Lista CVE - 2024 / Agosto
Visualizzazione 1101 - 1200 di 2898 CVE per Agosto 2024 (Pagina 12 di 29)
ID CVE | Data | Titolo |
---|---|---|
CVE-2024-38127 | 2024-08-13 | Windows Hyper-V Elevation of Privilege Vulnerability |
CVE-2024-38128 | 2024-08-13 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
CVE-2024-38130 | 2024-08-13 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
CVE-2024-38131 | 2024-08-13 | Clipboard Virtual Channel Extension Remote Code Execution Vulnerability |
CVE-2024-38132 | 2024-08-13 | Windows Network Address Translation (NAT) Denial of Service Vulnerability |
CVE-2024-38133 | 2024-08-13 | Windows Kernel Elevation of Privilege Vulnerability |
CVE-2024-38134 | 2024-08-13 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
CVE-2024-38135 | 2024-08-13 | Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability |
CVE-2024-38136 | 2024-08-13 | Windows Resource Manager PSM Service Extension Elevation of Privilege Vulnerability |
CVE-2024-38137 | 2024-08-13 | Windows Resource Manager PSM Service Extension Elevation of Privilege Vulnerability |
CVE-2024-38138 | 2024-08-13 | Windows Deployment Services Remote Code Execution Vulnerability |
CVE-2024-38140 | 2024-08-13 | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability |
CVE-2024-38141 | 2024-08-13 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
CVE-2024-38142 | 2024-08-13 | Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
CVE-2024-38143 | 2024-08-13 | Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability |
CVE-2024-38144 | 2024-08-13 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
CVE-2024-38145 | 2024-08-13 | Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability |
CVE-2024-38146 | 2024-08-13 | Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability |
CVE-2024-38147 | 2024-08-13 | Microsoft DWM Core Library Elevation of Privilege Vulnerability |
CVE-2024-38148 | 2024-08-13 | Windows Secure Channel Denial of Service Vulnerability |
CVE-2024-38150 | 2024-08-13 | Windows DWM Core Library Elevation of Privilege Vulnerability |
CVE-2024-38151 | 2024-08-13 | Windows Kernel Information Disclosure Vulnerability |
CVE-2024-38152 | 2024-08-13 | Windows OLE Remote Code Execution Vulnerability |
CVE-2024-38153 | 2024-08-13 | Windows Kernel Elevation of Privilege Vulnerability |
CVE-2024-38154 | 2024-08-13 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
CVE-2024-38155 | 2024-08-13 | Security Center Broker Information Disclosure Vulnerability |
CVE-2024-38157 | 2024-08-13 | Azure IoT SDK Remote Code Execution Vulnerability |
CVE-2024-38158 | 2024-08-13 | Azure IoT SDK Remote Code Execution Vulnerability |
CVE-2024-38162 | 2024-08-13 | Azure Connected Machine Agent Elevation of Privilege Vulnerability |
CVE-2024-38165 | 2024-08-13 | Windows Compressed Folder Tampering Vulnerability |
CVE-2024-38169 | 2024-08-13 | Microsoft Office Visio Remote Code Execution Vulnerability |
CVE-2024-38170 | 2024-08-13 | Microsoft Excel Remote Code Execution Vulnerability |
CVE-2024-38171 | 2024-08-13 | Microsoft PowerPoint Remote Code Execution Vulnerability |
CVE-2024-38173 | 2024-08-13 | Microsoft Outlook Remote Code Execution Vulnerability |
CVE-2024-38177 | 2024-08-13 | Windows App Installer Spoofing Vulnerability |
CVE-2024-38180 | 2024-08-13 | Windows SmartScreen Security Feature Bypass Vulnerability |
CVE-2024-38185 | 2024-08-13 | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
CVE-2024-38186 | 2024-08-13 | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
CVE-2024-38187 | 2024-08-13 | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
CVE-2024-38189 | 2024-08-13 | Microsoft Project Remote Code Execution Vulnerability |
CVE-2024-38195 | 2024-08-13 | Azure CycleCloud Remote Code Execution Vulnerability |
CVE-2024-38211 | 2024-08-13 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
CVE-2024-38120 | 2024-08-13 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
CVE-2024-38214 | 2024-08-13 | Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
CVE-2024-38215 | 2024-08-13 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
CVE-2024-38223 | 2024-08-13 | Windows Initial Machine Configuration Elevation of Privilege Vulnerability |
CVE-2024-38109 | 2024-08-13 | Azure Health Bot Elevation of Privilege Vulnerability |
CVE-2024-37968 | 2024-08-13 | Windows DNS Spoofing Vulnerability |
CVE-2024-6079 | 2024-08-13 | DLL Hijacking Vulnerability Exists in Rockwell Automation Emulate3D™ |
CVE-2024-7567 | 2024-08-13 | Rockwell Automation Micro850/870 Vulnerable to denial-of-service Vulnerability via CIP/Modbus Port |
CVE-2024-7733 | 2024-08-13 | FastCMS New Article Category Page cross site scripting |
CVE-2024-7569 | 2024-08-13 | An information disclosure vulnerability in Ivanti ITSM on-prem and Neurons... |
CVE-2024-7570 | 2024-08-13 | Improper certificate validation in Ivanti ITSM on-prem and Neurons for... |
CVE-2024-7593 | 2024-08-13 | Incorrect implementation of an authentication algorithm in Ivanti vTM other... |
CVE-2024-7738 | 2024-08-13 | yzane vscode-markdown-pdf Markdown File pathname traversal |
CVE-2024-7739 | 2024-08-13 | yzane vscode-markdown-pdf cross site scripting |
CVE-2024-42368 | 2024-08-13 | open-telemetry has an Observable Timing Discrepancy |
CVE-2024-7740 | 2024-08-13 | wanglongcn ltcms API Endpoint download server-side request forgery |
CVE-2024-7741 | 2024-08-13 | wanglongcn ltcms API Endpoint downloadfile downloadFile path traversal |
CVE-2024-7742 | 2024-08-13 | wanglongcn ltcms API Endpoint multiDownload server-side request forgery |
CVE-2024-7743 | 2024-08-13 | wanglongcn ltcms API Endpoint downloadUrl server-side request forgery |
CVE-2024-7748 | 2024-08-13 | SourceCodester Accounts Manager App delete-account.php sql injection |
CVE-2024-7749 | 2024-08-13 | SourceCodester Accounts Manager App add-account.php cross site scripting |
CVE-2024-28986 | 2024-08-13 | SolarWinds Web Help Desk Java Deserialization Remote Code Execution Vulnerability |
CVE-2024-7750 | 2024-08-13 | SourceCodester Clinics Patient Management System medicines.php sql injection |
CVE-2024-7751 | 2024-08-13 | SourceCodester Clinics Patient Management System update_medicine.php sql injection |
CVE-2024-38163 | 2024-08-13 | Windows Update Stack Elevation of Privilege Vulnerability |
CVE-2024-7752 | 2024-08-13 | SourceCodester Clinics Patient Management System update_medicine.php cross site scripting |
CVE-2024-7753 | 2024-08-14 | SourceCodester Clinics Patient Management System user_images direct request |
CVE-2024-7754 | 2024-08-14 | SourceCodester Clinics Patient Management System check_medicine_name.php sql injection |
CVE-2024-36136 | 2024-08-14 | An off-by-one error in WLInfoRailService in Ivanti Avalanche 6.3.1 allows... |
CVE-2024-38653 | 2024-08-14 | XXE in SmartDeviceServer in Ivanti Avalanche 6.3.1 allows a remote... |
CVE-2024-37399 | 2024-08-14 | A NULL pointer dereference in WLAvalancheService in Ivanti Avalanche 6.3.1... |
CVE-2024-37373 | 2024-08-14 | Improper input validation in the Central Filestore in Ivanti Avalanche... |
CVE-2024-38652 | 2024-08-14 | Path traversal in the skin management component of Ivanti Avalanche... |
CVE-2024-20082 | 2024-08-14 | In Modem, there is a possible memory corruption due to... |
CVE-2024-20083 | 2024-08-14 | In venc, there is a possible out of bounds write... |
CVE-2024-7728 | 2024-08-14 | CAYIN Technology CMS - OS Command Injection |
CVE-2024-7729 | 2024-08-14 | CAYIN Technology CMS - Sensitive File Download |
CVE-2024-7588 | 2024-08-14 | Gutenberg Blocks, Page Builder – ComboBlocks <= 2.2.87 - Authenticated (Contributor+) Stored Cross-Site Scripting via Accordion Block |
CVE-2024-7731 | 2024-08-14 | SECOM Dr.ID Access control system - SQL injection |
CVE-2024-7732 | 2024-08-14 | SECOM Dr.ID Attendance system - Unrestricted File Upload |
CVE-2024-41858 | 2024-08-14 | Adobe InCopy has an integer overflow vulnerability when parsing SVG file |
CVE-2024-41863 | 2024-08-14 | Adobe Substance 3D Sampler Memory Corruption Out-of-Bounds-READ Vulnerability III, when parsing DNG file |
CVE-2024-41860 | 2024-08-14 | Adobe Substance 3D Sampler Memory Corruption Vulnerability I, when parsing PSD file |
CVE-2024-41861 | 2024-08-14 | Adobe Substance 3D Sampler Memory Corruption Out-of-Bounds-READ Vulnerability I, when parsing PSD file |
CVE-2024-41862 | 2024-08-14 | Adobe Substance 3D Sampler Memory Corruption Out-of-Bounds-READ Vulnerability II, when parsing PSD file |
CVE-2024-41864 | 2024-08-14 | Adobe Substance 3D Designer ICO Parsing Out-Of-Bounds Write Vulnerability |
CVE-2024-4389 | 2024-08-14 | Slider & Popup Builder by Depicter – Add Image Slider, Carousel Slider, Exit Intent Popup, Popup Modal, Coupon Popup, Post Slider Carousel <= 3.1.1 - Authenticated (Contributor+) Arbitrary File Upload |
CVE-2024-38483 | 2024-08-14 | Dell BIOS contains an Improper Input Validation vulnerability in an... |
CVE-2024-6532 | 2024-08-14 | Sheet to Table Live Sync for Google Sheet <= 1.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via STWT_Sheet_Table Shortcode |
CVE-2024-39405 | 2024-08-14 | Adobe Commerce | Improper Authorization (CWE-285) |
CVE-2024-39415 | 2024-08-14 | An unauthorized user can export the Tax Sales Report |
CVE-2024-39404 | 2024-08-14 | A user without Shop Policy Parameters section privilege can alter the shop policy parameters section |
CVE-2024-39400 | 2024-08-14 | DOM XSS through integrations can impact other admins |
CVE-2024-39406 | 2024-08-14 | Adobe Commerce | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22) |
CVE-2024-39402 | 2024-08-14 | Adobe Commerce | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78) |
CVE-2024-39412 | 2024-08-14 | Adobe Commerce | Improper Authorization (CWE-285) |
CVE-2024-39414 | 2024-08-14 | Being able to import/export tax rates without proper privileges |
CVE-2024-39416 | 2024-08-14 | Unauthorized user can export Orders Sale Report |