Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2021-36782 | 1 Suse | 1 Rancher | 2023-01-18 | N/A | 9.9 CRITICAL |
A Cleartext Storage of Sensitive Information vulnerability in SUSE Rancher allows authenticated Cluster Owners, Cluster Members, Project Owners, Project Members and User Base to use the Kubernetes API to retrieve plaintext version of sensitive data. This issue affects: SUSE Rancher Rancher versions prior to 2.5.16; Rancher versions prior to 2.6.7. | |||||
CVE-2022-45165 | 1 Archibus | 1 Web Central | 2023-01-18 | N/A | 8.8 HIGH |
An issue was discovered in Archibus Web Central 2022.03.01.107. A service exposed by the application accepts a user-controlled parameter that is used to create an SQL query. It causes this service to be prone to SQL injection. | |||||
CVE-2023-21771 | 1 Microsoft | 3 Windows 10, Windows 11, Windows Server 2022 | 2023-01-18 | N/A | 7.0 HIGH |
Windows Local Session Manager (LSM) Elevation of Privilege Vulnerability. | |||||
CVE-2022-30332 | 1 Talend | 1 Administration Center | 2023-01-18 | N/A | 5.3 MEDIUM |
In Talend Administration Center 7.3.1.20200219 before TAC-15950, the Forgot Password feature provides different error messages for invalid reset attempts depending on whether the email address is associated with any account. This allows remote attackers to enumerate accounts via a series of requests. | |||||
CVE-2023-21753 | 1 Microsoft | 2 Windows 10, Windows Server 2019 | 2023-01-18 | N/A | 5.5 MEDIUM |
Event Tracing for Windows Information Disclosure Vulnerability. This CVE ID is unique from CVE-2023-21536. | |||||
CVE-2023-21745 | 1 Microsoft | 1 Exchange Server | 2023-01-18 | N/A | 8.0 HIGH |
Microsoft Exchange Server Spoofing Vulnerability. This CVE ID is unique from CVE-2023-21762. | |||||
CVE-2021-4287 | 1 Microsoft | 1 Binwalk | 2023-01-18 | N/A | 6.5 MEDIUM |
A vulnerability, which was classified as problematic, was found in ReFirm Labs binwalk up to 2.3.2. Affected is an unknown function of the file src/binwalk/modules/extractor.py of the component Archive Extraction Handler. The manipulation leads to symlink following. It is possible to launch the attack remotely. Upgrading to version 2.3.3 is able to address this issue. The name of the patch is fa0c0bd59b8588814756942fe4cb5452e76c1dcd. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-216876. | |||||
CVE-2023-21744 | 1 Microsoft | 2 Sharepoint Foundation, Sharepoint Server | 2023-01-17 | N/A | 8.8 HIGH |
Microsoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21742. | |||||
CVE-2023-21743 | 1 Microsoft | 1 Sharepoint Server | 2023-01-17 | N/A | 5.3 MEDIUM |
Microsoft SharePoint Server Security Feature Bypass Vulnerability. | |||||
CVE-2023-21742 | 1 Microsoft | 2 Sharepoint Foundation, Sharepoint Server | 2023-01-17 | N/A | 8.8 HIGH |
Microsoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21744. | |||||
CVE-2023-21735 | 1 Microsoft | 3 365 Apps, Office, Office Long Term Servicing Channel | 2023-01-17 | N/A | 7.8 HIGH |
Microsoft Office Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21734. | |||||
CVE-2023-21734 | 1 Microsoft | 3 365 Apps, Office, Office Long Term Servicing Channel | 2023-01-17 | N/A | 7.8 HIGH |
Microsoft Office Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21735. | |||||
CVE-2023-21674 | 1 Microsoft | 11 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 8 more | 2023-01-17 | N/A | 8.8 HIGH |
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability. | |||||
CVE-2023-21560 | 1 Microsoft | 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more | 2023-01-17 | N/A | 6.6 MEDIUM |
Windows Boot Manager Security Feature Bypass Vulnerability. | |||||
CVE-2023-21730 | 1 Microsoft | 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more | 2023-01-17 | N/A | 7.8 HIGH |
Microsoft Cryptographic Services Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21551, CVE-2023-21561. | |||||
CVE-2023-21563 | 1 Microsoft | 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more | 2023-01-17 | N/A | 6.8 MEDIUM |
BitLocker Security Feature Bypass Vulnerability. | |||||
CVE-2023-21676 | 1 Microsoft | 8 Windows 10 1809, Windows 10 20h2, Windows 10 21h2 and 5 more | 2023-01-17 | N/A | 8.8 HIGH |
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability. | |||||
CVE-2023-21677 | 1 Microsoft | 11 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 8 more | 2023-01-17 | N/A | 7.5 HIGH |
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability. This CVE ID is unique from CVE-2023-21683, CVE-2023-21758. | |||||
CVE-2023-21678 | 1 Microsoft | 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more | 2023-01-17 | N/A | 7.8 HIGH |
Windows Print Spooler Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21760, CVE-2023-21765. | |||||
CVE-2023-21679 | 1 Microsoft | 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more | 2023-01-17 | N/A | 8.1 HIGH |
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21543, CVE-2023-21546, CVE-2023-21555, CVE-2023-21556. |