Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-07-16 CVE-2024-21179 Unspecified vulnerability in Oracle Mysql Server
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB).
network
low complexity
oracle
4.9
2024-07-16 CVE-2024-21180 Unspecified vulnerability in Oracle Peoplesoft Enterprise Peopletools 8.59/8.60/8.61
Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: OpenSearch Dashboards).
network
low complexity
oracle
4.1
2024-07-16 CVE-2024-21185 Unspecified vulnerability in Oracle Mysql Server 8.0.38/8.4.1/9.0.0
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB).
network
low complexity
oracle
4.9
2024-07-16 CVE-2024-21188 Unspecified vulnerability in Oracle Financial Services Revenue Management and Billing 6.0.0.0.0/6.1.0.0.0
Vulnerability in the Oracle Financial Services Revenue Management and Billing product of Oracle Financial Services Applications (component: Chatbot).
network
low complexity
oracle
6.1
2024-07-16 CVE-2024-2884 Out-of-bounds Read vulnerability in Google Chrome
Out of bounds read in V8 in Google Chrome prior to 121.0.6167.139 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.
network
low complexity
google CWE-125
6.5
2024-07-16 CVE-2024-3175 Unspecified vulnerability in Google Chrome
Insufficient data validation in Extensions in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to perform privilege escalation via a crafted Chrome Extension.
network
low complexity
google
6.3
2024-07-16 CVE-2024-5500 Unspecified vulnerability in Google Chrome
Inappropriate implementation in Sign-In in Google Chrome prior to 1.3.36.351 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
network
low complexity
google
6.5
2024-07-16 CVE-2024-5566 Unspecified vulnerability in Github Enterprise Server
An improper privilege management vulnerability allowed users to migrate private repositories without having appropriate scopes defined on the related Personal Access Token.
network
low complexity
github
6.5
2024-07-16 CVE-2024-5795 Resource Exhaustion vulnerability in Github Enterprise Server
A Denial of Service vulnerability was identified in GitHub Enterprise Server that allowed an attacker to cause unbounded resource exhaustion by sending a large payload to the Git server.
network
low complexity
github CWE-400
6.5
2024-07-16 CVE-2024-5815 Cross-Site Request Forgery (CSRF) vulnerability in Github Enterprise Server
A Cross-Site Request Forgery vulnerability in GitHub Enterprise Server allowed write operations on a victim-owned repository by exploiting incorrect request types.
network
low complexity
github CWE-352
6.5