Latest CVE Feed
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
8.8
HIGH- Published: Nov. 12, 2024
- Modified: Nov. 15, 2024
-
9.2
CRITICALCVE-2024-9465
An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys. With this, attackers can also create... Read more
- Actively Exploited
- Published: Oct. 09, 2024
- Modified: Nov. 15, 2024
-
8.4
HIGHCVE-2024-34023
Untrusted pointer dereference in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products : graphics_drivers- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
6.7
MEDIUMCVE-2024-23312
Uncontrolled search path for some Intel(R) Binary Configuration Tool software for Windows before version 3.4.5 may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
6.8
MEDIUMCVE-2024-28049
Improper input validation in firmware for some Intel(R) PROSet/Wireless Software and Intel(R) Killer(TM) Wi-Fi wireless products before version 23.40 may allow an unauthenticated user to enable denial of service via adjacent access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
6.7
MEDIUMCVE-2024-28881
Uncontrolled search path for some Intel(R) Fortran Compiler Classic software before version 2021.13 may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
7.5
HIGHCVE-2024-51996
Symphony process is a module for the Symphony PHP framework which executes commands in sub-processes. When consuming a persisted remember-me cookie, Symfony does not check if the username persisted in the database matches the username attached with the co... Read more
Affected Products : symfony- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
7.7
HIGHCVE-2024-28028
Improper input validation in some Intel(R) Neural Compressor software before version v3.0 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
8.7
HIGHCVE-2024-40885
Use after free in the UEFI firmware of some Intel(R) Server M20NTP BIOS may allow a privileged user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
7.7
HIGHCVE-2024-45594
Decidim is a participatory democracy framework. The meeting embeds feature used in the online or hybrid meetings is subject to potential XSS attack through a malformed URL. This vulnerability is fixed in 0.28.3 and 0.29.0.... Read more
Affected Products : decidim- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024
-
5.5
MEDIUMCVE-2024-29085
Improper access control for some BigDL software maintained by Intel(R) before version 2.5.0 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.... Read more
Affected Products :- Published: Nov. 13, 2024
- Modified: Nov. 15, 2024