Show filters
386 Total Results
Displaying 21-30 of 386
Sort by:
Attacker Value
Unknown
CVE-2023-48674
Disclosure Date: March 01, 2024 (last updated February 01, 2025)
Dell Platform BIOS contains an Improper Null Termination vulnerability. A high privilege user with network access to the system could potentially send malicious data to the device in order to cause some services to cease to function.
0
Attacker Value
Unknown
CVE-2023-28063
Disclosure Date: February 06, 2024 (last updated February 15, 2024)
Dell BIOS contains a Signed to Unsigned Conversion Error vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to denial of service.
0
Attacker Value
Unknown
CVE-2023-50121
Disclosure Date: January 06, 2024 (last updated January 13, 2024)
Autel EVO NANO drone flight control firmware version 1.6.5 is vulnerable to denial of service (DoS).
0
Attacker Value
Unknown
CVE-2023-35867
Disclosure Date: December 18, 2023 (last updated December 23, 2023)
An improper handling of a malformed API answer packets to API clients in Bosch BT software products can allow an unauthenticated attacker to cause a Denial of Service (DoS) situation. To exploit this vulnerability an attacker has to replace an existing API server e.g. through Man-in-the-Middle attacks.
0
Attacker Value
Unknown
CVE-2023-46156
Disclosure Date: December 12, 2023 (last updated September 10, 2024)
Affected devices improperly handle specially crafted packets sent to port 102/tcp.
This could allow an attacker to create a denial of service condition. A restart is needed to restore
normal operations.
0
Attacker Value
Unknown
CVE-2023-49225
Disclosure Date: December 07, 2023 (last updated December 13, 2023)
A cross-site-scripting vulnerability exists in Ruckus Access Point products (ZoneDirector, SmartZone, and AP Solo). If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in the product. As for the affected products/models/versions, see the information provided by the vendor listed under [References] section or the list under [Product Status] section.
0
Attacker Value
Unknown
CVE-2023-20265
Disclosure Date: November 21, 2023 (last updated November 29, 2023)
A vulnerability in the web-based management interface of a small subset of Cisco IP Phones could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface on an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by persuading a user of an affected interface to view a page containing malicious HTML or script content. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information. To exploit this vulnerability, the attacker must have valid credentials to access the web-based management interface of the affected device.
0
Attacker Value
Unknown
CVE-2023-47335
Disclosure Date: November 16, 2023 (last updated November 30, 2023)
Insecure permissions in the setNFZEnable function of Autel Robotics EVO Nano drone v1.6.5 allows attackers to breach the geo-fence and fly into no-fly zones.
0
Attacker Value
Unknown
CVE-2023-45079
Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A memory leakage vulnerability was reported in the NvmramSmm SMM driver that may allow a local attacker with elevated privileges to write to NVRAM variables.
0
Attacker Value
Unknown
CVE-2023-45078
Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A memory leakage vulnerability was reported in the DustFilterAlertSmm SMM driver that may allow a local attacker with elevated privileges to write to NVRAM variables.
0