Show filters
1,987 Total Results
Displaying 211-220 of 1,987
Sort by:
Attacker Value
Unknown

CVE-2023-49125

Disclosure Date: February 13, 2024 (last updated October 19, 2024)
A vulnerability has been identified in Parasolid V35.0 (All versions < V35.0.263), Parasolid V35.1 (All versions < V35.1.252), Parasolid V36.0 (All versions < V36.0.198), Solid Edge SE2023 (All versions < V223.0 Update 11), Solid Edge SE2024 (All versions < V224.0 Update 3). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted files containing XT format. This could allow an attacker to execute code in the context of the current process.
Attacker Value
Unknown

CVE-2024-23831

Disclosure Date: February 02, 2024 (last updated February 10, 2024)
LedgerSMB is a free web-based double-entry accounting system. When a LedgerSMB database administrator has an active session in /setup.pl, an attacker can trick the admin into clicking on a link which automatically submits a request to setup.pl without the admin's consent. This request can be used to create a new user account with full application (/login.pl) privileges, leading to privilege escalation. The vulnerability is patched in versions 1.10.30 and 1.11.9.
Attacker Value
Unknown

CVE-2024-21399

Disclosure Date: February 02, 2024 (last updated January 12, 2025)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2023-5390

Disclosure Date: January 31, 2024 (last updated July 09, 2024)
An attacker could potentially exploit this vulnerability, leading to files being read from the Honeywell Experion ControlEdge VirtualUOC and ControlEdge UOC. This exploit could be used to read files from the controller that may expose limited information from the device. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning.
Attacker Value
Unknown

CVE-2023-5389

Disclosure Date: January 30, 2024 (last updated April 25, 2024)
An attacker could potentially exploit this vulnerability, leading to the ability to modify files on Honeywell Experion ControlEdge VirtualUOC and ControlEdge UOC . This exploit could be used to write a file that may result in unexpected behavior based on configuration changes or updating of files that could result in subsequent execution of a malicious application if triggered. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning. 
Attacker Value
Unknown

CVE-2023-1705

Disclosure Date: January 29, 2024 (last updated February 08, 2024)
Missing Authorization vulnerability in Forcepoint F|One SmartEdge Agent on Windows (bgAutoinstaller service modules) allows Privilege Escalation, Functionality Bypass.This issue affects F|One SmartEdge Agent: before 1.7.0.230330-554.
Attacker Value
Unknown

CVE-2024-21336

Disclosure Date: January 26, 2024 (last updated January 12, 2025)
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Attacker Value
Unknown

CVE-2024-21387

Disclosure Date: January 26, 2024 (last updated January 12, 2025)
Microsoft Edge for Android Spoofing Vulnerability
Attacker Value
Unknown

CVE-2024-21385

Disclosure Date: January 26, 2024 (last updated January 12, 2025)
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2024-21383

Disclosure Date: January 26, 2024 (last updated January 12, 2025)
Microsoft Edge (Chromium-based) Spoofing Vulnerability