Show filters
645 Total Results
Displaying 151-160 of 645
Sort by:
Attacker Value
Unknown

CVE-2023-28565

Disclosure Date: September 05, 2023 (last updated February 25, 2025)
Memory corruption in WLAN HAL while handling command streams through WMI interfaces.
Attacker Value
Unknown

CVE-2023-28564

Disclosure Date: September 05, 2023 (last updated February 25, 2025)
Memory corruption in WLAN HAL while passing command parameters through WMI interfaces.
Attacker Value
Unknown

CVE-2023-28559

Disclosure Date: September 05, 2023 (last updated February 25, 2025)
Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.
Attacker Value
Unknown

CVE-2020-19952

Disclosure Date: August 11, 2023 (last updated February 25, 2025)
Cross Site Scripting (XSS) vulnerability in Rendering Engine in jbt Markdown Editor thru commit 2252418c27dffbb35147acd8ed324822b8919477, allows remote attackers to execute arbirary code via crafted payload or opening malicious .md file.
Attacker Value
Unknown

CVE-2023-2626

Disclosure Date: July 25, 2023 (last updated February 25, 2025)
There exists an authentication bypass vulnerability in OpenThread border router devices and implementations. This issue allows unauthenticated nodes to craft radio frames using “Key ID Mode 2”: a special mode using a static encryption key to bypass security checks, resulting in arbitrary IP packets being allowed on the Thread network. This provides a pathway for an attacker to send/receive arbitrary IPv6 packets to devices on the LAN, potentially exploiting them if they lack additional authentication or contain any network vulnerabilities that would normally be mitigated by the home router’s NAT firewall. Effected devices have been mitigated through an automatic update beyond the affected range.
Attacker Value
Unknown

CVE-2023-22667

Disclosure Date: July 04, 2023 (last updated February 25, 2025)
Memory Corruption in Audio while allocating the ion buffer during the music playback.
Attacker Value
Unknown

CVE-2023-22387

Disclosure Date: July 04, 2023 (last updated February 25, 2025)
Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.
Attacker Value
Unknown

CVE-2023-2625

Disclosure Date: June 28, 2023 (last updated February 25, 2025)
A vulnerability exists that can be exploited by an authenticated client that is connected to the same network segment as the CoreTec 4, having any level of access VIEWER to ADMIN. To exploit the vulnerability the attacker can inject shell commands through a particular field of the web user interface that will be executed by the system.
Attacker Value
Unknown

CVE-2023-3140

Disclosure Date: June 07, 2023 (last updated February 25, 2025)
Missing HTTP headers (X-Frame-Options, Content-Security-Policy) in KNIME Business Hub before 1.4.0 has left users vulnerable to click jacking. Clickjacking is an attack that occurs when an attacker uses a transparent iframe in a window to trick a user into clicking on an actionable item, such as a button or link, to another server in which they have an identical webpage. The attacker essentially hijacks the user activity intended for the original server and sends them to the other server.
Attacker Value
Unknown

CVE-2023-2541

Disclosure Date: June 07, 2023 (last updated February 25, 2025)
The Web Frontend of KNIME Business Hub before 1.4.0 allows an unauthenticated remote attacker to access internals about the application such as versions, host names, or IP addresses. No personal information or application data was exposed.