Show filters
774 Total Results
Displaying 121-130 of 774
Sort by:
Attacker Value
Unknown
CVE-2023-36788
Disclosure Date: September 12, 2023 (last updated January 11, 2025)
.NET Framework Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2023-40571
Disclosure Date: August 25, 2023 (last updated October 08, 2023)
weblogic-framework is a tool for detecting weblogic vulnerabilities. Versions 0.2.3 and prior do not verify the returned data packets, and there is a deserialization vulnerability which may lead to remote code execution. When weblogic-framework gets the command echo, it directly deserializes the data returned by the server without verifying it. At the same time, the classloader loads a lot of deserialization calls. In this case, the malicious serialized data returned by the server will cause remote code execution. Version 0.2.4 contains a patch for this issue.
0
Attacker Value
Unknown
CVE-2023-36899
Disclosure Date: August 08, 2023 (last updated February 25, 2025)
ASP.NET Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2023-36873
Disclosure Date: August 08, 2023 (last updated February 25, 2025)
.NET Framework Spoofing Vulnerability
0
Attacker Value
Unknown
CVE-2023-4145
Disclosure Date: August 03, 2023 (last updated February 25, 2025)
Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/customer-data-framework prior to 3.4.2.
0
Attacker Value
Unknown
CVE-2023-22042
Disclosure Date: July 18, 2023 (last updated October 08, 2023)
Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected are 12.2.3-12.3.12. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Framework. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Applications Framework, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Applications Framework accessible data as well as unauthorized read access to a subset of Oracle Applications Framework accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).
0
Attacker Value
Unknown
CVE-2023-3574
Disclosure Date: July 10, 2023 (last updated February 25, 2025)
Improper Authorization in GitHub repository pimcore/customer-data-framework prior to 3.4.1.
0
Attacker Value
Unknown
CVE-2023-32030
Disclosure Date: June 14, 2023 (last updated January 11, 2025)
.NET and Visual Studio Denial of Service Vulnerability
0
Attacker Value
Unknown
CVE-2023-29331
Disclosure Date: June 14, 2023 (last updated February 25, 2025)
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
0
Attacker Value
Unknown
CVE-2023-29326
Disclosure Date: June 14, 2023 (last updated January 11, 2025)
.NET Framework Remote Code Execution Vulnerability
0