Show filters
3,546 Total Results
Displaying 181-190 of 3,546
Sort by:
Attacker Value
Unknown
CVE-2023-49646
Disclosure Date: December 13, 2023 (last updated February 25, 2025)
Improper authentication in some Zoom clients before version 5.16.5 may allow an authenticated user to conduct a denial of service via network access.
0
Attacker Value
Unknown
CVE-2023-43586
Disclosure Date: December 13, 2023 (last updated February 25, 2025)
Path traversal in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows may allow an authenticated user to conduct an escalation of privilege via network access.
0
Attacker Value
Unknown
CVE-2023-6593
Disclosure Date: December 12, 2023 (last updated February 25, 2025)
Client side permission bypass in Devolutions Remote Desktop Manager 2023.3.4.0 and earlier on iOS allows an attacker that has access to the application to execute entries in a SQL data source without restriction.
0
Attacker Value
Unknown
CVE-2023-5869
Disclosure Date: December 10, 2023 (last updated February 25, 2025)
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.
0
Attacker Value
Unknown
CVE-2023-6288
Disclosure Date: December 06, 2023 (last updated February 25, 2025)
Code injection in Remote Desktop Manager 2023.3.9.3 and earlier on macOS allows an attacker to execute code via the DYLIB_INSERT_LIBRARIES environment variable.
0
Attacker Value
Unknown
CVE-2023-49314
Disclosure Date: November 28, 2023 (last updated February 25, 2025)
Asana Desktop 2.1.0 on macOS allows code injection because of specific Electron Fuses. There is inadequate protection against code injection through settings such as RunAsNode and EnableNodeCliInspectArguments, and thus r3ggi/electroniz3r can be used to perform an attack.
0
Attacker Value
Unknown
CVE-2023-29069
Disclosure Date: November 22, 2023 (last updated February 25, 2025)
A maliciously crafted DLL file can be forced to install onto a non-default location, and attacker can overwrite parts of the product with malicious DLLs. These files may then have elevated privileges leading to a Privilege Escalation vulnerability.
0
Attacker Value
Unknown
CVE-2023-43588
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access.
0
Attacker Value
Unknown
CVE-2023-43582
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access.
0
Attacker Value
Unknown
CVE-2023-39206
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
0