VYPR

CVEs

38,104 total · page 354 of 763

  • CVE-2023-43902CriNov 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Incorrect access control in the Forgot Your Password function of eMudhra emSigner v2.8.7 allows unauthenticated attackers to access accounts of all registered users, including those with administrator privileges via a crafted password reset token.

  • CVE-2023-31403CriNov 14, 2023
    risk 0.62cvss 9.6epss 0.00

    SAP Business One installation - version 10.0, does not perform proper authentication and authorization checks for SMB shared folder. As a result, any malicious user can read and write to the SMB shared folder. Additionally, the files in the folder can be executed or be used by…

  • CVE-2023-6097CriNov 13, 2023
    risk 0.61cvss 9.4epss 0.01

    A SQL injection vulnerability has been found in ICS Business Manager, affecting version 7.06.0028.7089. This vulnerability could allow a remote user to send a specially crafted SQL query and retrieve all the information stored in the database. The data could also be modified or…

  • CVE-2023-46850CriNov 11, 2023
    risk 0.64cvss 9.8epss 0.02

    Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory buffers or remote execution when sending network buffers to a remote peer.

  • CVE-2023-4804CriNov 10, 2023
    risk 0.65cvss 10.0epss 0.01

    An unauthorized user could access debug features in Quantum HD Unity products that were accidentally exposed.

  • CVE-2023-47128CriNov 10, 2023
    risk 0.52cvss 9.1epss 0.01

    Piccolo is an object-relational mapping and query builder which supports asyncio. Prior to version 1.1.1, the handling of named transaction `savepoints` in all database implementations is vulnerable to SQL Injection via f-strings. While the likelihood of an end developer…

  • CVE-2023-47800CriNov 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Natus NeuroWorks and SleepWorks before 8.4 GMA3 utilize a default password of xltek for the Microsoft SQL Server service sa account, allowing a threat actor to perform remote code execution, data exfiltration, or other nefarious actions such as tampering with data or…

  • CVE-2023-47246CriKEVNov 10, 2023
    risk 0.90cvss 9.8epss 0.99

    In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat webroot, as exploited in the wild in November 2023.

  • CVE-2023-39796CriNov 10, 2023
    risk 0.64cvss 9.8epss 0.06

    SQL injection vulnerability in the miniform module in WBCE CMS v.1.6.0 allows remote unauthenticated attacker to execute arbitrary code via the DB_RECORD_TABLE parameter.

  • CVE-2023-6069CriNov 10, 2023
    risk 0.57cvss 9.9epss 0.01

    Improper Link Resolution Before File Access in GitHub repository froxlor/froxlor prior to 2.1.0.

  • CVE-2023-46729CriNov 10, 2023
    risk 0.54cvss 9.3epss 0.01

    sentry-javascript provides Sentry SDKs for JavaScript. An unsanitized input of Next.js SDK tunnel endpoint allows sending HTTP requests to arbitrary URLs and reflecting the response back to the user. This issue only affects users who have Next.js SDK tunneling feature enabled.…

  • CVE-2023-47110CriNov 9, 2023
    risk 0.52cvss 9.1epss 0.00

    blockreassurance adds an information block aimed at offering helpful information to reassure customers that their store is trustworthy. An ajax function in module blockreassurance allows modifying any value in the configuration table. This vulnerability has been patched in…

  • CVE-2023-43791CriNov 9, 2023
    risk 0.57cvss 9.8epss 0.01

    Label Studio is a multi-type data labeling and annotation tool with standardized output format. There is a vulnerability that can be chained within the ORM Leak vulnerability to impersonate any account on Label Studio. An attacker could exploit these vulnerabilities to escalate…

  • CVE-2023-4612CriNov 9, 2023
    risk 0.64cvss 9.8epss 0.01

    Improper Authentication vulnerability in Apereo CAS in jakarta.servlet.http.HttpServletRequest.getRemoteAddr method allows Multi-Factor Authentication bypass.This issue affects CAS: through 7.0.0-RC7. It is unknown whether in new versions the issue will be fixed. For the date…

  • CVE-2023-47248CriNov 9, 2023
    risk 0.58cvss 9.8epss 0.15

    Deserialization of untrusted data in IPC and Parquet readers in PyArrow versions 0.14.0 to 14.0.0 allows arbitrary code execution. An application is vulnerable if it reads Arrow IPC, Feather or Parquet data from untrusted sources (for example user-supplied input files). This…

  • CVE-2021-43609CriNov 9, 2023
    risk 0.65cvss 9.9epss 0.02

    An issue was discovered in Spiceworks Help Desk Server before 1.3.3. A Blind Boolean SQL injection vulnerability within the order_by_for_ticket function in app/models/reporting/database_query.rb allows an authenticated attacker to execute arbitrary SQL commands via the sort…

  • CVE-2023-45225CriNov 8, 2023
    risk 0.64cvss 9.8epss 0.01

    Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras  with firmware version M2.1.6.05 are vulnerable to multiple instances of stack-based overflows. While parsing certain XML elements from incoming network requests, the…

  • CVE-2023-43755CriNov 8, 2023
    risk 0.64cvss 9.8epss 0.01

    Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras with firmware version M2.1.6.05 are vulnerable to multiple instances of stack-based overflows. During the processing and parsing of certain fields in XML elements from…

  • CVE-2023-3959CriNov 8, 2023
    risk 0.67cvss 9.8epss 0.49

    Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras with firmware version M2.1.6.05 are vulnerable to multiple instances of stack-based overflows. While processing XML elements from incoming network requests, the product…

  • CVE-2023-29974CriNov 8, 2023
    risk 0.64cvss 9.8epss 0.02

    An issue discovered in Pfsense CE version 2.6.0 allows attackers to compromise user accounts via weak password requirements.

  • CVE-2023-47397CriNov 8, 2023
    risk 0.64cvss 9.8epss 0.01

    WeBid <=1.2.2 is vulnerable to code injection via admin/categoriestrans.php.

  • CVE-2023-45849CriNov 8, 2023
    risk 0.59cvss 9.0epss 0.01

    An arbitrary code execution which results in privilege escalation was discovered in Helix Core versions prior to 2023.2. Reported by Jason Geffner.

  • CVE-2023-5941CriNov 8, 2023
    risk 0.64cvss 9.8epss 0.01

    In versions of FreeBSD 12.4-RELEASE prior to 12.4-RELEASE-p7 and FreeBSD 13.2-RELEASE prior to 13.2-RELEASE-p5 the __sflush() stdio function in libc does not correctly update FILE objects' write space members for write-buffered streams when the write(2) system call returns an…

  • CVE-2023-5801CriNov 8, 2023
    risk 0.59cvss 9.1epss 0.00

    Vulnerability of identity verification being bypassed in the face unlock module. Successful exploitation of this vulnerability will affect integrity and confidentiality.

  • CVE-2023-46800CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Matrimonial Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'id' parameter of the view_profile.php resource does not validate the characters received and they are sent unfiltered to the database.

  • CVE-2023-46793CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Matrimonial Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'day' parameter in the 'register()' function of the functions.php resource does not validate the characters received and they are sent unfiltered to the database.

  • CVE-2023-46789CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Matrimonial Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'filename' attribute of the 'pic1' multipart parameter of the functions.php resource does not validate the characters received and they are sent unfiltered to the…

  • CVE-2023-46788CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Matrimonial Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'id' parameter in the 'uploadphoto()' function of the functions.php resource does not validate the characters received and they are sent unfiltered to the database.

  • CVE-2023-46787CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Matrimonial Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of the auth/auth.php resource does not validate the characters received and they are sent unfiltered to the database.

  • CVE-2023-46785CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Matrimonial Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'id' parameter of the partner_preference.php resource does not validate the characters received and they are sent unfiltered to the database.

  • CVE-2023-46679CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Job Portal v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'txt_uname_email' parameter of the index.php resource does not validate the characters received and they are sent unfiltered to the database.

  • CVE-2023-46677CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Job Portal v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'txt_uname' parameter of the sign-up.php resource does not validate the characters received and they are sent unfiltered to the database.

  • CVE-2023-46243CriNov 7, 2023
    risk 0.57cvss 9.9epss 0.01

    XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected versions it's possible for a user to execute any content with the right of an existing document's content author, provided the user have edit right on it. A…

  • CVE-2023-46253CriNov 7, 2023
    risk 0.59cvss 9.1epss 0.02

    Squidex is an open source headless CMS and content management hub. Affected versions are subject to an arbitrary file write vulnerability in the backup restore feature which allows an authenticated attacker to gain remote code execution (RCE). Squidex allows users with the…

  • CVE-2023-46244CriNov 7, 2023
    risk 0.52cvss 9.1epss 0.01

    XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected versions it's possible for a user to write a script in which any velocity content is executed with the right of any other document content author. Since this API…

  • CVE-2023-46242CriNov 7, 2023
    risk 0.55cvss 9.6epss 0.00

    XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected versions it's possible to execute a content with the right of any user via a crafted URL. A user must have `programming` privileges in order to exploit this…

  • CVE-2023-46501CriNov 7, 2023
    risk 0.59cvss 9.1epss 0.01

    An issue in BoltWire v.6.03 allows a remote attacker to obtain sensitive information via a crafted payload to the view and change admin password function.

  • CVE-2023-47359CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Videolan VLC prior to version 3.0.20 contains an incorrect offset read that leads to a Heap-Based Buffer Overflow in function GetPacket() and results in a memory corruption.

  • CVE-2023-42659CriNov 7, 2023
    risk 0.59cvss 9.1epss 0.01

    In WS_FTP Server versions prior to 8.7.6 and 8.8.4, an unrestricted file upload flaw has been identified. An authenticated Ad Hoc Transfer user has the ability to craft an API call which allows them to upload a file to a specified location on the underlying operating system…

  • CVE-2023-47456CriNov 7, 2023
    risk 0.59cvss 9.1epss 0.01

    Tenda AX1806 V1.0.0.1 contains a stack overflow vulnerability in function sub_455D4, called by function fromSetWirelessRepeat.

  • CVE-2023-47455CriNov 7, 2023
    risk 0.59cvss 9.1epss 0.01

    Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which the src and v12 are directly obtained from http request parameter schedStartTime and schedEndTime without checking their size.

  • CVE-2023-33481CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    RemoteClinic 2.0 is vulnerable to a time-based blind SQL injection attack in the 'start' GET parameter of patients/index.php.

  • CVE-2023-33479CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    RemoteClinic version 2.0 contains a SQL injection vulnerability in the /staff/edit.php file.

  • CVE-2023-33478CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    RemoteClinic 2.0 has a SQL injection vulnerability in the ID parameter of /medicines/stocks.php.

  • CVE-2023-42284CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Blind SQL injection in api_version parameter in Tyk Gateway version 5.0.3 allows attacker to access and dump the database via a crafted SQL query.

  • CVE-2023-42283CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.01

    Blind SQL injection in api_id parameter in Tyk Gateway version 5.0.3 allows attacker to access and dump the database via a crafted SQL query.

  • CVE-2023-38547CriNov 7, 2023
    risk 0.65cvss 9.8epss 0.19

    A vulnerability in Veeam ONE allows an unauthenticated user to gain information about the SQL server connection Veeam ONE uses to access its configuration database. This may lead to remote code execution on the SQL server hosting the Veeam ONE configuration database.

  • CVE-2023-33045CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.

  • CVE-2023-28574CriNov 7, 2023
    risk 0.59cvss 9.0epss 0.00

    Memory corruption in core services when Diag handler receives a command to configure event listeners.

  • CVE-2023-22388CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory Corruption in Multi-mode Call Processor while processing bit mask API.