Show filters
561 Total Results
Displaying 121-130 of 561
Sort by:
Attacker Value
Unknown

CVE-2023-27786

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the macinstring function.
Attacker Value
Unknown

CVE-2023-27785

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPreplay TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse endpoints function.
Attacker Value
Unknown

CVE-2023-27784

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPReplay v.4.4.3 allows a remote attacker to cause a denial of service via the read_hexstring function at the utils.c:309 endpoint.
Attacker Value
Unknown

CVE-2023-27783

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An issue found in TCPreplay tcprewrite v.4.4.3 allows a remote attacker to cause a denial of service via the tcpedit_dlt_cleanup function at plugins/dlt_plugins.c.
Attacker Value
Unknown

CVE-2023-23951

Disclosure Date: January 26, 2023 (last updated October 08, 2023)
Ability to enumerate the Oracle LDAP attributes for the current user by modifying the query used by the application
Attacker Value
Unknown

CVE-2023-23950

Disclosure Date: January 26, 2023 (last updated October 08, 2023)
User’s supplied input (usually a CRLF sequence) can be used to split a returning response into two responses.
Attacker Value
Unknown

CVE-2023-23949

Disclosure Date: January 26, 2023 (last updated October 08, 2023)
An authenticated user can supply malicious HTML and JavaScript code that will be executed in the client browser.
Attacker Value
Unknown

CVE-2022-25631

Disclosure Date: January 20, 2023 (last updated October 08, 2023)
Symantec Endpoint Protection, prior to 14.3 RU6 (14.3.9210.6000), may be susceptible to a Elevation of Privilege vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated
Attacker Value
Unknown

CVE-2022-25628

Disclosure Date: December 16, 2022 (last updated October 08, 2023)
An authenticated user can perform XML eXternal Entity injection in Management Console in Symantec Identity Manager 14.4
Attacker Value
Unknown

CVE-2022-25627

Disclosure Date: December 16, 2022 (last updated October 08, 2023)
An authenticated administrator who has physical access to the environment can carry out Remote Command Execution on Management Console in Symantec Identity Manager 14.4