Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-12-12 CVE-2024-49147 Deserialization of Untrusted Data vulnerability in Microsoft Update Catalog
Deserialization of untrusted data in Microsoft Update Catalog allows an unauthorized attacker to elevate privileges on the website’s webserver.
network
low complexity
microsoft CWE-502
critical
9.8
2024-12-12 CVE-2024-55663 Unspecified vulnerability in Xwiki
XWiki Platform is a generic wiki platform.
network
low complexity
xwiki
critical
9.8
2024-12-12 CVE-2024-47238 Unspecified vulnerability in Dell products
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component.
local
low complexity
dell
6.7
2024-12-12 CVE-2024-52901 Improper Validation of Specified Quantity in Input vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 could allow an authenticated user to GUI to not load or stop working due to improper input validation.
network
low complexity
ibm CWE-1284
6.5
2024-12-12 CVE-2024-12271 The 360 Javascript Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ref’ parameter in all versions up to, and including, 1.7.29 due to insufficient input sanitization and output escaping.
network
high complexity
CWE-79
4.4
2024-12-12 CVE-2024-54119 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
network
low complexity
huawei
7.5
2024-12-12 CVE-2024-54122 Race Condition vulnerability in Huawei Harmonyos 5.0.0
Concurrent variable access vulnerability in the ability module Impact: Successful exploitation of this vulnerability may affect availability.
local
high complexity
huawei CWE-362
4.7
2024-12-12 CVE-2024-54096 Unspecified vulnerability in Huawei Emui and Harmonyos
Vulnerability of improper access control in the MTP module Impact: Successful exploitation of this vulnerability may affect integrity and accuracy.
local
low complexity
huawei
5.5
2024-12-12 CVE-2024-54097 Unspecified vulnerability in Huawei Emui and Harmonyos
Security vulnerability in the HiView module Impact: Successful exploitation of this vulnerability may affect feature implementation and integrity.
network
low complexity
huawei
7.5
2024-12-12 CVE-2024-54098 Unspecified vulnerability in Huawei Emui and Harmonyos
Service logic error vulnerability in the system service module Impact: Successful exploitation of this vulnerability may affect service integrity.
network
low complexity
huawei
7.5