Aggregator
CVE-2023-7122 | Linux Kernel 6.6 iommufd Driver iommufd_test use after free
10 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Linux Kernel 6.6. This issue affects the function iommufd_test of the component iommufd Driver. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2023-7122. The attack can only be done within the local network. There is no exploit available.
vuldb.com
CVE-2024-43945 | LatePoint Plugin up to 4.9.91 on WordPress cross-site request forgery
10 months 3 weeks ago
A vulnerability classified as problematic was found in LatePoint Plugin up to 4.9.91 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2024-43945. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-49293 | Rextheme WP VR Plugin up to 8.5.4 on WordPress authorization
10 months 3 weeks ago
A vulnerability classified as problematic has been found in Rextheme WP VR Plugin up to 8.5.4 on WordPress. This affects an unknown part. The manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2024-49293. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-49273 | ProfileGrid Plugin up to 5.9.3 on WordPress authorization
10 months 3 weeks ago
A vulnerability was found in ProfileGrid Plugin up to 5.9.3 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to missing authorization.
This vulnerability is handled as CVE-2024-49273. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-47328 | FunnelKit Automation by Autonami Plugin up to 3.1.2 on WordPress sql injection
10 months 3 weeks ago
A vulnerability was found in FunnelKit Automation by Autonami Plugin up to 3.1.2 on WordPress. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection.
This vulnerability is known as CVE-2024-47328. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2024-49321 | Colorlib Simple Custom Post Order Plugin up to 2.5.7 on WordPress authorization
10 months 3 weeks ago
A vulnerability was found in Colorlib Simple Custom Post Order Plugin up to 2.5.7 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to missing authorization.
This vulnerability is traded as CVE-2024-49321. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-47712 | Linux Kernel up to 6.11.1 wilc1000 wilc_parse_join_bss_param use after free
10 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.11.1 and classified as critical. This issue affects the function wilc_parse_join_bss_param of the component wilc1000. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2024-47712. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47741 | Linux Kernel up to 6.6.53/6.10.12/6.11.1 file.c c:find_desired_extent reference count
10 months 3 weeks ago
A vulnerability has been found in Linux Kernel up to 6.6.53/6.10.12/6.11.1 and classified as critical. This vulnerability affects the function c:find_desired_extent of the file file.c. The manipulation leads to improper update of reference count.
This vulnerability was named CVE-2024-47741. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47713 | Linux Kernel up to 6.11.1 mac80211 kernel/softirq.c ieee80211_do_stop Privilege Escalation
10 months 3 weeks ago
A vulnerability, which was classified as problematic, was found in Linux Kernel up to 6.11.1. This affects the function ieee80211_do_stop of the file kernel/softirq.c of the component mac80211. The manipulation leads to Privilege Escalation.
This vulnerability is uniquely identified as CVE-2024-47713. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-49850 | Linux Kernel up to 6.1.112/6.6.53/6.10.12/6.11.1 bpf null pointer dereference
10 months 3 weeks ago
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.1.112/6.6.53/6.10.12/6.11.1. Affected by this issue is some unknown functionality of the component bpf. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2024-49850. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47736 | Linux Kernel up to 6.10.12/6.11.1 z_erofs_fill_bio_vec deadlock (b9b30af0e86f/9cfa199bcbbb/9e2f9d34dd12)
10 months 3 weeks ago
A vulnerability classified as critical was found in Linux Kernel up to 6.10.12/6.11.1. Affected by this vulnerability is the function z_erofs_fill_bio_vec. The manipulation leads to deadlock.
This vulnerability is known as CVE-2024-47736. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47721 | Linux Kernel up to 6.10.12/6.11.1 rtw89 out-of-bounds (10463308b945/2c9c2d1a2091/56310ddb50b1)
10 months 3 weeks ago
A vulnerability classified as problematic has been found in Linux Kernel up to 6.10.12/6.11.1. Affected is an unknown function of the component rtw89. The manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2024-47721. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47714 | Linux Kernel up to 6.6.53/6.10.12/6.11.1 tx_ant out-of-bounds
10 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.6.53/6.10.12/6.11.1. It has been rated as problematic. This issue affects the function tx_ant. The manipulation leads to out-of-bounds read.
The identification of this vulnerability is CVE-2024-47714. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
突发:“易建联”微博已无法搜索,此前陷入“嫖娼丑闻”
10 months 3 weeks ago
易建联本人一直沉默,没有进行辟谣。
黑客利用伪造的 ESET 电子邮件向以色列公司发送 Wiper 恶意软件
10 months 3 weeks ago
安全客
CVE-2024-47710 | Linux Kernel up to 6.11.1 sock_map sock_hash_free Privilege Escalation
10 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.11.1. It has been declared as problematic. This vulnerability affects the function sock_hash_free of the component sock_map. The manipulation leads to Privilege Escalation.
This vulnerability was named CVE-2024-47710. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-47703 | Linux Kernel up to 6.10.12/6.11.1 BPF file_alloc_security return value (1050727d83e7/27ca3e20fe80/5d99e198be27)
10 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.10.12/6.11.1. It has been classified as problematic. This affects the function file_alloc_security of the component BPF. The manipulation leads to unchecked return value.
This vulnerability is uniquely identified as CVE-2024-47703. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
RansomHub
10 months 3 weeks ago
cohenido
CVE-2024-47700 | Linux Kernel up to 6.6.53/6.10.12/6.11.1 ext4 __ext4_fill_super Privilege Escalation
10 months 3 weeks ago
A vulnerability was found in Linux Kernel up to 6.6.53/6.10.12/6.11.1 and classified as problematic. Affected by this issue is the function __ext4_fill_super of the component ext4. The manipulation leads to Privilege Escalation.
This vulnerability is handled as CVE-2024-47700. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com