Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2025-23091

Disclosure Date: February 01, 2025 (last updated February 01, 2025)
An Improper Certificate Validation on UniFi OS devices, with Identity Enterprise configured, could allow a malicious actor to execute a man-in-the-middle (MitM) attack during application update.
0
Attacker Value
Unknown

CVE-2023-47454

Disclosure Date: November 30, 2023 (last updated December 07, 2023)
An Untrusted search path vulnerability in NetEase CloudMusic 2.10.4 for Windows allows local users to gain escalated privileges through the urlmon.dll file in the current working directory.
Attacker Value
Unknown

CVE-2023-46324

Disclosure Date: October 23, 2023 (last updated October 31, 2023)
pkg/suci/suci.go in free5GC udm before 1.2.0, when Go before 1.19 is used, allows an Invalid Curve Attack because it may compute a shared secret via an uncompressed public key that has not been validated. An attacker can send arbitrary SUCIs to the UDM, which tries to decrypt them via both its private key and the attacker's public key.
Attacker Value
Unknown

CVE-2006-6079

Disclosure Date: November 24, 2006 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in LoudMouth 2.4 allow remote attackers to execute arbitrary PHP code via a URL in the mainframe parameter to (1) admin.loudmouth.php or (2) toolbar.loudmouth.php.
0
Attacker Value
Unknown

CVE-2006-3748

Disclosure Date: July 21, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in includes/abbc/abbc.class.php in the LoudMouth Component for Mambo 4.0j, and possibly other versions including 4.1, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
0