Show filters
71,477 Total Results
Displaying 731-740 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2023-0342

Disclosure Date: June 09, 2023 (last updated October 08, 2023)
MongoDB Ops Manager Diagnostics Archive may not redact sensitive PEM key file password app settings. Archives do not include the PEM files themselves. This issue affects MongoDB Ops Manager v5.0 prior to 5.0.21 and MongoDB Ops Manager v6.0 prior to 6.0.12
Attacker Value
Unknown

CVE-2023-29402

Disclosure Date: June 08, 2023 (last updated October 08, 2023)
The go command may generate unexpected code at build time when using cgo. This may result in unexpected behavior when running a go program which uses cgo. This may occur when running an untrusted module which contains directories with newline characters in their names. Modules which are retrieved using the go command, i.e. via "go get", are not affected (modules retrieved using GOPATH-mode, i.e. GO111MODULE=off, may be affected).
Attacker Value
Unknown

CVE-2023-32219

Disclosure Date: June 08, 2023 (last updated October 08, 2023)
A Mazda model (2015-2016) can be unlocked via an unspecified method.
Attacker Value
Unknown

CVE-2023-32220

Disclosure Date: June 08, 2023 (last updated October 08, 2023)
Milesight NCR/camera version 71.8.0.6-r5 allows authentication bypass through an unspecified method.
Attacker Value
Unknown

CVE-2023-33556

Disclosure Date: June 07, 2023 (last updated October 08, 2023)
TOTOLink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the staticGw parameter at /setting/setWanIeCfg.
Attacker Value
Unknown

CVE-2023-20889

Disclosure Date: June 07, 2023 (last updated October 08, 2023)
Aria Operations for Networks contains an information disclosure vulnerability. A malicious actor with network access to VMware Aria Operations for Networks may be able to perform a command injection attack resulting in information disclosure.
Attacker Value
Unknown

CVE-2023-24510

Disclosure Date: May 31, 2023 (last updated October 08, 2023)
On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.
Attacker Value
Unknown

CVE-2023-28704

Disclosure Date: May 30, 2023 (last updated October 08, 2023)
Furbo dog camera has insufficient filtering for special parameter of device log management function. An unauthenticated remote attacker in the Bluetooth network with normal user privileges can exploit this vulnerability to perform command injection attack to execute arbitrary system commands or disrupt service.
Attacker Value
Unknown

CVE-2023-0779

Disclosure Date: May 30, 2023 (last updated October 08, 2023)
At the most basic level, an invalid pointer can be input that crashes the device, but with more knowledge of the device’s memory layout, further exploitation is possible.
Attacker Value
Unknown

CVE-2023-2283

Disclosure Date: May 26, 2023 (last updated October 08, 2023)
A vulnerability was found in libssh, where the authentication check of the connecting client can be bypassed in the`pki_verify_data_signature` function in memory allocation problems. This issue may happen if there is insufficient memory or the memory usage is limited. The problem is caused by the return value `rc,` which is initialized to SSH_ERROR and later rewritten to save the return value of the function call `pki_key_check_hash_compatible.` The value of the variable is not changed between this point and the cryptographic verification. Therefore any error between them calls `goto error` returning SSH_OK.