CVE-2024-26191 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-26191
10 Sep 2024 — Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26191 • CWE-122: Heap-based Buffer Overflow •
CVE-2024-26186 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-26186
10 Sep 2024 — Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26186 • CWE-416: Use After Free •
CVE-2024-37339 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-37339
10 Sep 2024 — Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-37339 • CWE-822: Untrusted Pointer Dereference •
CVE-2024-37340 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-37340
10 Sep 2024 — Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-37340 • CWE-822: Untrusted Pointer Dereference •
CVE-2024-37335 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-37335
10 Sep 2024 — Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-37335 • CWE-122: Heap-based Buffer Overflow •
CVE-2024-37338 – Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-37338
10 Sep 2024 — Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-37338 • CWE-125: Out-of-bounds Read •
CVE-2024-45595 – D-Tale allows Remote Code Execution through the Query input on Chart Builder
https://notcve.org/view.php?id=CVE-2024-45595
10 Sep 2024 — Users hosting D-Tale publicly can be vulnerable to remote code execution allowing attackers to run malicious code on the server. • https://github.com/man-group/dtale#custom-filter • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-43799 – send vulnerable to template injection that can lead to XSS
https://notcve.org/view.php?id=CVE-2024-43799
10 Sep 2024 — Send passes untrusted user input to SendStream.redirect() which executes untrusted code. ... This vulnerability allows remote code execution via untrusted input passed to the SendStream.redirect() function. • https://github.com/pillarjs/send/commit/ae4f2989491b392ae2ef3b0015a019770ae65d35 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-33698
https://notcve.org/view.php?id=CVE-2024-33698
10 Sep 2024 — A vulnerability has been identified in Opcenter Execution Foundation (All versions), Opcenter Quality (All versions), Opcenter RDL (All versions), SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions < V4.1 Update 2), SIMATIC PCS neo V5.0 (All versions < V5.0 Update 1), SINEC NMS (All versions), Totally Integrated Automation Portal (TIA Portal) V16 (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions < V17 Update 8), Totally Integrated Automation Port... • https://cert-portal.siemens.com/productcert/html/ssa-039007.html • CWE-122: Heap-based Buffer Overflow •
CVE-2024-8258 – Insecure Electron Fuses in Logitech Options Plus Allowing Arbitrary Code Execution on macOS
https://notcve.org/view.php?id=CVE-2024-8258
10 Sep 2024 — Improper Control of Generation of Code ('Code Injection') in Electron Fuses in Logitech Options Plus version 1.60.496306 on macOS allows attackers to execute arbitrary code via insecure Electron Fuses configuration. • https://www.electronjs.org/docs/latest/tutorial/fuses • CWE-94: Improper Control of Generation of Code ('Code Injection') •