Show filters
1,194 Total Results
Displaying 101-110 of 1,194
Sort by:
Attacker Value
Unknown
CVE-2023-47674
Disclosure Date: November 16, 2023 (last updated February 25, 2025)
Missing authentication for critical function vulnerability in First Corporation's DVRs allows a remote unauthenticated attacker to rewrite or obtain the configuration information of the affected device. Note that updates are provided only for Late model of CFR-4EABC, CFR-4EAB, CFR-8EAB, CFR-16EAB, MD-404AB, and MD-808AB. As for the other products, apply the workaround.
0
Attacker Value
Unknown
CVE-2023-47213
Disclosure Date: November 16, 2023 (last updated February 25, 2025)
First Corporation's DVRs use a hard-coded password, which may allow a remote unauthenticated attacker to rewrite or obtain the configuration information of the affected device. Note that updates are provided only for Late model of CFR-4EABC, CFR-4EAB, CFR-8EAB, CFR-16EAB, MD-404AB, and MD-808AB. As for the other products, apply the workaround.
0
Attacker Value
Unknown
CVE-2023-25756
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Out-of-bounds read in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via adjacent access.
0
Attacker Value
Unknown
CVE-2023-23583
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.
0
Attacker Value
Unknown
CVE-2023-22329
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Improper input validation in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via adjacent access.
0
Attacker Value
Unknown
CVE-2023-28574
Disclosure Date: November 07, 2023 (last updated February 25, 2025)
Memory corruption in core services when Diag handler receives a command to configure event listeners.
0
Attacker Value
Unknown
CVE-2023-28556
Disclosure Date: November 07, 2023 (last updated February 25, 2025)
Cryptographic issue in HLOS during key management.
0
Attacker Value
Unknown
CVE-2023-28545
Disclosure Date: November 07, 2023 (last updated February 25, 2025)
Memory corruption in TZ Secure OS while loading an app ELF.
0
Attacker Value
Unknown
CVE-2023-24852
Disclosure Date: November 07, 2023 (last updated February 25, 2025)
Memory Corruption in Core due to secure memory access by user while loading modem image.
0
Attacker Value
Unknown
CVE-2023-23369
Disclosure Date: November 03, 2023 (last updated February 25, 2025)
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute commands via a network.
We have already fixed the vulnerability in the following versions:
Multimedia Console 2.1.2 ( 2023/05/04 ) and later
Multimedia Console 1.4.8 ( 2023/05/05 ) and later
QTS 5.1.0.2399 build 20230515 and later
QTS 4.3.6.2441 build 20230621 and later
QTS 4.3.4.2451 build 20230621 and later
QTS 4.3.3.2420 build 20230621 and later
QTS 4.2.6 build 20230621 and later
Media Streaming add-on 500.1.1.2 ( 2023/06/12 ) and later
Media Streaming add-on 500.0.0.11 ( 2023/06/16 ) and later
0