Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-21757 | 1 Microsoft | 10 Windows 10, Windows 11, Windows 7 and 7 more | 2023-01-18 | N/A | 7.5 HIGH |
Windows Layer 2 Tunneling Protocol (L2TP) Denial of Service Vulnerability. | |||||
CVE-2015-10038 | 1 Pplv2 Project | 1 Pplv2 | 2023-01-18 | N/A | 8.0 HIGH |
A vulnerability was found in nym3r0s pplv2. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection. The name of the patch is 28f8b0550104044da09f04659797487c59f85b00. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-218023. | |||||
CVE-2014-125076 | 1 Criminals Project | 1 Criminals | 2023-01-18 | N/A | 9.8 CRITICAL |
A vulnerability was found in NoxxieNl Criminals. It has been classified as critical. Affected is an unknown function of the file ingame/roulette.php. The manipulation of the argument gambleMoney leads to sql injection. The name of the patch is 0a60b31271d4cbf8babe4be993d2a3a1617f0897. It is recommended to apply a patch to fix this issue. VDB-218022 is the identifier assigned to this vulnerability. | |||||
CVE-2023-21765 | 1 Microsoft | 10 Windows 10, Windows 11, Windows 7 and 7 more | 2023-01-18 | N/A | 7.8 HIGH |
Windows Print Spooler Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21678, CVE-2023-21760. | |||||
CVE-2023-21764 | 1 Microsoft | 1 Exchange Server | 2023-01-18 | N/A | 7.8 HIGH |
Microsoft Exchange Server Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21763. | |||||
CVE-2023-21763 | 1 Microsoft | 1 Exchange Server | 2023-01-18 | N/A | 7.8 HIGH |
Microsoft Exchange Server Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21764. | |||||
CVE-2023-21762 | 1 Microsoft | 1 Exchange Server | 2023-01-18 | N/A | 8.0 HIGH |
Microsoft Exchange Server Spoofing Vulnerability. This CVE ID is unique from CVE-2023-21745. | |||||
CVE-2023-21761 | 1 Microsoft | 1 Exchange Server | 2023-01-18 | N/A | 7.5 HIGH |
Microsoft Exchange Server Information Disclosure Vulnerability. | |||||
CVE-2023-21760 | 1 Microsoft | 10 Windows 10, Windows 11, Windows 7 and 7 more | 2023-01-18 | N/A | 7.1 HIGH |
Windows Print Spooler Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21678, CVE-2023-21765. | |||||
CVE-2023-21759 | 1 Microsoft | 3 Windows 10, Windows 11, Windows Server 2022 | 2023-01-18 | N/A | 3.3 LOW |
Windows Smart Card Resource Management Server Security Feature Bypass Vulnerability. | |||||
CVE-2023-21758 | 1 Microsoft | 5 Windows 10, Windows 11, Windows Server 2016 and 2 more | 2023-01-18 | N/A | 7.5 HIGH |
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability. This CVE ID is unique from CVE-2023-21677, CVE-2023-21683. | |||||
CVE-2015-10039 | 1 Domino Project | 1 Domino | 2023-01-18 | N/A | 8.0 HIGH |
A vulnerability was found in dobos domino. It has been rated as critical. Affected by this issue is some unknown functionality in the library src/Complex.Domino.Lib/Lib/EntityFactory.cs. The manipulation leads to sql injection. Upgrading to version 0.1.5524.38553 is able to address this issue. The name of the patch is 16f039073709a21a76526110d773a6cce0ce753a. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-218024. | |||||
CVE-2006-3360 | 1 Phpsysinfo | 1 Phpsysinfo | 2023-01-18 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in index.php in phpSysInfo 2.5.1 allows remote attackers to determine the existence of arbitrary files via a .. (dot dot) sequence and a trailing null (%00) byte in the lng parameter, which will display a different error message if the file exists. | |||||
CVE-2022-34335 | 2 Ibm, Linux | 2 Sterling Partner Engagement Manager, Linux Kernel | 2023-01-18 | N/A | 6.5 MEDIUM |
IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.1 could allow an authenticated user to exhaust server resources which could lead to a denial of service. IBM X-Force ID: 229705. | |||||
CVE-2022-40615 | 2 Ibm, Linux | 2 Sterling Partner Engagement Manager, Linux Kernel | 2023-01-18 | N/A | 9.8 CRITICAL |
IBM Sterling Partner Engagement Manager 6.1, 6.2, and 6.2.1 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 236208. | |||||
CVE-2012-10004 | 1 Backdropcms | 1 Basic Cart | 2023-01-18 | N/A | 6.1 MEDIUM |
A vulnerability was found in backdrop-contrib Basic Cart. It has been classified as problematic. Affected is the function basic_cart_checkout_form_submit of the file basic_cart.cart.inc. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. Upgrading to version 1.x-1.1.1 is able to address this issue. The name of the patch is a10424ccd4b3b4b433cf33b73c1ad608b11890b4. It is recommended to upgrade the affected component. VDB-217950 is the identifier assigned to this vulnerability. | |||||
CVE-2015-10037 | 1 Aci Escola Project | 1 Aci Escola | 2023-01-18 | N/A | 9.8 CRITICAL |
A vulnerability, which was classified as critical, was found in ACI_Escola. This affects an unknown part. The manipulation leads to sql injection. The name of the patch is 34eed1f7b9295d1424912f79989d8aba5de41e9f. It is recommended to apply a patch to fix this issue. The identifier VDB-217965 was assigned to this vulnerability. | |||||
CVE-2015-10036 | 1 Dronfelipe Project | 1 Dronfelipe | 2023-01-18 | N/A | 9.8 CRITICAL |
A vulnerability was found in kylebebak dronfelipe. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection. The name of the patch is 87405b74fe651892d79d0dff62ed17a7eaef6a60. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217951. | |||||
CVE-2022-42271 | 1 Nvidia | 2 Dgx A100, Dgx A100 Firmware | 2023-01-18 | N/A | 7.8 HIGH |
NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause a denial of service or gain code execution | |||||
CVE-2023-21779 | 1 Microsoft | 1 Visual Studio Code | 2023-01-18 | N/A | 7.8 HIGH |
Visual Studio Code Remote Code Execution. |