Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2025-01-06 CVE-2024-31913 Cross-site Scripting vulnerability in IBM Sterling B2B Integrator
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 is vulnerable to stored cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2025-01-06 CVE-2024-23366 Out-of-bounds Read vulnerability in Qualcomm products
Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size.
local
low complexity
qualcomm CWE-125
5.5
2025-01-06 CVE-2024-33061 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process.
local
low complexity
qualcomm CWE-125
5.5
2025-01-06 CVE-2024-33067 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
local
low complexity
qualcomm CWE-125
5.5
2025-01-06 CVE-2024-43063 Out-of-bounds Read vulnerability in Qualcomm products
information disclosure while invoking the mailbox read API.
local
low complexity
qualcomm CWE-125
5.5
2025-01-06 CVE-2024-43064 Allocation of Resources Without Limits or Throttling vulnerability in Qualcomm products
Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers through SMMU.
local
high complexity
qualcomm CWE-770
4.7
2025-01-06 CVE-2024-45559 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
local
low complexity
qualcomm CWE-125
5.5
2025-01-05 CVE-2024-13142 Cross-site Scripting vulnerability in Zerowdd Studentmanager 1.0
A vulnerability was found in ZeroWdd studentmanager 1.0.
network
low complexity
zerowdd CWE-79
4.8
2025-01-05 CVE-2025-0228 Cross-site Scripting vulnerability in Code-Projects Local Storage Todo APP 1.0
A vulnerability has been found in code-projects Local Storage Todo App 1.0 and classified as problematic.
network
low complexity
code-projects CWE-79
4.8
2025-01-05 CVE-2025-0222 NULL Pointer Dereference vulnerability in I0Bit Protected Folder
A vulnerability was found in IObit Protected Folder up to 13.6.0.5 and classified as problematic.
local
low complexity
i0bit CWE-476
5.5