Show filters
3,546 Total Results
Displaying 221-230 of 3,546
Sort by:
Attacker Value
Unknown

CVE-2023-28075

Disclosure Date: August 16, 2023 (last updated February 25, 2025)
Dell BIOS contain a Time-of-check Time-of-use vulnerability in BIOS. A local authenticated malicious user with physical access to the system could potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI in order to gain arbitrary code execution on the system.
Attacker Value
Unknown

CVE-2023-32547

Disclosure Date: August 11, 2023 (last updated February 25, 2025)
Incorrect default permissions in the MAVinci Desktop Software for Intel(R) Falcon 8+ before version 6.2 may allow authenticated user to potentially enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2023-28129

Disclosure Date: August 10, 2023 (last updated October 18, 2023)
DSM 2022.2 SU2 and all prior versions allows a local low privileged account to execute arbitrary OS commands as the DSM software installation user.
Attacker Value
Unknown

CVE-2023-39213

Disclosure Date: August 08, 2023 (last updated February 25, 2025)
Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network access.
Attacker Value
Unknown

CVE-2023-39218

Disclosure Date: August 08, 2023 (last updated February 25, 2025)
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a privileged user to enable information disclosure via network access.
Attacker Value
Unknown

CVE-2023-36535

Disclosure Date: August 08, 2023 (last updated February 25, 2025)
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access.
Attacker Value
Unknown

CVE-2023-36532

Disclosure Date: August 08, 2023 (last updated February 25, 2025)
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access.
Attacker Value
Unknown

CVE-2023-22037

Disclosure Date: July 18, 2023 (last updated October 08, 2023)
Vulnerability in the Oracle Web Applications Desktop Integrator product of Oracle E-Business Suite (component: MS Excel Specific). Supported versions that are affected are 12.2.3-12.2.12. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Web Applications Desktop Integrator. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Web Applications Desktop Integrator, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Web Applications Desktop Integrator accessible data as well as unauthorized read access to a subset of Oracle Web Applications Desktop Integrator accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Web Applications Desktop Integrator. CVSS 3.1 Base Score 6.5…
Attacker Value
Unknown

CVE-2023-26299

Disclosure Date: June 30, 2023 (last updated February 25, 2025)
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI UEFI Firmware (system BIOS), which might allow arbitrary code execution. AMI has released updates to mitigate the potential vulnerability.
Attacker Value
Unknown

CVE-2022-31646

Disclosure Date: June 14, 2023 (last updated February 25, 2025)
Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation of privilege, denial of service, and information disclosure.