CVE-2024-9675 |
Description: A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified paths for the cache are within our cache directory, allowing a `RUN` instruction in a Container file to mount an arbitrary directory from the host (read/write) into the container as long as those files can be accessed by the user running Buildah.
EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|
CVE-2024-9499 |
Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Win 98SE Dev Kit installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
CVSS: HIGH (8.6) EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|
CVE-2024-9498 |
Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress SDK
installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
CVSS: HIGH (8.6) EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|
CVE-2024-9497 |
Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress 4 SDK
installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
CVSS: HIGH (8.6) EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|
CVE-2024-9496 |
Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Dev Kit
installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
CVSS: HIGH (8.6) EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|
CVE-2024-9495 |
Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210x VCP Windows
installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
CVSS: HIGH (8.6) EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|
CVE-2024-9494 |
Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the
CP210 VCP Win 2k
installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
CVSS: HIGH (8.6) EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|
CVE-2024-9493 |
Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the
ToolStick
installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
CVSS: HIGH (8.6) EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|
CVE-2024-9492 |
Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in Flash Programming Utility installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
CVSS: HIGH (8.6) EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|
CVE-2024-9491 |
Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
CVSS: HIGH (8.6) EPSS Score: 0.04%
January 28th, 2025 (6 months ago)
|