Show filters
373 Total Results
Displaying 61-70 of 373
Sort by:
Attacker Value
Unknown

CVE-2023-41085

Disclosure Date: October 10, 2023 (last updated October 18, 2023)
When IPSec is configured on a Virtual Server, undisclosed traffic can cause TMM to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2023-40542

Disclosure Date: October 10, 2023 (last updated October 18, 2023)
When TCP Verified Accept is enabled on a TCP profile that is configured on a Virtual Server, undisclosed requests can cause an increase in memory resource utilization.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
Attacker Value
Unknown

CVE-2023-40537

Disclosure Date: October 10, 2023 (last updated October 20, 2023)
An authenticated user's session cookie may remain valid for a limited time after logging out from the BIG-IP Configuration utility on a multi-blade VIPRION platform.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2023-40534

Disclosure Date: October 10, 2023 (last updated October 20, 2023)
When a client-side HTTP/2 profile and the HTTP MRF Router option are enabled for a virtual server, and an iRule using the HTTP_REQUEST event or Local Traffic Policy are associated with the virtual server, undisclosed requests can cause TMM to terminate.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2023-5323

Disclosure Date: October 01, 2023 (last updated October 08, 2023)
Cross-site Scripting (XSS) - Generic in GitHub repository dolibarr/dolibarr prior to 18.0.
Attacker Value
Unknown

CVE-2023-38888

Disclosure Date: September 20, 2023 (last updated October 08, 2023)
Cross Site Scripting vulnerability in Dolibarr ERP CRM v.17.0.1 and before allows a remote attacker to obtain sensitive information and execute arbitrary code via the REST API module, related to analyseVarsForSqlAndScriptsInjection and testSqlAndScriptInject.
Attacker Value
Unknown

CVE-2023-38887

Disclosure Date: September 20, 2023 (last updated October 08, 2023)
File Upload vulnerability in Dolibarr ERP CRM v.17.0.1 and before allows a remote attacker to execute arbitrary code and obtain sensitive information via the extension filtering and renaming functions.
Attacker Value
Unknown

CVE-2023-38886

Disclosure Date: September 20, 2023 (last updated October 08, 2023)
An issue in Dolibarr ERP CRM v.17.0.1 and before allows a remote privileged attacker to execute arbitrary code via a crafted command/script.
Attacker Value
Unknown

CVE-2023-40328

Disclosure Date: September 06, 2023 (last updated October 08, 2023)
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Carrrot plugin <= 1.1.0 versions.
Attacker Value
Unknown

CVE-2023-33317

Disclosure Date: August 30, 2023 (last updated October 08, 2023)
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WooCommerce Returns and Warranty Requests plugin <= 2.1.6 versions.