VYPR

CVEs

38,104 total · page 396 of 763

  • CVE-2023-27667CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Auto Dealer Management System v1.0 was discovered to contain a SQL injection vulnerability.

  • CVE-2023-24509CriApr 13, 2023
    risk 0.60cvss 9.3epss 0.00

    On affected modular platforms running Arista EOS equipped with both redundant supervisor modules and having the redundancy protocol configured with RPR or SSO, an existing unprivileged user can login to the standby supervisor as a root user, leading to a privilege escalation.…

  • CVE-2023-27779CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.01

    AM Presencia v3.7.3 was discovered to contain a SQL injection vulnerability via the user parameter in the login form.

  • CVE-2023-29598CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.01

    lmxcms v1.4.1 was discovered to contain a SQL injection vulnerability via the setbook parameter at index.php.

  • CVE-2023-27812CriApr 13, 2023
    risk 0.59cvss 9.1epss 0.01

    bloofox v0.5.2 was discovered to contain an arbitrary file deletion vulnerability via the delete_file() function.

  • CVE-2022-33288CriApr 13, 2023
    risk 0.60cvss 9.3epss 0.00

    Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information.

  • CVE-2022-33269CriApr 13, 2023
    risk 0.60cvss 9.3epss 0.00

    Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment.

  • CVE-2022-33259CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received.

  • CVE-2022-33231CriApr 13, 2023
    risk 0.60cvss 9.3epss 0.00

    Memory corruption due to double free in core while initializing the encryption key.

  • CVE-2022-33211CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    memory corruption in modem due to improper check while calculating size of serialized CoAP message

  • CVE-2022-25745CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in modem due to improper input validation while handling the incoming CoAP message

  • CVE-2022-25740CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface

  • CVE-2022-25678CriApr 13, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory correction in modem due to buffer overwrite during coap connection

  • CVE-2023-28121CriApr 12, 2023
    risk 0.74cvss 9.8epss 0.87

    An issue in WooCommerce Payments plugin for WordPress (versions 5.6.1 and lower) allows an unauthenticated attacker to send requests on behalf of an elevated user, like administrator. This allows a remote, unauthenticated attacker to gain admin access on a site that has the…

  • CVE-2023-27830CriApr 12, 2023
    risk 0.59cvss 9.0epss 0.01

    TightVNC before v2.8.75 allows attackers to escalate privileges on the host operating system via replacing legitimate files with crafted files when executing a file transfer. This is due to the fact that TightVNC runs in the backend as a high-privileges account.

  • CVE-2023-27032CriApr 12, 2023
    risk 0.64cvss 9.8epss 0.03

    Prestashop advancedpopupcreator v1.1.21 to v1.1.24 was discovered to contain a SQL injection vulnerability via the component AdvancedPopup::getPopups().

  • CVE-2023-28808CriApr 11, 2023
    risk 0.59cvss 9.1epss 0.01

    Some Hikvision Hybrid SAN/Cluster Storage products have an access control vulnerability which can be used to obtain the admin permission. The attacker can exploit the vulnerability by sending crafted messages to the affected devices.

  • CVE-2023-28250CriApr 11, 2023
    risk 0.64cvss 9.8epss 0.02

    Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

  • CVE-2023-21554CriApr 11, 2023
    risk 0.74cvss 9.8epss 0.95

    Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

  • CVE-2020-19802CriApr 11, 2023
    risk 0.64cvss 9.8epss 0.01

    File Upload vulnerability found in Milken DoyoCMS v.2.3 allows a remote attacker to execute arbitrary code via the upload file type parameter.

  • CVE-2022-41331CriApr 11, 2023
    risk 0.64cvss 9.8epss 0.01

    A missing authentication for critical function vulnerability [CWE-306] in FortiPresence infrastructure server before version 1.2.1 allows a remote, unauthenticated attacker to access the Redis and MongoDB instances via crafted authentication requests.

  • CVE-2023-27192CriApr 11, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue found in DUALSPACE Super Secuirty v.2.3.7 allows an attacker to cause a denial of service via the key_wifi_safe_net_check_url, KEY_Cirus_scan_whitelist and KEY_AD_NEW_USER_AVOID_TIME parameters.

  • CVE-2023-27645CriApr 11, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue found in POWERAMP audioplayer build 925 bundle play and build 954 allows a remote attacker to gain privileges via the reverb and EQ preset parameters.

  • CVE-2023-28489CriApr 11, 2023
    risk 0.64cvss 9.8epss 0.03

    A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05), CP-8050 MASTER MODULE (All versions < CPCI85 V05). Affected devices are vulnerable to command injection via the web server port 443/tcp, if the parameter “Remote Operation” is enabled.…

  • CVE-2023-29492CriKEVApr 11, 2023
    risk 0.76cvss 9.8epss 0.03

    Novi Survey before 8.9.43676 allows remote attackers to execute arbitrary code on the server in the context of the service account. This does not provide access to stored survey or response data.

  • CVE-2023-28765CriApr 11, 2023
    risk 0.65cvss 9.8epss 0.15

    An attacker with basic privileges in SAP BusinessObjects Business Intelligence Platform (Promotion Management) - versions 420, 430, can get access to lcmbiar file and further decrypt the file. After this attacker can gain access to BI user’s passwords and depending on the…

  • CVE-2023-27497CriApr 11, 2023
    risk 0.65cvss 10.0epss 0.01

    Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - version 720, allows an attacker to execute malicious scripts on all connected Diagnostics Agents running on Windows. On successful exploitation, the attacker can…

  • CVE-2023-27267CriApr 11, 2023
    risk 0.60cvss 9.0epss 0.14

    Due to missing authentication and insufficient input validation, the OSCommand Bridge of SAP Diagnostics Agent - version 720, allows an attacker with deep knowledge of the system to execute scripts on all connected Diagnostics Agents. On successful exploitation, the attacker…

  • CVE-2023-27178CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    An arbitrary file upload vulnerability in the upload function of GDidees CMS 3.9.1 allows attackers to execute arbitrary code via a crafted file.

  • CVE-2023-27076CriApr 10, 2023
    risk 0.66cvss 9.8epss 0.23

    Command injection vulnerability found in Tenda G103 v.1.0.0.5 allows attacker to execute arbitrary code via a the language parameter.

  • CVE-2023-26070CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).

  • CVE-2023-26069CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).

  • CVE-2023-26068CriApr 10, 2023
    risk 0.68cvss 9.8epss 0.12

    Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).

  • CVE-2023-26066CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.

  • CVE-2023-26065CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 have an Integer Overflow.

  • CVE-2023-26064CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.

  • CVE-2023-26063CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.

  • CVE-2022-46709CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Ventura 13, iOS 16. An app may be able to execute arbitrary code with kernel privileges

  • CVE-2023-27650CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.02

    An issue found in APUS Group Launcher v.3.10.73 and v.3.10.88 allows a remote attacker to execute arbitrary code via the FONT_FILE parameter.

  • CVE-2023-29375CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2 before 14.2.7930, and 14.3 before 14.3.8025. There is potentially dangerous file upload through the SharePoint connector.

  • CVE-2022-41976CriApr 10, 2023
    risk 0.64cvss 9.9epss 0.02

    An privilege escalation issue was discovered in Scada-LTS 2.7.1.1 build 2948559113 allows remote attackers, authenticated in the application as a low-privileged user to change role (e.g., to administrator) by updating their user profile.

  • CVE-2023-1478CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    The Hummingbird WordPress plugin before 3.4.2 does not validate the generated file path for page cache files before writing them, leading to a path traversal vulnerability in the page cache module.

  • CVE-2023-29216CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.02

    In Apache Linkis <=1.3.1, because the parameters are not effectively filtered, the attacker uses the MySQL data source and malicious parameters to configure a new data source to trigger a deserialization vulnerability, eventually leading to remote code execution. Versions of…

  • CVE-2023-29215CriApr 10, 2023
    risk 0.57cvss 9.8epss 0.02

    In Apache Linkis <=1.3.1, due to the lack of effective filtering of parameters, an attacker configuring malicious Mysql JDBC parameters in JDBC EengineConn Module will trigger a deserialization vulnerability and eventually lead to remote code execution. Therefore, the parameters…

  • CVE-2023-27987CriApr 10, 2023
    risk 0.59cvss 9.1epss 0.01

    In Apache Linkis <=1.3.1, due to the default token generated by Linkis Gateway deployment being too simple, it is easy for attackers to obtain the default token for the attack. Generation rules should add random values. We recommend users upgrade the version of Linkis to…

  • CVE-2023-27603CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.02

    In Apache Linkis <=1.3.1, due to the Manager module engineConn material upload does not check the zip path, This is a Zip Slip issue, which will lead to a potential RCE vulnerability. We recommend users upgrade the version of Linkis to version 1.3.2.

  • CVE-2023-27602CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.02

    In Apache Linkis <=1.3.1, The PublicService module uploads files without restrictions on the path to the uploaded files, and file types. We recommend users upgrade the version of Linkis to version 1.3.2.  For versions <=1.3.1, we suggest turning on the file path check…

  • CVE-2023-27720CriApr 9, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_48d630 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.

  • CVE-2023-27719CriApr 9, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_478360 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.

  • CVE-2023-27718CriApr 9, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_498308 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.