Show filters
922 Total Results
Displaying 61-70 of 922
Sort by:
Attacker Value
Unknown

CVE-2024-43050

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.
Attacker Value
Unknown

CVE-2024-33063

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present.
Attacker Value
Unknown

CVE-2024-33056

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
Attacker Value
Unknown

CVE-2024-33053

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Memory corruption when multiple threads try to unregister the CVP buffer at the same time.
Attacker Value
Unknown

CVE-2024-33044

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
Attacker Value
Unknown

CVE-2024-33037

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.
Attacker Value
Unknown

CVE-2024-33036

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.
Attacker Value
Unknown

CVE-2024-53747

Disclosure Date: December 01, 2024 (last updated December 21, 2024)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NuttTaro Video Player for WPBakery allows Stored XSS.This issue affects Video Player for WPBakery: from n/a through 1.0.1.
0
Attacker Value
Unknown

CVE-2024-11202

Disclosure Date: November 26, 2024 (last updated January 05, 2025)
Multiple plugins for WordPress are vulnerable to Reflected Cross-Site Scripting via the cminds_free_guide shortcode in various versions due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
Attacker Value
Unknown

CVE-2024-11355

Disclosure Date: November 22, 2024 (last updated January 05, 2025)
The Ultimate YouTube Video & Shorts Player With Vimeo plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_setting() function in all versions up to, and including, 3.3. This makes it possible for authenticated attackers, with Subscriber-level access and above, to view settings for playlists.