Aggregator
CVE-2024-43465 | Microsoft Excel use after free
1 year 9 months ago
A vulnerability, which was classified as critical, was found in Microsoft Excel. This affects an unknown part. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2024-43465. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
Unauthorized Deletion of Forms by Low-Level Unlicensed Users: A 500$ Access Control Bug
1 year 9 months ago
Everything You Need to Know Before Building on the Stellar Blockchain
1 year 9 months ago
"Why do I have to transfer my crypto to a CEX account before I can get fiat and pay for something?"
CVE-2024-43464 | Microsoft SharePoint Server deserialization
1 year 9 months ago
A vulnerability, which was classified as critical, has been found in Microsoft SharePoint Server. Affected by this issue is some unknown functionality. The manipulation leads to deserialization.
This vulnerability is handled as CVE-2024-43464. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
PIXHELL: как злоумышленники используют ваш монитор для кражи данных
1 year 9 months ago
Безмолвный крик пикселей позволяет обойти любые воздушные зазоры.
CVE-2024-43463 | Microsoft Visio use after free
1 year 9 months ago
A vulnerability classified as critical was found in Microsoft Visio. Affected by this vulnerability is an unknown functionality. The manipulation leads to use after free.
This vulnerability is known as CVE-2024-43463. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43461 | Microsoft Windows up to Server 2022 23H2 MSHTML Platform clickjacking
1 year 9 months ago
A vulnerability classified as critical has been found in Microsoft Windows. Affected is an unknown function of the component MSHTML Platform. The manipulation leads to clickjacking.
This vulnerability is traded as CVE-2024-43461. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43458 | Microsoft Windows 10 1607/Server 2016 Networking uninitialized resource
1 year 9 months ago
A vulnerability was found in Microsoft Windows 10 1607/Server 2016. It has been rated as problematic. This issue affects some unknown processing of the component Networking. The manipulation leads to uninitialized resource.
The identification of this vulnerability is CVE-2024-43458. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43457 | Microsoft Windows 11 24H2 Setup/Deployment unquoted search path
1 year 9 months ago
A vulnerability was found in Microsoft Windows 11 24H2. It has been declared as critical. This vulnerability affects unknown code of the component Setup/Deployment. The manipulation leads to unquoted search path.
This vulnerability was named CVE-2024-43457. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43455 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service input validation
1 year 9 months ago
A vulnerability was found in Microsoft Windows. It has been classified as critical. This affects an unknown part of the component Remote Desktop Licensing Service. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2024-43455. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-43454 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service path traversal
1 year 9 months ago
A vulnerability was found in Microsoft Windows and classified as problematic. Affected by this issue is some unknown functionality of the component Remote Desktop Licensing Service. The manipulation leads to relative path traversal.
This vulnerability is handled as CVE-2024-43454. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38263 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service sensitive data storage in improperly locked memory
1 year 9 months ago
A vulnerability has been found in Microsoft Windows and classified as critical. Affected by this vulnerability is an unknown functionality of the component Remote Desktop Licensing Service. The manipulation leads to sensitive data storage in improperly locked memory.
This vulnerability is known as CVE-2024-38263. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38260 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service uninitialized resource
1 year 9 months ago
A vulnerability, which was classified as critical, was found in Microsoft Windows Server 2008 R2 SP1 up to Server 2022. Affected is an unknown function of the component Remote Desktop Licensing Service. The manipulation leads to uninitialized resource.
This vulnerability is traded as CVE-2024-38260. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38259 | Microsoft Windows up to Server 2022 23H2 Management Console use after free
1 year 9 months ago
A vulnerability, which was classified as critical, has been found in Microsoft Windows up to Server 2022 23H2. This issue affects some unknown processing of the component Management Console. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2024-38259. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38258 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 Remote Desktop Licensing Service path traversal
1 year 9 months ago
A vulnerability classified as problematic was found in Microsoft Windows. This vulnerability affects unknown code of the component Remote Desktop Licensing Service. The manipulation leads to relative path traversal.
This vulnerability was named CVE-2024-38258. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38257 | Microsoft Windows up to Server 2022 23H2 AllJoyn API uninitialized resource
1 year 9 months ago
A vulnerability classified as problematic has been found in Microsoft Windows. This affects an unknown part of the component AllJoyn API. The manipulation leads to uninitialized resource.
This vulnerability is uniquely identified as CVE-2024-38257. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38256 | Microsoft Windows up to Server 2019 Kernel-Mode Driver uninitialized resource
1 year 9 months ago
A vulnerability was found in Microsoft Windows. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Kernel-Mode Driver. The manipulation leads to uninitialized resource.
This vulnerability is handled as CVE-2024-38256. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38254 | Microsoft Windows up to Server 2022 23H2 Authentication uninitialized resource
1 year 9 months ago
A vulnerability was found in Microsoft Windows. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Authentication. The manipulation leads to uninitialized resource.
This vulnerability is known as CVE-2024-38254. Attacking locally is a requirement. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-38253 | Microsoft Windows 11 21H2/11 22H2/11 23H2/11 24H2/Server 2022 23H2 Win32 Kernel Subsystem use after free
1 year 9 months ago
A vulnerability was found in Microsoft Windows 11 21H2/11 22H2/11 23H2/11 24H2/Server 2022 23H2. It has been classified as critical. Affected is an unknown function of the component Win32 Kernel Subsystem. The manipulation leads to use after free.
This vulnerability is traded as CVE-2024-38253. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com