Show filters
991 Total Results
Displaying 121-130 of 991
Sort by:
Attacker Value
Unknown

CVE-2023-38941

Disclosure Date: August 04, 2023 (last updated February 25, 2025)
django-sspanel v2022.2.2 was discovered to contain a remote command execution (RCE) vulnerability via the component sspanel/admin_view.py -> GoodsCreateView._post.
Attacker Value
Unknown

CVE-2022-4046

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
In CODESYS Control in multiple versions a improper restriction of operations within the bounds of a memory buffer allow an remote attacker with user privileges to gain full access of the device.
Attacker Value
Unknown

CVE-2023-37559

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted network communication requests with inconsistent content can cause the CmpAppForce component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37558
Attacker Value
Unknown

CVE-2023-37558

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted network communication requests with inconsistent content can cause the CmpAppForce component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37559
Attacker Value
Unknown

CVE-2023-37557

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
After successful authentication as a user in multiple Codesys products in multiple versions, specific crafted remote communication requests can cause the CmpAppBP component to overwrite a heap-based buffer, which can lead to a denial-of-service condition.
Attacker Value
Unknown

CVE-2023-37556

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpAppBP component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37552, CVE-2023-37553, CVE-2023-37554 and CVE-2023-37555.
Attacker Value
Unknown

CVE-2023-37555

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpAppBP component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37552, CVE-2023-37553, CVE-2023-37554 and CVE-2023-37556.
Attacker Value
Unknown

CVE-2023-37554

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpAppBP component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37552, CVE-2023-37553, CVE-2023-37555 and CVE-2023-37556.
Attacker Value
Unknown

CVE-2023-37553

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpAppBP component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37552, CVE-2023-37554, CVE-2023-37555 and CVE-2023-37556.
Attacker Value
Unknown

CVE-2023-37552

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
In multiple versions of multiple Codesys products, after successful authentication as a user, specific crafted network communication requests with inconsistent content can cause the CmpAppBP component to read internally from an invalid address, potentially leading to a denial-of-service condition. This vulnerability is different to CVE-2023-37553, CVE-2023-37554, CVE-2023-37555 and CVE-2023-37556.