Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Total 210374 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-21757 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2023-01-18 N/A 7.5 HIGH
Windows Layer 2 Tunneling Protocol (L2TP) Denial of Service Vulnerability.
CVE-2015-10038 1 Pplv2 Project 1 Pplv2 2023-01-18 N/A 8.0 HIGH
A vulnerability was found in nym3r0s pplv2. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection. The name of the patch is 28f8b0550104044da09f04659797487c59f85b00. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-218023.
CVE-2014-125076 1 Criminals Project 1 Criminals 2023-01-18 N/A 9.8 CRITICAL
A vulnerability was found in NoxxieNl Criminals. It has been classified as critical. Affected is an unknown function of the file ingame/roulette.php. The manipulation of the argument gambleMoney leads to sql injection. The name of the patch is 0a60b31271d4cbf8babe4be993d2a3a1617f0897. It is recommended to apply a patch to fix this issue. VDB-218022 is the identifier assigned to this vulnerability.
CVE-2023-21765 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2023-01-18 N/A 7.8 HIGH
Windows Print Spooler Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21678, CVE-2023-21760.
CVE-2023-21764 1 Microsoft 1 Exchange Server 2023-01-18 N/A 7.8 HIGH
Microsoft Exchange Server Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21763.
CVE-2023-21763 1 Microsoft 1 Exchange Server 2023-01-18 N/A 7.8 HIGH
Microsoft Exchange Server Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21764.
CVE-2023-21762 1 Microsoft 1 Exchange Server 2023-01-18 N/A 8.0 HIGH
Microsoft Exchange Server Spoofing Vulnerability. This CVE ID is unique from CVE-2023-21745.
CVE-2023-21761 1 Microsoft 1 Exchange Server 2023-01-18 N/A 7.5 HIGH
Microsoft Exchange Server Information Disclosure Vulnerability.
CVE-2023-21760 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2023-01-18 N/A 7.1 HIGH
Windows Print Spooler Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21678, CVE-2023-21765.
CVE-2023-21759 1 Microsoft 3 Windows 10, Windows 11, Windows Server 2022 2023-01-18 N/A 3.3 LOW
Windows Smart Card Resource Management Server Security Feature Bypass Vulnerability.
CVE-2023-21758 1 Microsoft 5 Windows 10, Windows 11, Windows Server 2016 and 2 more 2023-01-18 N/A 7.5 HIGH
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability. This CVE ID is unique from CVE-2023-21677, CVE-2023-21683.
CVE-2015-10039 1 Domino Project 1 Domino 2023-01-18 N/A 8.0 HIGH
A vulnerability was found in dobos domino. It has been rated as critical. Affected by this issue is some unknown functionality in the library src/Complex.Domino.Lib/Lib/EntityFactory.cs. The manipulation leads to sql injection. Upgrading to version 0.1.5524.38553 is able to address this issue. The name of the patch is 16f039073709a21a76526110d773a6cce0ce753a. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-218024.
CVE-2006-3360 1 Phpsysinfo 1 Phpsysinfo 2023-01-18 5.0 MEDIUM N/A
Directory traversal vulnerability in index.php in phpSysInfo 2.5.1 allows remote attackers to determine the existence of arbitrary files via a .. (dot dot) sequence and a trailing null (%00) byte in the lng parameter, which will display a different error message if the file exists.
CVE-2022-34335 2 Ibm, Linux 2 Sterling Partner Engagement Manager, Linux Kernel 2023-01-18 N/A 6.5 MEDIUM
IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.1 could allow an authenticated user to exhaust server resources which could lead to a denial of service. IBM X-Force ID: 229705.
CVE-2022-40615 2 Ibm, Linux 2 Sterling Partner Engagement Manager, Linux Kernel 2023-01-18 N/A 9.8 CRITICAL
IBM Sterling Partner Engagement Manager 6.1, 6.2, and 6.2.1 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 236208.
CVE-2012-10004 1 Backdropcms 1 Basic Cart 2023-01-18 N/A 6.1 MEDIUM
A vulnerability was found in backdrop-contrib Basic Cart. It has been classified as problematic. Affected is the function basic_cart_checkout_form_submit of the file basic_cart.cart.inc. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. Upgrading to version 1.x-1.1.1 is able to address this issue. The name of the patch is a10424ccd4b3b4b433cf33b73c1ad608b11890b4. It is recommended to upgrade the affected component. VDB-217950 is the identifier assigned to this vulnerability.
CVE-2015-10037 1 Aci Escola Project 1 Aci Escola 2023-01-18 N/A 9.8 CRITICAL
A vulnerability, which was classified as critical, was found in ACI_Escola. This affects an unknown part. The manipulation leads to sql injection. The name of the patch is 34eed1f7b9295d1424912f79989d8aba5de41e9f. It is recommended to apply a patch to fix this issue. The identifier VDB-217965 was assigned to this vulnerability.
CVE-2015-10036 1 Dronfelipe Project 1 Dronfelipe 2023-01-18 N/A 9.8 CRITICAL
A vulnerability was found in kylebebak dronfelipe. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection. The name of the patch is 87405b74fe651892d79d0dff62ed17a7eaef6a60. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217951.
CVE-2022-42271 1 Nvidia 2 Dgx A100, Dgx A100 Firmware 2023-01-18 N/A 7.8 HIGH
NVIDIA BMC contains a vulnerability in IPMI handler, where an authorized attacker can cause a buffer overflow and cause a denial of service or gain code execution
CVE-2023-21779 1 Microsoft 1 Visual Studio Code 2023-01-18 N/A 7.8 HIGH
Visual Studio Code Remote Code Execution.