Export limit exceeded: 357879 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 357879 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (357879 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2024-42357 | 1 Shopware | 1 Shopware | 2024-08-12 | 7.3 High |
| Shopware is an open commerce platform. Prior to versions 6.6.5.1 and 6.5.8.13, the Shopware application API contains a search functionality which enables users to search through information stored within their Shopware instance. The searches performed by this function can be aggregated using the parameters in the `aggregations` object. The `name` field in this `aggregations` object is vulnerable SQL-injection and can be exploited using SQL parameters. Update to Shopware 6.6.5.1 or 6.5.8.13 to receive a patch. For older versions of 6.1, 6.2, 6.3, and 6.4, corresponding security measures are also available via a plugin. | ||||
| CVE-2024-41238 | 2 Kashipara, Lopalopa | 2 Responsive School Management System, Responsive School Management System | 2024-08-12 | 4.3 Medium |
| A SQL injection vulnerability in /smsa/student_login.php in Kashipara Responsive School Management System v1.0 allows an attacker to execute arbitrary SQL commands via the "username" parameter. | ||||
| CVE-2024-34635 | 1 Samsung | 1 Notes | 2024-08-09 | 4 Medium |
| Out-of-bounds read in parsing textbox object in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory. | ||||
| CVE-2024-34634 | 1 Samsung | 1 Notes | 2024-08-09 | 4 Medium |
| Out-of-bounds read in parsing connected object list in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory. | ||||
| CVE-2024-34632 | 1 Samsung | 1 Notes | 2024-08-09 | 4 Medium |
| Out-of-bounds read in uuid parsing in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory. | ||||
| CVE-2024-34633 | 1 Samsung | 1 Notes | 2024-08-09 | 4 Medium |
| Out-of-bounds read in parsing object header in Samsung Notes prior to version 4.4.21.62 allows local attacker to access unauthorized memory. | ||||
| CVE-2024-34630 | 1 Samsung | 1 Notes | 2024-08-09 | 5.5 Medium |
| Out-of-bounds read in applying own binary with textbox in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. | ||||
| CVE-2024-34629 | 1 Samsung | 1 Notes | 2024-08-09 | 5.5 Medium |
| Out-of-bounds read in applying binary with text common object in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. | ||||
| CVE-2024-34628 | 1 Samsung | 1 Notes | 2024-08-09 | 5.5 Medium |
| Out-of-bounds read in applying binary with path in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. | ||||
| CVE-2024-34627 | 1 Samsung | 1 Notes | 2024-08-09 | 5.5 Medium |
| Out-of-bounds read in parsing implemention in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. | ||||
| CVE-2024-34626 | 1 Samsung | 1 Notes | 2024-08-09 | 5.5 Medium |
| Out-of-bounds read in applying own binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. | ||||
| CVE-2024-34625 | 1 Samsung | 1 Notes | 2024-08-09 | 5.5 Medium |
| Out-of-bounds read in applying connection point in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. | ||||
| CVE-2024-34631 | 1 Samsung | 1 Notes | 2024-08-09 | 5.5 Medium |
| Out-of-bounds read in applying new binary in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. | ||||
| CVE-2024-34621 | 1 Samsung | 1 Notes | 2024-08-09 | 5.5 Medium |
| Out-of-bounds read in applying binary with data in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. | ||||
| CVE-2024-34624 | 1 Samsung | 1 Notes | 2024-08-09 | 5.5 Medium |
| Out-of-bounds read in applying paragraphs in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially read memory. | ||||
| CVE-2024-34623 | 2 Samsung, Samsung Mobile | 2 Notes, Samsung Notes | 2024-08-09 | 7.8 High |
| Out-of-bounds write in applying connected information in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege. | ||||
| CVE-2024-34622 | 1 Samsung | 1 Notes | 2024-08-09 | 7.8 High |
| Out-of-bounds write in appending paragraph in Samsung Notes prior to version 4.4.21.62 allows local attackers to potentially execute arbitrary code with Samsung Notes privilege. | ||||
| CVE-2024-32864 | 1 Johnsoncontrols | 1 Exacqvision Web Service | 2024-08-09 | 6.4 Medium |
| Under certain circumstances exacqVision Web Services will not enforce secure web communications (HTTPS) | ||||
| CVE-2024-32865 | 1 Johnsoncontrols | 1 Exacqvision Server | 2024-08-09 | 6.4 Medium |
| Under certain circumstances the exacqVision Server will not properly validate TLS certificates provided by connected devices. | ||||
| CVE-2024-32758 | 1 Johnsoncontrols | 2 Exacqvision Client, Exacqvision Server | 2024-08-09 | 7.5 High |
| Under certain circumstances the communication between exacqVision Client and exacqVision Server will use insufficient key length and exchange | ||||