Show filters
1,987 Total Results
Displaying 391-400 of 1,987
Sort by:
Attacker Value
Unknown

CVE-2023-30986

Disclosure Date: May 09, 2023 (last updated February 24, 2025)
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 3), Solid Edge SE2023 (All versions < V223.0 Update 2). Affected applications contain a memory corruption vulnerability while parsing specially crafted STP files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19561)
Attacker Value
Unknown

CVE-2023-30985

Disclosure Date: May 09, 2023 (last updated February 24, 2025)
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 3), Solid Edge SE2023 (All versions < V223.0 Update 2). Affected applications contain an out of bounds read past the end of an allocated buffer while parsing a specially crafted OBJ file. This vulnerability could allow an attacker to disclose sensitive information. (ZDI-CAN-19426)
Attacker Value
Unknown

CVE-2023-29354

Disclosure Date: May 05, 2023 (last updated March 01, 2025)
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
0
Attacker Value
Unknown

CVE-2023-29350

Disclosure Date: May 05, 2023 (last updated March 01, 2025)
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown

CVE-2023-23059

Disclosure Date: May 04, 2023 (last updated February 24, 2025)
An issue was discovered in GeoVision GV-Edge Recording Manager 2.2.3.0 for windows, which contains improper permissions within the default installation and allows attackers to execute arbitrary code and gain escalated privileges.
Attacker Value
Unknown

CVE-2023-29163

Disclosure Date: May 03, 2023 (last updated February 24, 2025)
When UDP profile with idle timeout set to immediate or the value 0 is configured on a virtual server, undisclosed traffic can cause TMM to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2023-28406

Disclosure Date: May 03, 2023 (last updated February 24, 2025)
A directory traversal vulnerability exists in an undisclosed page of the BIG-IP Configuration utility which may allow an authenticated attacker to read files with .xml extension. Access to restricted information is limited and the attacker does not control what information is obtained.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2023-27378

Disclosure Date: May 03, 2023 (last updated February 24, 2025)
Multiple reflected cross-site scripting (XSS) vulnerabilities exist in undisclosed pages of the BIG-IP Configuration utility which allow an attacker to run JavaScript in the context of the currently logged-in user.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2023-24594

Disclosure Date: May 03, 2023 (last updated February 24, 2025)
When an SSL profile is configured on a Virtual Server, undisclosed traffic can cause an increase in CPU or SSL accelerator resource utilization.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2023-25492

Disclosure Date: May 01, 2023 (last updated February 24, 2025)
A valid, authenticated user may be able to trigger a denial of service of the XCC web user interface or other undefined behavior through a format string injection vulnerability in a web interface API.