Show filters
440 Total Results
Displaying 141-150 of 440
Sort by:
Attacker Value
Unknown

CVE-2023-6651

Disclosure Date: December 10, 2023 (last updated December 13, 2023)
A vulnerability was found in code-projects Matrimonial Site 1.0. It has been classified as critical. Affected is an unknown function of the file /auth/auth.php?user=1. The manipulation of the argument username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-247344.
Attacker Value
Unknown

CVE-2023-34320

Disclosure Date: December 08, 2023 (last updated December 14, 2023)
Cortex-A77 cores (r0p0 and r1p0) are affected by erratum 1508412 where software, under certain circumstances, could deadlock a core due to the execution of either a load to device or non-cacheable memory, and either a store exclusive or register read of the Physical Address Register (PAR_EL1) in close proximity.
Attacker Value
Unknown

CVE-2023-32804

Disclosure Date: December 04, 2023 (last updated December 08, 2023)
Out-of-bounds Write vulnerability in Arm Ltd Midgard GPU Userspace Driver, Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd Valhall GPU Userspace Driver, Arm Ltd Arm 5th Gen GPU Architecture Userspace Driver allows a local non-privileged user to write a constant pattern to a limited amount of memory not allocated by the user space driver.This issue affects Midgard GPU Userspace Driver: from r0p0 through r32p0; Bifrost GPU Userspace Driver: from r0p0 through r44p0; Valhall GPU Userspace Driver: from r19p0 through r44p0; Arm 5th Gen GPU Architecture Userspace Driver: from r41p0 through r44p0.
Attacker Value
Unknown

CVE-2023-5427

Disclosure Date: December 01, 2023 (last updated February 14, 2025)
Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel Driver: from r44p0 through r45p0; Valhall GPU Kernel Driver: from r44p0 through r45p0; Arm 5th Gen GPU Architecture Kernel Driver: from r44p0 through r45p0.
Attacker Value
Unknown

CVE-2023-47811

Disclosure Date: November 22, 2023 (last updated November 29, 2023)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Suresh KUMAR Mukhiya Anywhere Flash Embed plugin <= 1.0.5 versions.
Attacker Value
Unknown

CVE-2023-6144

Disclosure Date: November 21, 2023 (last updated November 30, 2023)
Dev blog v1.0 allows to exploit an account takeover through the "user" cookie. With this, an attacker can access any user's session just by knowing their username.
Attacker Value
Unknown

CVE-2023-6142

Disclosure Date: November 21, 2023 (last updated November 30, 2023)
Dev blog v1.0 allows to exploit an XSS through an unrestricted file upload, together with a bad entropy of filenames. With this an attacker can upload a malicious HTML file, then guess the filename of the uploaded file and send it to a potential victim.
Attacker Value
Unknown

CVE-2023-4295

Disclosure Date: November 07, 2023 (last updated February 14, 2025)
A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.
Attacker Value
Unknown

CVE-2023-4272

Disclosure Date: November 07, 2023 (last updated November 15, 2023)
A local non-privileged user can make GPU processing operations that expose sensitive data from previously freed memory.
Attacker Value
Unknown

CVE-2023-3889

Disclosure Date: November 07, 2023 (last updated November 15, 2023)
A local non-privileged user can make improper GPU memory processing operations. If the operations are carefully prepared, then they could be used to gain access to already freed memory.