Show filters
1,194 Total Results
Displaying 181-190 of 1,194
Sort by:
Attacker Value
Unknown
CVE-2023-29579
Disclosure Date: April 24, 2023 (last updated February 24, 2025)
yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the component yasm/yasm+0x43b466 in vsprintf. Note: This has been disputed by third parties who argue this is a bug and not a security issue because yasm is a standalone program not designed to run untrusted code.
0
Attacker Value
Unknown
CVE-2022-40532
Disclosure Date: April 13, 2023 (last updated February 24, 2025)
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
0
Attacker Value
Unknown
CVE-2023-29581
Disclosure Date: April 12, 2023 (last updated April 11, 2024)
yasm 1.3.0.55.g101bc has a segmentation violation in the function delete_Token at modules/preprocs/nasm/nasm-pp.c. NOTE: although a libyasm application could become unavailable if this were exploited, the vendor's position is that there is no security relevance because there is either supposed to be input validation before data reaches libyasm, or a sandbox in which the application runs.
0
Attacker Value
Unknown
CVE-2023-29580
Disclosure Date: April 12, 2023 (last updated February 24, 2025)
yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the component yasm_expr_create at /libyasm/expr.c.
0
Attacker Value
Unknown
CVE-2023-28808
Disclosure Date: April 11, 2023 (last updated February 24, 2025)
Some Hikvision Hybrid SAN/Cluster Storage products have an access control vulnerability which can be used to obtain the admin permission. The attacker can exploit the vulnerability by sending crafted messages to the affected devices.
0
Attacker Value
Unknown
CVE-2023-29110
Disclosure Date: April 11, 2023 (last updated February 24, 2025)
The SAP Application Interface (Message Dashboard) - versions AIF 703, AIFX 702, S4CORE 100, 101, SAP_BASIS 755, 756, SAP_ABA 75C, 75D, 75E, application allows the usage HTML tags. An authorized attacker can use some of the basic HTML codes such as heading, basic formatting and lists, then an attacker can inject images from the foreign domains. After successful exploitations, an attacker can cause limited impact on the confidentiality and integrity of the application.
0
Attacker Value
Unknown
CVE-2023-29109
Disclosure Date: April 11, 2023 (last updated February 24, 2025)
The SAP Application Interface Framework (Message Dashboard) - versions AIF 703, AIFX 702, S4CORE 101, SAP_BASIS 755, 756, SAP_ABA 75C, 75D, 75E, application allows an Excel formula injection. An authorized attacker can inject arbitrary Excel formulas into fields like the Tooltip of the Custom Hints List. Once the victim opens the downloaded Excel document, the formula will be executed. As a result, an attacker can cause limited impact on the confidentiality and integrity of the application.
0
Attacker Value
Unknown
CVE-2023-26822
Disclosure Date: April 01, 2023 (last updated February 24, 2025)
D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at soapcgi.main.
0
Attacker Value
Unknown
CVE-2022-33213
Disclosure Date: March 10, 2023 (last updated February 24, 2025)
Memory corruption in modem due to buffer overflow while processing a PPP packet
0
Attacker Value
Unknown
CVE-2022-25705
Disclosure Date: March 10, 2023 (last updated February 24, 2025)
Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response
0