NA - CVE-2024-44414 - A vulnerability was discovered in...
A vulnerability was discovered in FBM_292W-21.03.10V, which has been classified as critical. This issue affects the sub_4901E0 function in the msp_info.htm file. Manipulation of the path parameter...
NA - CVE-2024-44415 - A vulnerability was discovered in...
A vulnerability was discovered in DI_8200-16.07.26A1, There is a buffer overflow in the dbsrv_asp function; The strcpy function is executed without checking the length of the string, leading to a...
NA - CVE-2024-44731 - Mirotalk before commit 9de226 was discovered to...
Mirotalk before commit 9de226 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary code via sending crafted payloads in...
NA - CVE-2024-44734 - Incorrect access control in Mirotalk before...
Incorrect access control in Mirotalk before commit 9de226 allows attackers to arbitrarily change usernames via sending a crafted roomAction request to the server.
NA - CVE-2024-46215 - A vulnerability was discovered in...
A vulnerability was discovered in KM08-708H-v1.1, There is a buffer overflow in the sub_445BDC() function within the /usr/sbin/goahead program; The strcpy function is executed without checking the...
NA - CVE-2024-47877 - Extract is aA Go library to extract archives in...
Extract is aA Go library to extract archives in zip, tar.gz or tar.bz2 formats. A maliciously crafted archive may allow an attacker to create a symlink outside the extraction target directory. This...
NA - CVE-2024-9859 - Type confusion in WebAssembly in Google Chrome...
Type confusion in WebAssembly in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
NA - CVE-2024-44157 - A stack buffer overflow was addressed through...
A stack buffer overflow was addressed through improved input validation. This issue is fixed in Apple TV 1.5.0.152 for Windows, iTunes 12.13.3 for Windows. Parsing a maliciously crafted video file...
NA - CVE-2024-44807 - A directory listing issue in the baserCMS...
A directory listing issue in the baserCMS plugin in D-ZERO CO., LTD. BurgerEditor and BurgerEditor Limited Edition before 2.25.1 allows remote attackers to obtain sensitive information by exposing...
NA - CVE-2024-46532 - SQL Injection vulnerability in OpenHIS v.1.0...
SQL Injection vulnerability in OpenHIS v.1.0 allows an attacker to execute arbitrary code via the refund function in the PayController.class.php component.