Show filters
922 Total Results
Displaying 41-50 of 922
Sort by:
Attacker Value
Unknown

CVE-2024-45558

Disclosure Date: January 06, 2025 (last updated January 14, 2025)
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
Attacker Value
Unknown

CVE-2024-45553

Disclosure Date: January 06, 2025 (last updated January 14, 2025)
Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list while another thread is using it for a process-specific task, issues may arise.
Attacker Value
Unknown

CVE-2024-45542

Disclosure Date: January 06, 2025 (last updated January 14, 2025)
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
Attacker Value
Unknown

CVE-2024-45541

Disclosure Date: January 06, 2025 (last updated January 14, 2025)
Memory corruption when IOCTL call is invoked from user-space to read board data.
Attacker Value
Unknown

CVE-2024-33067

Disclosure Date: January 06, 2025 (last updated January 13, 2025)
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
Attacker Value
Unknown

CVE-2024-33055

Disclosure Date: January 06, 2025 (last updated January 13, 2025)
Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
Attacker Value
Unknown

CVE-2024-33041

Disclosure Date: January 06, 2025 (last updated January 13, 2025)
Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,
Attacker Value
Unknown

CVE-2024-12449

Disclosure Date: December 18, 2024 (last updated December 18, 2024)
The Video Share VOD – Turnkey Video Site Builder Script plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'videowhisper_player_html' shortcode in all versions up to, and including, 2.6.30 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
Attacker Value
Unknown

CVE-2024-54421

Disclosure Date: December 16, 2024 (last updated December 18, 2024)
Cross-Site Request Forgery (CSRF) vulnerability in Sanjay Singh Negi Floating Video Player allows Stored XSS.This issue affects Floating Video Player: from n/a through 1.0.
0
Attacker Value
Unknown

CVE-2024-54408

Disclosure Date: December 16, 2024 (last updated December 18, 2024)
Cross-Site Request Forgery (CSRF) vulnerability in Jake H. Youtube Video Grid allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Youtube Video Grid: from n/a through 1.9.
0