Show filters
774 Total Results
Displaying 111-120 of 774
Sort by:
Attacker Value
Unknown

CVE-2023-36049

Disclosure Date: November 14, 2023 (last updated November 22, 2023)
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2023-36560

Disclosure Date: November 14, 2023 (last updated November 21, 2023)
ASP.NET Security Feature Bypass Vulnerability
Attacker Value
Unknown

CVE-2023-47190

Disclosure Date: November 08, 2023 (last updated November 15, 2023)
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Apollo13Themes Apollo13 Framework Extensions plugin <= 1.9.0 versions.
Attacker Value
Unknown

CVE-2023-22107

Disclosure Date: October 17, 2023 (last updated October 24, 2023)
Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: UI Components). Supported versions that are affected are ECC: 8, 9 and 10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Enterprise Command Center Framework. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Enterprise Command Center Framework, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Enterprise Command Center Framework accessible data as well as unauthorized read access to a subset of Oracle Enterprise Command Center Framework accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).
Attacker Value
Unknown

CVE-2023-22106

Disclosure Date: October 17, 2023 (last updated October 24, 2023)
Vulnerability in the Oracle Enterprise Command Center Framework product of Oracle E-Business Suite (component: API). Supported versions that are affected are ECC: 8, 9 and 10. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Enterprise Command Center Framework. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Enterprise Command Center Framework accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).
Attacker Value
Unknown

CVE-2023-42261

Disclosure Date: September 21, 2023 (last updated November 08, 2023)
Mobile Security Framework (MobSF) <=v3.7.8 Beta is vulnerable to Insecure Permissions. NOTE: the vendor's position is that authentication is intentionally not implemented because the product is not intended for an untrusted network environment. Use cases requiring authentication could, for example, use a reverse proxy server.
Attacker Value
Unknown

CVE-2023-36796

Disclosure Date: September 12, 2023 (last updated January 11, 2025)
Visual Studio Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-36794

Disclosure Date: September 12, 2023 (last updated January 11, 2025)
Visual Studio Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-36793

Disclosure Date: September 12, 2023 (last updated January 11, 2025)
Visual Studio Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-36792

Disclosure Date: September 12, 2023 (last updated January 11, 2025)
Visual Studio Remote Code Execution Vulnerability