NA - CVE-2024-5474 - A potential information disclosure...
A potential information disclosure vulnerability was reported in Lenovo's packaging of Dolby Vision Provisioning software prior to version 2.0.0.2 that could allow a local attacker to read...
NA - CVE-2024-6985 - A path traversal vulnerability exists in the...
A path traversal vulnerability exists in the api open_personality_folder endpoint of parisneo/lollms-webui. This vulnerability allows an attacker to read any folder in the personality_folder on the...
NA - CVE-2024-8376 - In Eclipse Mosquitto up to version 2.0.18a, an...
In Eclipse Mosquitto up to version 2.0.18a, an attacker can achieve memory leaking, segmentation fault or heap-use-after-free by sending specific sequences of "CONNECT", "DISCONNECT", "SUBSCRIBE",...
NA - CVE-2024-42018 - An issue was discovered in Atos Eviden SMC...
An issue was discovered in Atos Eviden SMC xScale before 1.6.6. During initialization of nodes, some configuration parameters are retrieved from management nodes. These parameters embed credentials...
NA - CVE-2024-44413 - A vulnerability was discovered in...
A vulnerability was discovered in DI_8200-16.07.26A1, which has been classified as critical. This issue affects the upgrade_filter_asp function in the upgrade_filter.asp file. Manipulation of the...
NA - CVE-2024-44414 - A vulnerability was discovered in...
A vulnerability was discovered in FBM_292W-21.03.10V, which has been classified as critical. This issue affects the sub_4901E0 function in the msp_info.htm file. Manipulation of the path parameter...
NA - CVE-2024-44415 - A vulnerability was discovered in...
A vulnerability was discovered in DI_8200-16.07.26A1, There is a buffer overflow in the dbsrv_asp function; The strcpy function is executed without checking the length of the string, leading to a...
NA - CVE-2024-44731 - Mirotalk before commit 9de226 was discovered to...
Mirotalk before commit 9de226 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary code via sending crafted payloads in...
NA - CVE-2024-44734 - Incorrect access control in Mirotalk before...
Incorrect access control in Mirotalk before commit 9de226 allows attackers to arbitrarily change usernames via sending a crafted roomAction request to the server.