Show filters
117 Total Results
Displaying 31-40 of 117
Sort by:
Attacker Value
Unknown
CVE-2023-28823
Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow an authenticated user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2023-27509
Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Improper access control in some Intel(R) ISPC software installers before version 1.19.0 may allow an authenticated user to potentially enable escalation of privileges via local access.
0
Attacker Value
Unknown
CVE-2023-27391
Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Improper access control in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow a privileged user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2023-27908
Disclosure Date: June 23, 2023 (last updated October 08, 2023)
A maliciously crafted DLL file can be forced to write beyond allocated boundaries in the Autodesk installer when parsing the DLL files and could lead to a Privilege Escalation vulnerability.
0
Attacker Value
Unknown
CVE-2023-32274
Disclosure Date: June 20, 2023 (last updated October 08, 2023)
Enphase Installer Toolkit versions 3.27.0 has hard coded credentials embedded in binary code in the Android application. An attacker can exploit this and gain access to sensitive information.
0
Attacker Value
Unknown
CVE-2019-16283
Disclosure Date: June 09, 2023 (last updated October 08, 2023)
A potential security vulnerability has been identified with a version of the HP Softpaq installer that can lead to arbitrary code execution.
0
Attacker Value
Unknown
CVE-2023-27529
Disclosure Date: May 25, 2023 (last updated October 08, 2023)
Wacom Tablet Driver installer prior to 6.4.2-1 (for macOS) contains an improper link resolution before file access vulnerability. When a user is tricked to execute a small malicious script before executing the affected version of the installer, arbitrary code may be executed with the root privilege.
0
Attacker Value
Unknown
CVE-2023-22355
Disclosure Date: May 10, 2023 (last updated October 08, 2023)
Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.0.251 may allow an authenticated user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2022-34755
Disclosure Date: April 18, 2023 (last updated October 08, 2023)
A CWE-427 - Uncontrolled Search Path Element vulnerability exists that could allow an attacker
with a local privileged account to place a specially crafted file on the target machine, which may
give the attacker the ability to execute arbitrary code during the installation process initiated by a
valid user. Affected Products: Easergy Builder Installer (1.7.23 and prior)
0
Attacker Value
Unknown
CVE-2021-3684
Disclosure Date: March 24, 2023 (last updated October 08, 2023)
A vulnerability was found in OpenShift Assisted Installer. During generation of the Discovery ISO, image pull secrets were leaked as plaintext in the installation logs. An authenticated user could exploit this by re-using the image pull secret to pull container images from the registry as the associated user.
0