Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2024-45537
Apache Druid allows users with certain permissions to read data from other database systems using JDBC. This functionality allows trusted users to se…
Druid
30.0.1+
MEDIUM 5.3
CVE-2024-45612
Contao is an Open Source CMS. In affected versions an untrusted user can inject insert tags into the canonical tag, which are then replaced on the we…
Contao
4.13.49 / 5.3.15+
CRITICAL 9.9
CVE-2024-45798
arduino-esp32 is an Arduino core for the ESP32, ESP32-S2, ESP32-S3, ESP32-C3, ESP32-C6 and ESP32-H2 microcontrollers. The `arduino-esp32` CI is vulne…
Mitigation only
MEDIUM 5.7
CVE-2024-34545
Improper input validation in some Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable information d…
Raid Web Console
Mitigation only
HIGH 7.5
CVE-2024-21829
Improper input validation in UEFI firmware error handler for some Intel(R) Processors may allow a privileged user to potentially enable escalation of…
Mitigation only
HIGH 7.5
CVE-2024-21871
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via…
Mitigation only
HIGH 7.2
CVE-2024-21781
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to enable information disclosure or denial of ser…
Mitigation only
HIGH 7.8
CVE-2024-44094
In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible memory corruption due to improper input validation. This could lead to local escalati…
Android
Mitigation only
HIGH 7.5
CVE-2024-6077
A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Obj…
Compactlogix 5380 Firmware
Mitigation only
MEDIUM 6.8
CVE-2024-6658
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows OS Command Injection.This issue affects:
Product
…
Multi Tenant Loadmaster
7.1.35.12 / 7.2.54.12+
HIGH 7.5
CVE-2024-45825
CVE-2024-45825 IMPACT
A denial-of-service vulnerability exists in the affected products. The vulnerability occurs when a malformed CIP packet is sent…
5015 U8ihft Firmware
Mitigation only
HIGH 7.4
CVE-2024-20406
A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS XR Software could all…
Ios Xr
7.0.0 / 7.11.2+
CRITICAL 9.8
CVE-2024-43455
Windows Remote Desktop Licensing Service Spoofing Vulnerability
Windows Server 2008
10.0.14393.7336 / 10.0.17763.6293+
HIGH 7.8
CVE-2024-38245
Kernel Streaming Service Driver Elevation of Privilege Vulnerability
Windows 10 1507
10.0.10240.20766 / 10.0.14393.7336+
HIGH 7.8
CVE-2024-38241EPSS 6%
Kernel Streaming Service Driver Elevation of Privilege Vulnerability
Windows 10 1507
10.0.10240.20766 / 10.0.14393.7336+
HIGH 7.8
CVE-2024-38243
Kernel Streaming Service Driver Elevation of Privilege Vulnerability
Windows 10 1507
10.0.10240.20766 / 10.0.14393.7336+
HIGH 7.8
CVE-2024-38244EPSS 6%
Kernel Streaming Service Driver Elevation of Privilege Vulnerability
Windows 10 1507
10.0.10240.20766 / 10.0.14393.7336+
MEDIUM 6.5
CVE-2024-38234
Windows Networking Denial of Service Vulnerability
Windows 10 1507
10.0.10240.20766 / 10.0.14393.7336+
HIGH 7.5
CVE-2024-38230
Windows Standards-Based Storage Management Service Denial of Service Vulnerability
Windows Server 2012
10.0.14393.7336 / 10.0.17763.6293+
CRITICAL 9.9
CVE-2024-38194
An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps to elevate privileges over a network.
Azure Web Apps
Patch available
CRITICAL 9.0
CVE-2024-38216
Azure Stack Hub Elevation of Privilege Vulnerability
Azure Stack Hub
1.2311.1.22+
HIGH 7.8
CVE-2024-38046
PowerShell Elevation of Privilege Vulnerability
Windows 10 1507
10.0.10240.20766 / 10.0.14393.7336+
HIGH 8.8
CVE-2024-37965
Microsoft SQL Server Elevation of Privilege Vulnerability
Sql Server 2016
13.0.6445.1 / 13.0.7040.1+
MEDIUM 6.0
CVE-2024-42424
Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Improper Input Validation vulnerability. A high privileged attacker with lo…
Precision 7920 Rack Firmware
2.22.1+
MEDIUM 5.5
CVE-2024-27366
An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos …
Exynos 980 Firmware
Mitigation only
MEDIUM 5.7
CVE-2024-8445
The fix for CVE-2024-2199 in 389-ds-base was insufficient to cover all scenarios. In certain product versions, an authenticated user may cause a serv…
Mitigation only
CRITICAL 9.8
CVE-2024-44808
An issue in Vypor Attack API System v.1.0 allows a remote attacker to execute arbitrary code via the user GET parameter.
Mitigation only
MEDIUM 5.5
CVE-2024-45446
Access permission verification vulnerability in the camera driver module
Impact: Successful exploitation of this vulnerability will affect availabili…
Emui
Mitigation only
MEDIUM 5.5
CVE-2024-45444
Access permission verification vulnerability in the WMS module
Impact: Successful exploitation of this vulnerability may affect service confidentiali…
Emui
No fix yet
HIGH 7.5
CVE-2024-45441
Input verification vulnerability in the system service module
Impact: Successful exploitation of this vulnerability will affect availability.
Emui
No fix yet