Show filters
1,194 Total Results
Displaying 101-110 of 1,194
Sort by:
Attacker Value
Unknown

CVE-2023-47674

Disclosure Date: November 16, 2023 (last updated February 25, 2025)
Missing authentication for critical function vulnerability in First Corporation's DVRs allows a remote unauthenticated attacker to rewrite or obtain the configuration information of the affected device. Note that updates are provided only for Late model of CFR-4EABC, CFR-4EAB, CFR-8EAB, CFR-16EAB, MD-404AB, and MD-808AB. As for the other products, apply the workaround.
Attacker Value
Unknown

CVE-2023-47213

Disclosure Date: November 16, 2023 (last updated February 25, 2025)
First Corporation's DVRs use a hard-coded password, which may allow a remote unauthenticated attacker to rewrite or obtain the configuration information of the affected device. Note that updates are provided only for Late model of CFR-4EABC, CFR-4EAB, CFR-8EAB, CFR-16EAB, MD-404AB, and MD-808AB. As for the other products, apply the workaround.
Attacker Value
Unknown

CVE-2023-25756

Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Out-of-bounds read in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via adjacent access.
Attacker Value
Unknown

CVE-2023-23583

Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.
Attacker Value
Unknown

CVE-2023-22329

Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Improper input validation in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable denial of service via adjacent access.
Attacker Value
Unknown

CVE-2023-28574

Disclosure Date: November 07, 2023 (last updated February 25, 2025)
Memory corruption in core services when Diag handler receives a command to configure event listeners.
Attacker Value
Unknown

CVE-2023-28556

Disclosure Date: November 07, 2023 (last updated February 25, 2025)
Cryptographic issue in HLOS during key management.
Attacker Value
Unknown

CVE-2023-28545

Disclosure Date: November 07, 2023 (last updated February 25, 2025)
Memory corruption in TZ Secure OS while loading an app ELF.
Attacker Value
Unknown

CVE-2023-24852

Disclosure Date: November 07, 2023 (last updated February 25, 2025)
Memory Corruption in Core due to secure memory access by user while loading modem image.
Attacker Value
Unknown

CVE-2023-23369

Disclosure Date: November 03, 2023 (last updated February 25, 2025)
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute commands via a network. We have already fixed the vulnerability in the following versions: Multimedia Console 2.1.2 ( 2023/05/04 ) and later Multimedia Console 1.4.8 ( 2023/05/05 ) and later QTS 5.1.0.2399 build 20230515 and later QTS 4.3.6.2441 build 20230621 and later QTS 4.3.4.2451 build 20230621 and later QTS 4.3.3.2420 build 20230621 and later QTS 4.2.6 build 20230621 and later Media Streaming add-on 500.1.1.2 ( 2023/06/12 ) and later Media Streaming add-on 500.0.0.11 ( 2023/06/16 ) and later