CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2023-31455

    Last Modified: 21 Nov 2024

    Pexip Infinity before 31.2 has Improper Input Validation for RTCP, allowing remote attackers to trigger an abort.

    Published: 25 Dec 2023
    6.1
    Medium

    CVE-2023-27151

    Last Modified: 8 May 2025

    openCRX 5.2.0 was discovered to contain an HTML injection vulnerability for Search Criteria-Activity Number (in the Saved Search Activity) via the Name, Description, or Activity Number field.

    Published: 25 Dec 2023
    8.8
    High

    CVE-2023-28872

    Last Modified: 21 Nov 2024

    Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport* location.

    Published: 25 Dec 2023
    9.8
    Critical

    CVE-2023-31224

    Last Modified: 21 Nov 2024

    There is broken access control during authentication in Jamf Pro Server before 10.46.1.

    Published: 25 Dec 2023
    7.5
    High

    CVE-2023-31289

    Last Modified: 21 Nov 2024

    Pexip Infinity before 31.2 has Improper Input Validation for signalling, allowing remote attackers to trigger an abort.

    Published: 25 Dec 2023
    4.8
    Medium

    CVE-2023-31297

    Last Modified: 21 Nov 2024

    An issue was discovered in SESAMI planfocus CPTO (Cash Point & Transport Optimizer) 6.3.8.6 718. There is XSS via the Name field when modifying a client.

    Published: 25 Dec 2023
    7.3
    High

    CVE-2023-34198

    Last Modified: 14 Feb 2025

    In Stormshield Network Security (SNS) 1.0.0 through 3.7.36 before 3.7.37, 3.8.0 through 3.11.24 before 3.11.25, 4.0.0 through 4.3.18 before 4.3.19, 4.4.0 through 4.6.5 before 4.6.6, and 4.7.0 before 4.7.1, the usage of a Network object created from an inactive DHCP interface in the filtering slot results in the usage of an object of the :any" type, which may have unexpected results for access control.

    Published: 25 Dec 2023
    7.5
    High

    CVE-2023-37185

    Last Modified: 25 Apr 2025

    C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the function zfp_prec_decompress at zfp/blosc2-zfp.c.

    Published: 25 Dec 2023
    7.5
    High

    CVE-2023-37186

    Last Modified: 25 Apr 2025

    C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference in ndlz/ndlz8x8.c via a NULL pointer to memset.

    Published: 25 Dec 2023
    7.5
    High

    CVE-2023-37187

    Last Modified: 25 Apr 2025

    C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the zfp/blosc2-zfp.c zfp_acc_decompress. function.

    Published: 25 Dec 2023
    7.5
    High

    CVE-2023-37188

    Last Modified: 25 Apr 2025

    C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the function zfp_rate_decompress at zfp/blosc2-zfp.c.

    Published: 25 Dec 2023
    6.1
    Medium

    CVE-2023-37225

    Last Modified: 21 Nov 2024

    Pexip Infinity before 32 allows Webapp1 XSS via preconfigured links.

    Published: 25 Dec 2023
    6.1
    Medium

    CVE-2023-38826

    Last Modified: 21 Nov 2024

    A Cross Site Scripting (XSS) vulnerability exists in Follet Learning Solutions Destiny through 20.0_1U. via the handlewpesearchform.do. searchString.

    Published: 25 Dec 2023
    5.3
    Medium

    CVE-2023-40236

    Last Modified: 23 Apr 2025

    In Pexip VMR self-service portal before 3, the same SSH host key is used across different customers' installations, which allows authentication bypass.

    Published: 25 Dec 2023
    4.8
    Medium

    CVE-2023-41165

    Last Modified: 14 Feb 2025

    An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.38 before 3.7.39, 3.10.0 through 3.11.26 before 3.11.27, 4.0 through 4.3.21 before 4.3.22, and 4.4.0 through 4.6.8 before 4.6.9. An administrator with write access to the SNS firewall can configure a login disclaimer with malicious JavaScript elements that can result in data theft.

    Published: 25 Dec 2023
    7.5
    High

    CVE-2023-47091

    Last Modified: 23 Apr 2025

    An issue was discovered in Stormshield Network Security (SNS) SNS 4.3.13 through 4.3.22 before 4.3.23, SNS 4.6.0 through 4.6.9 before 4.6.10, and SNS 4.7.0 through 4.7.1 before 4.7.2. An attacker can overflow the cookie threshold, making an IPsec connection impossible.

    Published: 25 Dec 2023
    4.3
    Medium

    CVE-2023-47247

    Last Modified: 21 Nov 2024

    In SysAid On-Premise before 23.3.34, there is an edge case in which an end user is able to delete a Knowledge Base article, aka bug 15102.

    Published: 25 Dec 2023
    4.3
    Medium

    CVE-2023-48653

    Last Modified: 16 Dec 2024

    Concrete CMS before 8.5.14 and 9 before 9.2.3 allows Cross Site Request Forgery (CSRF) via ccm/calendar/dialogs/event/delete/submit. An attacker can force an admin to delete events on the site because the event ID is numeric and sequential.

    Published: 25 Dec 2023
    4.8
    Medium

    CVE-2023-48650

    Last Modified: 16 Dec 2024

    Concrete CMS before 8.5.14 and 9 before 9.2.3 is vulnerable to an admin adding a stored XSS payload via the Layout Preset name.

    Published: 25 Dec 2023
    4.3
    Medium

    CVE-2023-48651

    Last Modified: 16 Dec 2024

    Concrete CMS 9 before 9.2.3 is vulnerable to Cross Site Request Forgery (CSRF) at /ccm/system/dialogs/file/delete/1/submit.

    Published: 25 Dec 2023
    4.3
    Medium

    CVE-2023-48652

    Last Modified: 21 Nov 2024

    Concrete CMS 9 before 9.2.3 is vulnerable to Cross Site Request Forgery (CSRF) via /ccm/system/dialogs/logs/delete_all/submit. An attacker can force an admin user to delete server report logs on a web application to which they are currently authenticated.

    Published: 25 Dec 2023
    7.2
    High

    CVE-2023-49226

    Last Modified: 21 Nov 2024

    An issue was discovered in Peplink Balance Two before 8.4.0. Command injection in the traceroute feature of the administration console allows users with admin privileges to execute arbitrary commands as root.

    Published: 25 Dec 2023
    7.2
    High

    CVE-2023-49328

    Last Modified: 21 Nov 2024

    On a Wolters Kluwer B.POINT 23.70.00 server running Linux on premises, during the authentication phase, a validated system user can achieve remote code execution via Argument Injection in the server-to-server module.

    Published: 25 Dec 2023
    2.4
    Low

    CVE-2023-49337

    Last Modified: 16 Dec 2024

    Concrete CMS before 9.2.3 allows Stored XSS on the Admin Dashboard via /dashboard/system/basics/name. (8.5 and earlier are unaffected.)

    Published: 25 Dec 2023
    6.7
    Medium

    CVE-2023-49944

    Last Modified: 21 Nov 2024

    The Challenge Response feature of BeyondTrust Privilege Management for Windows (PMfW) before 2023-07-14 allows local administrators to bypass this feature by decrypting the shared key, or by locating the decrypted shared key in process memory. The threat is mitigated by the Agent Protection feature.

    Published: 25 Dec 2023
    9.8
    Critical

    CVE-2023-49954

    Last Modified: 23 Apr 2025

    The CRM Integration in 3CX before 18.0.9.23 and 20 before 20.0.0.1494 allows SQL Injection via a first name, search string, or email address.

    Published: 25 Dec 2023
    7.5
    High

    CVE-2023-50658

    Last Modified: 14 Feb 2025

    The jose2go component before 1.6.0 for Go allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.

    Published: 25 Dec 2023
    9.8
    Critical

    CVE-2023-51771

    Last Modified: 23 Apr 2025

    In MicroHttpServer (aka Micro HTTP Server) through a8ab029, _ParseHeader in lib/server.c allows a one-byte recv buffer overflow via a long URI.

    Published: 25 Dec 2023
    8.4
    High

    CVE-2023-51774

    Last Modified: 8 May 2025

    The json-jwt (aka JSON::JWT) gem 1.16.3 for Ruby sometimes allows bypass of identity checks via a sign/encryption confusion attack. For example, JWE can sometimes be used to bypass JSON::JWT.decode.

    Published: 25 Dec 2023
    9.1
    Critical

    CVE-2023-51773

    Last Modified: 23 May 2025

    BACnet Stack before 1.3.2 has a decode function APDU buffer over-read in bacapp_decode_application_data in bacapp.c.

    Published: 25 Dec 2023
    7
    High

    CVE-2023-51780

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 6.6.8. do_vcc_ioctl in net/atm/ioctl.c has a use-after-free because of a vcc_recvmsg race condition.

    Published: 25 Dec 2023
    7
    High

    CVE-2023-51781

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 6.6.8. atalk_ioctl in net/appletalk/ddp.c has a use-after-free because of an atalk_recvmsg race condition.

    Published: 25 Dec 2023
    7
    High

    CVE-2023-51782

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 6.6.8. rose_ioctl in net/rose/af_rose.c has a use-after-free because of a rose_accept race condition.

    Published: 25 Dec 2023
    6.5
    Medium

    CVE-2023-51775

    Last Modified: 3 Nov 2025

    The jose4j component before 0.9.4 for Java allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.

    Published: 25 Dec 2023
    9.8
    Critical

    CVE-2023-48654

    Last Modified: 4 Nov 2025

    One Identity Password Manager before 5.13.1 allows Kiosk Escape. This product enables users to reset their Active Directory passwords on the login screen of a Windows client. It launches a Chromium based browser in Kiosk mode to provide the reset functionality. The escape sequence is: go to the Google ReCAPTCHA section, click on the Privacy link, observe that there is a new browser window, navigate to any website that offers file upload, navigate to cmd.exe from the file explorer window, and launch cmd.exe as NT AUTHORITY\SYSTEM.

    Published: 25 Dec 2023
    6.5
    Medium

    CVE-2022-41760

    Last Modified: 21 Nov 2024

    An issue was discovered in NOKIA NFM-T R19.9. Relative Path Traversal can occur under /oms1350/data/cpb/log of the Network Element Manager via the filename parameter, allowing a remote authenticated attacker to read arbitrary files.

    Published: 25 Dec 2023
    7.2
    High

    CVE-2023-36485

    Last Modified: 21 Nov 2024

    The workflow-engine of ILIAS before 7.23 and 8 before 8.3 allows remote authenticated users to run arbitrary system commands on the application server as the application user via a malicious BPMN2 workflow definition file.

    Published: 25 Dec 2023
    8.8
    High

    CVE-2023-51772

    Last Modified: 21 Nov 2024

    One Identity Password Manager before 5.13.1 allows Kiosk Escape. This product enables users to reset their Active Directory passwords on the login screen of a Windows client. It launches a Chromium based browser in Kiosk mode to provide the reset functionality. The escape sequence is: wait for a session timeout, click on the Help icon, observe that there is a browser window for the One Identity website, navigate to any website that offers file upload, navigate to cmd.exe from the file explorer window, and launch cmd.exe as NT AUTHORITY\SYSTEM.

    Published: 25 Dec 2023
    7
    High

    CVE-2023-51779

    Last Modified: 15 Apr 2026

    bt_sock_recvmsg in net/bluetooth/af_bluetooth.c in the Linux kernel through 6.6.8 has a use-after-free because of a bt_sock_ioctl race condition.

    Published: 25 Dec 2023
    5.3
    Medium

    CVE-2023-7093

    Last Modified: 21 Nov 2024

    A vulnerability classified as critical has been found in KylinSoft kylin-system-updater up to 2.0.5.16-0k2.33. Affected is an unknown function of the file /usr/share/kylin-system-updater/SystemUpdater/UpgradeStrategiesDbus.py of the component com.kylin.systemupgrade Service. The manipulation of the argument SetDownloadspeedMax leads to os command injection. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-248940. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 24 Dec 2023
    4.3
    Medium

    CVE-2023-7092

    Last Modified: 21 Nov 2024

    A vulnerability was found in Uniway UW-302VP 2.0. It has been rated as problematic. This issue affects some unknown processing of the file /boaform/wlan_basic_set.cgi of the component Admin Web Interface. The manipulation of the argument wlanssid/password leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-248939. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 24 Dec 2023
    9.8
    Critical

    CVE-2023-7102

    Last Modified: 21 Nov 2024

    Use of a Third Party library produced a vulnerability in Barracuda Networks Inc. Barracuda ESG Appliance which allowed Parameter Injection.This issue affected Barracuda ESG Appliance, from 5.1.3.001 through 9.2.1.001, until Barracuda removed the vulnerable logic.

    Published: 24 Dec 2023
    7.8
    High

    CVE-2023-7101

    Last Modified: 24 Oct 2025

    Spreadsheet::ParseExcel version 0.65 is a Perl module used for parsing Excel files. Spreadsheet::ParseExcel is vulnerable to an arbitrary code execution (ACE) vulnerability due to passing unvalidated input from a file into a string-type “eval”. Specifically, the issue stems from the evaluation of Number format strings (not to be confused with printf-style format strings) within the Excel parsing logic.

    Published: 24 Dec 2023
    6.3
    Medium

    CVE-2023-7091

    Last Modified: 21 Nov 2024

    A vulnerability was found in Dreamer CMS 4.1.3. It has been declared as problematic. This vulnerability affects unknown code of the file /upload/uploadFile. The manipulation of the argument file leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-248938 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 24 Dec 2023
    9.8
    Critical

    CVE-2023-51714

    Last Modified: 20 Mar 2025

    An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before 6.5.4, and 6.6.x before 6.6.2. network/access/http2/hpacktable.cpp has an incorrect HPack integer overflow check.

    Published: 24 Dec 2023
    9.8
    Critical

    CVE-2023-51763

    Last Modified: 23 Feb 2026

    csv_builder.rb in ActiveAdmin (aka Active Admin) before 3.2.0 allows CSV injection.

    Published: 24 Dec 2023
    5.3
    Medium

    CVE-2023-51766

    Last Modified: 4 Nov 2025

    Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because Exim supports <LF>.<CR><LF> but some other popular e-mail servers do not.

    Published: 24 Dec 2023
    7
    High

    CVE-2023-51767

    Last Modified: 18 Nov 2025

    OpenSSH through 10.0, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) because the integer value of authenticated in mm_answer_authpassword does not resist flips of a single bit. NOTE: this is applicable to a certain threat model of attacker-victim co-location in which the attacker has user privileges. NOTE: this is disputed by the Supplier, who states "we do not consider it to be the application's responsibility to defend against platform architectural weaknesses."

    Published: 24 Dec 2023
    7.5
    High

    CVE-2023-49568

    Last Modified: 17 Jun 2025

    A denial of service (DoS) vulnerability was discovered in go-git versions prior to v5.11. This vulnerability allows an attacker to perform denial of service attacks by providing specially crafted responses from a Git server which triggers resource exhaustion in go-git clients. Applications using only the in-memory filesystem supported by go-git are not affected by this vulnerability. This is a go-git implementation issue and does not affect the upstream git cli.

    Published: 24 Dec 2023
    4.5
    Medium

    CVE-2023-49594

    Last Modified: 4 Nov 2025

    An information disclosure vulnerability exists in the challenge functionality of instipod DuoUniversalKeycloakAuthenticator 1.0.7 plugin. A specially crafted HTTP request can lead to a disclosure of sensitive information. A user logging into Keycloak using DuoUniversalKeycloakAuthenticator plugin triggers this vulnerability.

    Published: 23 Dec 2023