Show filters
423 Total Results
Displaying 251-260 of 423
Sort by:
Attacker Value
Unknown

CVE-2023-46217

Disclosure Date: December 19, 2023 (last updated February 25, 2025)
An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.
Attacker Value
Unknown

CVE-2023-46216

Disclosure Date: December 19, 2023 (last updated February 25, 2025)
An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.
Attacker Value
Unknown

CVE-2023-41727

Disclosure Date: December 19, 2023 (last updated February 25, 2025)
An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution.
Attacker Value
Unknown

CVE-2021-22962

Disclosure Date: December 19, 2023 (last updated December 29, 2023)
An attacker can send a specially crafted request which could lead to leakage of sensitive data or potentially a resource-based DoS attack.
Attacker Value
Unknown

CVE-2023-39340

Disclosure Date: December 16, 2023 (last updated March 27, 2024)
A vulnerability exists on all versions of Ivanti Connect Secure below 22.6R2 where an attacker can send a specific request which may lead to Denial of Service (DoS) of the appliance.
Attacker Value
Unknown

CVE-2023-41720

Disclosure Date: December 14, 2023 (last updated March 27, 2024)
A vulnerability exists on all versions of Ivanti Connect Secure below 22.6R2 where an attacker with a foothold on an Ivanti Connect Secure (ICS) appliance can escalate their privileges by exploiting a vulnerable installed application. This vulnerability allows the attacker to gain elevated execution privileges on the affected system.
Attacker Value
Unknown

CVE-2023-41719

Disclosure Date: December 14, 2023 (last updated March 27, 2024)
A vulnerability exists on all versions of Ivanti Connect Secure below 22.6R2 where an attacker impersonating an administrator may craft a specific web request which may lead to remote code execution.
Attacker Value
Unknown

CVE-2023-41718

Disclosure Date: November 15, 2023 (last updated February 25, 2025)
When a particular process flow is initiated, an attacker may be able to gain unauthorized elevated privileges on the affected system when having control over a specific file.
Attacker Value
Unknown

CVE-2023-39337

Disclosure Date: November 15, 2023 (last updated February 25, 2025)
A security vulnerability in EPMM Versions 11.10, 11.9 and 11.8 older allows a threat actor with knowledge of an enrolled device identifier to access and extract sensitive information, including device and environment configuration details, as well as secrets. This vulnerability poses a serious security risk, potentially exposing confidential data and system integrity.
Attacker Value
Unknown

CVE-2023-39335

Disclosure Date: November 15, 2023 (last updated February 25, 2025)
A security vulnerability has been identified in EPMM Versions 11.10, 11.9 and 11.8 and older allowing an unauthenticated threat actor to impersonate any existing user during the device enrollment process. This issue poses a significant security risk, as it enables unauthorized access and potential misuse of user accounts and resources.