-
Efficient Authentication Protocols from the Restricted Syndrome Decoding Problem
ePrint Report: Efficient Authentication Protocols from the Restricted Syndrome Decoding Problem Thomas Johansson, Mustafa Khairallah, Vu Nguyen In this paper, we introduce an oracle version of the Restricted Syndrome Decoding Problem (RSDP) and propose novel authentication protocols based on the hardness of this problem. They follow the basic structure of the HB-family of authentication protocols…
-
CVE-2025-0301 – Online Book Shop Cross Site Scripting (XSS)
CVE ID : CVE-2025-0301 Published : Jan. 7, 2025, 6:15 p.m. | 1 hour, 30 minutes ago Description : A vulnerability, which was classified as problematic, has been found in code-projects Online Book Shop 1.0. Affected by this issue is some unknown functionality of the file /subcat.php. The manipulation of the argument catnm leads to cross site…
-
CVE-2024-40427 – PX4-Autopilot Stack Buffer Overflow
CVE ID : CVE-2024-40427 Published : Jan. 7, 2025, 7:15 p.m. | 30 minutes ago Description : Stack Buffer Overflow in PX4-Autopilot v1.14.3, which allows attackers to execute commands to exploit this vulnerability and cause the program to refuse to execute Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected…
-
CVE-2024-55413 – SUNIX Parallel Driver x64 uninitialized IOCTL Request Vulnerability (Privilege Escalation, Code Execution, Information Disclosure)
CVE ID : CVE-2024-55413 Published : Jan. 7, 2025, 6:15 p.m. | 1 hour, 30 minutes ago Description : A vulnerability exits in driver snxppamd.sys in SUNIX Parallel Driver x64 – 10.1.0.0, which allows low-privileged users to read and write arbitary i/o port via specially crafted IOCTL requests . This can be exploited for privilege escalation, code…
-
CVE-2024-55414 – Motorola SM56 Modem WDM Driver Privilege Escalationlsa
CVE ID : CVE-2024-55414 Published : Jan. 7, 2025, 6:15 p.m. | 1 hour, 30 minutes ago Description : A vulnerability exits in driver SmSerl64.sys in Motorola SM56 Modem WDM Driver v6.12.23.0, which allows low-privileged users to mapping physical memory via specially crafted IOCTL requests . This can be exploited for privilege escalation, code execution under high…
-
CVE-2024-55410 – Asus GPU Tweak II Program Driver IOCTL Arbitrary Code Execution
CVE ID : CVE-2024-55410 Published : Jan. 7, 2025, 6:15 p.m. | 1 hour, 30 minutes ago Description : An issue in the 690b33e1-0462-4e84-9bea-c7552b45432a.sys component of Asus GPU Tweak II Program Driver v1.0.0.0 allows attackers to perform arbitrary read and write actions via supplying crafted IOCTL requests. Severity: 0.0 | NA Visit the link for more details,…
-
CVE-2024-55411 – Sunix Multi I/O Card Arbitrary IOCTL Vulnerability
CVE ID : CVE-2024-55411 Published : Jan. 7, 2025, 6:15 p.m. | 1 hour, 30 minutes ago Description : An issue in the snxpcamd.sys component of SUNIX Multi I/O Card v10.1.0.0 allows attackers to perform arbitrary read and write actions via supplying crafted IOCTL requests. Severity: 0.0 | NA Visit the link for more details, such as…
-
CVE-2024-55412 – SUNIX Serial Driver x64_PRIVILEGE ESCALATION
CVE ID : CVE-2024-55412 Published : Jan. 7, 2025, 6:15 p.m. | 1 hour, 30 minutes ago Description : A vulnerability exits in driver snxpsamd.sys in SUNIX Serial Driver x64 – 10.1.0.0, which allows low-privileged users to read and write arbitary i/o port via specially crafted IOCTL requests . This can be exploited for privilege escalation, code…
-
CVE-2024-54007 – 501 Wireless Client Bridge Command Injection Vulnerability
CVE ID : CVE-2024-54007 Published : Jan. 7, 2025, 6:15 p.m. | 1 hour, 30 minutes ago Description : Multiple command injection vulnerabilities exist in the web interface of the 501 Wireless Client Bridge which could lead to authenticated remote command execution. Successful exploitation of these vulnerabilities result in the ability of an attacker to execute arbitrary…
-
CVE-2024-50660 – AdPortal File Upload Bypass Arbitrary Code Execution
CVE ID : CVE-2024-50660 Published : Jan. 7, 2025, 6:15 p.m. | 1 hour, 30 minutes ago Description : File Upload Bypass was found in AdPortal 3.0.39 allows a remote attacker to execute arbitrary code via the file upload functionality Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline,…