Latest CVE Feed
-
5.5
MEDIUMCVE-2023-30300
An issue in the component hang.wasm of WebAssembly 1.0 causes an infinite loop.... Read more
Affected Products : webassembly- Published: May. 03, 2023
- Modified: Jan. 30, 2025
-
5.5
MEDIUMCVE-2023-30207
A divide by zero issue discovered in Kodi Home Theater Software 19.5 and earlier allows attackers to cause a denial of service via use of crafted mp3 file.... Read more
Affected Products : kodi- Published: Jul. 05, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-30086
Buffer Overflow vulnerability found in Libtiff V.4.0.7 allows a local attacker to cause a denial of service via the tiffcp function in tiffcp.c.... Read more
Affected Products : libtiff- Published: May. 09, 2023
- Modified: Jan. 29, 2025
-
5.5
MEDIUMCVE-2019-2824
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0 and 12.2.1.3.0. Easily exploitable vulnerability allows high privileged ... Read more
Affected Products : weblogic_server- Published: Jul. 23, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-21997
VMware Tools for Windows (11.x.y prior to 11.3.0) contains a denial-of-service vulnerability in the VM3DMP driver. A malicious actor with local user privileges in the Windows guest operating system, where VMware Tools is installed, can trigger a PANIC in ... Read more
- Published: Jun. 18, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-2985
A use after free flaw was found in hfsplus_put_super in fs/hfsplus/super.c in the Linux Kernel. This flaw could allow a local user to cause a denial of service problem.... Read more
Affected Products : linux_kernel- Published: Jun. 01, 2023
- Modified: Mar. 11, 2025
-
5.5
MEDIUMCVE-2023-30083
Buffer Overflow vulnerability found in Libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via the newVar_N in util/decompile.c.... Read more
Affected Products : libming- Published: May. 09, 2023
- Modified: Jan. 28, 2025
-
5.5
MEDIUMCVE-2021-21612
Jenkins TraceTronic ECU-TEST Plugin 2.23.1 and earlier stores credentials unencrypted in its global configuration file on the Jenkins controller where they can be viewed by users with access to the Jenkins controller file system.... Read more
Affected Products : tracetronic_ecu-test- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-2872
A vulnerability classified as problematic has been found in FlexiHub 5.5.14691.0. This affects the function 0x220088 in the library fusbhub.sys of the component IoControlCode Handler. The manipulation leads to null pointer dereference. An attack has to be... Read more
Affected Products : flexihub- Published: May. 24, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-2731
A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to dereference a NULL pointer when decompressing a TIFF fo... Read more
- Published: May. 17, 2023
- Modified: Jan. 22, 2025
-
5.5
MEDIUMCVE-2023-2700
A vulnerability was found in libvirt. This security flaw ouccers due to repeatedly querying an SR-IOV PCI device's capabilities that exposes a memory leak caused by a failure to free the virPCIVirtualFunction array within the parent struct's g_autoptr cle... Read more
- Published: May. 15, 2023
- Modified: Jan. 28, 2025
-
5.5
MEDIUMCVE-2021-1822
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A local user may be able to modify protected parts of the file system.... Read more
- Published: Sep. 08, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-1800
A path handling issue was addressed with improved validation. This issue is fixed in Xcode 12.4. A malicious application may be able to access arbitrary files on the host device while running an app that uses on-demand resources with Xcode.... Read more
Affected Products : xcode- Published: Apr. 02, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-1258
A vulnerability in the upgrade component of Cisco AnyConnect Secure Mobility Client could allow an authenticated, local attacker with low privileges to read arbitrary files on the underlying operating system (OS) of an affected device. The vulnerability i... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-1126
A vulnerability in the storage of proxy server credentials of Cisco Firepower Management Center (FMC) could allow an authenticated, local attacker to view credentials for a configured proxy server. The vulnerability is due to clear-text storage and weak p... Read more
- Published: Jan. 13, 2021
- Modified: Nov. 26, 2024
-
5.5
MEDIUMCVE-2021-1117
Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where an attacker through specific configuration and with local unprivileged system access may cause improper input validation, which may lead to denial of... Read more
Affected Products : gpu_display_driver- Published: Oct. 27, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-1096
NVIDIA Windows GPU Display Driver for Windows contains a vulnerability in the NVIDIA kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where dereferencing a NULL pointer may lead to a system crash.... Read more
Affected Products : gpu_display_driver- Published: Jul. 22, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-1078
NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel driver (nvlddmkm.sys) where a NULL pointer dereference may lead to system crash.... Read more
Affected Products : gpu_display_driver- Published: Apr. 21, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2018-3044
Vulnerability in the Oracle Banking Corporate Lending component of Oracle Financial Services Applications (subcomponent: Core module). Supported versions that are affected are 12.3.0, 12.4.0, 12.5.0, 14.0.0 and 14.1.0. Easily exploitable vulnerability all... Read more
Affected Products : banking_corporate_lending- Published: Jul. 18, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-0155
Unchecked return value in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.... Read more
- Published: May. 12, 2022
- Modified: May. 05, 2025