Show filters
538 Total Results
Displaying 141-150 of 538
Sort by:
Attacker Value
Unknown

CVE-2023-25267

Disclosure Date: March 15, 2023 (last updated February 24, 2025)
An issue was discovered in GFI Kerio Connect 9.4.1 patch 1 (fixed in 10.0.0). There is a stack-based Buffer Overflow in the webmail component's 2FASetup function via an authenticated request with a long primaryEMailAddress field to the webmail/api/jsonrpc URI.
Attacker Value
Unknown

CVE-2023-24282

Disclosure Date: March 08, 2023 (last updated February 24, 2025)
An arbitrary file upload vulnerability in Poly Trio 8800 7.2.2.1094 allows attackers to execute arbitrary code via a crafted ringtone file.
Attacker Value
Unknown

CVE-2023-0994

Disclosure Date: February 24, 2023 (last updated February 24, 2025)
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository francoisjacquet/rosariosis prior to 10.8.2.
Attacker Value
Unknown

CVE-2023-23459

Disclosure Date: February 15, 2023 (last updated February 24, 2025)
Priority Windows may allow Command Execution via SQL Injection using an unspecified method.
Attacker Value
Unknown

CVE-2023-23460

Disclosure Date: February 15, 2023 (last updated February 24, 2025)
Priority Web version 19.1.0.68, parameter manipulation on an unspecified end-point may allow authentication bypass.
Attacker Value
Unknown

CVE-2022-38111

Disclosure Date: February 15, 2023 (last updated February 24, 2025)
SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to SolarWinds Web Console to execute arbitrary commands.
Attacker Value
Unknown

CVE-2022-47503

Disclosure Date: February 15, 2023 (last updated February 24, 2025)
SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to SolarWinds Web Console to execute arbitrary commands.
Attacker Value
Unknown

CVE-2022-47504

Disclosure Date: February 15, 2023 (last updated February 24, 2025)
SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to SolarWinds Web Console to execute arbitrary commands.
Attacker Value
Unknown

CVE-2022-47507

Disclosure Date: February 15, 2023 (last updated February 24, 2025)
SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to SolarWinds Web Console to execute arbitrary commands.
Attacker Value
Unknown

CVE-2023-23836

Disclosure Date: February 15, 2023 (last updated February 24, 2025)
SolarWinds Platform version 2022.4.1 was found to be susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to the SolarWinds Web Console to execute arbitrary commands.