A vulnerability classified as critical was found in tcpdump up to 4.9.1. This vulnerability affects the function mobility_print of the file print-mobility.c of the component IPv6 Mobility Parser. The manipulation leads to memory corruption.
This vulnerability was named CVE-2017-13009. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Node.js up to 18.20.3/20.15.0/22.4.0 on Windows. Affected by this issue is the function child_process.spawn/child_process.spawnSync of the component Incomplete Fix CVE-2024-27980. The manipulation leads to command injection.
This vulnerability is handled as CVE-2024-36138. The attack may be launched remotely. There is no exploit available.
A vulnerability, which was classified as critical, has been found in travelzad travelzadcomvb 3.3.10. Affected by this issue is some unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is handled as CVE-2014-5939. The attack can only be initiated within the local network. There is no exploit available.
A vulnerability, which was classified as very critical, has been found in Apple macOS up to 10.13.1. This issue affects some unknown processing of the component tcpdump. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2017-13008. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Draytek VigorConnect and Kingsoft WPS Office bugs to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Draytek VigorConnect and Kingsoft WPS Office vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. Below are the descriptions for these vulnerabilities: At the end of August, […]
A vulnerability classified as critical was found in AllDealsAsia All Deals ADA app 4.2.1. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-5938. The attack can only be done within the local network. There is no exploit available.