VYPR

CVEs

31,788 total · page 275 of 636

  • CVE-2023-1256CriMar 16, 2023
    risk 0.64cvss 9.8epss 0.01

    The listed versions of AVEVA Plant SCADA and AVEVA Telemetry Server are vulnerable to an improper authorization exploit which could allow an unauthenticated user to remotely read data, cause denial of service, and tamper with alarm states.

  • CVE-2023-0811CriMar 16, 2023
    risk 0.59cvss 9.1epss 0.01

    Omron CJ1M unit v4.0 and prior has improper access controls on the memory region where the UM password is stored. If an adversary issues a PROGRAM AREA WRITE command to a specific memory region, they could overwrite the password. This may lead to disabling UM protections or…

  • CVE-2023-27041CriMar 16, 2023
    risk 0.64cvss 9.8epss 0.01

    School Registration and Fee System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at/bilal final/edit_user.php.

  • CVE-2023-28100CriMar 16, 2023
    risk 0.00cvss 10.0epss 0.01

    Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. Versions prior to 1.10.8, 1.12.8, 1.14.4, and 1.15.4 contain a vulnerability similar to CVE-2017-5226, but using the `TIOCLINUX` ioctl command instead of `TIOCSTI`. If a Flatpak…

  • CVE-2023-27040CriMar 16, 2023
    risk 0.64cvss 9.8epss 0.02

    Simple Image Gallery v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the username parameter.

  • CVE-2020-22647CriMar 16, 2023
    risk 0.59cvss 9.1epss 0.01

    An issue found in DepositGame v.1.0 allows an attacker to gain sensitive information via the GetBonusWithdraw and withdraw functions.

  • CVE-2020-19947CriMar 16, 2023
    risk 0.62cvss 9.6epss 0.01

    Cross Site Scripting vulnerability found in Markdown Edit allows a remote attacker to execute arbitrary code via the edit parameter of the webpage.

  • CVE-2023-27250CriMar 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Book Store Project v1.0 is vulnerable to SQL Injection via /bookstore/bookPerPub.php.

  • CVE-2023-26784CriMar 16, 2023
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability found in Kirin Fortress Machine v.1.7-2020-0610 allows attackers to execute arbitrary code via the /admin.php?controller=admin_commonuser parameter.

  • CVE-2023-24795CriMar 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Command execution vulnerability was discovered in JHR-N916R router firmware version<=21.11.1.1483.

  • CVE-2023-23150CriMar 16, 2023
    risk 0.64cvss 9.8epss 0.01

    SA-WR915ND router firmware v17.35.1 was discovered to be vulnerable to code execution.

  • CVE-2023-25280CriKEVMar 16, 2023
    risk 0.84cvss 9.8epss 0.98

    OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload with the ping_addr parameter to ping.ccp.

  • CVE-2023-28461CriKEVMar 15, 2023
    risk 0.87cvss 9.8epss 0.68

    Array Networks Array AG Series and vxAG (9.4.0.481 and earlier) allow remote code execution. An attacker can browse the filesystem on the SSL VPN gateway using a flags attribute in an HTTP header without authentication. The product could then be exploited through a vulnerable…

  • CVE-2023-24468CriMar 15, 2023
    risk 0.64cvss 9.8epss 0.01

    Broken access control in Advanced Authentication versions prior to 6.4.1.1 and 6.3.7.2

  • CVE-2023-25344CriMar 15, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to execute arbitrary code via crafted Object.prototype anonymous function.

  • CVE-2020-27507CriMar 15, 2023
    risk 0.00cvss 9.8epss 0.01

    The Kamailio SIP before 5.5.0 server mishandles INVITE requests with duplicated fields and overlength tag, leading to a buffer overflow that crashes the server or possibly have unspecified other impact.

  • CVE-2022-44580CriMar 15, 2023
    risk 0.59cvss 9.1epss 0.01

    SQL Injection (SQLi) vulnerability in RichPlugins Plugin for Google Reviews plugin <= 2.2.3 versions.

  • CVE-2023-24726CriMar 15, 2023
    risk 0.64cvss 9.8epss 0.01

    Art Gallery Management System v1.0 was discovered to contain a SQL injection vulnerability via the viewid parameter on the enquiry page.

  • CVE-2023-27240CriMar 15, 2023
    risk 0.64cvss 9.8epss 0.03

    Tenda AX3 V16.03.12.11 was discovered to contain a command injection vulnerability via the lanip parameter at /goform/AdvSetLanip.

  • CVE-2023-27239CriMar 15, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda AX3 V16.03.12.11 was discovered to contain a stack overflow via the shareSpeed parameter at /goform/WifiGuestSet.

  • CVE-2023-28371CriMar 15, 2023
    risk 0.00cvss 9.8epss 0.02

    In Stellarium through 1.2, attackers can write to files that are typically unintended, such as ones with absolute pathnames or .. directory traversal.

  • CVE-2023-27757CriMar 15, 2023
    risk 0.64cvss 9.8epss 0.01

    An arbitrary file upload vulnerability in the /admin/user/uploadImg component of PerfreeBlog v3.1.1 allows attackers to execute arbitrary code via a crafted JPG file.

  • CVE-2023-1327CriMar 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Netgear RAX30 (AX2400), prior to version 1.0.6.74, was affected by an authentication bypass vulnerability, allowing an unauthenticated attacker to gain administrative access to the device's web management interface by resetting the admin password.

  • CVE-2023-26511CriMar 14, 2023
    risk 0.64cvss 9.8epss 0.01

    A Hard Coded Admin Credentials issue in the Web-UI Admin Panel in Propius MachineSelector 6.6.0 and 6.6.1 allows remote attackers to gain access to the admin panel Propiusadmin.php, which allows taking control of the affected system.

  • CVE-2023-28343CriMar 14, 2023
    risk 0.74cvss 9.8epss 0.85

    OS command injection affects Altenergy Power Control Software C1.2.5 via shell metacharacters in the index.php/management/set_timezone timezone parameter, because of set_timezone in models/management_model.php.

  • CVE-2023-23415CriMar 14, 2023
    risk 0.64cvss 9.8epss 0.03

    Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability

  • CVE-2023-23397CriKEVMar 14, 2023
    risk 0.83cvss 9.8epss 0.97

    Microsoft Outlook Elevation of Privilege Vulnerability

  • CVE-2023-23392CriMar 14, 2023
    risk 0.64cvss 9.8epss 0.02

    HTTP Protocol Stack Remote Code Execution Vulnerability

  • CVE-2023-21708CriMar 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Remote Procedure Call Runtime Remote Code Execution Vulnerability

  • CVE-2022-39214CriMar 14, 2023
    risk 0.02cvss 9.6epss 0.26

    Combodo iTop is an open source, web-based IT service management platform. Prior to versions 2.7.8 and 3.0.2-1, a user who can log in on iTop is able to take over any account just by knowing the account's username. This issue is fixed in versions 2.7.8 and 3.0.2-1.

  • CVE-2023-27074CriMar 14, 2023
    risk 0.64cvss 9.8epss 0.01

    BP Monitoring Management System v1.0 was discovered to contain a SQL injection vulnerability via the emailid parameter in the login page.

  • CVE-2023-25957CriMar 14, 2023
    risk 0.59cvss 9.1epss 0.01

    A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions >= V1.16.4 < V1.17.3), Mendix SAML (Mendix 8 compatible) (All versions >= V2.2.0 < V2.3.0), Mendix SAML (Mendix 9 latest compatible, New Track) (All versions >= V3.1.9 < V3.3.1), Mendix SAML…

  • CVE-2023-27500CriMar 14, 2023
    risk 0.62cvss 9.6epss 0.01

    An attacker with non-administrative authorizations can exploit a directory traversal flaw in program SAPRSBRO to over-write system files. In this attack, no data can be read but potentially critical OS files can be over-written making the system unavailable.

  • CVE-2023-27269CriMar 14, 2023
    risk 0.62cvss 9.6epss 0.01

    SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, allows an attacker with non-administrative authorizations to exploit a directory traversal flaw in an available service to overwrite the…

  • CVE-2023-25617CriMar 14, 2023
    risk 0.59cvss 9.0epss 0.01

    SAP Business Object (Adaptive Job Server) - versions 420, 430, allows remote execution of arbitrary commands on Unix, when program objects execution is enabled, to authenticated users with scheduling rights, using the BI Launchpad, Central Management Console or a custom…

  • CVE-2023-25616CriMar 14, 2023
    risk 0.64cvss 9.9epss 0.01

    In some scenario, SAP Business Objects Business Intelligence Platform (CMC) - versions 420, 430, Program Object execution can lead to code injection vulnerability which could allow an attacker to gain access to resources that are allowed by extra privileges. Successful attack…

  • CVE-2023-23857CriMar 14, 2023
    risk 0.64cvss 9.9epss 0.01

    Due to missing authentication check, SAP NetWeaver AS for Java - version 7.50, allows an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting…

  • CVE-2023-27582CriMar 13, 2023
    risk 0.52cvss 9.1epss 0.01

    maddy is a composable, all-in-one mail server. Starting with version 0.2.0 and prior to version 0.6.3, maddy allows a full authentication bypass if SASL authorization username is specified when using the PLAIN authentication mechanisms. Instead of validating the specified…

  • CVE-2023-27052CriMar 13, 2023
    risk 0.64cvss 9.8epss 0.01

    E-Commerce System v1.0 ws discovered to contain a SQL injection vulnerability via the id parameter at /admin/delete_user.php.

  • CVE-2023-27583CriMar 13, 2023
    risk 0.00cvss 9.8epss 0.01

    PanIndex is a network disk directory index. In Panindex prior to version 3.1.3, a hard-coded JWT key `PanIndex` is used. An attacker can use the hard-coded JWT key to sign JWT token and perform any actions as a user with admin privileges. Version 3.1.3 has a patch for the…

  • CVE-2023-0354CriMar 13, 2023
    risk 0.59cvss 9.1epss 0.01

    The Akuvox E11 web server can be accessed without any user authentication, and this could allow an attacker to access sensitive information, as well as create and download packet captures with known default URLs.

  • CVE-2023-0352CriMar 13, 2023
    risk 0.59cvss 9.1epss 0.01

    The Akuvox E11 password recovery webpage can be accessed without authentication, and an attacker could download the device key file. An attacker could then use this page to reset the password back to the default.

  • CVE-2023-0345CriMar 13, 2023
    risk 0.64cvss 9.8epss 0.01

    The Akuvox E11 secure shell (SSH) server is enabled by default and can be accessed by the root user. This password cannot be changed by the user.

  • CVE-2023-25207CriMar 13, 2023
    risk 0.64cvss 9.8epss 0.01

    PrestaShop dpdfrance <6.1.3 is vulnerable to SQL Injection via dpdfrance/ajax.php.

  • CVE-2023-25279CriMar 13, 2023
    risk 0.66cvss 9.8epss 0.31

    OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload.

  • CVE-2021-45423CriMar 13, 2023
    risk 0.64cvss 9.8epss 0.01

    A Buffer Overflow vulnerabilityexists in Pev 0.81 via the pe_exports function from exports.c.. The array offsets_to_Names is dynamically allocated on the stack using exp->NumberOfFunctions as its size. However, the loop uses exp->NumberOfNames to iterate over it and set its…

  • CVE-2023-0037CriMar 13, 2023
    risk 0.64cvss 9.8epss 0.04

    The 10Web Map Builder for Google Maps WordPress plugin before 1.0.73 does not properly sanitise and escape some parameters before using them in an SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

  • CVE-2023-27063CriMar 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the DNSDomainName parameter in the formModifyDnsForward function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

  • CVE-2023-27061CriMar 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the wifiFilterListRemark parameter in the modifyWifiFilterRules function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

  • CVE-2023-24762CriMar 13, 2023
    risk 0.64cvss 9.8epss 0.03

    OS Command injection vulnerability in D-Link DIR-867 DIR_867_FW1.30B07 allows attackers to execute arbitrary commands via a crafted LocalIPAddress parameter for the SetVirtualServerSettings to HNAP1.