Show filters
71,468 Total Results
Displaying 671-680 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Moderate

CVE-2024-30104

Disclosure Date: June 11, 2024 (last updated January 12, 2025)
Microsoft Office Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2024-4671

Disclosure Date: May 14, 2024 (last updated August 15, 2024)
Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Attacker Value
Unknown

CVE-2024-20772

Disclosure Date: April 10, 2024 (last updated December 21, 2024)
Media Encoder versions 24.2.1, 23.6.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Attacker Value
Unknown

CVE-2024-26198

Disclosure Date: March 12, 2024 (last updated January 12, 2025)
Microsoft Exchange Server Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-50387

Disclosure Date: February 14, 2024 (last updated February 21, 2024)
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records.
Attacker Value
Unknown

CVE-2024-24691

Disclosure Date: February 14, 2024 (last updated October 05, 2024)
Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access.
Attacker Value
Unknown

CVE-2024-21412

Disclosure Date: February 13, 2024 (last updated January 12, 2025)
Internet Shortcut Files Security Feature Bypass Vulnerability
Attacker Value
Unknown

CVE-2024-21351

Disclosure Date: February 13, 2024 (last updated January 12, 2025)
Windows SmartScreen Security Feature Bypass Vulnerability
Attacker Value
Unknown

CVE-2024-20254

Disclosure Date: February 07, 2024 (last updated February 16, 2024)
Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to conduct cross-site request forgery (CSRF) attacks that perform arbitrary actions on an affected device. Note: "Cisco Expressway Series" refers to Cisco Expressway Control (Expressway-C) devices and Cisco Expressway Edge (Expressway-E) devices. For more information about these vulnerabilities, see the Details ["#details"] section of this advisory.
Attacker Value
Unknown

CVE-2024-20252

Disclosure Date: February 07, 2024 (last updated February 16, 2024)
Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to conduct cross-site request forgery (CSRF) attacks that perform arbitrary actions on an affected device. Note: "Cisco Expressway Series" refers to Cisco Expressway Control (Expressway-C) devices and Cisco Expressway Edge (Expressway-E) devices. For more information about these vulnerabilities, see the Details ["#details"] section of this advisory.