NA - CVE-2023-28795 - Origin Validation Error vulnerability in...
Origin Validation Error vulnerability in Zscaler Client Connector on Linux allows Inclusion of Code in Existing Process. This issue affects Zscaler Client Connector for Linux: before 1.3.1.6.
NA - CVE-2023-28796 -
Improper Verification of Cryptographic...
Improper Verification of Cryptographic Signature vulnerability in Zscaler Client Connector on Linux allows Code Injection. This issue affects Zscaler Client Connector for Linux: before 1.3.1.6.
NA - CVE-2023-28797 - Zscaler Client Connector for Windows before 4.1...
Zscaler Client Connector for Windows before 4.1 writes/deletes a configuration file inside specific folders on the disk. A malicious user can replace the folder and execute code as a privileged...
NA - CVE-2023-28803 - An authentication bypass by spoofing of a...
An authentication bypass by spoofing of a device with a synthetic IP address is possible in Zscaler Client Connector on Windows, allowing a functionality bypass. This issue affects Client...
NA - CVE-2023-28804 - An Improper Verification of Cryptographic...
An Improper Verification of Cryptographic Signature vulnerability in Zscaler Client Connector on Linux allows replacing binaries.This issue affects Linux Client Connector: before 1.4.0.105
NA - CVE-2023-28805 - An Improper Input Validation vulnerability in...
An Improper Input Validation vulnerability in Zscaler Client Connector on Linux allows Privilege Escalation. This issue affects Client Connector: before 1.4.0.105
NA - CVE-2023-42295 - An issue in OpenImageIO oiio v.2.4.12.0 allows...
An issue in OpenImageIO oiio v.2.4.12.0 allows a remote attacker to execute arbitrary code and cause a denial of service via the read_rle_image function of file bifs/unquantize.c
NA - CVE-2023-43065 -
Dell Unity prior to 5.3 contains a Cross-site...
Dell Unity prior to 5.3 contains a Cross-site scripting vulnerability. A low-privileged authenticated attacker can exploit these issues to obtain escalated privileges.
NA - CVE-2023-43074 -
Dell Unity 5.3 contain(s) an Arbitrary File...
Dell Unity 5.3 contain(s) an Arbitrary File Creation vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability by crafting arbitrary files through a request to...
NA - CVE-2023-46127 - Frappe is a full-stack web application...
Frappe is a full-stack web application framework that uses Python and MariaDB on the server side and an integrated client side library. A malicious Frappe user with desk access could create...