Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2024-10-25 CVE-2024-47035 Out-of-bounds Write vulnerability in Google Android
In vring_init of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to a logic error in the code.
local
low complexity
google CWE-787
7.8
2024-10-25 CVE-2024-47041 Out-of-bounds Read vulnerability in Google Android
In valid_address of syscall.c, there is a possible out of bounds read due to an incorrect bounds check.
local
low complexity
google CWE-125
7.8
2024-10-25 CVE-2024-45785 Unspecified vulnerability in Neumann Musasi 3
MUSASI version 3 contains an issue with use of client-side authentication.
network
low complexity
neumann
7.5
2024-10-25 CVE-2024-9598 The AMP for WP – Accelerated Mobile Pages plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.99.1.
network
low complexity
CWE-352
8.8
2024-10-25 CVE-2024-10011 Path Traversal vulnerability in Buddypress
The BuddyPress plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 14.1.0 via the id parameter.
network
low complexity
buddypress CWE-22
8.1
2024-10-25 CVE-2024-42420 Out-of-bounds Read vulnerability in multiple products
Sharp and Toshiba Tec MFPs contain multiple Out-of-bounds Read vulnerabilities, due to improper processing of keyword search input and improper processing of SOAP messages. Crafted HTTP requests may cause affected products crashed.
network
low complexity
toshibatec sharp CWE-125
7.5
2024-10-25 CVE-2024-43424 Out-of-bounds Read vulnerability in multiple products
Sharp and Toshiba Tec MFPs improperly process HTTP request headers, resulting in an Out-of-bounds Read vulnerability. Crafted HTTP requests may cause affected products crashed.
network
low complexity
toshibatec sharp CWE-125
7.5
2024-10-25 CVE-2024-45829 Out-of-bounds Read vulnerability in multiple products
Sharp and Toshiba Tec MFPs provide the web page to download data, where query parameters in HTTP requests are improperly processed and resulting in an Out-of-bounds Read vulnerability. Crafted HTTP requests may cause affected products crashed.
network
low complexity
toshibatec sharp CWE-125
7.5
2024-10-25 CVE-2024-47005 Sharp and Toshiba Tec MFPs provide configuration related APIs.
network
low complexity
toshibatec sharp
8.1
2024-10-25 CVE-2024-9235 Improper Authorization vulnerability in Mapster WP Maps
The Mapster WP Maps plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to an insufficient capability check on the mapster_wp_maps_set_option_from_js() function in all versions up to, and including, 1.5.0.
network
low complexity
mapster CWE-285
8.8