Latest CVE Feed
-
5.5
MEDIUMCVE-2024-43886
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add null check in resource_log_pipe_topology_update [WHY] When switching from "Extend" to "Second Display Only" we sometimes call resource_get_otg_master_for_stream on ... Read more
Affected Products : linux_kernel- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
8.8
HIGHCVE-2024-5586
Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in extranet lockouts report option.... Read more
Affected Products : manageengine_adaudit_plus- Published: Aug. 23, 2024
- Modified: Aug. 27, 2024
-
8.8
HIGHCVE-2024-5556
Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in reports module.... Read more
Affected Products : manageengine_adaudit_plus- Published: Aug. 23, 2024
- Modified: Aug. 27, 2024
-
8.8
HIGHCVE-2024-5490
Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in aggregate reports option.... Read more
Affected Products : manageengine_adaudit_plus- Published: Aug. 23, 2024
- Modified: Aug. 27, 2024
-
8.8
HIGHCVE-2024-5467
Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in account lockout report.... Read more
Affected Products : manageengine_adaudit_plus- Published: Aug. 23, 2024
- Modified: Aug. 27, 2024
-
6.3
MEDIUMCVE-2024-41150
An Stored Cross-site Scripting vulnerability in request module affects Zohocorp ManageEngine ServiceDesk Plus, ServiceDesk Plus MSP and SupportCenter Plus.This issue affects ServiceDesk Plus versions: through 14810; ServiceDesk Plus MSP: through 14800; Su... Read more
- Published: Aug. 23, 2024
- Modified: Aug. 27, 2024
-
6.1
MEDIUMCVE-2024-42816
A cross-site scripting (XSS) vulnerability in the Create Product function of fastapi-admin pro v0.1.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Product Name parameter.... Read more
Affected Products :- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
6.9
MEDIUMCVE-2024-8174
A vulnerability has been found in code-projects Blood Bank System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /login.php of the component Login Page. The manipulation of the argument user leads... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
9.8
CRITICALCVE-2024-44557
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function setIptvInfo.... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
9.8
CRITICALCVE-2024-44555
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function setIptvInfo.... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
9.8
CRITICALCVE-2024-44553
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formGetIptv.... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
9.8
CRITICALCVE-2024-44550
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formGetIptv.... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
9.8
CRITICALCVE-2024-44549
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formGetIptv.... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
10.0
HIGHCVE-2024-8162
A vulnerability classified as critical has been found in TOTOLINK T10 AC1200 4.1.8cu.5207. Affected is an unknown function of the file /squashfs-root/web_cste/cgi-bin/product.ini of the component Telnet Service. The manipulation leads to hard-coded creden... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
9.8
CRITICALCVE-2024-44558
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function setIptvInfo.... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
9.8
CRITICALCVE-2024-44556
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function setIptvInfo.... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
9.8
CRITICALCVE-2024-44565
Tenda AX1806 v1.0.0.1 contains a stack overflow via the serverName parameter in the function form_fast_setting_internet_set.... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
9.8
CRITICALCVE-2024-44563
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function setIptvInfo.... Read more
- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
5.5
MEDIUMCVE-2024-43908
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix the null pointer dereference to ras_manager Check ras_manager before using it... Read more
Affected Products : linux_kernel- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024
-
5.5
MEDIUMCVE-2024-43909
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/pm: Fix the null pointer dereference for smu7 optimize the code to avoid pass a null pointer (hwmgr->backend) to function smu7_update_edc_leakage_table.... Read more
Affected Products : linux_kernel- Published: Aug. 26, 2024
- Modified: Aug. 27, 2024