Show filters
754 Total Results
Displaying 91-100 of 754
Sort by:
Attacker Value
Unknown
CVE-2023-27517
Disclosure Date: February 14, 2024 (last updated February 21, 2025)
Improper access control in some Intel(R) Optane(TM) PMem software before versions 01.00.00.3547, 02.00.00.3915, 03.00.00.0483 may allow an athenticated user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2023-25073
Disclosure Date: February 14, 2024 (last updated October 30, 2024)
Improper access control in some Intel(R) DSA software before version 23.4.33 may allow an authenticated user to potentially enable denial of service via local access.
0
Attacker Value
Unknown
CVE-2023-22311
Disclosure Date: February 14, 2024 (last updated February 21, 2025)
Improper access control in some Intel(R) Optane(TM) PMem 100 Series Management Software before version 01.00.00.3547 may allow an authenticated user to potentially enable escalation of privilege via local access.
0
Attacker Value
Unknown
CVE-2023-44283
Disclosure Date: February 14, 2024 (last updated October 18, 2024)
In Dell SupportAssist for Home PCs (between v3.0 and v3.14.1) and SupportAssist for Business PCs (between v3.0 and v3.4.1), a security concern has been identified, impacting locally authenticated users on their respective PCs. This issue may potentially enable privilege escalation and the execution of arbitrary code, in the Windows system context, and confined to that specific local PC.
0
Attacker Value
Unknown
CVE-2023-39249
Disclosure Date: February 14, 2024 (last updated October 18, 2024)
Dell SupportAssist for Business PCs version 3.4.0 contains a local Authentication Bypass vulnerability that allows locally authenticated non-admin users to gain temporary privilege within the SupportAssist User Interface on their respective PC. The Run as Admin temporary privilege feature enables IT/System Administrators to perform driver scans and Dell-recommended driver installations without requiring them to log out of the local non-admin user session. However, the granted privilege is limited solely to the SupportAssist User Interface and automatically expires after 15 minutes.
0
Attacker Value
Unknown
CVE-2023-25535
Disclosure Date: February 14, 2024 (last updated October 18, 2024)
Dell SupportAssist for Home PCs Installer Executable file version prior to 3.13.2.19 used for initial installation has a high vulnerability that can result in local privilege escalation (LPE). This vulnerability only affects first-time installations done prior to 8th March 2023
0
Attacker Value
Unknown
CVE-2024-22128
Disclosure Date: February 13, 2024 (last updated October 17, 2024)
SAP NWBC for HTML - versions SAP_UI 754, SAP_UI 755, SAP_UI 756, SAP_UI 757, SAP_UI 758, SAP_BASIS 700, SAP_BASIS 701, SAP_BASIS 702, SAP_BASIS 731, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. An unauthenticated attacker can inject malicious javascript to cause limited impact to confidentiality and integrity of the application data after successful exploitation.
0
Attacker Value
Unknown
CVE-2023-40266
Disclosure Date: February 08, 2024 (last updated February 16, 2024)
An issue was discovered in Atos Unify OpenScape Xpressions WebAssistant V7 before V7R1 FR5 HF42 P911. It allows path traversal.
0
Attacker Value
Unknown
CVE-2023-40265
Disclosure Date: February 08, 2024 (last updated February 16, 2024)
An issue was discovered in Atos Unify OpenScape Xpressions WebAssistant V7 before V7R1 FR5 HF42 P911. It allows authenticated remote code execution via file upload.
0
Attacker Value
Unknown
CVE-2024-24189
Disclosure Date: February 07, 2024 (last updated February 10, 2024)
Jsish v3.5.0 (commit 42c694c) was discovered to contain a use-after-free via the SplitChar at ./src/jsiUtils.c.
0