Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 5.5

    MEDIUM
    CVE-2024-34626

    Out-of-bounds read in applying own binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.... Read more

    Affected Products : notes
    • Published: Aug. 07, 2024
    • Modified: Aug. 09, 2024
  • 5.5

    MEDIUM
    CVE-2024-34625

    Out-of-bounds read in applying connection point in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.... Read more

    Affected Products : notes
    • Published: Aug. 07, 2024
    • Modified: Aug. 09, 2024
  • 5.5

    MEDIUM
    CVE-2024-34631

    Out-of-bounds read in applying new binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.... Read more

    Affected Products : notes
    • Published: Aug. 07, 2024
    • Modified: Aug. 09, 2024
  • 5.5

    MEDIUM
    CVE-2024-34621

    Out-of-bounds read in applying binary with data in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.... Read more

    Affected Products : notes
    • Published: Aug. 07, 2024
    • Modified: Aug. 09, 2024
  • 5.5

    MEDIUM
    CVE-2024-34624

    Out-of-bounds read in applying paragraphs in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory.... Read more

    Affected Products : notes
    • Published: Aug. 07, 2024
    • Modified: Aug. 09, 2024
  • 7.8

    HIGH
    CVE-2024-34623

    Out-of-bounds write in applying connected information in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.... Read more

    Affected Products : notes
    • Published: Aug. 07, 2024
    • Modified: Aug. 09, 2024
  • 7.8

    HIGH
    CVE-2024-34622

    Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege.... Read more

    Affected Products : notes
    • Published: Aug. 07, 2024
    • Modified: Aug. 09, 2024
  • 8.1

    HIGH
    CVE-2024-32864

    Under certain circumstances exacqVision Web Services will not enforce secure web communications (HTTPS)... Read more

    • Published: Aug. 01, 2024
    • Modified: Aug. 09, 2024
  • 7.3

    HIGH
    CVE-2024-32865

    Under certain circumstances the exacqVision Server will not properly validate TLS certificates provided by connected devices.... Read more

    • Published: Aug. 01, 2024
    • Modified: Aug. 09, 2024
  • 9.0

    CRITICAL
    CVE-2024-32758

    Under certain circumstances the communication between exacqVision Client and exacqVision Server will use insufficient key length and exchange... Read more

    • Published: Aug. 01, 2024
    • Modified: Aug. 09, 2024
  • 8.1

    HIGH
    CVE-2024-32862

    Under certain circumstances the ExacqVision Web Services does not provide sufficient protection from untrusted domains.... Read more

    Affected Products : exacqvision_web_service
    • Published: Aug. 01, 2024
    • Modified: Aug. 09, 2024
  • 5.7

    MEDIUM
    CVE-2024-32931

    Under certain circumstances the exacqVision Web Service can expose authentication token details within communications.... Read more

    Affected Products : exacqvision_web_service
    • Published: Aug. 01, 2024
    • Modified: Aug. 09, 2024
  • 8.8

    HIGH
    CVE-2024-32863

    Under certain circumstances the exacqVision Web Services may be susceptible to Cross-Site Request Forgery (CSRF)... Read more

    Affected Products : exacqvision_web_service
    • Published: Aug. 01, 2024
    • Modified: Aug. 09, 2024
  • 5.0

    MEDIUM
    CVE-2024-41948

    biscuit-java is the java implementation of Biscuit, an authentication and authorization token for microservices architectures. Third-party blocks can be generated without transferring the whole token to the third-party authority. Instead, a ThirdPartyBloc... Read more

    Affected Products : biscuit-java
    • Published: Aug. 01, 2024
    • Modified: Aug. 09, 2024
  • 6.4

    MEDIUM
    CVE-2024-41949

    biscuit-rust is the Rust implementation of Biscuit, an authentication and authorization token for microservices architectures. Third-party blocks can be generated without transferring the whole token to the third-party authority. Instead, a ThirdPartyBloc... Read more

    Affected Products : biscuit-auth
    • Published: Aug. 01, 2024
    • Modified: Aug. 09, 2024
  • 7.2

    HIGH
    CVE-2024-7446

    A vulnerability, which was classified as critical, was found in itsourcecode Ticket Reservation System 1.0. This affects an unknown part of the file list_tickets.php. The manipulation of the argument prefSeat_id leads to sql injection. It is possible to i... Read more

    Affected Products : ticket_reservation_system
    • Published: Aug. 03, 2024
    • Modified: Aug. 09, 2024
  • 7.2

    HIGH
    CVE-2024-7445

    A vulnerability, which was classified as critical, has been found in itsourcecode Ticket Reservation System 1.0. Affected by this issue is some unknown functionality of the file checkout_ticket_save.php. The manipulation of the argument data leads to sql ... Read more

    Affected Products : ticket_reservation_system
    • Published: Aug. 03, 2024
    • Modified: Aug. 09, 2024
  • 8.8

    HIGH
    CVE-2024-7450

    A vulnerability has been found in itsourcecode Placement Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /resume_upload.php of the component Image Handler. The manipulation of the ar... Read more

    Affected Products : placement_management_system
    • Published: Aug. 04, 2024
    • Modified: Aug. 09, 2024
  • 9.8

    CRITICAL
    CVE-2024-7451

    A vulnerability was found in itsourcecode Placement Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file apply_now.php. The manipulation of the argument id leads to sql injection. The attack ma... Read more

    Affected Products : placement_management_system
    • Published: Aug. 04, 2024
    • Modified: Aug. 09, 2024
  • 9.8

    CRITICAL
    CVE-2024-7452

    A vulnerability was found in itsourcecode Placement Management System 1.0. It has been classified as critical. This affects an unknown part of the file view_company.php. The manipulation of the argument id leads to sql injection. It is possible to initiat... Read more

    Affected Products : placement_management_system
    • Published: Aug. 04, 2024
    • Modified: Aug. 09, 2024
Showing 20 of 291124 Results