Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Total 210374 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-21704 1 Microsoft 1 Sql Server 2023-02-23 N/A 7.8 HIGH
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-21703 1 Microsoft 2 Azure Data Box Gateway, Azure Stack Edge 2023-02-23 N/A 7.2 HIGH
Azure Data Box Gateway Remote Code Execution Vulnerability
CVE-2023-21702 1 Microsoft 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more 2023-02-23 N/A 7.5 HIGH
Windows iSCSI Service Denial of Service Vulnerability
CVE-2023-21701 1 Microsoft 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more 2023-02-23 N/A 7.5 HIGH
Microsoft Protected Extensible Authentication Protocol (PEAP) Denial of Service Vulnerability
CVE-2023-21700 1 Microsoft 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more 2023-02-23 N/A 7.5 HIGH
Windows iSCSI Discovery Service Denial of Service Vulnerability
CVE-2023-21699 1 Microsoft 10 Windows 10, Windows 10 1607, Windows 10 1809 and 7 more 2023-02-23 N/A 5.3 MEDIUM
Windows Internet Storage Name Service (iSNS) Server Information Disclosure Vulnerability
CVE-2023-22932 1 Splunk 2 Splunk, Splunk Cloud Platform 2023-02-23 N/A 6.1 MEDIUM
In Splunk Enterprise 9.0 versions before 9.0.4, a View allows for Cross-Site Scripting (XSS) through the error message in a Base64-encoded image. The vulnerability affects instances with Splunk Web enabled. It does not affect Splunk Enterprise versions below 9.0.
CVE-2023-22931 1 Splunk 2 Splunk, Splunk Cloud Platform 2023-02-23 N/A 4.3 MEDIUM
In Splunk Enterprise versions below 8.1.13 and 8.2.10, the ‘createrss’ external search command overwrites existing Resource Description Format Site Summary (RSS) feeds without verifying permissions. This feature has been deprecated and disabled by default.
CVE-2023-21697 1 Microsoft 10 Windows 10, Windows 10 1607, Windows 10 1809 and 7 more 2023-02-23 N/A 5.5 MEDIUM
Windows Internet Storage Name Service (iSNS) Server Information Disclosure Vulnerability
CVE-2023-21695 1 Microsoft 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more 2023-02-23 N/A 8.8 HIGH
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
CVE-2023-21694 1 Microsoft 13 Windows 10, Windows 10 1607, Windows 10 1809 and 10 more 2023-02-23 N/A 6.8 MEDIUM
Windows Fax Service Remote Code Execution Vulnerability
CVE-2021-45032 2023-02-23 N/A N/A
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2021-4243 2023-02-23 N/A N/A
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-32850. Reason: This candidate is a duplicate of CVE-2021-32850. Notes: All CVE users should reference CVE-2021-32850 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.
CVE-2023-24996 1 Siemens 1 Tecnomatix Plant Simulation 2023-02-23 N/A 7.8 HIGH
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19818)
CVE-2023-24995 1 Siemens 1 Tecnomatix Plant Simulation 2023-02-23 N/A 7.8 HIGH
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19817)
CVE-2023-24994 1 Siemens 1 Tecnomatix Plant Simulation 2023-02-23 N/A 7.8 HIGH
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19816)
CVE-2023-24993 1 Siemens 1 Tecnomatix Plant Simulation 2023-02-23 N/A 7.8 HIGH
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19815)
CVE-2023-24992 1 Siemens 1 Tecnomatix Plant Simulation 2023-02-23 N/A 7.8 HIGH
A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19814)
CVE-2022-1015 2 Fedoraproject, Linux 2 Fedora, Linux Kernel 2023-02-23 4.6 MEDIUM 6.6 MEDIUM
A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c of the netfilter subsystem. This flaw allows a local user to cause an out-of-bounds write issue.
CVE-2022-48322 1 Netgear 12 Mr60, Mr60 Firmware, Ms60 and 9 more 2023-02-22 N/A 9.8 CRITICAL
NETGEAR Nighthawk WiFi Mesh systems and routers are affected by a stack-based buffer overflow vulnerability. This affects MR60 before 1.1.7.132, MS60 before 1.1.7.132, R6900P before 1.3.3.154, R7000P before 1.3.3.154, R7960P before 1.4.4.94, and R8000P before 1.4.4.94.