Show filters
867 Total Results
Displaying 61-70 of 867
Sort by:
Attacker Value
Unknown
CVE-2024-7795
Disclosure Date: August 21, 2024 (last updated August 24, 2024)
Autel MaxiCharger AC Elite Business C50 AppAuthenExchangeRandomNum Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Autel MaxiCharger AC Elite Business C50 EV chargers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of the AppAuthenExchangeRandomNum BLE command. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the device. Was ZDI-CAN-23384.
0
Attacker Value
Unknown
CVE-2024-34163
Disclosure Date: August 14, 2024 (last updated September 13, 2024)
Improper input validation in firmware for some Intel(R) NUC may allow a privileged user to potentially enableescalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2024-25561
Disclosure Date: August 14, 2024 (last updated September 13, 2024)
Insecure inherited permissions in some Intel(R) HID Event Filter software installers before version 2.2.2.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2024-33034
Disclosure Date: August 05, 2024 (last updated November 21, 2024)
Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaiming of memory buffers are performed at the same time.
0
Attacker Value
Unknown
CVE-2024-33028
Disclosure Date: August 05, 2024 (last updated November 21, 2024)
Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
0
Attacker Value
Unknown
CVE-2024-33026
Disclosure Date: August 05, 2024 (last updated November 21, 2024)
Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp.
0
Attacker Value
Unknown
CVE-2024-33025
Disclosure Date: August 05, 2024 (last updated November 21, 2024)
Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
0
Attacker Value
Unknown
CVE-2024-33024
Disclosure Date: August 05, 2024 (last updated November 21, 2024)
Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length.
0
Attacker Value
Unknown
CVE-2024-33023
Disclosure Date: August 05, 2024 (last updated November 21, 2024)
Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events.
0
Attacker Value
Unknown
CVE-2024-33022
Disclosure Date: August 05, 2024 (last updated November 21, 2024)
Memory corruption while allocating memory in HGSL driver.
0