Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-14 CVE-2024-31159 Cross-site Scripting vulnerability in Asus Download Master
The parameter used in the certain page of ASUS Download Master is not properly filtered for user input.
network
low complexity
asus CWE-79
4.8
2024-06-14 CVE-2024-31160 Cross-site Scripting vulnerability in Asus Download Master
The parameter used in the certain page of ASUS Download Master is not properly filtered for user input.
network
low complexity
asus CWE-79
4.8
2024-06-14 CVE-2024-5469 Improper Check for Unusual or Exceptional Conditions vulnerability in Gitlab
DoS in KAS in GitLab CE/EE affecting all versions from 16.10.0 prior to 16.10.6 and 16.11.0 prior to 16.11.3 allows an attacker to crash KAS via crafted gRPC requests.
network
low complexity
gitlab CWE-754
4.3
2024-06-14 CVE-2023-51507 Missing Authorization vulnerability in Expresstech Quiz and Survey Master
Missing Authorization vulnerability in ExpressTech Quiz And Survey Master.This issue affects Quiz And Survey Master: from n/a through 8.1.16.
network
low complexity
expresstech CWE-862
5.3
2024-06-14 CVE-2023-51516 Missing Authorization vulnerability in Businessdirectoryplugin Business Directory
Missing Authorization vulnerability in Business Directory Team Business Directory Plugin.This issue affects Business Directory Plugin: from n/a through 6.3.9.
network
low complexity
businessdirectoryplugin CWE-862
5.4
2024-06-14 CVE-2023-37394 Missing Authorization vulnerability in WP Dummy Content Generator Project WP Dummy Content Generator
Missing Authorization vulnerability in Deepak anand WP Dummy Content Generator.This issue affects WP Dummy Content Generator: from n/a through 2.3.0.
5.3
2024-06-13 CVE-2024-33253 Cross-site Scripting vulnerability in Openeclass
Cross-site scripting (XSS) vulnerability in GUnet OpenEclass E-learning Platform version 3.15 and before allows a authenticated privileged attacker to execute arbitrary code via the title and description fields of the badge template editing function.
network
low complexity
openeclass CWE-79
5.4
2024-06-13 CVE-2024-0086 NULL Pointer Dereference vulnerability in Nvidia Cloud Gaming and Virtual GPU
NVIDIA vGPU software for Linux contains a vulnerability where the software can dereference a NULL pointer.
local
low complexity
nvidia CWE-476
5.5
2024-06-13 CVE-2024-0092 Unspecified vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Driver for Windows and Linux contains a vulnerability where an improper check or improper handling of exception conditions might lead to denial of service.
local
low complexity
nvidia
5.5
2024-06-13 CVE-2024-0093 Unspecified vulnerability in Nvidia Cloud Gaming and Virtual GPU
NVIDIA GPU software for Linux contains a vulnerability where it can expose sensitive information to an actor that is not explicitly authorized to have access to that information.
local
low complexity
nvidia
5.5