| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-40545 | Hig | 0.57 | 8.8 | 0.01 | Feb 6, 2024 | Authentication bypass when an OAuth2 Client is using client_secret_jwt as its authentication method on affected 11.3 versions via specially crafted requests. | ||
| CVE-2023-47618 | Hig | 0.47 | 7.2 | 0.02 | Feb 6, 2024 | A post authentication command execution vulnerability exists in the web filtering functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an… | ||
| CVE-2023-47617 | Hig | 0.47 | 7.2 | 0.03 | Feb 6, 2024 | A post authentication command injection vulnerability exists when configuring the web group member of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an… | ||
| CVE-2023-47209 | Hig | 0.47 | 7.2 | 0.03 | Feb 6, 2024 | A post authentication command injection vulnerability exists in the ipsec policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an… | ||
| CVE-2023-47167 | Hig | 0.47 | 7.2 | 0.03 | Feb 6, 2024 | A post authentication command injection vulnerability exists in the GRE policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an authenticated… | ||
| CVE-2023-46683 | Hig | 0.47 | 7.2 | 0.03 | Feb 6, 2024 | A post authentication command injection vulnerability exists when configuring the wireguard VPN functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection . An attacker can… | ||
| CVE-2023-43482 | Hig | 0.47 | 7.2 | 0.03 | Feb 6, 2024 | A command execution vulnerability exists in the guest resource functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to… | ||
| CVE-2023-42664 | Hig | 0.47 | 7.2 | 0.03 | Feb 6, 2024 | A post authentication command injection vulnerability exists when setting up the PPTP global configuration of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an… | ||
| CVE-2023-36498 | Hig | 0.47 | 7.2 | 0.03 | Feb 6, 2024 | A post-authentication command injection vulnerability exists in the PPTP client functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an… | ||
| CVE-2023-50395 | Hig | 0.52 | 8.0 | 0.02 | Feb 6, 2024 | SQL Injection Remote Code Execution Vulnerability was found using an update statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited | ||
| CVE-2023-35188 | Hig | 0.52 | 8.0 | 0.02 | Feb 6, 2024 | SQL Injection Remote Code Execution Vulnerability was found using a create statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited. | ||
| CVE-2024-24591 | Hig | 0.52 | 8.0 | 0.01 | Feb 6, 2024 | A path traversal vulnerability in versions 1.4.0 to 1.14.1 of the client SDK of Allegro AI’s ClearML platform enables a maliciously uploaded dataset to write local or remote files to an arbitrary location on an end user’s system when interacted with. | ||
| CVE-2024-24590 | Hig | 0.52 | 8.0 | 0.02 | Feb 6, 2024 | Deserialization of untrusted data can occur in versions 0.17.0 to 1.14.2 of the client SDK of Allegro AI’s ClearML platform, enabling a maliciously uploaded artifact to run arbitrary code on an end user’s system when interacted with. | ||
| CVE-2024-23673 | Hig | 0.48 | 8.5 | 0.01 | Feb 6, 2024 | Malicious code execution via path traversal in Apache Software Foundation Apache Sling Servlets Resolver.This issue affects all version of Apache Sling Servlets Resolver before 2.11.0. However, whether a system is vulnerable to this attack depends on the exact configuration of… | ||
| CVE-2023-32451 | Hig | 0.47 | 7.3 | 0.00 | Feb 6, 2024 | Dell Display Manager application, version 2.1.1.17, contains a vulnerability that low privilege user can execute malicious code during installation and uninstallation | ||
| CVE-2024-22433 | Hig | 0.57 | 8.8 | 0.01 | Feb 6, 2024 | Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain text when using LdapSettings.get_ldap_info in DP Search. A remote unauthorized unauthenticated attacker could potentially exploit this vulnerability leading to a loss of… | ||
| CVE-2023-25543 | Hig | 0.51 | 7.8 | 0.00 | Feb 6, 2024 | Dell Power Manager, versions prior to 3.14, contain an Improper Authorization vulnerability in DPM service. A low privileged malicious user could potentially exploit this vulnerability in order to elevate privileges on the system. | ||
| CVE-2023-43536 | Hig | 0.49 | 7.5 | 0.00 | Feb 6, 2024 | Transient DOS while parse fils IE with length equal to 1. | ||
| CVE-2023-43535 | Hig | 0.55 | 8.4 | 0.00 | Feb 6, 2024 | Memory corruption when negative display IDs are sent as input while processing DISPLAYESCAPE event trigger. | ||
| CVE-2023-43534 | Hig | 0.56 | 8.6 | 0.00 | Feb 6, 2024 | Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point. | ||
| CVE-2023-43533 | Hig | 0.49 | 7.5 | 0.00 | Feb 6, 2024 | Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame. | ||
| CVE-2023-43532 | Hig | 0.55 | 8.4 | 0.00 | Feb 6, 2024 | Memory corruption while reading ACPI config through the user mode app. | ||
| CVE-2023-43523 | Hig | 0.49 | 7.5 | 0.00 | Feb 6, 2024 | Transient DOS while processing 11AZ RTT management action frame received through OTA. | ||
| CVE-2023-43522 | Hig | 0.49 | 7.5 | 0.00 | Feb 6, 2024 | Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL. | ||
| CVE-2023-43520 | Hig | 0.56 | 8.6 | 0.00 | Feb 6, 2024 | Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE. | ||
| CVE-2023-43519 | Hig | 0.47 | 7.3 | 0.00 | Feb 6, 2024 | Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size. | ||
| CVE-2023-43518 | Hig | 0.47 | 7.3 | 0.00 | Feb 6, 2024 | Memory corruption in video while parsing invalid mp2 clip. | ||
| CVE-2023-43517 | Hig | 0.55 | 8.4 | 0.00 | Feb 6, 2024 | Memory corruption in Automotive Multimedia due to improper access control in HAB. | ||
| CVE-2023-43516 | Hig | 0.51 | 7.8 | 0.00 | Feb 6, 2024 | Memory corruption when malformed message payload is received from firmware. | ||
| CVE-2023-43513 | Hig | 0.51 | 7.8 | 0.00 | Feb 6, 2024 | Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. | ||
| CVE-2023-33060 | Hig | 0.46 | 7.1 | 0.00 | Feb 6, 2024 | Transient DOS in Core when DDR memory check is called while DDR is not initialized. | ||
| CVE-2023-33058 | Hig | 0.53 | 8.2 | 0.00 | Feb 6, 2024 | Information disclosure in Modem while processing SIB5. | ||
| CVE-2023-33057 | Hig | 0.49 | 7.5 | 0.00 | Feb 6, 2024 | Transient DOS in Multi-Mode Call Processor while processing UE policy container. | ||
| CVE-2023-33049 | Hig | 0.49 | 7.5 | 0.00 | Feb 6, 2024 | Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage. | ||
| CVE-2023-33046 | Hig | 0.51 | 7.8 | 0.00 | Feb 6, 2024 | Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation. | ||
| CVE-2024-23304 | Hig | 0.49 | 7.5 | 0.01 | Feb 6, 2024 | Cybozu KUNAI for Android 3.0.20 to 3.0.21 allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by performing certain operations. | ||
| CVE-2024-20816 | Hig | 0.52 | 8.0 | 0.00 | Feb 6, 2024 | Improper authentication vulnerability in onCharacteristicWriteRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness. | ||
| CVE-2024-20815 | Hig | 0.52 | 8.0 | 0.00 | Feb 6, 2024 | Improper authentication vulnerability in onCharacteristicReadRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness. | ||
| CVE-2024-20813 | Hig | 0.55 | 8.4 | 0.00 | Feb 6, 2024 | Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code. | ||
| CVE-2024-20812 | Hig | 0.55 | 8.4 | 0.00 | Feb 6, 2024 | Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code. | ||
| CVE-2024-22773 | Hig | 0.53 | 8.1 | 0.01 | Feb 6, 2024 | Intelbras Action RF 1200 routers 1.2.2 and earlier and Action RG 1200 routers 2.1.7 and earlier expose the Password in Cookie resulting in Login Bypass. | ||
| CVE-2023-47889 | Hig | 0.51 | 7.8 | 0.00 | Feb 6, 2024 | The Android application BINHDRM26 com.bdrm.superreboot 1.0.3, exposes several critical actions through its exported broadcast receivers. These exposed actions can allow any app on the device to send unauthorized broadcasts, leading to unintended consequences. The vulnerability… | ||
| CVE-2023-47353 | Hig | 0.57 | 8.8 | 0.00 | Feb 6, 2024 | An issue in the com.oneed.dvr.service.DownloadFirmwareService component of IMOU GO v1.0.11 allows attackers to force the download of arbitrary files. | ||
| CVE-2023-46360 | Hig | 0.57 | 8.8 | 0.03 | Feb 6, 2024 | Hardy Barth cPH2 eCharge Ladestation v1.87.0 and earlier is vulnerable to Execution with Unnecessary Privileges. | ||
| CVE-2023-47354 | Hig | 0.51 | 7.8 | 0.00 | Feb 6, 2024 | An issue in the PowerOffWidgetReceiver function of Super Reboot (Root) Recovery v1.0.3 allows attackers to arbitrarily reset or power off the device via a crafted intent | ||
| CVE-2024-1072 | Hig | 0.46 | 8.2 | 0.01 | Feb 5, 2024 | The Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the seedprod_lite_new_lpage function in all versions up to,… | ||
| CVE-2024-0869 | Hig | 0.50 | 8.8 | 0.01 | Feb 5, 2024 | The Instant Images – One Click Image Uploads from Unsplash, Openverse, Pixabay and Pexels plugin for WordPress is vulnerable to unauthorized arbitrary options update due to an insufficient check that neglects to verify whether the updated option belongs to the plugin on the… | ||
| CVE-2024-0761 | Hig | 0.46 | 8.1 | 0.01 | Feb 5, 2024 | The File Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.2.1 due to insufficient randomness in the backup filenames, which use a timestamp plus 4 random digits. This makes it possible for unauthenticated… | ||
| CVE-2024-0428 | Hig | 0.39 | 7.1 | 0.00 | Feb 5, 2024 | The Index Now plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.6.3. This is due to missing or incorrect nonce validation on the 'reset_form' function. This makes it possible for unauthenticated attackers to delete arbitrary… | ||
| CVE-2024-0324 | Hig | 0.53 | 8.2 | 0.02 | Feb 5, 2024 | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wppb_two_factor_authentication_settings_update' function in all… |
- risk 0.57cvss 8.8epss 0.01
Authentication bypass when an OAuth2 Client is using client_secret_jwt as its authentication method on affected 11.3 versions via specially crafted requests.
- risk 0.47cvss 7.2epss 0.02
A post authentication command execution vulnerability exists in the web filtering functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an…
- risk 0.47cvss 7.2epss 0.03
A post authentication command injection vulnerability exists when configuring the web group member of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an…
- risk 0.47cvss 7.2epss 0.03
A post authentication command injection vulnerability exists in the ipsec policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an…
- risk 0.47cvss 7.2epss 0.03
A post authentication command injection vulnerability exists in the GRE policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an authenticated…
- risk 0.47cvss 7.2epss 0.03
A post authentication command injection vulnerability exists when configuring the wireguard VPN functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection . An attacker can…
- risk 0.47cvss 7.2epss 0.03
A command execution vulnerability exists in the guest resource functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to…
- risk 0.47cvss 7.2epss 0.03
A post authentication command injection vulnerability exists when setting up the PPTP global configuration of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an…
- risk 0.47cvss 7.2epss 0.03
A post-authentication command injection vulnerability exists in the PPTP client functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP request can lead to arbitrary command injection. An attacker can make an…
- risk 0.52cvss 8.0epss 0.02
SQL Injection Remote Code Execution Vulnerability was found using an update statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited
- risk 0.52cvss 8.0epss 0.02
SQL Injection Remote Code Execution Vulnerability was found using a create statement in the SolarWinds Platform. This vulnerability requires user authentication to be exploited.
- risk 0.52cvss 8.0epss 0.01
A path traversal vulnerability in versions 1.4.0 to 1.14.1 of the client SDK of Allegro AI’s ClearML platform enables a maliciously uploaded dataset to write local or remote files to an arbitrary location on an end user’s system when interacted with.
- risk 0.52cvss 8.0epss 0.02
Deserialization of untrusted data can occur in versions 0.17.0 to 1.14.2 of the client SDK of Allegro AI’s ClearML platform, enabling a maliciously uploaded artifact to run arbitrary code on an end user’s system when interacted with.
- risk 0.48cvss 8.5epss 0.01
Malicious code execution via path traversal in Apache Software Foundation Apache Sling Servlets Resolver.This issue affects all version of Apache Sling Servlets Resolver before 2.11.0. However, whether a system is vulnerable to this attack depends on the exact configuration of…
- risk 0.47cvss 7.3epss 0.00
Dell Display Manager application, version 2.1.1.17, contains a vulnerability that low privilege user can execute malicious code during installation and uninstallation
- risk 0.57cvss 8.8epss 0.01
Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain text when using LdapSettings.get_ldap_info in DP Search. A remote unauthorized unauthenticated attacker could potentially exploit this vulnerability leading to a loss of…
- risk 0.51cvss 7.8epss 0.00
Dell Power Manager, versions prior to 3.14, contain an Improper Authorization vulnerability in DPM service. A low privileged malicious user could potentially exploit this vulnerability in order to elevate privileges on the system.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parse fils IE with length equal to 1.
- risk 0.55cvss 8.4epss 0.00
Memory corruption when negative display IDs are sent as input while processing DISPLAYESCAPE event trigger.
- risk 0.56cvss 8.6epss 0.00
Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while reading ACPI config through the user mode app.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing 11AZ RTT management action frame received through OTA.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
- risk 0.56cvss 8.6epss 0.00
Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.
- risk 0.47cvss 7.3epss 0.00
Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size.
- risk 0.47cvss 7.3epss 0.00
Memory corruption in video while parsing invalid mp2 clip.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in Automotive Multimedia due to improper access control in HAB.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when malformed message payload is received from firmware.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.
- risk 0.46cvss 7.1epss 0.00
Transient DOS in Core when DDR memory check is called while DDR is not initialized.
- risk 0.53cvss 8.2epss 0.00
Information disclosure in Modem while processing SIB5.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in Multi-Mode Call Processor while processing UE policy container.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage.
- risk 0.51cvss 7.8epss 0.00
Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.
- risk 0.49cvss 7.5epss 0.01
Cybozu KUNAI for Android 3.0.20 to 3.0.21 allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by performing certain operations.
- risk 0.52cvss 8.0epss 0.00
Improper authentication vulnerability in onCharacteristicWriteRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness.
- risk 0.52cvss 8.0epss 0.00
Improper authentication vulnerability in onCharacteristicReadRequest in Auto Hotspot prior to SMR Feb-2024 Release 1 allows adjacent attackers connect to victim's mobile hotspot without user awareness.
- risk 0.55cvss 8.4epss 0.00
Out-of-bounds Write in padmd_vld_qtbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code.
- risk 0.55cvss 8.4epss 0.00
Out-of-bounds Write in padmd_vld_htbl of libpadm.so prior to SMR Feb-2024 Release 1 allows local attacker to execute arbitrary code.
- risk 0.53cvss 8.1epss 0.01
Intelbras Action RF 1200 routers 1.2.2 and earlier and Action RG 1200 routers 2.1.7 and earlier expose the Password in Cookie resulting in Login Bypass.
- risk 0.51cvss 7.8epss 0.00
The Android application BINHDRM26 com.bdrm.superreboot 1.0.3, exposes several critical actions through its exported broadcast receivers. These exposed actions can allow any app on the device to send unauthorized broadcasts, leading to unintended consequences. The vulnerability…
- risk 0.57cvss 8.8epss 0.00
An issue in the com.oneed.dvr.service.DownloadFirmwareService component of IMOU GO v1.0.11 allows attackers to force the download of arbitrary files.
- risk 0.57cvss 8.8epss 0.03
Hardy Barth cPH2 eCharge Ladestation v1.87.0 and earlier is vulnerable to Execution with Unnecessary Privileges.
- risk 0.51cvss 7.8epss 0.00
An issue in the PowerOffWidgetReceiver function of Super Reboot (Root) Recovery v1.0.3 allows attackers to arbitrarily reset or power off the device via a crafted intent
- risk 0.46cvss 8.2epss 0.01
The Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the seedprod_lite_new_lpage function in all versions up to,…
- risk 0.50cvss 8.8epss 0.01
The Instant Images – One Click Image Uploads from Unsplash, Openverse, Pixabay and Pexels plugin for WordPress is vulnerable to unauthorized arbitrary options update due to an insufficient check that neglects to verify whether the updated option belongs to the plugin on the…
- risk 0.46cvss 8.1epss 0.01
The File Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.2.1 due to insufficient randomness in the backup filenames, which use a timestamp plus 4 random digits. This makes it possible for unauthenticated…
- risk 0.39cvss 7.1epss 0.00
The Index Now plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.6.3. This is due to missing or incorrect nonce validation on the 'reset_form' function. This makes it possible for unauthenticated attackers to delete arbitrary…
- risk 0.53cvss 8.2epss 0.02
The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wppb_two_factor_authentication_settings_update' function in all…