Latest CVE Feed
-
4.3
MEDIUMCVE-2024-45737
In Splunk Enterprise versions below 9.3.1, 9.2.3, and 9.1.6 and Splunk Cloud Platform versions below 9.2.2403.108, and 9.1.2312.204, a low-privileged user that does not hold the "admin" or "power" Splunk roles could change the maintenance mode state of Ap... Read more
- Published: Oct. 14, 2024
- Modified: Oct. 16, 2024
-
8.7
HIGHCVE-2024-39516
An Out-of-Bounds Read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker sending a specifically malformed BGP packet to cause rpd to crash and restart, ... Read more
- Published: Oct. 09, 2024
- Modified: Oct. 16, 2024
-
8.8
HIGHCVE-2024-9894
A vulnerability, which was classified as critical, was found in code-projects Blood Bank System 1.0. Affected is an unknown function of the file reset.php. The manipulation of the argument useremail leads to sql injection. It is possible to launch the att... Read more
- Published: Oct. 12, 2024
- Modified: Oct. 16, 2024
-
8.8
HIGHCVE-2024-9905
A vulnerability, which was classified as critical, has been found in SourceCodester Online Eyewear Shop 1.0. This issue affects some unknown processing of the file /admin/?page=inventory/view_inventory&id=2. The manipulation of the argument id leads to sq... Read more
Affected Products : online_eyewear_shop- Published: Oct. 13, 2024
- Modified: Oct. 16, 2024
-
5.4
MEDIUMCVE-2024-9906
A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is an unknown function of the file /admin/?page=inventory/view_inventory&id=2. The manipulation of the argument Code leads to cross site sc... Read more
Affected Products : online_eyewear_shop- Published: Oct. 13, 2024
- Modified: Oct. 16, 2024
-
9.8
CRITICALCVE-2024-9916
A vulnerability, which was classified as critical, has been found in HuangDou UTCMS V9. Affected by this issue is some unknown functionality of the file app/modules/ut-cac/admin/cli.php. The manipulation of the argument o leads to os command injection. Th... Read more
Affected Products : usualtoolcms- Published: Oct. 13, 2024
- Modified: Oct. 16, 2024
-
7.5
HIGHCVE-2024-9983
Enterprise Cloud Database from Ragic does not properly validate a specific page parameter, allowing unauthenticated remote attackers to exploit this vulnerability to read arbitrary system files.... Read more
Affected Products : enterprise_cloud_database- Published: Oct. 15, 2024
- Modified: Oct. 16, 2024
-
9.8
CRITICALCVE-2024-9984
Enterprise Cloud Database from Ragic does not authenticate access to specific functionality, allowing unauthenticated remote attackers to use this functionality to obtain any user's session cookie.... Read more
Affected Products : enterprise_cloud_database- Published: Oct. 15, 2024
- Modified: Oct. 16, 2024
-
10.0
CRITICALCVE-2024-9985
Enterprise Cloud Database from Ragic does not properly validate the file type for uploads. Attackers with regular privileges can upload a webshell and use it to execute arbitrary code on the remote server.... Read more
Affected Products : enterprise_cloud_database- Published: Oct. 15, 2024
- Modified: Oct. 16, 2024
-
7.1
HIGHCVE-2024-43581
Microsoft OpenSSH for Windows Remote Code Execution Vulnerability... Read more
Affected Products : windows_server_2019 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 windows_11_22h2 windows windows_11_23h2 windows_server_2022_23h2 +2 more products- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
7.8
HIGH- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
7.5
HIGHCVE-2024-43575
Windows Hyper-V Denial of Service Vulnerability... Read more
- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
7.3
HIGHCVE-2024-43571
Sudo for Windows Spoofing Vulnerability... Read more
Affected Products : windows_11_24h2- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
7.0
HIGHCVE-2024-43570
Windows Kernel Elevation of Privilege Vulnerability... Read more
Affected Products : windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 +10 more products- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
8.8
HIGHCVE-2024-43532
Remote Registry Service Elevation of Privilege Vulnerability... Read more
Affected Products : windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 +10 more products- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
6.5
MEDIUMCVE-2024-43537
Windows Mobile Broadband Driver Denial of Service Vulnerability... Read more
Affected Products : windows_server_2019 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_21h2 windows_11_22h2 windows windows_11_23h2 windows_server_2022_23h2 windows_server_23h2 +1 more products- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
6.8
MEDIUMCVE-2024-43536
Windows Mobile Broadband Driver Remote Code Execution Vulnerability... Read more
Affected Products : windows_server_2019 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_21h2 windows_11_22h2 windows windows_11_23h2 windows_server_2022_23h2 windows_server_23h2 +1 more products- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
7.0
HIGHCVE-2024-43535
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability... Read more
Affected Products : windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 +10 more products- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
6.5
MEDIUMCVE-2024-43534
Windows Graphics Component Information Disclosure Vulnerability... Read more
Affected Products : windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 +10 more products- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024
-
8.8
HIGHCVE-2024-43533
Remote Desktop Client Remote Code Execution Vulnerability... Read more
- Published: Oct. 08, 2024
- Modified: Oct. 16, 2024