Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-21704 | 1 Microsoft | 1 Sql Server | 2023-02-23 | N/A | 7.8 HIGH |
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | |||||
CVE-2023-21703 | 1 Microsoft | 2 Azure Data Box Gateway, Azure Stack Edge | 2023-02-23 | N/A | 7.2 HIGH |
Azure Data Box Gateway Remote Code Execution Vulnerability | |||||
CVE-2023-21702 | 1 Microsoft | 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more | 2023-02-23 | N/A | 7.5 HIGH |
Windows iSCSI Service Denial of Service Vulnerability | |||||
CVE-2023-21701 | 1 Microsoft | 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more | 2023-02-23 | N/A | 7.5 HIGH |
Microsoft Protected Extensible Authentication Protocol (PEAP) Denial of Service Vulnerability | |||||
CVE-2023-21700 | 1 Microsoft | 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more | 2023-02-23 | N/A | 7.5 HIGH |
Windows iSCSI Discovery Service Denial of Service Vulnerability | |||||
CVE-2023-21699 | 1 Microsoft | 10 Windows 10, Windows 10 1607, Windows 10 1809 and 7 more | 2023-02-23 | N/A | 5.3 MEDIUM |
Windows Internet Storage Name Service (iSNS) Server Information Disclosure Vulnerability | |||||
CVE-2023-22932 | 1 Splunk | 2 Splunk, Splunk Cloud Platform | 2023-02-23 | N/A | 6.1 MEDIUM |
In Splunk Enterprise 9.0 versions before 9.0.4, a View allows for Cross-Site Scripting (XSS) through the error message in a Base64-encoded image. The vulnerability affects instances with Splunk Web enabled. It does not affect Splunk Enterprise versions below 9.0. | |||||
CVE-2023-22931 | 1 Splunk | 2 Splunk, Splunk Cloud Platform | 2023-02-23 | N/A | 4.3 MEDIUM |
In Splunk Enterprise versions below 8.1.13 and 8.2.10, the ‘createrss’ external search command overwrites existing Resource Description Format Site Summary (RSS) feeds without verifying permissions. This feature has been deprecated and disabled by default. | |||||
CVE-2023-21697 | 1 Microsoft | 10 Windows 10, Windows 10 1607, Windows 10 1809 and 7 more | 2023-02-23 | N/A | 5.5 MEDIUM |
Windows Internet Storage Name Service (iSNS) Server Information Disclosure Vulnerability | |||||
CVE-2023-21695 | 1 Microsoft | 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more | 2023-02-23 | N/A | 8.8 HIGH |
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability | |||||
CVE-2023-21694 | 1 Microsoft | 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more | 2023-02-23 | N/A | 6.8 MEDIUM |
Windows Fax Service Remote Code Execution Vulnerability | |||||
CVE-2021-45032 | 2023-02-23 | N/A | N/A | ||
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | |||||
CVE-2021-4243 | 2023-02-23 | N/A | N/A | ||
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-32850. Reason: This candidate is a duplicate of CVE-2021-32850. Notes: All CVE users should reference CVE-2021-32850 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage. | |||||
CVE-2023-24996 | 1 Siemens | 1 Tecnomatix Plant Simulation | 2023-02-23 | N/A | 7.8 HIGH |
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19818) | |||||
CVE-2023-24995 | 1 Siemens | 1 Tecnomatix Plant Simulation | 2023-02-23 | N/A | 7.8 HIGH |
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19817) | |||||
CVE-2023-24994 | 1 Siemens | 1 Tecnomatix Plant Simulation | 2023-02-23 | N/A | 7.8 HIGH |
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19816) | |||||
CVE-2023-24993 | 1 Siemens | 1 Tecnomatix Plant Simulation | 2023-02-23 | N/A | 7.8 HIGH |
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19815) | |||||
CVE-2023-24992 | 1 Siemens | 1 Tecnomatix Plant Simulation | 2023-02-23 | N/A | 7.8 HIGH |
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19814) | |||||
CVE-2022-1015 | 2 Fedoraproject, Linux | 2 Fedora, Linux Kernel | 2023-02-23 | 4.6 MEDIUM | 6.6 MEDIUM |
A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c of the netfilter subsystem. This flaw allows a local user to cause an out-of-bounds write issue. | |||||
CVE-2022-48322 | 1 Netgear | 12 Mr60, Mr60 Firmware, Ms60 and 9 more | 2023-02-22 | N/A | 9.8 CRITICAL |
NETGEAR Nighthawk WiFi Mesh systems and routers are affected by a stack-based buffer overflow vulnerability. This affects MR60 before 1.1.7.132, MS60 before 1.1.7.132, R6900P before 1.3.3.154, R7000P before 1.3.3.154, R7960P before 1.4.4.94, and R8000P before 1.4.4.94. |