CVE Feed

    Dashboard / CVE

    4.8
    Medium

    CVE-2023-48880

    Last Modified: 26 Nov 2024

    A stored cross-site scripting (XSS) vulnerability in EyouCMS v1.6.4-UTF8-SP1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Menu Name field at /login.php?m=admin&c=Index&a=changeTableVal&_ajax=1&lang=cn.

    Published: 29 Nov 2023
    7.5
    High

    CVE-2023-48948

    Last Modified: 21 Nov 2024

    An issue in the box_div function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.

    Published: 29 Nov 2023
    7.5
    High

    CVE-2023-48951

    Last Modified: 5 Jun 2025

    An issue in the box_equal function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.

    Published: 29 Nov 2023
    7.5
    High

    CVE-2023-24294

    Last Modified: 21 Nov 2024

    Zumtobel Netlink CCD Onboard v3.74 - Firmware v3.80 was discovered to contain a buffer overflow via the component NetlinkWeb::Information::SetDeviceIdentification.

    Published: 29 Nov 2023
    9.8
    Critical

    CVE-2023-45479

    Last Modified: 21 Nov 2024

    Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the list parameter in the function sub_49E098.

    Published: 29 Nov 2023
    9.8
    Critical

    CVE-2023-45480

    Last Modified: 21 Nov 2024

    Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the src parameter in the function sub_47D878.

    Published: 29 Nov 2023
    9.8
    Critical

    CVE-2023-45481

    Last Modified: 5 Jun 2025

    Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the firewallEn parameter in the function SetFirewallCfg.

    Published: 29 Nov 2023
    9.8
    Critical

    CVE-2023-45482

    Last Modified: 21 Nov 2024

    Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the urls parameter in the function get_parentControl_list_Info.

    Published: 29 Nov 2023
    9.8
    Critical

    CVE-2023-45483

    Last Modified: 21 Nov 2024

    Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the time parameter in the function compare_parentcontrol_time.

    Published: 29 Nov 2023
    9.8
    Critical

    CVE-2023-45484

    Last Modified: 21 Nov 2024

    Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the shareSpeed parameter in the function fromSetWifiGuestBasic.

    Published: 29 Nov 2023
    9.1
    Critical

    CVE-2023-46886

    Last Modified: 4 Apr 2025

    Dreamer CMS before version 4.0.1 is vulnerable to Directory Traversal. Background template management allows arbitrary modification of the template file, allowing system sensitive files to be read.

    Published: 29 Nov 2023
    7.5
    High

    CVE-2023-46887

    Last Modified: 4 Apr 2025

    In Dreamer CMS before 4.0.1, the backend attachment management office has an Arbitrary File Download vulnerability.

    Published: 29 Nov 2023
    9.8
    Critical

    CVE-2023-47462

    Last Modified: 21 Nov 2024

    Insecure Permissions vulnerability in GL.iNet AX1800 v.3.215 and before allows a remote attacker to execute arbitrary code via the file sharing function.

    Published: 29 Nov 2023
    4.8
    Medium

    CVE-2023-48881

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability in EyouCMS v1.6.4-UTF8-SP1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Field Title field at /login.php?m=admin&c=Field&a=arctype_add&_ajax=1&lang=cn.

    Published: 29 Nov 2023
    4.8
    Medium

    CVE-2023-48882

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability in EyouCMS v1.6.4-UTF8-SP1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Document Properties field at /login.php m=admin&c=Index&a=changeTableVal&_ajax=1&lang=cn.

    Published: 29 Nov 2023
    7.5
    High

    CVE-2023-48945

    Last Modified: 21 Nov 2024

    A stack overflow in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

    Published: 29 Nov 2023
    7.5
    High

    CVE-2023-48946

    Last Modified: 21 Nov 2024

    An issue in the box_mpy function of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.

    Published: 29 Nov 2023
    7.5
    High

    CVE-2023-48947

    Last Modified: 21 Nov 2024

    An issue in the cha_cmp function of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.

    Published: 29 Nov 2023
    7.5
    High

    CVE-2023-48950

    Last Modified: 21 Nov 2024

    An issue in the box_col_len function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.

    Published: 29 Nov 2023
    7.5
    High

    CVE-2023-48952

    Last Modified: 21 Nov 2024

    An issue in the box_deserialize_reusing function in openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) after running a SELECT statement.

    Published: 29 Nov 2023
    7.1
    High

    CVE-2023-6378

    Last Modified: 29 Nov 2024

    A serialization vulnerability in logback receiver component part of logback version 1.4.11 allows an attacker to mount a Denial-Of-Service attack by sending poisoned data.

    Published: 29 Nov 2023
    5.3
    Medium

    CVE-2023-49082

    Last Modified: 23 Jun 2026

    aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Improper validation makes it possible for an attacker to modify the HTTP request (e.g. insert a new header) or even create a new HTTP request if the attacker controls the HTTP method. The vulnerability occurs only if the attacker can control the HTTP method (GET, POST etc.) of the request. If the attacker can control the HTTP version of the request it will be able to modify the request (request smuggling). This issue has been patched in version 3.9.0.

    Published: 29 Nov 2023
    7.8
    High

    CVE-2023-6931

    Last Modified: 17 Aug 2026

    A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component can be exploited to achieve local privilege escalation. A perf_event's read_size can overflow, leading to an heap out-of-bounds increment or write in perf_read_group(). We recommend upgrading past commit 382c27f4ed28f803b1f1473ac2d8db0afc795a1b.

    Published: 29 Nov 2023
    9.8
    Critical

    CVE-2023-23324

    Last Modified: 21 Nov 2024

    Zumtobel Netlink CCD Onboard 3.74 - Firmware 3.80 was discovered to contain hardcoded credentials for the Administrator account.

    Published: 29 Nov 2023
    5.9
    Medium

    CVE-2023-49092

    Last Modified: 27 Nov 2024

    RustCrypto/RSA is a portable RSA implementation in pure Rust. Due to a non-constant-time implementation, information about the private key is leaked through timing information which is observable over the network. An attacker may be able to use that information to recover the key. There is currently no fix available. As a workaround, avoid using the RSA crate in settings where attackers are able to observe timing information, e.g. local use on a non-compromised computer.

    Published: 28 Nov 2023
    3.2
    Low

    CVE-2023-29066

    Last Modified: 25 Feb 2026

    The FACSChorus software does not properly assign data access privileges for operating system user accounts. A non-administrative OS account can modify information stored in the local application data folders.

    Published: 28 Nov 2023
    4.1
    Medium

    CVE-2023-29065

    Last Modified: 2 Dec 2024

    The FACSChorus software database can be accessed directly with the privileges of the currently logged-in user. A threat actor with physical access could potentially gain credentials, which could be used to alter or destroy data stored in the database.

    Published: 28 Nov 2023
    4.1
    Medium

    CVE-2023-29064

    Last Modified: 21 Nov 2024

    The FACSChorus software contains sensitive information stored in plaintext. A threat actor could gain hardcoded secrets used by the application, which include tokens and passwords for administrative accounts.

    Published: 28 Nov 2023
    2.4
    Low

    CVE-2023-29063

    Last Modified: 25 Feb 2026

    The FACSChorus workstation does not prevent physical access to its PCI express (PCIe) slots, which could allow a threat actor to insert a PCI card designed for memory capture. A threat actor can then isolate sensitive information such as a BitLocker encryption key from a dump of the workstation RAM during startup.

    Published: 28 Nov 2023
    3.8
    Low

    CVE-2023-29062

    Last Modified: 21 Nov 2024

    The Operating System hosting the FACSChorus application is configured to allow transmission of hashed user credentials upon user action without adequately validating the identity of the requested resource. This is possible through the use of LLMNR, MBT-NS, or MDNS and will result in NTLMv2 hashes being sent to a malicious entity position on the local network. These hashes can subsequently be attacked through brute force and cracked if a weak password is used. This attack would only apply to domain joined systems.

    Published: 28 Nov 2023
    5.2
    Medium

    CVE-2023-29061

    Last Modified: 3 Jun 2025

    There is no BIOS password on the FACSChorus workstation. A threat actor with physical access to the workstation can potentially exploit this vulnerability to access the BIOS configuration and modify the drive boot order and BIOS pre-boot authentication.

    Published: 28 Nov 2023
    5.4
    Medium

    CVE-2023-29060

    Last Modified: 3 Jun 2025

    The FACSChorus workstation operating system does not restrict what devices can interact with its USB ports. If exploited, a threat actor with physical access to the workstation could gain access to system information and potentially exfiltrate data.

    Published: 28 Nov 2023
    5.4
    Medium

    CVE-2023-49078

    Last Modified: 21 Nov 2024

    raptor-web is a CMS for game server communities that can be used to host information and keep track of players. In version 0.4.4 of raptor-web, it is possible to craft a malicious URL that will result in a reflected cross-site scripting vulnerability. A user controlled URL parameter is loaded into an internal template that has autoescape disabled. This is a cross-site scripting vulnerability that affects all deployments of `raptor-web` on version `0.4.4`. Any victim who clicks on a malicious crafted link will be affected. This issue has been patched 0.4.4.1.

    Published: 28 Nov 2023
    5.8
    Medium

    CVE-2023-42504

    Last Modified: 13 Feb 2025

    An authenticated malicious user could initiate multiple concurrent requests, each requesting multiple dashboard exports, leading to a possible denial of service. This issue affects Apache Superset: before 3.0.0

    Published: 28 Nov 2023
    8
    High

    CVE-2023-40056

    Last Modified: 21 Nov 2024

    SQL Injection Remote Code Vulnerability was found in the SolarWinds Platform. This vulnerability can be exploited with a low privileged account.

    Published: 28 Nov 2023
    4.3
    Medium

    CVE-2023-42505

    Last Modified: 13 Feb 2025

    An authenticated user with read permissions on database connections metadata could potentially access sensitive information such as the connection's username. This issue affects Apache Superset before 3.0.0.

    Published: 28 Nov 2023
    4.8
    Medium

    CVE-2023-42502

    Last Modified: 21 Nov 2024

    An authenticated attacker with update datasets permission could change a dataset link to an untrusted site by spoofing the HTTP Host header, users could be redirected to this site when clicking on that specific dataset. This issue affects Apache Superset versions before 3.0.0.

    Published: 28 Nov 2023
    7.5
    High

    CVE-2023-49062

    Last Modified: 21 Nov 2024

    Katran could disclose non-initialized kernel memory as part of an IP header. The issue was present for IPv4 encapsulation and ICMP (v4) Too Big packet generation. After a bpf_xdp_adjust_head call, Katran code didn’t initialize the Identification field for the IPv4 header, resulting in writing content of kernel memory in that field of IP header. The issue affected all Katran versions prior to commit 6a03106ac1eab39d0303662963589ecb2374c97f

    Published: 28 Nov 2023
    5.4
    Medium

    CVE-2023-6239

    Last Modified: 23 Feb 2026

    Under rare conditions, the effective permissions of an object might be incorrectly calculated if the object has a specific configuration of metadata-driven permissions in M-Files Server versions 23.9, 23.10, and 23.11 before 23.11.13168.7, potentially enabling unauthorized access to the object.

    Published: 28 Nov 2023
    5.4
    Medium

    CVE-2023-6359

    Last Modified: 21 Nov 2024

    A Cross-Site Scripting (XSS) vulnerability has been found in Alumne LMS affecting version 4.0.0.1.08. An attacker could exploit the 'localidad' parameter to inject a custom JavaScript payload and partially take over another user's browser session, due to the lack of proper sanitisation of the 'localidad' field on the /users/editmy page.

    Published: 28 Nov 2023
    8.8
    High

    CVE-2023-6201

    Last Modified: 20 May 2026

    Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Univera Computer System Panorama allows Command Injection. This issue affects Panorama: before 8.0.

    Published: 28 Nov 2023
    8
    High

    CVE-2023-42004

    Last Modified: 21 Nov 2024

    IBM Security Guardium 11.3, 11.4, and 11.5 is potentially vulnerable to CSV injection. A remote attacker could execute malicious commands due to improper validation of csv file contents. IBM X-Force ID: 265262.

    Published: 28 Nov 2023
    7.5
    High

    CVE-2023-6151

    Last Modified: 20 May 2026

    Incorrect Use of Privileged APIs vulnerability in ESKOM Computer e-municipality module allows Collect Data as Provided by Users. This issue affects e-municipality module: before v.105.

    Published: 28 Nov 2023
    7.5
    High

    CVE-2023-6150

    Last Modified: 20 May 2026

    Incorrect Use of Privileged APIs vulnerability in ESKOM Computer e-municipality module allows Collect Data as Provided by Users. This issue affects e-municipality module: before v.105.

    Published: 28 Nov 2023
    5.3
    Medium

    CVE-2023-34054

    Last Modified: 4 Sept 2026

    In Reactor Netty HTTP Server, versions 1.1.x prior to 1.1.13 and versions 1.0.x prior to 1.0.39, it is possible for a user to provide specially crafted HTTP requests that may cause a denial-of-service (DoS) condition. Specifically, an application is vulnerable if Reactor Netty HTTP Server built-in integration with Micrometer is enabled.

    Published: 28 Nov 2023
    8.1
    High

    CVE-2023-4667

    Last Modified: 21 Nov 2024

    The web interface of the PAC Device allows the device administrator user profile to store malicious scripts in some fields. The stored malicious script is then executed when the GUI is opened by any users of the webserver administration interface.  The root cause of the vulnerability is inadequate input validation and output encoding in the web administration interface component of the firmware. This could lead to  unauthorized access and data leakage

    Published: 28 Nov 2023
    8.8
    High

    CVE-2023-4225

    Last Modified: 5 Jun 2025

    Unrestricted file upload in `/main/inc/ajax/exercise.ajax.php` in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading of PHP files.

    Published: 28 Nov 2023
    8.8
    High

    CVE-2023-4226

    Last Modified: 21 Nov 2024

    Unrestricted file upload in `/main/inc/ajax/work.ajax.php` in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading of PHP files.

    Published: 28 Nov 2023
    8.8
    High

    CVE-2023-4224

    Last Modified: 21 Nov 2024

    Unrestricted file upload in `/main/inc/ajax/dropbox.ajax.php` in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading of PHP files.

    Published: 28 Nov 2023
    8.8
    High

    CVE-2023-4223

    Last Modified: 2 Dec 2024

    Unrestricted file upload in `/main/inc/ajax/document.ajax.php` in Chamilo LMS <= v1.11.24 allows authenticated attackers with learner role to obtain remote code execution via uploading of PHP files.

    Published: 28 Nov 2023