Show filters
126 Total Results
Displaying 41-50 of 126
Sort by:
Attacker Value
Unknown

CVE-2023-24485

Disclosure Date: February 15, 2023 (last updated October 08, 2023)
Vulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM on the computer running Citrix Workspace app.
Attacker Value
Unknown

CVE-2022-47412

Disclosure Date: February 07, 2023 (last updated October 08, 2023)
Given a malicious document provided by an attacker, the ONLYOFFICE Workspace DMS is vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition.
Attacker Value
Unknown

CVE-2022-31687

Disclosure Date: November 09, 2022 (last updated December 22, 2024)
VMware Workspace ONE Assist prior to 22.10 contains a Broken Access Control vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.
Attacker Value
Unknown

CVE-2022-31685

Disclosure Date: November 09, 2022 (last updated December 22, 2024)
VMware Workspace ONE Assist prior to 22.10 contains an Authentication Bypass vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.
Attacker Value
Unknown

CVE-2022-31689

Disclosure Date: November 09, 2022 (last updated December 22, 2024)
VMware Workspace ONE Assist prior to 22.10 contains a Session fixation vulnerability. A malicious actor who obtains a valid session token may be able to authenticate to the application using that token.
Attacker Value
Unknown

CVE-2022-31686

Disclosure Date: November 09, 2022 (last updated December 22, 2024)
VMware Workspace ONE Assist prior to 22.10 contains a Broken Authentication Method vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.
Attacker Value
Unknown

CVE-2022-31688

Disclosure Date: November 09, 2022 (last updated December 22, 2024)
VMware Workspace ONE Assist prior to 22.10 contains a Reflected cross-site scripting (XSS) vulnerability. Due to improper user input sanitization, a malicious actor with some user interaction may be able to inject javascript code in the target user's window.
Attacker Value
Unknown

CVE-2022-22314

Disclosure Date: September 06, 2022 (last updated October 08, 2023)
IBM Planning Analytics Local 2.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 217371.
Attacker Value
Unknown

CVE-2022-23745

Disclosure Date: July 18, 2022 (last updated October 07, 2023)
A potential memory corruption issue was found in Capsule Workspace Android app (running on GrapheneOS). This could result in application crashing but could not be used to gather any sensitive information.
Attacker Value
Unknown

CVE-2022-32145

Disclosure Date: June 14, 2022 (last updated February 23, 2025)
A vulnerability has been identified in Teamcenter Active Workspace V5.2 (All versions < V5.2.9), Teamcenter Active Workspace V6.0 (All versions < V6.0.3). A reflected cross-site scripting (XSS) vulnerability exists in the web interface of the affected application that could allow an attacker to execute malicious code by tricking users into accessing a malicious link.