Show filters
1,431 Total Results
Displaying 221-230 of 1,431
Sort by:
Attacker Value
Unknown

CVE-2023-6903

Disclosure Date: December 17, 2023 (last updated February 25, 2025)
A vulnerability classified as critical has been found in Netentsec NS-ASG Application Security Gateway 6.3.1. This affects an unknown part of the file /admin/singlelogin.php?submit=1. The manipulation of the argument loginId leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-248265 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2023-6836

Disclosure Date: December 15, 2023 (last updated February 25, 2025)
Multiple WSO2 products have been identified as vulnerable due to an XML External Entity (XXE) attack abuses a widely available but rarely used feature of XML parsers to access sensitive information.
Attacker Value
Unknown

CVE-2023-4489

Disclosure Date: December 14, 2023 (last updated February 25, 2025)
The first S0 encryption key is generated with an uninitialized PRNG in Z/IP Gateway products running Silicon Labs Z/IP Gateway SDK v7.18.3 and earlier. This makes the first S0 key generated at startup predictable, potentially allowing network key prediction and unauthorized S0 network access.
Attacker Value
Unknown

CVE-2022-45362

Disclosure Date: December 07, 2023 (last updated February 25, 2025)
Server-Side Request Forgery (SSRF) vulnerability in Paytm Paytm Payment Gateway.This issue affects Paytm Payment Gateway: from n/a through 2.7.0.
Attacker Value
Unknown

CVE-2022-47531

Disclosure Date: December 05, 2023 (last updated December 12, 2023)
An issue was discovered in Ericsson Evolved Packet Gateway (EPG) versions 3.x before 3.25 and 2.x before 2.16, allows authenticated users to bypass system CLI and execute commands they are authorized to execute directly in the UNIX shell.
Attacker Value
Unknown

CVE-2023-5909

Disclosure Date: November 30, 2023 (last updated February 25, 2025)
KEPServerEX does not properly validate certificates from clients which may allow unauthenticated users to connect.
Attacker Value
Unknown

CVE-2023-5908

Disclosure Date: November 30, 2023 (last updated February 25, 2025)
KEPServerEX is vulnerable to a buffer overflow which may allow an attacker to crash the product being accessed or leak information.
Attacker Value
Unknown

CVE-2023-48737

Disclosure Date: November 30, 2023 (last updated February 25, 2025)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PT Trijaya Digital Grup TriPay Payment Gateway allows Stored XSS.This issue affects TriPay Payment Gateway: from n/a through 3.2.7.
Attacker Value
Unknown

CVE-2023-6248

Disclosure Date: November 21, 2023 (last updated February 25, 2025)
The Syrus4 IoT gateway utilizes an unsecured MQTT server to download and execute arbitrary commands, allowing a remote unauthenticated attacker to execute code on any Syrus4 device connected to the cloud service. The MQTT server also leaks the location, video and diagnostic data from each connected device. An attacker who knows the IP address of the server is able to connect and perform the following operations: * Get location data of the vehicle the device is connected to * Send CAN bus messages via the ECU module ( https://syrus.digitalcomtech.com/docs/ecu-1 https://syrus.digitalcomtech.com/docs/ecu-1 ) * Immobilize the vehicle via the safe-immobilizer module ( https://syrus.digitalcomtech.com/docs/system-tools#safe-immobilization https://syrus.digitalcomtech.com/docs/system-tools#safe-immobilization ) * Get live video through the connected video camera * Send audio messages to the driver ( https://syrus.digitalcomtech.com/docs/system-tools#apx-tts https://syrus.d…
Attacker Value
Unknown

CVE-2023-41442

Disclosure Date: November 15, 2023 (last updated February 25, 2025)
An issue in Kloudq Technologies Limited Tor Equip 1.0, Tor Loco Mini 1.0 through 3.1 allows a remote attacker to execute arbitrary code via a crafted request to the MQTT component.