Latest CVE Feed
-
5.5
MEDIUMCVE-2023-29571
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via gc_sweep at src/mjs_gc.c. This vulnerability can lead to a Denial of Service (DoS).... Read more
Affected Products : mjs- Published: Apr. 12, 2023
- Modified: Feb. 08, 2025
-
5.5
MEDIUMCVE-2023-21449
Improper access control vulnerability in Call application prior to SMR Mar-2023 Release 1 allows local attackers to access sensitive information without proper permission.... Read more
- Published: Mar. 16, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-38125
Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Secomea SiteManager (FTP Agent modules) allows Exploiting Trust in Client.... Read more
- Published: Apr. 19, 2023
- Modified: Feb. 05, 2025
-
5.5
MEDIUMCVE-2023-29586
Code Sector TeraCopy 3.9.7 does not perform proper access validation on the source folder during a copy operation. This leads to Arbitrary File Read by allowing any user to copy any directory in the system to a directory they control. NOTE: the Supplier d... Read more
Affected Products : teracopy- Published: Apr. 19, 2023
- Modified: Feb. 05, 2025
-
5.5
MEDIUMCVE-2023-21080
In register_notification_rsp of btif_rc.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitati... Read more
Affected Products : android- Published: Apr. 19, 2023
- Modified: Feb. 05, 2025
-
5.5
MEDIUMCVE-2023-28124
Improper usage of symmetric encryption in UI Desktop for Windows (Version 0.59.1.71 and earlier) could allow users with access to UI Desktop configuration files to decrypt their content.This vulnerability is fixed in Version 0.62.3 and later.... Read more
Affected Products : desktop- Published: Apr. 19, 2023
- Modified: Feb. 05, 2025
-
5.5
MEDIUMCVE-2023-22846
Datakit CrossCadWare_x64.dll contains an out-of-bounds read past the end of an allocated buffer while parsing a specially crafted SLDPRT file. This vulnerability could allow an attacker to disclose sensitive information. ... Read more
Affected Products : crosscadware- Published: Apr. 20, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-29575
Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp42aac component.... Read more
Affected Products : bento4- Published: Apr. 21, 2023
- Modified: Feb. 04, 2025
-
5.5
MEDIUMCVE-2023-28086
An HPE OneView appliance dump may expose proxy credential settings... Read more
- Published: Apr. 25, 2023
- Modified: Feb. 03, 2025
-
5.5
MEDIUMCVE-2017-10337
Vulnerability in the Oracle Hospitality Suite8 component of Oracle Hospitality Applications (subcomponent: Leisure). Supported versions that are affected are 8.10.1 and 8.10.2. Easily exploitable vulnerability allows low privileged attacker with network a... Read more
Affected Products : hospitality_suite8- Published: Oct. 19, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2017-10394
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Security). Supported versions that are affected are 8.54, 8.55 and 8.56. Easily exploitable vulnerability allows low privileged attacker with net... Read more
Affected Products : peoplesoft_enterprise_peopletools- Published: Oct. 19, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2023-21510
Out-of-bounds Read vulnerability while processing BC_TUI_CMD_UPDATE_SCREEN in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to read arbitrary memory.... Read more
- Published: May. 04, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-38707
IBM Cognos Command Center 10.2.4.1 could allow a local attacker to obtain sensitive information due to insufficient session expiration. IBM X-Force ID: 234179.... Read more
Affected Products : cognos_command_center- Published: May. 05, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-43877
IBM UrbanCode Deploy (UCD) versions up to 7.3.0.1 could disclose sensitive password information during a manual edit of the agentrelay.properties file. IBM X-Force ID: 240148.... Read more
Affected Products : urbancode_deploy- Published: May. 06, 2023
- Modified: Jan. 29, 2025
-
5.5
MEDIUMCVE-2022-47490
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.... Read more
- Published: May. 09, 2023
- Modified: Jan. 28, 2025
-
5.5
MEDIUMCVE-2022-47492
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.... Read more
- Published: May. 09, 2023
- Modified: Jan. 28, 2025
-
5.5
MEDIUMCVE-2022-48231
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.... Read more
- Published: May. 09, 2023
- Modified: Jan. 28, 2025
-
5.5
MEDIUMCVE-2022-37409
Insufficient control flow management for the Intel(R) IPP Cryptography software before version 2021.6 may allow an authenticated user to potentially enable information disclosure via local access.... Read more
Affected Products : integrated_performance_primitives_cryptography- Published: May. 10, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-43465
Improper authorization in the Intel(R) SCS software all versions may allow an authenticated user to potentially enable denial of service via local access.... Read more
Affected Products : setup_and_configuration_software- Published: May. 10, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-29840
Server-Side Request Forgery (SSRF) vulnerability that could allow a rogue server on the local network to modify its URL to point back to the loopback adapter was addressed in Western Digital My Cloud OS 5 devices. This could allow the URL to exploit other... Read more
Affected Products : my_cloud_os_5 my_cloud_os my_cloud my_cloud_dl2100 my_cloud_dl4100 my_cloud_ex2_ultra my_cloud_ex2100 my_cloud_ex4100 my_cloud_mirror_g2 my_cloud_pr2100 +2 more products- Published: May. 10, 2023
- Modified: Nov. 21, 2024