CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2023-50671

    Last Modified: 17 Jun 2025

    In exiftags 1.01, nikon_prop1 in nikon.c has a heap-based buffer overflow (write of size 28) because snprintf can write to an unexpected address.

    Published: 11 Jan 2024
    8.1
    High

    CVE-2023-51073

    Last Modified: 6 Jun 2025

    An issue in Buffalo LS210D v.1.78-0.03 allows a remote attacker to execute arbitrary code via the Firmware Update Script at /etc/init.d/update_notifications.sh.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2023-51350

    Last Modified: 16 Jun 2025

    A spoofing attack in ujcms v.8.0.2 allows a remote attacker to obtain sensitive information and execute arbitrary code via a crafted script to the X-Forwarded-For function in the header.

    Published: 11 Jan 2024
    8.8
    High

    CVE-2023-51749

    Last Modified: 21 Nov 2024

    ScaleFusion 10.5.2 does not properly limit users to the Edge application because a search can be made from a tooltip. NOTE: the vendor's position is "Not vulnerable if the default Windows device profile configuration is used which utilizes modern management with website allow-listing rules."

    Published: 11 Jan 2024
    4.6
    Medium

    CVE-2023-51750

    Last Modified: 21 Nov 2024

    ScaleFusion 10.5.2 does not properly limit users to the Edge application because file downloads can occur. NOTE: the vendor's position is "Not vulnerable if the default Windows device profile configuration is used which utilizes modern management with website allow-listing rules."

    Published: 11 Jan 2024
    8.8
    High

    CVE-2023-51748

    Last Modified: 20 Jun 2025

    ScaleFusion 10.5.2 does not properly limit users to the Edge application because Ctrl-O and Ctrl-S can be used. This is fixed in 10.5.7 by preventing the launching of the file explorer in Agent-based Multi-App and Single App Kiosk mode.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2023-51984

    Last Modified: 16 Jun 2025

    D-Link DIR-822+ V1.0.2 was found to contain a command injection in SetStaticRouteSettings function. allows remote attackers to execute arbitrary commands via shell.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2023-51987

    Last Modified: 20 Jun 2025

    D-Link DIR-822+ V1.0.2 contains a login bypass in the HNAP1 interface, which allows attackers to log in to administrator accounts with empty passwords.

    Published: 11 Jan 2024
    —
    Unknown

    CVE-2023-51989

    Last Modified: 6 May 2025

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2025-51987. Reason: This candidate is a reservation duplicate of CVE-2025-51987. Notes: All CVE users should reference CVE-2025-51987 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2023-52027

    Last Modified: 17 Jun 2025

    TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the NTPSyncWithHost function.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2023-52029

    Last Modified: 20 Jun 2025

    TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the setDiagnosisCfg function.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2023-52030

    Last Modified: 14 May 2025

    TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the setOpModeCfg function.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2023-52031

    Last Modified: 3 Jun 2025

    TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the UploadFirmwareFile function.

    Published: 11 Jan 2024
    6.1
    Medium

    CVE-2023-52274

    Last Modified: 17 Jun 2025

    member/index/register.html in YzmCMS 6.5 through 7.0 allows XSS via the Referer HTTP header.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2024-22942

    Last Modified: 3 Jun 2025

    TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the hostName parameter in the setWanCfg function.

    Published: 11 Jan 2024
    —
    Unknown

    CVE-2024-22984

    Last Modified: 7 Feb 2024

    DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2024-23060

    Last Modified: 17 Jun 2025

    TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the ip parameter in the setDmzCfg function.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2024-23057

    Last Modified: 21 Nov 2024

    TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the tz parameter in the setNtpCfg function.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2024-23058

    Last Modified: 21 Nov 2024

    TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the pass parameter in the setTr069Cfg function.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2024-23059

    Last Modified: 3 Jun 2025

    TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the username parameter in the setDdnsCfg function.

    Published: 11 Jan 2024
    5.4
    Medium

    CVE-2024-22195

    Last Modified: 3 Nov 2025

    Jinja is an extensible templating engine. Special placeholders in the template allow writing code similar to Python syntax. It is possible to inject arbitrary HTML attributes into the rendered HTML template, potentially leading to Cross-Site Scripting (XSS). The Jinja `xmlattr` filter can be abused to inject arbitrary HTML attribute keys and values, bypassing the auto escaping mechanism and potentially leading to XSS. It may also be possible to bypass attribute validation checks if they are blacklist-based.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2023-52028

    Last Modified: 20 Jun 2025

    TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the setTracerouteCfg function.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2023-52032

    Last Modified: 17 Jun 2025

    TOTOlink EX1200T V4.1.2cu.5232_B20210713 was discovered to contain a remote command execution (RCE) vulnerability via the "main" function.

    Published: 11 Jan 2024
    6.8
    Medium

    CVE-2023-50124

    Last Modified: 21 Nov 2024

    Flient Smart Door Lock v1.0 is vulnerable to Use of Default Credentials. Due to default credentials on a debug interface, in combination with certain design choices, an attacker can unlock the Flient Smart Door Lock by replacing the fingerprint that is stored on the scanner.

    Published: 11 Jan 2024
    5.9
    Medium

    CVE-2023-50127

    Last Modified: 20 Jun 2025

    Hozard alarm system (Alarmsysteem) v1.0 is vulnerable to Improper Authentication. Commands sent via the SMS functionality are accepted from random phone numbers, which allows an attacker to bring the alarm system to a disarmed state from any given phone number.

    Published: 11 Jan 2024
    6.8
    Medium

    CVE-2023-51751

    Last Modified: 16 Jun 2025

    ScaleFusion 10.5.2 does not properly limit users to the Edge application because Alt-F4 can be used. This is fixed in 10.5.7 by preventing the launching of the file explorer in Agent-based Multi-App and Single App Kiosk mode.

    Published: 11 Jan 2024
    9.8
    Critical

    CVE-2024-23061

    Last Modified: 20 Jun 2025

    TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain a command injection vulnerability via the minute parameter in the setScheduleCfg function.

    Published: 11 Jan 2024
    8.8
    High

    CVE-2024-21833

    Last Modified: 16 Jun 2025

    Multiple TP-LINK products allow a network-adjacent unauthenticated attacker with access to the product to execute arbitrary OS commands. The affected device, with the initial configuration, allows login only from the LAN port or Wi-Fi.

    Published: 10 Jan 2024
    8
    High

    CVE-2024-21821

    Last Modified: 17 Jun 2025

    Multiple TP-LINK products allow a network-adjacent authenticated attacker with access to the product from the LAN port or Wi-Fi to execute arbitrary OS commands.

    Published: 10 Jan 2024
    8.8
    High

    CVE-2024-21773

    Last Modified: 3 Jun 2025

    Multiple TP-LINK products allow a network-adjacent unauthenticated attacker with access to the product from the LAN port or Wi-Fi to execute arbitrary OS commands on the product that has pre-specified target devices and blocked URLs in parental control settings.

    Published: 10 Jan 2024
    8.6
    High

    CVE-2022-45794

    Last Modified: 22 May 2025

    An attacker with network access to the affected PLC (CJ-series and CS-series PLCs, all versions) may use a network protocol to read and write files on the PLC internal memory and memory card.

    Published: 10 Jan 2024
    3.3
    Low

    CVE-2023-40394

    Last Modified: 20 Jun 2025

    The issue was addressed with improved validation of environment variables. This issue is fixed in iOS 16.6 and iPadOS 16.6. An app may be able to access sensitive user data.

    Published: 10 Jan 2024
    5.5
    Medium

    CVE-2023-42829

    Last Modified: 16 Jun 2025

    The issue was addressed with additional restrictions on the observability of app states. This issue is fixed in macOS Big Sur 11.7.9, macOS Monterey 12.6.8, macOS Ventura 13.5. An app may be able to access SSH passphrases.

    Published: 10 Jan 2024
    5.5
    Medium

    CVE-2023-41069

    Last Modified: 4 Nov 2025

    This issue was addressed by improving Face ID anti-spoofing models. This issue is fixed in iOS 17 and iPadOS 17. A 3D model constructed to look like the enrolled user may authenticate via Face ID.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-40414

    Last Modified: 20 Jun 2025

    A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 10, iOS 17 and iPadOS 17, tvOS 17, macOS Sonoma 14, Safari 17. Processing web content may lead to arbitrary code execution.

    Published: 10 Jan 2024
    5.5
    Medium

    CVE-2023-40438

    Last Modified: 4 Nov 2025

    An issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14, iOS 16.7 and iPadOS 16.7. An app may be able to access edited photos saved to a temporary directory.

    Published: 10 Jan 2024
    5.5
    Medium

    CVE-2022-42816

    Last Modified: 20 Jun 2025

    A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13. An app may be able to modify protected parts of the file system.

    Published: 10 Jan 2024
    5.5
    Medium

    CVE-2023-42872

    Last Modified: 4 Nov 2025

    The issue was addressed with additional permissions checks. This issue is fixed in macOS Sonoma 14, iOS 17 and iPadOS 17. An app may be able to access sensitive user data.

    Published: 10 Jan 2024
    8.8
    High

    CVE-2023-42833

    Last Modified: 11 Jun 2025

    A correctness issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14, Safari 17, iOS 17 and iPadOS 17. Processing web content may lead to arbitrary code execution.

    Published: 10 Jan 2024
    5.5
    Medium

    CVE-2023-28185

    Last Modified: 3 Jun 2025

    An integer overflow was addressed through improved input validation. This issue is fixed in tvOS 16.4, macOS Big Sur 11.7.5, iOS 16.4 and iPadOS 16.4, watchOS 9.4, macOS Monterey 12.6.4, iOS 15.7.4 and iPadOS 15.7.4. An app may be able to cause a denial-of-service.

    Published: 10 Jan 2024
    3.3
    Low

    CVE-2023-38612

    Last Modified: 4 Nov 2025

    The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, iOS 16.7 and iPadOS 16.7, iOS 17 and iPadOS 17, macOS Sonoma 14, macOS Ventura 13.6. An app may be able to access protected user data.

    Published: 10 Jan 2024
    7
    High

    CVE-2023-42832

    Last Modified: 20 Jun 2025

    A race condition was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.7.9, macOS Monterey 12.6.8, macOS Ventura 13.5. An app may be able to gain root privileges.

    Published: 10 Jan 2024
    6.5
    Medium

    CVE-2023-42865

    Last Modified: 16 Jun 2025

    An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.3, tvOS 16.4, iOS 16.4 and iPadOS 16.4, watchOS 9.4. Processing an image may result in disclosure of process memory.

    Published: 10 Jan 2024
    3.3
    Low

    CVE-2023-40439

    Last Modified: 11 Jun 2025

    A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 16.6 and iPadOS 16.6, macOS Ventura 13.5. An app may be able to read sensitive location information.

    Published: 10 Jan 2024
    3.3
    Low

    CVE-2023-40383

    Last Modified: 17 Jun 2025

    A path handling issue was addressed with improved validation. This issue is fixed in macOS Ventura 13.3. An app may be able to access user-sensitive data.

    Published: 10 Jan 2024
    7.5
    High

    CVE-2023-42869

    Last Modified: 20 Jun 2025

    Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Ventura 13.4, iOS 16.5 and iPadOS 16.5. Multiple issues in libxml2.

    Published: 10 Jan 2024
    7.8
    High

    CVE-2023-32383

    Last Modified: 20 Jun 2025

    This issue was addressed by forcing hardened runtime on the affected binaries at the system level. This issue is fixed in macOS Monterey 12.6.6, macOS Big Sur 11.7.7, macOS Ventura 13.4. An app may be able to inject code into sensitive binaries bundled with Xcode.

    Published: 10 Jan 2024
    7.8
    High

    CVE-2023-42828

    Last Modified: 3 Jun 2025

    This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Ventura 13.5. An app may be able to gain root privileges.

    Published: 10 Jan 2024
    5.5
    Medium

    CVE-2022-46710

    Last Modified: 20 Jun 2025

    A logic issue was addressed with improved checks. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1. Location data may be shared via iCloud links even if Location metadata is disabled via the Share Sheet.

    Published: 10 Jan 2024
    7.8
    High

    CVE-2023-41075

    Last Modified: 21 Nov 2024

    A type confusion issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.7.5, macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4. An app may be able to execute arbitrary code with kernel privileges.

    Published: 10 Jan 2024