Latest CVE Feed
-
5.5
MEDIUMCVE-2022-47474
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.... Read more
- Published: Mar. 10, 2023
- Modified: Mar. 06, 2025
-
5.5
MEDIUMCVE-2021-38488
Delta Electronics DIALink versions 1.2.4.0 and prior is vulnerable to cross-site scripting because an authenticated attacker can inject arbitrary JavaScript code into the parameter comment of the API events, which may allow an attacker to remotely execute... Read more
Affected Products : dialink- Published: Nov. 03, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-4618
IBM Data Risk Manager (iDNA) 2.0.6 could allow a privileged user to cause a denial of service due to improper input validation. IBM X-Force ID: 184937.... Read more
Affected Products : data_risk_manager- Published: Sep. 22, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-33885
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.... Read more
- Published: Jul. 12, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-44313
PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the ExpressionCoerceUnsignedInteger function in expression.c when called from ExpressionParseFunctionCall.... Read more
Affected Products : picoc- Published: Nov. 08, 2022
- Modified: May. 01, 2025
-
5.5
MEDIUMCVE-2023-34042
The spring-security.xsd file inside the spring-security-config jar is world writable which means that if it were extracted it could be written by anyone with access to the file system. While there are no known exploits, this is an example of “CWE-732:... Read more
- Published: Feb. 05, 2024
- Modified: Jun. 03, 2025
-
5.5
MEDIUMCVE-2022-44648
An Out-of-bounds read vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local attacker to disclose sensitive information on affected installations. Please note: an attacker must first obtain the ability to execute low-privil... Read more
- Published: Dec. 12, 2022
- Modified: Apr. 29, 2025
-
5.5
MEDIUMCVE-2023-35679
In MtpPropertyValue of MtpProperty.h, there is a possible out of bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.... Read more
Affected Products : android- Published: Sep. 11, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2019-5251
There is a path traversal vulnerability in several Huawei smartphones. The system does not sufficiently validate certain pathnames from the application. An attacker could trick the user into installing, backing up and restoring a malicious application. Su... Read more
Affected Products : p30_pro_firmware p30_firmware honor_v10_firmware mate_20_firmware enjoy_7s_firmware honor_9_lite_firmware honor_9i_firmware m6_firmware honor_20s_firmware honor_9i +8 more products- Published: Dec. 13, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-47348
In engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.... Read more
- Published: Feb. 12, 2023
- Modified: Mar. 26, 2025
-
5.5
MEDIUMCVE-2022-47459
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.... Read more
- Published: Mar. 10, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-47467
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.... Read more
- Published: Apr. 11, 2023
- Modified: Feb. 10, 2025
-
5.5
MEDIUMCVE-2022-47479
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.... Read more
- Published: Mar. 10, 2023
- Modified: Mar. 06, 2025
-
5.5
MEDIUMCVE-2023-0909
A vulnerability, which was classified as problematic, was found in cxasm notepad-- 1.22. This affects an unknown part of the component Directory Comparison Handler. The manipulation leads to denial of service. The attack needs to be approached locally. Th... Read more
Affected Products : notepad--- Published: Feb. 18, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-1157
A vulnerability, which was classified as problematic, was found in finixbit elf-parser. Affected is the function elf_parser::Elf_parser::get_segments of the file elf_parser.cpp. The manipulation leads to denial of service. Local access is required to appr... Read more
Affected Products : elf-parser- Published: Mar. 02, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-4878
A vulnerability classified as critical has been found in JATOS. Affected is the function ZipUtil of the file modules/common/app/utils/common/ZipUtil.java of the component ZIP Handler. The manipulation leads to path traversal. Upgrading to version 3.7.5-al... Read more
Affected Products : jatos- Published: Jan. 06, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-1645
A vulnerability was found in IObit Malware Fighter 9.4.0.776. It has been classified as problematic. This affects the function 0x8018E008 in the library IMFCameraProtect.sys of the component IOCTL Handler. The manipulation leads to denial of service. The ... Read more
Affected Products : malware_fighter- Published: Mar. 26, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-38532
A vulnerability has been identified in Parasolid V34.1 (All versions < V34.1.258), Parasolid V35.0 (All versions < V35.0.254), Parasolid V35.1 (All versions < V35.1.171), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization... Read more
- Published: Aug. 08, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-39505
PDF-XChange Editor Net.HTTP.requests Exposed Dangerous Function Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is require... Read more
- Published: May. 03, 2024
- Modified: May. 19, 2025