Show filters
164 Total Results
Displaying 41-50 of 164
Sort by:
Attacker Value
Unknown
CVE-2023-25509
Disclosure Date: April 22, 2023 (last updated October 08, 2023)
NVIDIA DGX-1 SBIOS contains a vulnerability in Bds, which may lead to code execution, denial of service, and escalation of privileges.
0
Attacker Value
Unknown
CVE-2023-25506
Disclosure Date: April 22, 2023 (last updated October 08, 2023)
NVIDIA DGX-1 contains a vulnerability in Ofbd in AMI SBIOS, where a preconditioned heap can allow a user with elevated privileges to cause an access beyond the end of a buffer, which may lead to code execution, escalation of privileges, denial of service and information disclosure. The scope of the impact of this vulnerability can extend to other components.
0
Attacker Value
Unknown
CVE-2023-0209
Disclosure Date: April 22, 2023 (last updated October 08, 2023)
NVIDIA DGX-1 SBIOS contains a vulnerability in the Uncore PEI module, where authentication of the code executed by SSA is missing, which may lead to arbitrary code execution, denial of service, escalation of privileges assisted by a firmware implant, information disclosure assisted by a firmware implant, data tampering, and SecureBoot bypass.
0
Attacker Value
Unknown
CVE-2023-0207
Disclosure Date: April 22, 2023 (last updated October 08, 2023)
NVIDIA DGX-2 SBIOS contains a vulnerability where an attacker may modify the ServerSetup NVRAM variable at runtime by executing privileged code. A successful exploit of this vulnerability may lead to denial of service.
0
Attacker Value
Unknown
CVE-2023-27167
Disclosure Date: March 29, 2023 (last updated October 08, 2023)
Suprema BioStar 2 v2.8.16 was discovered to contain a SQL injection vulnerability via the values parameter at /users/absence?search_month=1.
0
Attacker Value
Unknown
CVE-2020-18329
Disclosure Date: January 26, 2023 (last updated October 08, 2023)
An issue was discovered in Rehau devices that use a pCOWeb card BIOS v6.27, BOOT v5.00, web version v2.2, allows attackers to gain full unauthenticated access to the configuration and service interface.
0
Attacker Value
Unknown
CVE-2022-42286
Disclosure Date: January 13, 2023 (last updated October 08, 2023)
DGX A100 SBIOS contains a vulnerability in Bds, which may lead to code execution, denial of service, or escalation of privileges.
0
Attacker Value
Unknown
CVE-2022-42285
Disclosure Date: January 13, 2023 (last updated October 08, 2023)
DGX A100 SBIOS contains a vulnerability in the Pre-EFI Initialization (PEI)phase, where a privileged user can disable SPI flash protection, which may lead to denial of service, escalation of privileges, or data tampering.
0
Attacker Value
Unknown
CVE-2022-36635
Disclosure Date: October 07, 2022 (last updated October 08, 2023)
ZKteco ZKBioSecurity V5000 4.1.3 was discovered to contain a SQL injection vulnerability via the component /baseOpLog.do.
0
Attacker Value
Unknown
CVE-2022-36634
Disclosure Date: October 07, 2022 (last updated October 08, 2023)
An access control issue in ZKTeco ZKBioSecurity V5000 3.0.5_r allows attackers to arbitrarily create admin users via a crafted HTTP request.
0