Show filters
3,318 Total Results
Displaying 441-450 of 3,318
Sort by:
Attacker Value
Unknown

CVE-2023-4323

Disclosure Date: August 15, 2023 (last updated October 08, 2023)
Broadcom RAID Controller web interface is vulnerable to improper session management of active sessions on Gateway setup
Attacker Value
Unknown

CVE-2023-4345

Disclosure Date: August 15, 2023 (last updated October 08, 2023)
Broadcom RAID Controller web interface is vulnerable client-side control bypass leads to unauthorized data access for low privileged user
Attacker Value
Unknown

CVE-2023-39293

Disclosure Date: August 14, 2023 (last updated February 25, 2025)
A Command Injection vulnerability has been identified in the MiVoice Office 400 SMB Controller through 1.2.5.23 which could allow a malicious actor to execute arbitrary commands within the context of the system.
Attacker Value
Unknown

CVE-2023-39292

Disclosure Date: August 14, 2023 (last updated February 25, 2025)
A SQL Injection vulnerability has been identified in the MiVoice Office 400 SMB Controller through 1.2.5.23 which could allow a malicious actor to access sensitive information and execute arbitrary database and management operations.
Attacker Value
Unknown

CVE-2020-27544

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
An issue was discovered in FoldingAtHome Client Advanced Control GUI before commit 9b619ae64443997948a36dda01b420578de1af77, allows remote attackers to execute arbitrary code via crafted payload to function parse_message in file Connection.py.
Attacker Value
Unknown

CVE-2023-25775

Disclosure Date: August 11, 2023 (last updated February 25, 2025)
Improper access control in the Intel(R) Ethernet Controller RDMA driver for linux before version 1.9.30 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
Attacker Value
Unknown

CVE-2023-22276

Disclosure Date: August 11, 2023 (last updated February 25, 2025)
Race condition in firmware for some Intel(R) Ethernet Controllers and Adapters E810 Series before version 1.7.2.4 may allow an authenticated user to potentially enable denial of service via local access.
Attacker Value
Unknown

CVE-2023-33367

Disclosure Date: August 05, 2023 (last updated February 25, 2025)
A SQL injection vulnerability exists in Control ID IDSecure 4.7.26.0 and prior, allowing unauthenticated attackers to write PHP files on the server's root directory, resulting in remote code execution.
Attacker Value
Unknown

CVE-2023-20216

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
A vulnerability in the privilege management functionality of all Cisco BroadWorks server types could allow an authenticated, local attacker to elevate privileges to root on an affected system. This vulnerability is due to incorrect implementation of user role permissions. An attacker could exploit this vulnerability by authenticating to the application as a user with the BWORKS or BWSUPERADMIN role and issuing crafted commands on an affected system. A successful exploit could allow the attacker to execute commands beyond the sphere of their intended access level, including initiating installs or running operating system commands with elevated permissions. There are workarounds that address this vulnerability.
Attacker Value
Unknown

CVE-2022-4046

Disclosure Date: August 03, 2023 (last updated February 25, 2025)
In CODESYS Control in multiple versions a improper restriction of operations within the bounds of a memory buffer allow an remote attacker with user privileges to gain full access of the device.