Latest CVE Feed
-
7.8
HIGHCVE-2023-28213
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.... Read more
Affected Products : macos- EPSS Score: %0.08
- Published: Sep. 06, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2023-28212
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.3. An app may be able to cause unexpected system termination or write kernel memory.... Read more
Affected Products : macos- EPSS Score: %0.08
- Published: Sep. 06, 2023
- Modified: May. 05, 2025
-
6.8
MEDIUMCVE-2023-28005
A vulnerability in Trend Micro Endpoint Encryption Full Disk Encryption version 6.0.0.3204 and below could allow an attacker with physical access to an affected device to bypass Microsoft Windows� Secure Boot process in an attempt to execute other attacks... Read more
- EPSS Score: %0.05
- Published: Mar. 22, 2023
- Modified: May. 05, 2025
-
6.5
MEDIUMCVE-2023-27167
Suprema BioStar 2 v2.8.16 was discovered to contain a SQL injection vulnerability via the values parameter at /users/absence?search_month=1.... Read more
Affected Products : biostar_2- EPSS Score: %0.35
- Published: Mar. 29, 2023
- Modified: May. 05, 2025
-
9.8
CRITICALCVE-2023-27076
Command injection vulnerability found in Tenda G103 v.1.0.0.5 allows attacker to execute arbitrary code via a the language parameter.... Read more
- EPSS Score: %14.03
- Published: Apr. 10, 2023
- Modified: May. 05, 2025
-
9.8
CRITICALCVE-2023-26802
An issue in the component /network_config/nsg_masq.cgi of DCN (Digital China Networks) DCBI-Netlog-LAB v1.0 allows attackers to bypass authentication and execute arbitrary commands via a crafted request.... Read more
- EPSS Score: %77.45
- Published: Mar. 26, 2023
- Modified: May. 05, 2025
-
9.8
CRITICALCVE-2023-26801
LB-LINK BL-AC1900_2.0 v1.0.1, LB-LINK BL-WR9000 v2.4.9, LB-LINK BL-X26 v1.2.5, and LB-LINK BL-LTE300 v1.0.8 were discovered to contain a command injection vulnerability via the mac, time1, and time2 parameters at /goform/set_LimitClient_cfg.... Read more
Affected Products : bl-lte300_firmware bl-x26_firmware bl-wr9000_firmware bl-ac1900_firmware bl-lte300 bl-x26 bl-wr9000 bl-ac1900- EPSS Score: %26.73
- Published: Mar. 26, 2023
- Modified: May. 05, 2025
-
7.2
HIGHCVE-2023-26609
ABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin/mft/wireless_mft ap field.... Read more
- EPSS Score: %36.69
- Published: Feb. 27, 2023
- Modified: May. 05, 2025
-
7.1
HIGHCVE-2023-26607
In the Linux kernel 6.0.8, there is an out-of-bounds read in ntfs_attr_find in fs/ntfs/attrib.c.... Read more
- EPSS Score: %0.06
- Published: Feb. 26, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2023-26606
In the Linux kernel 6.0.8, there is a use-after-free in ntfs_trim_fs in fs/ntfs3/bitmap.c.... Read more
Affected Products : linux_kernel- EPSS Score: %0.02
- Published: Feb. 26, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2023-26605
In the Linux kernel 6.0.8, there is a use-after-free in inode_cgwb_move_to_attached in fs/fs-writeback.c, related to __list_del_entry_valid.... Read more
Affected Products : linux_kernel- EPSS Score: %0.02
- Published: Feb. 26, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2023-26544
In the Linux kernel 6.0.8, there is a use-after-free in run_unpack in fs/ntfs3/run.c, related to a difference between NTFS sector size and media sector size.... Read more
Affected Products : linux_kernel- EPSS Score: %0.02
- Published: Feb. 25, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2023-26242
afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflow.... Read more
Affected Products : linux_kernel- EPSS Score: %0.01
- Published: Feb. 21, 2023
- Modified: May. 05, 2025
-
9.8
CRITICALCVE-2023-26068
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).... Read more
Affected Products : cxtpc_firmware cstpc_firmware mxtct_firmware mxtpm_firmware cxtmm_firmware mslsg_firmware mxlsg_firmware mslbd_firmware mxlbd_firmware msngm_firmware +142 more products- EPSS Score: %75.87
- Published: Apr. 10, 2023
- Modified: May. 05, 2025
-
4.6
MEDIUMCVE-2023-25012
The Linux kernel through 6.1.9 has a Use-After-Free in bigben_remove in drivers/hid/hid-bigbenff.c via a crafted USB device because the LED controllers remain registered for too long.... Read more
Affected Products : linux_kernel- EPSS Score: %0.03
- Published: Feb. 02, 2023
- Modified: May. 05, 2025
-
7.5
HIGHCVE-2023-24678
A vulnerability in Centralite Pearl Thermostat 0x04075010 allows attackers to cause a Denial of Service (DoS) via a crafted Zigbee message.... Read more
- EPSS Score: %0.09
- Published: Mar. 17, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2023-23559
In rndis_query_oid in drivers/net/wireless/rndis_wlan.c in the Linux kernel through 6.1.5, there is an integer overflow in an addition.... Read more
- EPSS Score: %0.02
- Published: Jan. 13, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2023-22995
In the Linux kernel before 5.17, an error path in dwc3_qcom_acpi_register_core in drivers/usb/dwc3/dwc3-qcom.c lacks certain platform_device_put and kfree calls.... Read more
Affected Products : linux_kernel- EPSS Score: %0.01
- Published: Feb. 28, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2023-22670
A heap-based buffer overflow exists in the DXF file reading procedure in Open Design Alliance Drawings SDK before 2023.6. The specific flaw exists within the parsing of DXF files. The issue results from the lack of proper validation of the length of user-... Read more
- EPSS Score: %0.06
- Published: Apr. 15, 2023
- Modified: May. 05, 2025
-
7.8
HIGHCVE-2023-22669
Parsing of DWG files in Open Design Alliance Drawings SDK before 2023.6 lacks proper validation of the length of user-supplied XRecord data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute cod... Read more
- EPSS Score: %0.05
- Published: Apr. 15, 2023
- Modified: May. 05, 2025