Category: CVE

CVE-2024-50588 | Hasomed Elefant prior 24.03.03 default password

A vulnerability classified as very critical was found in Hasomed Elefant. Affected by this vulnerability is an unknown functionality. The manipulation leads to use of default password. This vulnerability is known as CVE-2024-50588. The attack can only be initiated within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-24409 | Zoho ManageEngine ADManager Plus up to 7203 Modify Computers Option privileges management

A vulnerability classified as critical has been found in Zoho ManageEngine ADManager Plus up to 7203. Affected is an unknown function of the component Modify Computers Option. The manipulation leads to improper privilege management. This vulnerability is traded as CVE-2024-24409. It is possible to launch the attack remotely. There is no exploit...

Read More

CVE-2024-10187 | myCred Plugin up to 2.7.4 on WordPress Shortcode mycred_link cross site scripting

A vulnerability was found in myCred Plugin up to 2.7.4 on WordPress. It has been rated as problematic. This issue affects the function mycred_link of the component Shortcode Handler. The manipulation leads to cross site scripting. The identification of this vulnerability is CVE-2024-10187. The attack may be initiated remotely. There is no exploit...

Read More

CVE-2024-10325 | Elementor Header & Footer Builder Plugin up to 1.6.45 on WordPress SVG File Upload cross site scripting

A vulnerability was found in Elementor Header & Footer Builder Plugin up to 1.6.45 on WordPress. It has been declared as problematic. This vulnerability affects unknown code of the component SVG File Upload Handler. The manipulation leads to cross site scripting. This vulnerability was named CVE-2024-10325. The attack can be initiated remotely. There is no exploit...

Read More

CVE-2024-7982 | Registrations for the Events Calendar Plugin up to 2.12.3 on WordPress cross site scripting

A vulnerability was found in Registrations for the Events Calendar Plugin up to 2.12.3 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2024-7982. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50199 | Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4 HugeTLB Page unuse_pud_range allocation of resources

A vulnerability was found in Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4 and classified as problematic. Affected by this issue is the function unuse_pud_range of the component HugeTLB Page. The manipulation leads to allocation of resources. This vulnerability is handled as CVE-2024-50199. The attack needs to be initiated within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50198 | Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4 veml6030 dev_to_iio_dev memory corruption

A vulnerability has been found in Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4 and classified as critical. Affected by this vulnerability is the function dev_to_iio_dev of the component veml6030. The manipulation leads to memory corruption. This vulnerability is known as CVE-2024-50198. The attack needs to be done within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50197 | Linux Kernel up to 6.11.4 pinctrl device_for_each_child_node reference count (be3f7b9f995a/16a6d2e685e8)

A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.11.4. Affected is the function device_for_each_child_node of the component pinctrl. The manipulation leads to improper update of reference count. This vulnerability is traded as CVE-2024-50197. The attack can only be initiated within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50196 | Linux Kernel up to 5.15.168/6.1.113/6.6.57/6.11.4 pinctrl chained_irq_enter denial of service

A vulnerability, which was classified as critical, has been found in Linux Kernel up to 5.15.168/6.1.113/6.6.57/6.11.4. This issue affects the function chained_irq_enter of the component pinctrl. The manipulation leads to denial of service. The identification of this vulnerability is CVE-2024-50196. The attack can only be done within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50195 | Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4 posix-clock pc_clock_settime Privilege Escalation

A vulnerability classified as problematic was found in Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4. This vulnerability affects the function pc_clock_settime of the component posix-clock. The manipulation leads to Privilege Escalation. This vulnerability was named CVE-2024-50195. The attack needs to be approached within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50202 | Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4 nilfs_find_entry Privilege Escalation

A vulnerability classified as problematic has been found in Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4. This affects the function nilfs_find_entry. The manipulation leads to Privilege Escalation. This vulnerability is uniquely identified as CVE-2024-50202. Access to the local network is required for this attack to succeed. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50201 | Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4 radeon initialization

A vulnerability was found in Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4. It has been rated as problematic. Affected by this issue is some unknown functionality of the component radeon. The manipulation leads to improper initialization. This vulnerability is handled as CVE-2024-50201. Access to the local network is required for this attack. There is no exploit available. It is recommended to upgrade the affected...

Read More
Loading