Show filters
3,723 Total Results
Displaying 191-200 of 3,723
Sort by:
Attacker Value
Unknown
CVE-2023-5869
Disclosure Date: December 10, 2023 (last updated February 25, 2025)
A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array value modification. This issue exists due to an integer overflow during array modification where a remote user can trigger the overflow by providing specially crafted data. This enables the execution of arbitrary code on the target system, allowing users to write arbitrary bytes to memory and extensively read the server's memory.
0
Attacker Value
Unknown
CVE-2023-5868
Disclosure Date: December 10, 2023 (last updated February 25, 2025)
A memory disclosure vulnerability was found in PostgreSQL that allows remote users to access sensitive information by exploiting certain aggregate function calls with 'unknown'-type arguments. Handling 'unknown'-type values from string literals without type designation can disclose bytes, potentially revealing notable and confidential information. This issue exists due to excessive data output in aggregate function calls, enabling remote users to read some portion of system memory.
0
Attacker Value
Unknown
CVE-2023-6606
Disclosure Date: December 08, 2023 (last updated February 25, 2025)
An out-of-bounds read vulnerability was found in smbCalcSize in fs/smb/client/netmisc.c in the Linux Kernel. This issue could allow a local attacker to crash the system or leak internal kernel information.
0
Attacker Value
Unknown
CVE-2023-5909
Disclosure Date: November 30, 2023 (last updated February 25, 2025)
KEPServerEX does not properly validate certificates from clients which may allow unauthenticated users to connect.
0
Attacker Value
Unknown
CVE-2023-5908
Disclosure Date: November 30, 2023 (last updated February 25, 2025)
KEPServerEX is vulnerable to a buffer overflow which may allow an attacker to crash the product being accessed or leak information.
0
Attacker Value
Unknown
CVE-2023-39246
Disclosure Date: November 16, 2023 (last updated February 25, 2025)
Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server version prior to 11.8.1 contain an Insecure Operation on Windows Junction Vulnerability during installation. A local malicious user could potentially exploit this vulnerability to create an arbitrary folder inside a restricted directory, leading to Privilege Escalation
0
Attacker Value
Unknown
CVE-2023-34982
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
This external control vulnerability, if exploited, could allow a local OS-authenticated user with standard privileges to delete files with System privilege on the machine where these products are installed, resulting in denial of service.
0
Attacker Value
Unknown
CVE-2023-33873
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
This privilege escalation vulnerability, if exploited, cloud allow a local OS-authenticated user with standard privileges to escalate to System privilege on the machine where these products are installed, resulting in complete compromise of the target machine.
0
Attacker Value
Unknown
CVE-2023-38177
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Microsoft SharePoint Server Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2023-1476
Disclosure Date: November 03, 2023 (last updated February 25, 2025)
A use-after-free flaw was found in the Linux kernel’s mm/mremap memory address space accounting source code. This issue occurs due to a race condition between rmap walk and mremap, allowing a local user to crash the system or potentially escalate their privileges on the system.
0