CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2024-49129

    Last Modified: 9 Jun 2026

    Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49126

    Last Modified: 9 Jun 2026

    Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.8
    High

    CVE-2024-49125

    Last Modified: 9 Jun 2026

    Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49124

    Last Modified: 9 Jun 2026

    Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49123

    Last Modified: 9 Jun 2026

    Windows Remote Desktop Services Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49122

    Last Modified: 9 Jun 2026

    Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    7.5
    High

    CVE-2024-49121

    Last Modified: 9 Jun 2026

    Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49120

    Last Modified: 9 Jun 2026

    Windows Remote Desktop Services Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49119

    Last Modified: 9 Jun 2026

    Windows Remote Desktop Services Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.8
    High

    CVE-2024-49117

    Last Modified: 9 Jun 2026

    Windows Hyper-V Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49115

    Last Modified: 9 Jun 2026

    Windows Remote Desktop Services Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    6.6
    Medium

    CVE-2024-49111

    Last Modified: 9 Jun 2026

    Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49108

    Last Modified: 9 Jun 2026

    Windows Remote Desktop Services Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    7.3
    High

    CVE-2024-49107

    Last Modified: 9 Jun 2026

    WmsRepair Service Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49106

    Last Modified: 9 Jun 2026

    Windows Remote Desktop Services Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.8
    High

    CVE-2024-49104

    Last Modified: 9 Jun 2026

    Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    4.3
    Medium

    CVE-2024-49103

    Last Modified: 9 Jun 2026

    Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability

    Published: 10 Dec 2024
    8.8
    High

    CVE-2024-49102

    Last Modified: 9 Jun 2026

    Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    6.6
    Medium

    CVE-2024-49101

    Last Modified: 9 Jun 2026

    Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    4.3
    Medium

    CVE-2024-49099

    Last Modified: 9 Jun 2026

    Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability

    Published: 10 Dec 2024
    4.3
    Medium

    CVE-2024-49098

    Last Modified: 9 Jun 2026

    Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability

    Published: 10 Dec 2024
    7
    High

    CVE-2024-49097

    Last Modified: 9 Jun 2026

    Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    7.5
    High

    CVE-2024-49096

    Last Modified: 9 Jun 2026

    Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

    Published: 10 Dec 2024
    6.6
    Medium

    CVE-2024-49094

    Last Modified: 9 Jun 2026

    Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    8.8
    High

    CVE-2024-49093

    Last Modified: 9 Jun 2026

    Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    6.8
    Medium

    CVE-2024-49092

    Last Modified: 9 Jun 2026

    Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    7.2
    High

    CVE-2024-49091

    Last Modified: 9 Jun 2026

    Windows Domain Name Service Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    7.2
    High

    CVE-2024-49089

    Last Modified: 9 Jun 2026

    Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    4.6
    Medium

    CVE-2024-49087

    Last Modified: 9 Jun 2026

    Windows Mobile Broadband Driver Information Disclosure Vulnerability

    Published: 10 Dec 2024
    8.8
    High

    CVE-2024-49086

    Last Modified: 9 Jun 2026

    Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.8
    High

    CVE-2024-49085

    Last Modified: 9 Jun 2026

    Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    7
    High

    CVE-2024-49084

    Last Modified: 9 Jun 2026

    Windows Kernel Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    7.8
    High

    CVE-2024-49074

    Last Modified: 9 Jun 2026

    Windows Kernel-Mode Driver Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    6.8
    Medium

    CVE-2024-49073

    Last Modified: 9 Jun 2026

    Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    7.4
    High

    CVE-2024-49070

    Last Modified: 9 Jun 2026

    Microsoft SharePoint Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    7.8
    High

    CVE-2024-49069

    Last Modified: 9 Jun 2026

    Microsoft Excel Remote Code Execution Vulnerability

    Published: 10 Dec 2024
    8.2
    High

    CVE-2024-49068

    Last Modified: 9 Jun 2026

    Microsoft SharePoint Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    6.5
    Medium

    CVE-2024-49064

    Last Modified: 9 Jun 2026

    Microsoft SharePoint Information Disclosure Vulnerability

    Published: 10 Dec 2024
    7
    High

    CVE-2024-49059

    Last Modified: 9 Jun 2026

    Microsoft Office Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    8.1
    High

    CVE-2024-49057

    Last Modified: 9 Jun 2026

    Microsoft Defender for Endpoint on Android Spoofing Vulnerability

    Published: 10 Dec 2024
    7.3
    High

    CVE-2024-43594

    Last Modified: 9 Jun 2026

    Microsoft System Center Elevation of Privilege Vulnerability

    Published: 10 Dec 2024
    9.3
    Critical

    CVE-2024-12286

    Last Modified: 15 Apr 2026

    MOBATIME Network Master Clock - DTS 4801 allows attackers to use SSH to gain initial access using default credentials.

    Published: 10 Dec 2024
    5.8
    Medium

    CVE-2024-53866

    Last Modified: 31 Dec 2025

    The package manager pnpm prior to version 9.15.0 seems to mishandle overrides and global cache: Overrides from one workspace leak into npm metadata saved in global cache; npm metadata from global cache affects other workspaces; and installs by default don't revalidate the data (including on first lockfile generation). This can make workspace A (even running with `ignore-scripts=true`) posion global cache and execute scripts in workspace B. Users generally expect `ignore-scripts` to be sufficient to prevent immediate code execution on install (e.g. when the tree is just repacked/bundled without executing it). Here, that expectation is broken. Global state integrity is lost via operations that one would expect to be secure, enabling subsequently running arbitrary code execution on installs. Version 9.15.0 fixes the issue. As a work-around, use separate cache and store dirs in each workspace.

    Published: 10 Dec 2024
    7.6
    High

    CVE-2024-55602

    Last Modified: 18 Apr 2025

    PwnDoc is a penetration test report generator. Prior to commit 1d4219c596f4f518798492e48386a20c6e9a2fe6, an authenticated user who is able to update and download templates can inject path traversal (`../`) sequences into the file extension property to read arbitrary files on the system. Commit 1d4219c596f4f518798492e48386a20c6e9a2fe6 contains a patch for the issue.

    Published: 10 Dec 2024
    0
    Low

    CVE-2024-4109

    Last Modified: 16 Jan 2025

    Red Hat Product Security has determined that this CVE is not a security vulnerability.

    Published: 10 Dec 2024
    6.9
    Medium

    CVE-2024-55548

    Last Modified: 3 Nov 2025

    Improper check of password character lenght in ORing IAP-420 allows a forced deadlock. This issue affects IAP-420: through 2.01e.

    Published: 10 Dec 2024
    9.3
    Critical

    CVE-2024-55547

    Last Modified: 3 Nov 2025

    SNMP objects in NET-SNMP used in ORing IAP-420 allows Command Injection. This issue affects IAP-420: through 2.01e.

    Published: 10 Dec 2024
    7.1
    High

    CVE-2024-55546

    Last Modified: 3 Nov 2025

    Missing input validation in the ORing IAP-420 web-interface allows stored Cross-Site Scripting (XSS).This issue affects IAP-420 version 2.01e and below.

    Published: 10 Dec 2024
    7.1
    High

    CVE-2024-55545

    Last Modified: 3 Nov 2025

    Missing input validation in the ORing IAP-420 web-interface allows Cross-Site Scripting (XSS).This issue affects IAP-420 version 2.01e and below.

    Published: 10 Dec 2024
    8.7
    High

    CVE-2024-55544

    Last Modified: 3 Nov 2025

    Missing input validation in the ORing IAP-420 web-interface allows authenticated Command Injections on OS level.This issue affects IAP-420 version 2.01e and below.

    Published: 10 Dec 2024