CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2023-20034

    Last Modified: 21 Nov 2024

    Vulnerability in the Elasticsearch database used in the of Cisco SD-WAN vManage software could allow an unauthenticated, remote attacker to access the Elasticsearch configuration database of an affected device with the privileges of the elasticsearch user. These vulnerability is due to the presence of a static username and password configured on the vManage. An attacker could exploit this vulnerability by sending a crafted HTTP request to a reachable vManage on port 9200. A successful exploit could allow the attacker to view the Elasticsearch database content. There are workarounds that address this vulnerability.

    Published: 27 Sept 2023
    7.1
    High

    CVE-2023-20253

    Last Modified: 21 Nov 2024

    A vulnerability in the command line interface (cli) management interface of Cisco SD-WAN vManage could allow an authenticated, local attacker to bypass authorization and allow the attacker to roll back the configuration on vManage controllers and edge router device. This vulnerability is due to improper access control in the cli-management interface of an affected system. An attacker with low-privilege (read only) access to the cli could exploit this vulnerability by sending a request to roll back the configuration on for other controller and devices managed by an affected system. A successful exploit could allow the attacker to to roll back the configuration on for other controller and devices managed by an affected system.

    Published: 27 Sept 2023
    7.2
    High

    CVE-2023-20254

    Last Modified: 16 Dec 2025

    A vulnerability in the session management system of the Cisco Catalyst SD-WAN Manager multi-tenant feature could allow an authenticated, remote attacker to access another tenant that is being managed by the same Cisco Catalyst SD-WAN Manager instance. This vulnerability requires the multi-tenant feature to be enabled. This vulnerability is due to insufficient user session management within the Cisco Catalyst SD-WAN Manager system. An attacker could exploit this vulnerability by sending a crafted request to an affected system. A successful exploit could allow the attacker to gain unauthorized access to information about another tenant, make configuration changes, or possibly take a tenant offline causing a denial of service condition.

    Published: 27 Sept 2023
    7.3
    High

    CVE-2023-32458

    Last Modified: 21 Nov 2024

    Dell AppSync, versions 4.4.0.0 to 4.6.0.0 including Service Pack releases, contains an improper access control vulnerability in Embedded Service Enabler component. A local malicious user could potentially exploit this vulnerability during installation leading to a privilege escalation.

    Published: 27 Sept 2023
    5.9
    Medium

    CVE-2023-4129

    Last Modified: 21 Nov 2024

    Dell Data Protection Central, version 19.9, contains an Inadequate Encryption Strength Vulnerability. An unauthenticated network attacker could potentially exploit this vulnerability, allowing an attacker to recover plaintext from a block of ciphertext.

    Published: 27 Sept 2023
    6.8
    Medium

    CVE-2023-43125

    Last Modified: 21 Nov 2024

    BIG-IP APM clients may send IP traffic outside of the VPN tunnel.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

    Published: 27 Sept 2023
    5.3
    Medium

    CVE-2023-43124

    Last Modified: 21 Nov 2024

    BIG-IP APM clients may send IP traffic outside of the VPN tunnel.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

    Published: 27 Sept 2023
    5.3
    Medium

    CVE-2023-40049

    Last Modified: 21 Nov 2024

    In WS_FTP Server version prior to 8.8.2, an unauthenticated user could enumerate files under the 'WebServiceHost' directory listing.

    Published: 27 Sept 2023
    6.8
    Medium

    CVE-2023-40048

    Last Modified: 21 Nov 2024

    In WS_FTP Server version prior to 8.8.2, the WS_FTP Server Manager interface was missing cross-site request forgery (CSRF) protection on a POST transaction corresponding to a WS_FTP Server administrative function.

    Published: 27 Sept 2023
    8.3
    High

    CVE-2023-40047

    Last Modified: 21 Nov 2024

    In WS_FTP Server version prior to 8.8.2, a stored cross-site scripting (XSS) vulnerability exists in WS_FTP Server's Management module. An attacker with administrative privileges could import a SSL certificate with malicious attributes containing cross-site scripting payloads.  Once the cross-site scripting payload is successfully stored,  an attacker could leverage this vulnerability to target WS_FTP Server admins with a specialized payload which results in the execution of malicious JavaScript within the context of the victims browser.

    Published: 27 Sept 2023
    8.2
    High

    CVE-2023-40046

    Last Modified: 21 Nov 2024

    In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a SQL injection vulnerability exists in the WS_FTP Server manager interface. An attacker may be able to infer information about the structure and contents of the database and execute SQL statements that alter or delete database elements.

    Published: 27 Sept 2023
    8.3
    High

    CVE-2023-40045

    Last Modified: 21 Nov 2024

    In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a reflected cross-site scripting (XSS) vulnerability exists in WS_FTP Server's Ad Hoc Transfer module.  An attacker could leverage this vulnerability to target WS_FTP Server users with a specialized payload which results in the execution of malicious JavaScript within the context of the victims browser.

    Published: 27 Sept 2023
    9.9
    Critical

    CVE-2023-42657

    Last Modified: 21 Nov 2024

    In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a directory traversal vulnerability was discovered.  An attacker could leverage this vulnerability to perform file operations (delete, rename, rmdir, mkdir) on files and folders outside of their authorized WS_FTP folder path.  Attackers could also escape the context of the WS_FTP Server file structure and perform the same level of operations (delete, rename, rmdir, mkdir) on file and folder locations on the underlying operating system.

    Published: 27 Sept 2023
    10
    Critical

    CVE-2023-40044

    Last Modified: 31 Oct 2025

    In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a pre-authenticated attacker could leverage a .NET deserialization vulnerability in the Ad Hoc Transfer module to execute remote commands on the underlying WS_FTP Server operating system.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-5175

    Last Modified: 1 May 2025

    During process shutdown, it was possible that an `ImageBitmap` was created that would later be used after being freed from a different codepath, leading to a potentially exploitable crash. This vulnerability affects Firefox < 118.

    Published: 27 Sept 2023
    7.5
    High

    CVE-2023-5173

    Last Modified: 13 Feb 2025

    In a non-standard configuration of Firefox, an integer overflow could have occurred based on network traffic (possibly under influence of a local unprivileged webpage), leading to an out-of-bounds write to privileged process memory. *This bug only affects Firefox if a non-standard preference allowing non-HTTPS Alternate Services (`network.http.altsvc.oe`) is enabled.* This vulnerability affects Firefox < 118.

    Published: 27 Sept 2023
    9.8
    Critical

    CVE-2023-5172

    Last Modified: 1 May 2025

    A hashtable in the Ion Engine could have been mutated while there was a live interior reference, leading to a potential use-after-free and exploitable crash. This vulnerability affects Firefox < 118.

    Published: 27 Sept 2023
    7.4
    High

    CVE-2023-5170

    Last Modified: 13 Feb 2025

    In canvas rendering, a compromised content process could have caused a surface to change unexpectedly, leading to a memory leak of a privileged process. This memory leak could be used to effect a sandbox escape if the correct data was leaked. This vulnerability affects Firefox < 118.

    Published: 27 Sept 2023
    3.6
    Low

    CVE-2023-44129

    Last Modified: 21 Nov 2024

    The vulnerability is that the Messaging ("com.android.mms") app patched by LG forwards attacker-controlled intents back to the attacker in the exported "com.android.mms.ui.QClipIntentReceiverActivity" activity. The attacker can abuse this functionality by launching this activity and then sending a broadcast with the "com.lge.message.action.QCLIP" action. The attacker can send, e.g., their own data/clipdata and set Intent.FLAG_GRANT_* flags. After the attacker received that intent in the "onActivityResult()" method, they would have access to arbitrary content providers that have the `android:grantUriPermissions="true"` flag set.

    Published: 27 Sept 2023
    5
    Medium

    CVE-2023-44128

    Last Modified: 21 Nov 2024

    he vulnerability is to delete arbitrary files in LGInstallService ("com.lge.lginstallservies") app. The app contains the exported "com.lge.lginstallservies.InstallService" service that exposes an AIDL interface. All its "installPackage*" methods are finally calling the "installPackageVerify()" method that performs signature validation after the delete file method. An attacker can control conditions so this security check is never performed and an attacker-controlled file is deleted.

    Published: 27 Sept 2023
    3.6
    Low

    CVE-2023-44127

    Last Modified: 21 Nov 2024

    he vulnerability is that the Call management ("com.android.server.telecom") app patched by LG launches implicit intents that disclose sensitive data to all third-party apps installed on the same device. Those intents include data such as contact details and phone numbers.

    Published: 27 Sept 2023
    3.6
    Low

    CVE-2023-44126

    Last Modified: 21 Nov 2024

    The vulnerability is that the Call management ("com.android.server.telecom") app patched by LG sends a lot of LG-owned implicit broadcasts that disclose sensitive data to all third-party apps installed on the same device. Those intents include data such as call states, durations, called numbers, contacts info, etc.

    Published: 27 Sept 2023
    6.3
    Medium

    CVE-2023-5223

    Last Modified: 21 Nov 2024

    A vulnerability, which was classified as critical, has been found in HimitZH HOJ up to 4.6-9a65e3f. This issue affects some unknown processing of the component Topic Handler. The manipulation leads to sandbox issue. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-240365 was assigned to this vulnerability.

    Published: 27 Sept 2023
    6.1
    Medium

    CVE-2023-44125

    Last Modified: 21 Nov 2024

    The vulnerability is the use of implicit PendingIntents without the PendingIntent.FLAG_IMMUTABLE set that leads to theft and/or (over-)write of arbitrary files with system privilege in the Personalized service ("com.lge.abba") app. The attacker's app, if it had access to app notifications, could intercept them and redirect them to its activity, before making it grant access permissions to content providers with the `android:grantUriPermissions="true"` flag.

    Published: 27 Sept 2023
    6.1
    Medium

    CVE-2023-44124

    Last Modified: 21 Nov 2024

    The vulnerability is to theft of arbitrary files with system privilege in the Screen recording ("com.lge.gametools.gamerecorder") app in the "com/lge/gametools/gamerecorder/settings/ProfilePreferenceFragment.java" file. The main problem is that the app launches implicit intents that can be intercepted by third-party apps installed on the same device. They also can return arbitrary data that will be passed to the "onActivityResult()" method. The Screen recording app saves contents of arbitrary URIs to SD card which is a world-readable storage.

    Published: 27 Sept 2023
    6.1
    Medium

    CVE-2023-44123

    Last Modified: 21 Nov 2024

    The vulnerability is the use of implicit PendingIntents with the PendingIntent.FLAG_MUTABLE set that leads to theft and/or (over-)write of arbitrary files with system privilege in the Bluetooth ("com.lge.bluetoothsetting") app. The attacker's app, if it had access to app notifications, could intercept them and redirect them to its activity, before making it grant access permissions to content providers with the `android:grantUriPermissions="true"` flag.

    Published: 27 Sept 2023
    6.1
    Medium

    CVE-2023-44122

    Last Modified: 21 Nov 2024

    The vulnerability is to theft of arbitrary files with system privilege in the LockScreenSettings ("com.lge.lockscreensettings") app in the "com/lge/lockscreensettings/dynamicwallpaper/MyCategoryGuideActivity.java" file. The main problem is that the app launches implicit intents that can be intercepted by third-party apps installed on the same device. They also can return arbitrary data that will be passed to the "onActivityResult()" method. The LockScreenSettings app copies the received file to the "/data/shared/dw/mycategory/wallpaper_01.png" path and then changes the file access mode to world-readable and world-writable.

    Published: 27 Sept 2023
    6.3
    Medium

    CVE-2023-5222

    Last Modified: 21 Nov 2024

    A vulnerability classified as critical was found in Viessmann Vitogate 300 up to 2.1.3.0. This vulnerability affects the function isValidUser of the file /cgi-bin/vitogate.cgi of the component Web Management Interface. The manipulation leads to use of hard-coded password. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-240364. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 27 Sept 2023
    4.7
    Medium

    CVE-2023-5221

    Last Modified: 21 Nov 2024

    A vulnerability classified as critical has been found in ForU CMS. This affects an unknown part of the file /install/index.php. The manipulation of the argument db_name leads to code injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This product does not use versioning. This is why information about affected and unaffected releases are unavailable. The associated identifier of this vulnerability is VDB-240363. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 27 Sept 2023
    7.1
    High

    CVE-2023-41653

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Beplus Sermon'e – Sermons Online plugin <= 1.0.0 versions.

    Published: 27 Sept 2023
    5.9
    Medium

    CVE-2023-41242

    Last Modified: 21 Nov 2024

    Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Hassan Ali Snap Pixel plugin <= 1.5.7 versions.

    Published: 27 Sept 2023
    5.9
    Medium

    CVE-2023-41241

    Last Modified: 21 Nov 2024

    Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in SureCart WordPress Ecommerce For Creating Fast Online Stores plugin <= 2.5.0 versions.

    Published: 27 Sept 2023
    7.5
    High

    CVE-2023-42487

    Last Modified: 21 Nov 2024

    Soundminer – CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

    Published: 27 Sept 2023
    6.3
    Medium

    CVE-2023-42486

    Last Modified: 21 Nov 2024

    Fortect - CWE-428: Unquoted Search Path or Element, may be used by local user to elevate privileges.

    Published: 27 Sept 2023
    7.6
    High

    CVE-2023-4003

    Last Modified: 21 Nov 2024

    One Identity Password Manager version 5.9.7.1 - An unauthenticated attacker with physical access to a workstation may upgrade privileges to SYSTEM through an unspecified method. CWE-250: Execution with Unnecessary Privileges.

    Published: 27 Sept 2023
    5.4
    Medium

    CVE-2023-44207

    Last Modified: 21 Nov 2024

    Stored cross-site scripting (XSS) vulnerability in protection plan name. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    9.1
    Critical

    CVE-2023-44206

    Last Modified: 21 Nov 2024

    Sensitive information disclosure and manipulation due to improper authorization. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    7.5
    High

    CVE-2023-44159

    Last Modified: 21 Nov 2024

    Sensitive information disclosure due to cleartext storage of sensitive information. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    7.5
    High

    CVE-2023-44156

    Last Modified: 21 Nov 2024

    Sensitive information disclosure due to spell-jacking. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    5.3
    Medium

    CVE-2023-44205

    Last Modified: 21 Nov 2024

    Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    6.5
    Medium

    CVE-2023-44161

    Last Modified: 21 Nov 2024

    Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    6.5
    Medium

    CVE-2023-44160

    Last Modified: 21 Nov 2024

    Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    7.5
    High

    CVE-2023-44158

    Last Modified: 21 Nov 2024

    Sensitive information disclosure due to insufficient token field masking. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    7.8
    High

    CVE-2023-44157

    Last Modified: 21 Nov 2024

    Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect 15 (Windows) before build 35979.

    Published: 27 Sept 2023
    7.5
    High

    CVE-2023-44155

    Last Modified: 21 Nov 2024

    Sensitive information leak through log files. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    8.1
    High

    CVE-2023-44154

    Last Modified: 21 Nov 2024

    Sensitive information disclosure and manipulation due to improper authorization. The following products are affected: Acronis Cyber Protect 15 (Linux, Windows) before build 35979.

    Published: 27 Sept 2023
    7.5
    High

    CVE-2023-44153

    Last Modified: 21 Nov 2024

    Sensitive information disclosure due to cleartext storage of sensitive information in memory. The following products are affected: Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 35979.

    Published: 27 Sept 2023
    9.1
    Critical

    CVE-2023-44152

    Last Modified: 21 Nov 2024

    Sensitive information disclosure and manipulation due to improper authentication. The following products are affected: Acronis Cyber Protect 15 (Linux, macOS, Windows) before build 35979.

    Published: 27 Sept 2023
    7.1
    High

    CVE-2023-41238

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in UltimatelySocial Social Media Share Buttons & Social Sharing Icons plugin <= 2.8.3 versions.

    Published: 27 Sept 2023
    7.1
    High

    CVE-2023-41237

    Last Modified: 21 Nov 2024

    Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest Themes Arya Multipurpose Pro theme <= 1.0.8 versions.

    Published: 27 Sept 2023