Show filters
774 Total Results
Displaying 121-130 of 774
Sort by:
Attacker Value
Unknown

CVE-2023-36788

Disclosure Date: September 12, 2023 (last updated January 11, 2025)
.NET Framework Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-40571

Disclosure Date: August 25, 2023 (last updated October 08, 2023)
weblogic-framework is a tool for detecting weblogic vulnerabilities. Versions 0.2.3 and prior do not verify the returned data packets, and there is a deserialization vulnerability which may lead to remote code execution. When weblogic-framework gets the command echo, it directly deserializes the data returned by the server without verifying it. At the same time, the classloader loads a lot of deserialization calls. In this case, the malicious serialized data returned by the server will cause remote code execution. Version 0.2.4 contains a patch for this issue.
Attacker Value
Unknown

CVE-2023-36899

Disclosure Date: August 08, 2023 (last updated February 25, 2025)
ASP.NET Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2023-36873

Disclosure Date: August 08, 2023 (last updated February 25, 2025)
.NET Framework Spoofing Vulnerability
Attacker Value
Unknown

CVE-2023-4145

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/customer-data-framework prior to 3.4.2.
Attacker Value
Unknown

CVE-2023-22042

Disclosure Date: July 18, 2023 (last updated October 08, 2023)
Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected are 12.2.3-12.3.12. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Framework. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Applications Framework, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Applications Framework accessible data as well as unauthorized read access to a subset of Oracle Applications Framework accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).
Attacker Value
Unknown

CVE-2023-3574

Disclosure Date: July 10, 2023 (last updated February 25, 2025)
Improper Authorization in GitHub repository pimcore/customer-data-framework prior to 3.4.1.
Attacker Value
Unknown

CVE-2023-32030

Disclosure Date: June 14, 2023 (last updated January 11, 2025)
.NET and Visual Studio Denial of Service Vulnerability
Attacker Value
Unknown

CVE-2023-29331

Disclosure Date: June 14, 2023 (last updated February 25, 2025)
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
Attacker Value
Unknown

CVE-2023-29326

Disclosure Date: June 14, 2023 (last updated January 11, 2025)
.NET Framework Remote Code Execution Vulnerability