CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-21472
8.4 HIGH

Memory corruption in Kernel while handling GPU operations.

Apr 1, 2024
CVE-2024-21470
8.4 HIGH

Memory corruption while allocating memory for graphics.

Apr 1, 2024
CVE-2024-21468
8.4 HIGH

Memory corruption when there is failed unmap operation in GPU.

Apr 1, 2024
CVE-2024-21463
7.3 HIGH

Memory corruption while processing Codec2 during v13k decoder pitch synthesis.

Apr 1, 2024
CVE-2024-21454
7.5 HIGH

Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics.

Apr 1, 2024
CVE-2024-21453
7.5 HIGH

Transient DOS while decoding message of size that exceeds the available system memory.

Apr 1, 2024
CVE-2024-21452
7.3 HIGH

Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.

Apr 1, 2024
CVE-2023-43515
6.6 MEDIUM

Memory corruption in HLOS while running kernel address sanitizers (syzkaller) on tmecom with DEBUG_FS enabled.

Apr 1, 2024
CVE-2023-33115
7.8 HIGH

Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.

Apr 1, 2024
CVE-2023-33111
5.5 MEDIUM

Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibration command.

Apr 1, 2024
CVE-2023-33101
7.5 HIGH

Transient DOS while processing DL NAS TRANSPORT message with payload length 0.

Apr 1, 2024
CVE-2023-33100
7.5 HIGH

Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification.

Apr 1, 2024
CVE-2023-33099
7.5 HIGH

Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.

Apr 1, 2024
CVE-2023-33023
8.4 HIGH

Memory corruption while processing finish_sign command to pass a rsp buffer.

Apr 1, 2024
CVE-2023-28547
8.4 HIGH

Memory corruption in SPS Application while requesting for public key in sorter TA.

Apr 1, 2024
CVE-2024-3125
2.4 LOW

A vulnerability classified as problematic was found in Zebra ZTC GK420d 1.0. This vulnerability affects unknown code of the file /settings of the component Alert …

Apr 1, 2024
CVE-2024-31099
6.4 MEDIUM

Missing Authorization vulnerability in Averta Shortcodes and extra features for Phlox theme auxin-elements.This issue affects Shortcodes and extra features for Phlox theme: from n/a through …

Apr 1, 2024
CVE-2024-3124
2.4 LOW

A vulnerability classified as problematic has been found in fridgecow smartalarm 1.8.1 on Android. This affects an unknown part of the file androidmanifest.xml of the …

Apr 1, 2024
CVE-2024-30872
5.1 MEDIUM

netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /include/authrp.php.

Apr 1, 2024
CVE-2024-30871
8.8 HIGH

netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /WebPages/applyhardware.php.

Apr 1, 2024
CVE-2024-30870
8.8 HIGH

netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/address_interpret.php.

Apr 1, 2024
CVE-2024-30868
9.8 CRITICAL

netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/add_getlogin.php.

Apr 1, 2024
CVE-2022-4966
3.5 LOW

A vulnerability was found in sequentech admin-console up to 6.1.7 and classified as problematic. Affected by this issue is some unknown functionality of the component …

Apr 1, 2024
CVE-2023-6154
7.8 HIGH

A configuration setting issue in seccenter.exe as used in Bitdefender Total Security, Bitdefender Internet Security, Bitdefender Antivirus Plus, Bitdefender Antivirus Free allows an attacker to …

Apr 1, 2024
CVE-2024-3130
5.7 MEDIUM

Hard-coded Credentials in CoolKit eWeLlink app are before 5.4.x on Android and IOS allows local attacker to unauthorized access to sensitive data via Decryption algorithm …

Apr 1, 2024
CVE-2024-26654
7.0 HIGH

In the Linux kernel, the following vulnerability has been resolved: ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs The dreamcastcard->timer could schedule the …

Apr 1, 2024
CVE-2024-26653
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: usb: misc: ljca: Fix double free in error handling path When auxiliary_device_add() returns error and …

Apr 1, 2024
CVE-2024-25080
4.7 MEDIUM

WebMail in Axigen 10.x before 10.3.3.62 allows XSS via the image attachment viewer.

Apr 1, 2024
CVE-2016-15038
6.5 MEDIUM

A vulnerability, which was classified as critical, was found in NUUO NVRmini 2 up to 3.0.8. Affected is an unknown function of the file /deletefile.php. …

Apr 1, 2024
CVE-2024-2278
6.1 MEDIUM

Themify WordPress plugin before 1.4.4 does not sanitise and escape some of its Filters settings, which could allow high privilege users such as admin to …

Apr 1, 2024
CVE-2024-2263
4.8 MEDIUM

Themify WordPress plugin before 1.4.4 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting …

Apr 1, 2024
CVE-2024-2262
4.7 MEDIUM

Themify WordPress plugin before 1.4.4 does not have CSRF check in its bulk action, which could allow attackers to make logged in users delete arbitrary …

Apr 1, 2024
CVE-2024-1526
5.3 MEDIUM

The Hubbub Lite WordPress plugin before 1.33.1 does not ensure that user have access to password protected post before displaying its content in a meta …

Apr 1, 2024
CVE-2024-20055
6.3 MEDIUM

In imgsys, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with System execution privileges …

Apr 1, 2024
CVE-2024-20054
6.6 MEDIUM

In gnss, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System …

Apr 1, 2024
CVE-2024-20053
8.4 HIGH

In flashc, there is a possible out of bounds write due to an uncaught exception. This could lead to local escalation of privilege with System …

Apr 1, 2024
CVE-2024-20052
4.4 MEDIUM

In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. …

Apr 1, 2024
CVE-2024-20051
2.3 LOW

In flashc, there is a possible system crash due to an uncaught exception. This could lead to local denial of service with System execution privileges …

Apr 1, 2024
CVE-2024-20050
4.4 MEDIUM

In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. …

Apr 1, 2024
CVE-2024-20049
4.4 MEDIUM

In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. …

Apr 1, 2024
CVE-2024-20048
6.2 MEDIUM

In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. …

Apr 1, 2024
CVE-2024-20047
5.4 MEDIUM

In battery, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with System execution …

Apr 1, 2024
CVE-2024-20046
6.6 MEDIUM

In battery, there is a possible escalation of privilege due to an integer overflow. This could lead to local escalation of privilege with System execution …

Apr 1, 2024
CVE-2024-20045
2.3 LOW

In audio, there is a possible out of bounds read due to an incorrect calculation of buffer size. This could lead to local information disclosure …

Apr 1, 2024
CVE-2024-20044
6.6 MEDIUM

In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …

Apr 1, 2024
CVE-2024-20043
6.6 MEDIUM

In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …

Apr 1, 2024
CVE-2024-20042
6.6 MEDIUM

In da, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with …

Apr 1, 2024
CVE-2024-20041
4.4 MEDIUM

In da, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System …

Apr 1, 2024
CVE-2024-20040
8.8 HIGH

In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to remote escalation of privilege with …

Apr 1, 2024
CVE-2024-20039
8.8 HIGH

In modem protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with …

Apr 1, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.