Show filters
819 Total Results
Displaying 121-130 of 819
Sort by:
Attacker Value
Unknown

CVE-2023-35699

Disclosure Date: July 10, 2023 (last updated February 25, 2025)
Cleartext Storage on Disk in the SICK ICR890-4 could allow an unauthenticated attacker with local access to the device to disclose sensitive information by accessing a SD card.
Attacker Value
Unknown

CVE-2023-35698

Disclosure Date: July 10, 2023 (last updated February 25, 2025)
Observable Response Discrepancy in the SICK ICR890-4 could allow a remote attacker to identify valid usernames for the FTP server from the response given during a failed login attempt.
Attacker Value
Unknown

CVE-2023-35697

Disclosure Date: July 10, 2023 (last updated February 25, 2025)
Improper Restriction of Excessive Authentication Attempts in the SICK ICR890-4 could allow a remote attacker to brute-force user credentials.
Attacker Value
Unknown

CVE-2023-35696

Disclosure Date: July 10, 2023 (last updated February 25, 2025)
Unauthenticated endpoints in the SICK ICR890-4 could allow an unauthenticated remote attacker to retrieve sensitive information about the device via HTTP requests.
Attacker Value
Unknown

CVE-2023-26299

Disclosure Date: June 30, 2023 (last updated February 25, 2025)
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS), which might allow arbitrary code execution. AMI has released updates to mitigate the potential vulnerability.
Attacker Value
Unknown

CVE-2023-35798

Disclosure Date: June 27, 2023 (last updated February 25, 2025)
Input Validation vulnerability in Apache Software Foundation Apache Airflow ODBC Provider, Apache Software Foundation Apache Airflow MSSQL Provider.This vulnerability is considered low since it requires DAG code to use `get_sqlalchemy_connection` and someone with access to connection resources specifically updating the connection to exploit it. This issue affects Apache Airflow ODBC Provider: before 4.0.0; Apache Airflow MSSQL Provider: before 3.4.1. It is recommended to upgrade to a version that is not affected
Attacker Value
Unknown

CVE-2022-31646

Disclosure Date: June 14, 2023 (last updated February 25, 2025)
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Attacker Value
Unknown

CVE-2022-31645

Disclosure Date: June 14, 2023 (last updated February 25, 2025)
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Attacker Value
Unknown

CVE-2022-31644

Disclosure Date: June 14, 2023 (last updated February 25, 2025)
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.
Attacker Value
Unknown

CVE-2022-31642

Disclosure Date: June 14, 2023 (last updated February 25, 2025)
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.