Total
22706 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-23374 | 2 Google, Microsoft | 2 Android, Edge Chromium | 2023-02-23 | N/A | 8.3 HIGH |
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | |||||
CVE-2023-23376 | 1 Microsoft | 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more | 2023-02-23 | N/A | 7.8 HIGH |
Windows Common Log File System Driver Elevation of Privilege Vulnerability | |||||
CVE-2023-21815 | 1 Microsoft | 3 Visual Studio 2017, Visual Studio 2019, Visual Studio 2022 | 2023-02-23 | N/A | 7.8 HIGH |
Visual Studio Remote Code Execution Vulnerability | |||||
CVE-2023-21778 | 1 Microsoft | 1 Dynamics 365 | 2023-02-23 | N/A | 8.0 HIGH |
Microsoft Dynamics Unified Service Desk Remote Code Execution Vulnerability | |||||
CVE-2023-21566 | 1 Microsoft | 3 Visual Studio 2017, Visual Studio 2019, Visual Studio 2022 | 2023-02-23 | N/A | 7.8 HIGH |
Visual Studio Elevation of Privilege Vulnerability | |||||
CVE-2023-21553 | 1 Microsoft | 1 Azure Devops Server | 2023-02-23 | N/A | 7.5 HIGH |
Azure DevOps Server Remote Code Execution Vulnerability | |||||
CVE-2023-21567 | 1 Microsoft | 3 Visual Studio 2017, Visual Studio 2019, Visual Studio 2022 | 2023-02-23 | N/A | 5.6 MEDIUM |
Visual Studio Denial of Service Vulnerability | |||||
CVE-2023-23379 | 1 Microsoft | 1 Defender For Iot | 2023-02-23 | N/A | 7.2 HIGH |
Microsoft Defender for IoT Elevation of Privilege Vulnerability | |||||
CVE-2023-23382 | 1 Microsoft | 1 Azure Machine Learning | 2023-02-23 | N/A | 7.5 HIGH |
Azure Machine Learning Compute Instance Information Disclosure Vulnerability | |||||
CVE-2023-23378 | 1 Microsoft | 1 Print 3d | 2023-02-23 | N/A | 7.8 HIGH |
Print 3D Remote Code Execution Vulnerability | |||||
CVE-2023-23377 | 1 Microsoft | 1 3d Builder | 2023-02-23 | N/A | 7.8 HIGH |
3D Builder Remote Code Execution Vulnerability | |||||
CVE-2023-23390 | 1 Microsoft | 1 3d Builder | 2023-02-23 | N/A | 7.8 HIGH |
3D Builder Remote Code Execution Vulnerability | |||||
CVE-2023-21685 | 1 Microsoft | 13 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 10 more | 2023-02-23 | N/A | 8.8 HIGH |
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |||||
CVE-2023-21688 | 1 Microsoft | 13 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 10 more | 2023-02-23 | N/A | 7.8 HIGH |
NT OS Kernel Elevation of Privilege Vulnerability | |||||
CVE-2023-20927 | 1 Google | 1 Android | 2023-02-23 | N/A | 7.8 HIGH |
In permissions of AndroidManifest.xml, there is a possible way to grant signature permissions due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-244216503 | |||||
CVE-2022-25153 | 1 Itarian | 1 Endpoint Manager Communication Client | 2023-02-23 | 7.2 HIGH | 7.8 HIGH |
The ITarian Endpoint Manage Communication Client, prior to version 6.43.41148.21120, is compiled using insecure OpenSSL settings. Due to this setting, a malicious actor with low privileges access to a system can escalate his privileges to SYSTEM abusing an insecure openssl.conf lookup. | |||||
CVE-2020-7677 | 3 Debian, Fedoraproject, Thenify Project | 3 Debian Linux, Fedora, Thenify | 2023-02-23 | N/A | 9.8 CRITICAL |
This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization. | |||||
CVE-2023-21568 | 1 Microsoft | 2 Sql Server 2019 Integration Services, Sql Server 2022 Integration Services | 2023-02-23 | N/A | 7.3 HIGH |
Microsoft SQL Server Integration Service (VS extension) Remote Code Execution Vulnerability | |||||
CVE-2023-21707 | 1 Microsoft | 1 Exchange Server | 2023-02-23 | N/A | 8.8 HIGH |
Microsoft Exchange Server Remote Code Execution Vulnerability | |||||
CVE-2023-21710 | 1 Microsoft | 1 Exchange Server | 2023-02-23 | N/A | 7.2 HIGH |
Microsoft Exchange Server Remote Code Execution Vulnerability |