Show filters
1,987 Total Results
Displaying 201-210 of 1,987
Sort by:
Attacker Value
Unknown

CVE-2024-0162

Disclosure Date: March 13, 2024 (last updated February 05, 2025)
Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileged attacker could potentially exploit this vulnerability leading to out-of-bound read/writes to SMRAM.
Attacker Value
Unknown

CVE-2024-0154

Disclosure Date: March 13, 2024 (last updated February 01, 2025)
Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper parameter initialization vulnerability. A local low privileged attacker could potentially exploit this vulnerability to read the contents of non-SMM stack memory.
Attacker Value
Unknown

CVE-2024-0161

Disclosure Date: March 13, 2024 (last updated February 05, 2025)
Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileged attacker could potentially exploit this vulnerability leading to arbitrary writes to SMRAM.
Attacker Value
Unknown

CVE-2024-26167

Disclosure Date: March 07, 2024 (last updated January 12, 2025)
Microsoft Edge for Android Spoofing Vulnerability
Attacker Value
Unknown

CVE-2024-27889

Disclosure Date: March 04, 2024 (last updated March 05, 2024)
Multiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW). A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.
0
Attacker Value
Unknown

CVE-2023-6132

Disclosure Date: February 29, 2024 (last updated March 01, 2024)
The vulnerability, if exploited, could allow a malicious entity with access to the file system to achieve arbitrary code execution and privilege escalation by tricking AVEVA Edge to load an unsafe DLL.
0
Attacker Value
Unknown

CVE-2024-1403

Disclosure Date: February 27, 2024 (last updated February 12, 2025)
In OpenEdge Authentication Gateway and AdminServer prior to 11.7.19, 12.2.14, 12.8.1 on all platforms supported by the OpenEdge product, an authentication bypass vulnerability has been identified.  The vulnerability is a bypass to authentication based on a failure to properly handle username and password. Certain unexpected content passed into the credentials can lead to unauthorized access without proper authentication.  
Attacker Value
Unknown

CVE-2024-26192

Disclosure Date: February 23, 2024 (last updated January 12, 2025)
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
Attacker Value
Unknown

CVE-2024-26188

Disclosure Date: February 23, 2024 (last updated January 12, 2025)
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Attacker Value
Unknown

CVE-2024-20943

Disclosure Date: February 17, 2024 (last updated March 13, 2024)
Vulnerability in the Oracle Knowledge Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Knowledge Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Knowledge Management, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Knowledge Management accessible data as well as unauthorized read access to a subset of Oracle Knowledge Management accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).