
CVE-2024-47008 – Ivanti Avalanche validateAMCWSConnection Server-Side Request Forgery Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-47008
08 Oct 2024 — Server-side request forgery in Ivanti Avalanche before version 6.4.5 allows a remote unauthenticated attacker to leak sensitive information. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Ivanti Avalanche. ... An attacker can leverage this vulnerability to disclose information in the context of SYSTEM. • https://forums.ivanti.com/s/article/Ivanti-Avalanche-6-4-5-Security-Advisory • CWE-918: Server-Side Request Forgery (SSRF) •

CVE-2024-47973
https://notcve.org/view.php?id=CVE-2024-47973
07 Oct 2024 — In some Solidigm DC Products, a defect in device overprovisioning may provide information disclosure to an attacker. • https://www.solidigm.com/support-page/support-security.html •

CVE-2024-38425 – Improper Authorization in Performance
https://notcve.org/view.php?id=CVE-2024-38425
07 Oct 2024 — Information disclosure while sending implicit broadcast containing APP launch information. • https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html • CWE-285: Improper Authorization •

CVE-2024-33073 – Buffer Over-read in WLAN Host Communication
https://notcve.org/view.php?id=CVE-2024-33073
07 Oct 2024 — Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. • https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-33064 – Buffer Over-read in WLAN Host Communication
https://notcve.org/view.php?id=CVE-2024-33064
07 Oct 2024 — Information disclosure while parsing the multiple MBSSID IEs from the beacon. • https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-20102
https://notcve.org/view.php?id=CVE-2024-20102
07 Oct 2024 — This could lead to remote information disclosure with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/October-2024 • CWE-125: Out-of-bounds Read •

CVE-2024-20097
https://notcve.org/view.php?id=CVE-2024-20097
07 Oct 2024 — This could lead to local information disclosure with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/October-2024 • CWE-125: Out-of-bounds Read •

CVE-2024-20096
https://notcve.org/view.php?id=CVE-2024-20096
07 Oct 2024 — This could lead to local information disclosure with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/October-2024 • CWE-125: Out-of-bounds Read •

CVE-2024-20095
https://notcve.org/view.php?id=CVE-2024-20095
07 Oct 2024 — This could lead to local information disclosure with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/October-2024 • CWE-125: Out-of-bounds Read •

CVE-2024-20093
https://notcve.org/view.php?id=CVE-2024-20093
07 Oct 2024 — This could lead to local information disclosure with System execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/October-2024 • CWE-125: Out-of-bounds Read •