CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2024-9675

Description: A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified paths for the cache are within our cache directory, allowing a `RUN` instruction in a Container file to mount an arbitrary directory from the host (read/write) into the container as long as those files can be accessed by the user running Buildah.

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)

CVE-2024-9499

Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Win 98SE Dev Kit installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

CVSS: HIGH (8.6)

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)

CVE-2024-9498

Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress SDK installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

CVSS: HIGH (8.6)

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)

CVE-2024-9497

Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress 4 SDK installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

CVSS: HIGH (8.6)

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)

CVE-2024-9496

Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the USBXpress Dev Kit installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

CVSS: HIGH (8.6)

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)

CVE-2024-9495

Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the CP210x VCP Windows installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

CVSS: HIGH (8.6)

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)

CVE-2024-9494

Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  CP210 VCP Win 2k installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

CVSS: HIGH (8.6)

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)

CVE-2024-9493

Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  ToolStick installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

CVSS: HIGH (8.6)

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)

CVE-2024-9492

Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in Flash Programming Utility installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

CVSS: HIGH (8.6)

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)

CVE-2024-9491

Description: DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

CVSS: HIGH (8.6)

EPSS Score: 0.04%

Source: CVE
January 28th, 2025 (6 months ago)