Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 799 800 801 802 803 804 805 806 807 808 [809] 810 811 812 813 814 815 816 817 818 819 ... Result(s) : 300250

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
N/A 2025-03-04 CVE-2024-11957 cve Improper verification of the digital signature in ksojscore.dll in Kingsoft WPS Office in versions equal or less than 12.1.0.18276 on Windows allows an attacker to load an arb...
N/A 2025-03-04 CVE-2024-50704 cve Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via a specially crafted HTTP POST requ...
N/A 2025-03-04 CVE-2024-50707 cve Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to execute arbitrary code via the X-Forwarded-For header in an H...
N/A 2025-03-04 CVE-2025-1424 cve A privilege escalation vulnerability in PocketBook InkPad Color 3 allows attackers to escalate to root privileges if they gain physical access to the device. This issue affects ...
N/A 2025-03-04 CVE-2025-1425 cve A Sudo privilege misconfiguration vulnerability in PocketBook InkPad Color 3 on Linux, ARM allows attackers to read file contents on the device.This issue affects InkPad Color 3...
N/A 2025-03-04 CVE-2025-23368 cve A flaw was found in Wildfly Elytron integration. The component does not implement sufficient measures to prevent multiple failed authentication attempts within a short time fram...
N/A 2025-03-04 CVE-2025-26320 cve t0mer BroadlinkManager v5.9.1 was discovered to contain an OS command injection vulnerability via the IP Address parameter at /device/ping.
N/A 2025-03-04 CVE-2025-27111 cve Rack is a modular Ruby web server interface. The Rack::Sendfile middleware logs unsanitised header values from the X-Sendfile-Type header. An attacker can exploit this by inject...
N/A 2025-03-04 CVE-2025-26091 cve A Cross Site Scripting (XSS) vulnerability exists in TeamPasswordManager v12.162.284 and before that could allow a remote attacker to execute arbitrary JavaScript in the web bro...
N/A 2025-03-04 CVE-2025-26182 cve An issue in xxyopen novel plus v.4.4.0 and before allows a remote attacker to execute arbitrary code via the PageController.java file
N/A 2025-03-04 CVE-2025-27150 cve Tuleap is an Open Source Suite to improve management of software developments and collaboration. The password to connect the Redis instance is not purged from the archive genera...
N/A 2025-03-04 CVE-2025-27155 cve Pinecone is an experimental overlay routing protocol suite which is the foundation of the current P2P Matrix demos. The Pinecone Simulator (pineconesim) included in Pinecone up ...
N/A 2025-03-04 CVE-2025-27156 cve Tuleap is an Open Source Suite to improve management of software developments and collaboration. The mass emailing features do not sanitize the content of the HTML emails. A mal...
N/A 2025-03-04 CVE-2025-27401 cve Tuleap is an Open Source Suite to improve management of software developments and collaboration. In a standard usages of Tuleap, the issue has a limited impact, it will mostly l...
N/A 2025-03-04 CVE-2025-27402 cve Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap is missing CSRF protections on tracker fields administrative operations. ...
N/A 2025-03-04 CVE-2025-27507 cve The open-source identity infrastructure software Zitadel allows administrators to disable the user self-registration. ZITADEL's Admin API contains Insecure Direct Object Re...
N/A 2025-03-04 CVE-2024-10930 cve An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking and execute arbitrary code with escalated privileges.
N/A 2025-03-04 CVE-2024-41147 cve An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio v0.11.21. A specially crafted .flac file can lead to memo...
8.2 2025-03-04 CVE-2025-22224 cve VMware ESXi, and Workstation contain a TOCTOU (Time-of-Check Time-of-Use) vulnerability that leads to an out-of-bounds write. A malicious actor with local administrative privile...
8.2 2025-03-04 CVE-2025-22225 cve VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the...
Page(s) : 1 ... 799 800 801 802 803 804 805 806 807 808 [809] 810 811 812 813 814 815 816 817 818 819 ... Result(s) : 300250