Show filters
19,893 Total Results
Displaying 301-310 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown
CVE-2024-30299
Disclosure Date: June 13, 2024 (last updated February 26, 2025)
Adobe Framemaker Publishing Server versions 2020.3, 2022.2 and earlier are affected by an Improper Authentication vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain unauthorized access or elevated privileges within the application. Exploitation of this issue does not require user interaction.
1
Attacker Value
Unknown
CVE-2024-30044
Disclosure Date: May 14, 2024 (last updated February 26, 2025)
Microsoft SharePoint Server Remote Code Execution Vulnerability
1
Attacker Value
Unknown
CVE-2024-33006
Disclosure Date: May 14, 2024 (last updated February 26, 2025)
An unauthenticated attacker can upload a malicious file to the server which when accessed by a victim can allow an attacker to completely compromise system.
1
Attacker Value
Unknown
CVE-2023-51444
Disclosure Date: March 20, 2024 (last updated February 26, 2025)
GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. An arbitrary file upload vulnerability exists in versions prior to 2.23.4 and 2.24.1 that enables an authenticated administrator with permissions to modify coverage stores through the REST Coverage Store API to upload arbitrary file contents to arbitrary file locations which can lead to remote code execution. Coverage stores that are configured using relative paths use a GeoServer Resource implementation that has validation to prevent path traversal but coverage stores that are configured using absolute paths use a different Resource implementation that does not prevent path traversal. This vulnerability can lead to executing arbitrary code. An administrator with limited privileges could also potentially exploit this to overwrite GeoServer security files and obtain full administrator privileges. Versions 2.23.4 and 2.24.1 contain a fix for this issue.
1
Attacker Value
Unknown
CVE-2024-1800
Disclosure Date: March 20, 2024 (last updated February 26, 2025)
In Progress® Telerik® Report Server versions prior to 2024 Q1 (10.0.24.130), a remote code execution attack is possible through an insecure deserialization vulnerability.
1
Attacker Value
Unknown
CVE-2024-26198
Disclosure Date: March 12, 2024 (last updated February 26, 2025)
Microsoft Exchange Server Remote Code Execution Vulnerability
1
Attacker Value
Unknown
CVE-2023-50387
Disclosure Date: February 14, 2024 (last updated February 26, 2025)
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue. One of the concerns is that, when there is a zone with many DNSKEY and RRSIG records, the protocol specification implies that an algorithm must evaluate all combinations of DNSKEY and RRSIG records.
1
Attacker Value
Unknown
CVE-2024-21412
Disclosure Date: February 13, 2024 (last updated February 26, 2025)
Internet Shortcut Files Security Feature Bypass Vulnerability
1
Attacker Value
Unknown
CVE-2024-21351
Disclosure Date: February 13, 2024 (last updated February 26, 2025)
Windows SmartScreen Security Feature Bypass Vulnerability
1
Attacker Value
Unknown
CVE-2024-21338
Disclosure Date: February 13, 2024 (last updated February 26, 2025)
Windows Kernel Elevation of Privilege Vulnerability
1