Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-10-08 CVE-2024-47563 Path Traversal vulnerability in Siemens Sinec Security Monitor
A vulnerability has been identified in Siemens SINEC Security Monitor (All versions < V4.9.0).
network
low complexity
siemens CWE-22
5.3
2024-10-08 CVE-2024-47565 Unspecified vulnerability in Siemens Sinec Security Monitor
A vulnerability has been identified in Siemens SINEC Security Monitor (All versions < V4.9.0).
network
low complexity
siemens
4.3
2024-10-08 CVE-2024-8911 The LatePoint plugin for WordPress is vulnerable to Arbitrary User Password Change via SQL Injection in versions up to, and including, 5.0.11.
network
low complexity
CWE-89
critical
9.8
2024-10-08 CVE-2024-8943 The LatePoint plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.0.12.
network
low complexity
CWE-288
critical
9.8
2024-10-08 CVE-2024-8964 The Image Optimizer, Resizer and CDN – Sirv plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 7.2.9 due to insufficient input sanitization and output escaping.
network
low complexity
CWE-79
6.4
2024-10-08 CVE-2024-34662 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in ActivityManager prior to SMR Oct-2024 Release 1 in select Android 12, 13 and SMR Sep-2024 Release 1 in select Android 14 allows local attackers to execute privileged behaviors.
local
low complexity
samsung
7.8
2024-10-08 CVE-2024-34665 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds write in parsing h.264 format in librtppayload.so prior to SMR Oct-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung CWE-787
8.8
2024-10-08 CVE-2024-34666 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds write in parsing h.264 format in a specific mode in librtppayload.so prior to SMR Oct-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung CWE-787
8.8
2024-10-08 CVE-2024-34667 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds write in parsing h.265 format in librtppayload.so prior to SMR Oct-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung CWE-787
8.8
2024-10-08 CVE-2024-34668 Out-of-bounds Write vulnerability in Samsung Android 12.0/13.0/14.0
Out-of-bounds write in parsing h.263 format in librtppayload.so prior to SMR Oct-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege.
network
low complexity
samsung CWE-787
8.8