Show filters
734 Total Results
Displaying 51-60 of 734
Sort by:
Attacker Value
Unknown

CVE-2021-3439

Disclosure Date: February 01, 2023 (last updated October 08, 2023)
HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these potential vulnerabilities.
Attacker Value
Unknown

CVE-2022-4570

Disclosure Date: January 23, 2023 (last updated October 08, 2023)
The Top 10 WordPress plugin before 3.2.3 does not validate and escape some of its Block attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.
Attacker Value
Unknown

CVE-2022-41121

Disclosure Date: December 13, 2022 (last updated January 02, 2025)
Windows Graphics Component Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2022-37018

Disclosure Date: December 12, 2022 (last updated October 08, 2023)
A potential vulnerability has been identified in the system BIOS for certain HP PC products which may allow escalation of privileges and code execution. HP is releasing firmware updates to mitigate the potential vulnerability.
Attacker Value
Unknown

CVE-2022-22015

Disclosure Date: May 10, 2022 (last updated January 02, 2025)
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
0
Attacker Value
Unknown

CVE-2021-39298

Disclosure Date: May 10, 2022 (last updated November 08, 2023)
A potential vulnerability in AMD System Management Mode (SMM) interrupt handler may allow an attacker with high privileges to access the SMM resulting in arbitrary code execution which could be used by malicious actors to bypass security mechanisms provided in the UEFI firmware.
Attacker Value
Unknown

CVE-2022-27239

Disclosure Date: April 27, 2022 (last updated February 23, 2025)
In cifs-utils through 6.14, a stack-based buffer overflow when parsing the mount.cifs ip= command-line argument could lead to local attackers gaining root privileges.
Attacker Value
Unknown

CVE-2022-24503

Disclosure Date: March 09, 2022 (last updated November 29, 2024)
Remote Desktop Protocol Client Information Disclosure Vulnerability
0
Attacker Value
Unknown

CVE-2020-25719

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.
Attacker Value
Unknown

CVE-2020-25717

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could use this flaw to cause possible privilege escalation.