disclosure Date: November 06, 2024 (last updated November 06, 2024)
Improper input validation in BluetoothAdapter prior to SMR Nov-2024 Release 1 allows local attackers to cause local permanent denial of service on Galaxy Watch.
0
Attacker Value
Unknown
CVE-2024-38424
Disclosure Date: November 04, 2024 (last updated November 08, 2024)
Memory corruption during GNSS HAL process initialization.
0
Attacker Value
Unknown
CVE-2024-38422
Disclosure Date: November 04, 2024 (last updated November 08, 2024)
Memory corruption while processing voice packet with arbitrary data received from ADSP.
0
Attacker Value
Unknown
CVE-2024-38421
Disclosure Date: November 04, 2024 (last updated November 08, 2024)
Memory corruption while processing GPU commands.
0