NA - CVE-2024-51828 - Improper Neutralization of Input During Web...
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Daniel J Griffiths Beacon For Help Scout allows DOM-Based XSS.This issue affects...
NA - CVE-2024-51829 - Improper Neutralization of Input During Web...
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Figoli Quinn & Associates Mobile Kiosk allows Stored XSS.This issue affects Mobile...
NA - CVE-2018-9339 - In writeTypedArrayList and readTypedArrayList...
In writeTypedArrayList and readTypedArrayList of Parcel.java, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege with no additional...
NA - CVE-2018-9340 - In ResStringPool::setTo of ResourceTypes.cpp,...
In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to be out of bounds, causing information disclosure.
NA - CVE-2018-9341 - In impeg2d_mc_fullx_fully of impeg2d_mc.c there...
In impeg2d_mc_fullx_fully of impeg2d_mc.c there is a possible out of bound write due to missing bounds check. This could lead to remote arbitrary code execution with no additional execution...
NA - CVE-2018-9344 - In several functions of DescramblerImpl.cpp,...
In several functions of DescramblerImpl.cpp, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges...
NA - CVE-2018-9345 - In BnAudioPolicyService::onTransact of...
In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no...
NA - CVE-2018-9346 - In BnAudioPolicyService::onTransact of...
In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no...
NA - CVE-2024-21697 - This High severity RCE (Remote Code Execution)...
This High severity RCE (Remote Code Execution) vulnerability was introduced in versions 4.2.8 of Sourcetree for Mac and 3.4.19 for Sourcetree for Windows. This RCE (Remote Code Execution)...
NA - CVE-2024-48694 - File Upload vulnerability in Xi'an Daxi...
File Upload vulnerability in Xi'an Daxi Information technology OfficeWeb365 v.8.6.1.0 and v7.18.23.0 allows a remote attacker to execute arbitrary code via the pw/savedraw component.