VYPR

CVEs

38,124 total · page 379 of 763

  • CVE-2023-2963CriJul 17, 2023
    risk 0.64cvss 9.8epss 0.01

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oliva Expertise Oliva Expertise EKS allows SQL Injection. This issue affects Oliva Expertise EKS: before 1.2.

  • CVE-2023-26512CriJul 17, 2023
    risk 0.64cvss 9.8epss 0.01

    CWE-502 Deserialization of Untrusted Data at the rabbitmq-connector plugin module in Apache EventMesh (incubating) V1.7.0\V1.8.0 on windows\linux\mac os e.g. platforms allows attackers to send controlled message and remote code execute via rabbitmq messages. Users can…

  • CVE-2023-3696CriJul 17, 2023
    risk 0.57cvss 9.8epss 0.01

    Prototype Pollution in GitHub repository automattic/mongoose prior to 7.3.4.

  • CVE-2023-38378CriJul 16, 2023
    risk 0.64cvss 9.8epss 0.01

    The web interface on the RIGOL MSO5000 digital oscilloscope with firmware 00.01.03.00.03 allows remote attackers to execute arbitrary code via shell metacharacters in pass1 to the webcontrol changepwd.cgi application.

  • CVE-2023-2507CriJul 15, 2023
    risk 0.54cvss 9.3epss 0.01

    CleverTap Cordova Plugin version 2.6.2 allows a remote attacker to execute JavaScript code in any application that is opened via a specially constructed deeplink by an attacker. This is possible because the plugin does not correctly validate the data coming from the deeplinks…

  • CVE-2023-35802CriJul 15, 2023
    risk 0.64cvss 9.8epss 0.01

    IQ Engine before 10.6r1 on Extreme Network AP devices has a Buffer Overflow in the implementation of the CAPWAP protocol that may be exploited to obtain elevated privileges to conduct remote code execution. Access to the internal management interface/subnet is required to…

  • CVE-2023-37794CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.02

    WAYOS FBM-291W 19.09.11V was discovered to contain a command injection vulnerability via the component /upgrade_filter.asp.

  • CVE-2023-37793CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    WAYOS FBM-291W 19.09.11V was discovered to contain a buffer overflow via the component /upgrade_filter.asp.

  • CVE-2023-38336CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.02

    netkit-rcp in rsh-client 0.17-24 allows command injection via filenames because /bin/sh is used by susystem, a related issue to CVE-2006-0225, CVE-2019-7283, and CVE-2020-15778.

  • CVE-2023-37462CriJul 14, 2023
    risk 0.65cvss 9.9epss 0.92

    XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Improper escaping in the document `SkinsCode.XWikiSkinsSheet` leads to an injection vector from view right on that document to programming rights, or in other words, it is…

  • CVE-2023-37723CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromqossetting.

  • CVE-2023-37722CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeUrlFilter.

  • CVE-2023-37721CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeMacFilter.

  • CVE-2023-37719CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromP2pListFilter.

  • CVE-2023-37718CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromSafeClientFilter.

  • CVE-2023-37717CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromDhcpListClient.

  • CVE-2023-37716CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408) and FH1202_V1.2.0.19_EN, AC10 V1.0, AC1206 V1.0, AC7 V1.0, AC5 V1.0, and AC9 V3.0 were discovered to contain a stack overflow in the page parameter in the function fromNatStaticSetting.

  • CVE-2023-37715CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function frmL7ProtForm.

  • CVE-2023-37714CriJul 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Tenda F1202 V1.0BR_V1.2.0.20(408), FH1202_V1.2.0.19_EN were discovered to contain a stack overflow in the page parameter in the function fromRouteStatic.

  • CVE-2023-37466CriJul 14, 2023
    risk 0.57cvss 9.8epss 0.04

    vm2 is an advanced vm/sandbox for Node.js. The library contains critical security issues and should not be used for production. The maintenance of the project has been discontinued. In vm2 for versions up to 3.9.19, `Promise` handler sanitization can be bypassed with the…

  • CVE-2023-37839CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    An arbitrary file upload vulnerability in /dede/file_manage_control.php of DedeCMS v5.7.109 allows attackers to execute arbitrary code via uploading a crafted PHP file.

  • CVE-2023-30151CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability in the Boxtal (envoimoinscher) module for PrestaShop, after version 3.1.10, allows remote attackers to execute arbitrary SQL commands via the `key` GET parameter.

  • CVE-2023-31704CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Sourcecodester Online Computer and Laptop Store 1.0 is vulnerable to Incorrect Access Control, which allows remote attackers to elevate privileges to the administrator's role.

  • CVE-2023-35070CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VegaGroup Web Collection allows SQL Injection. This issue affects Web Collection: before 31197.

  • CVE-2023-2003CriJul 13, 2023
    risk 0.59cvss 9.1epss 0.01

    Embedded malicious code vulnerability in Vision1210, in the build 5 of operating system version 4.3, which could allow a remote attacker to store base64-encoded malicious code in the device's data tables via the PCOM protocol, which can then be retrieved by a client and executed…

  • CVE-2023-25770CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Controller DoS may occur due to buffer overflow when an error is generated in response to a specially crafted message. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-25178CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Controller may be loaded with malicious firmware which could enable remote code execution. See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-25078CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Server or Console Station DoS due to heap overflow occurring during the handling of a specially crafted message for a specific configuration operation.  See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-24480CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Controller DoS due to stack overflow when decoding a message from the server.  See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-23585CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Experion server DoS due to heap overflow occurring during the handling of a specially crafted message for a specific configuration operation.  See Honeywell Security Notification for recommendations on upgrading and versioning.

  • CVE-2023-2957CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Lisa Software Florist Site allows SQL Injection. This issue affects Florist Site: before 3.0.

  • CVE-2023-1547CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Elra Parkmatik allows SQL Injection through SOAP Parameter Tampering, Command Line Execution through SQL Injection. This issue affects Parkmatik: before 02.01-a51.

  • CVE-2023-3342CriJul 13, 2023
    risk 0.57cvss 9.9epss 0.02

    The User Registration plugin for WordPress is vulnerable to arbitrary file uploads due to a hardcoded encryption key and missing file type validation on the 'ur_upload_profile_pic' function in versions up to, and including, 3.0.2. This makes it possible for authenticated…

  • CVE-2023-38199CriJul 13, 2023
    risk 0.00cvss 9.8epss 0.01

    coreruleset (aka OWASP ModSecurity Core Rule Set) through 3.3.4 does not detect multiple Content-Type request headers on some platforms. This might allow attackers to bypass a WAF with a crafted payload, aka "Content-Type confusion" between the WAF and the backend application.…

  • CVE-2023-38198CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    acme.sh before 3.0.6 runs arbitrary commands from a remote server via eval, as exploited in the wild in June 2023.

  • CVE-2023-34137CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    SonicWall GMS and Analytics CAS Web Services application use static values for authentication without proper checks leading to authentication bypass vulnerability. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.

  • CVE-2023-34136CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Vulnerability in SonicWall GMS and Analytics allows unauthenticated attacker to upload files to a restricted location not controlled by the attacker. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.

  • CVE-2023-34132CriJul 13, 2023
    risk 0.67cvss 9.8epss 0.08

    Use of password hash instead of password for authentication vulnerability in SonicWall GMS and Analytics allows Pass-the-Hash attacks. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.

  • CVE-2023-37567CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.02

    Command injection vulnerability in ELECOM and LOGITEC wireless LAN routers allows a remote unauthenticated attacker to execute an arbitrary command by sending a specially crafted request to a certain port of the web management page. Affected products and versions are as follows:…

  • CVE-2023-34130CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.00

    SonicWall GMS and Analytics use outdated Tiny Encryption Algorithm (TEA) with a hardcoded key to encrypt sensitive data. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.

  • CVE-2023-34128CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Tomcat application credentials are hardcoded in SonicWall GMS and Analytics configuration file. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.

  • CVE-2023-34124CriJul 13, 2023
    risk 0.70cvss 9.8epss 0.50

    The authentication mechanism in SonicWall GMS and Analytics Web Services had insufficient checks, allowing authentication bypass. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.

  • CVE-2023-21250CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    In gatt_end_operation of gatt_utils.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-20918CriJul 13, 2023
    risk 0.64cvss 9.8epss 0.01

    In getPendingIntentLaunchFlags of ActivityOptions.java, there is a possible elevation of privilege due to a confused deputy with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-33274CriJul 12, 2023
    risk 0.64cvss 9.8epss 0.01

    The authentication mechanism in PowerShield SNMP Web Pro 1.1 contains a vulnerability that allows unauthenticated users to directly access Common Gateway Interface (CGI) scripts without proper identification or authorization. This vulnerability arises from a lack of proper…

  • CVE-2023-26564CriJul 12, 2023
    risk 0.64cvss 9.8epss 0.02

    The Syncfusion EJ2 ASPCore File Provider 3ac357f is vulnerable to Models/PhysicalFileProvider.cs directory traversal. As a result, an unauthenticated attacker can list files within a directory, download any file, or upload any file to any directory accessible by the web server.

  • CVE-2023-26563CriJul 12, 2023
    risk 0.64cvss 9.8epss 0.02

    The Syncfusion EJ2 Node File Provider 0102271 is vulnerable to filesystem-server.js directory traversal. As a result, an unauthenticated attacker can: - On Windows, list files in any directory, read any file, delete any file, upload any file to any directory accessible by the…

  • CVE-2023-37629CriJul 12, 2023
    risk 0.68cvss 9.8epss 0.23

    Online Piggery Management System 1.0 is vulnerable to File Upload. An unauthenticated user can upload a php file by sending a POST request to "add-pig.php."

  • CVE-2023-37628CriJul 12, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Piggery Management System 1.0 is vulnerable to SQL Injection.

  • CVE-2023-29300CriKEVJul 12, 2023
    risk 0.90cvss 9.8epss 1.00

    Adobe ColdFusion versions 2018u16 (and earlier), 2021u6 (and earlier) and 2023.0.0.330468 (and earlier) are affected by a Deserialization of Untrusted Data vulnerability that could result in Arbitrary code execution. Exploitation of this issue does not require user interaction.