Show filters
198 Total Results
Displaying 31-40 of 198
Sort by:
Attacker Value
Unknown

CVE-2023-32124

Disclosure Date: October 12, 2023 (last updated October 17, 2023)
Cross-Site Request Forgery (CSRF) vulnerability in Arul Prasad J Publish Confirm Message plugin <= 1.3.1 versions.
Attacker Value
Unknown

CVE-2023-41627

Disclosure Date: September 01, 2023 (last updated October 08, 2023)
O-RAN Software Community ric-plt-lib-rmr v4.9.0 does not validate the source of the routing tables it receives, potentially allowing attackers to send forged routing tables to the device.
Attacker Value
Unknown

CVE-2023-40998

Disclosure Date: August 28, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerability in O-RAN Software Community ric-plt-lib-rmr v.4.9.0 allows a remote attacker to cause a denial of service via the packet size component.
Attacker Value
Unknown

CVE-2023-40997

Disclosure Date: August 28, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerability in O-RAN Software Community ric-plt-lib-rmr v.4.9.0 allows a remote attacker to cause a denial of service via a crafted packet.
Attacker Value
Unknown

CVE-2023-37491

Disclosure Date: August 08, 2023 (last updated September 28, 2024)
The ACL (Access Control List) of SAP Message Server - versions KERNEL 7.22, KERNEL 7.53, KERNEL 7.54, KERNEL 7.77, RNL64UC 7.22, RNL64UC 7.22EXT, RNL64UC 7.53, KRNL64NUC 7.22, KRNL64NUC 7.22EXT, can be bypassed in certain conditions, which may enable an authenticated malicious user to enter the network of the SAP systems served by the attacked SAP Message server. This may lead to unauthorized read and write of data as well as rendering the system unavailable.
Attacker Value
Unknown

CVE-2023-24956

Disclosure Date: February 01, 2023 (last updated October 08, 2023)
Forget Heart Message Box v1.1 was discovered to contain a SQL injection vulnerability via the name parameter at /cha.php.
Attacker Value
Unknown

CVE-2023-24241

Disclosure Date: February 01, 2023 (last updated October 08, 2023)
Forget Heart Message Box v1.1 was discovered to contain a SQL injection vulnerability via the name parameter at /admin/loginpost.php.
Attacker Value
Unknown

CVE-2022-43543

Disclosure Date: December 21, 2022 (last updated February 24, 2025)
KDDI +Message App, NTT DOCOMO +Message App, and SoftBank +Message App contain a vulnerability caused by improper handling of Unicode control characters. +Message App displays text unprocessed, even when control characters are contained, and the text is shown based on Unicode control character's specifications. Therefore, a crafted text may display misleading web links. As a result, a spoofed URL may be displayed and phishing attacks may be conducted. Affected products and versions are as follows: KDDI +Message App for Android prior to version 3.9.2 and +Message App for iOS prior to version 3.9.4, NTT DOCOMO +Message App for Android prior to version 54.49.0500 and +Message App for iOS prior to version 3.9.4, and SoftBank +Message App for Android prior to version 12.9.5 and +Message App for iOS prior to version 3.9.4
Attacker Value
Unknown

CVE-2022-41719

Disclosure Date: November 10, 2022 (last updated December 22, 2024)
Unmarshal can panic on some inputs, possibly allowing for denial of service attacks.
Attacker Value
Unknown

CVE-2022-40216

Disclosure Date: November 09, 2022 (last updated February 24, 2025)
Auth. (subscriber+) Messaging Block Bypass vulnerability in Better Messages plugin <= 1.9.10.69 on WordPress.