Show filters
744 Total Results
Displaying 161-170 of 744
Sort by:
Attacker Value
Unknown

CVE-2018-5478

Disclosure Date: September 21, 2023 (last updated February 25, 2025)
Contao 3.x before 3.5.32 allows XSS via the unsubscribe module in the frontend newsletter extension.
Attacker Value
Unknown

CVE-2023-3935

Disclosure Date: September 13, 2023 (last updated February 25, 2025)
A heap buffer overflow vulnerability in Wibu CodeMeter Runtime network service up to version 7.60b allows an unauthenticated, remote attacker to achieve RCE and gain full access of the host system.
Attacker Value
Unknown

CVE-2023-4872

Disclosure Date: September 10, 2023 (last updated February 25, 2025)
A vulnerability, which was classified as critical, has been found in SourceCodester Contact Manager App 1.0. This issue affects some unknown processing of the file add.php. The manipulation of the argument contact/contactName leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-239357 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2023-4871

Disclosure Date: September 10, 2023 (last updated February 25, 2025)
A vulnerability classified as critical was found in SourceCodester Contact Manager App 1.0. This vulnerability affects unknown code of the file delete.php. The manipulation of the argument contact/contactName leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-239356.
Attacker Value
Unknown

CVE-2023-4870

Disclosure Date: September 10, 2023 (last updated February 25, 2025)
A vulnerability classified as problematic has been found in SourceCodester Contact Manager App 1.0. This affects an unknown part of the file index.php of the component Contact Information Handler. The manipulation of the argument contactID with the input "><sCrIpT>alert(1)</ScRiPt> leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-239355.
Attacker Value
Unknown

CVE-2023-4869

Disclosure Date: September 10, 2023 (last updated February 25, 2025)
A vulnerability was found in SourceCodester Contact Manager App 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file update.php. The manipulation leads to cross-site request forgery. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-239354 is the identifier assigned to this vulnerability.
Attacker Value
Unknown

CVE-2023-4868

Disclosure Date: September 10, 2023 (last updated February 25, 2025)
A vulnerability was found in SourceCodester Contact Manager App 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file add.php. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-239353 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2020-25887

Disclosure Date: August 22, 2023 (last updated February 25, 2025)
Buffer overflow in mg_resolve_from_hosts_file in Mongoose 6.18, when reading from a crafted hosts file.
Attacker Value
Unknown

CVE-2023-37864

Disclosure Date: August 09, 2023 (last updated February 25, 2025)
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges may use an a special SNMP request to gain full access to the device.
Attacker Value
Unknown

CVE-2023-37863

Disclosure Date: August 09, 2023 (last updated February 25, 2025)
In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges may use an a special SNMP request to gain full access to the device.