NA - CVE-2023-45679 - stb_vorbis is a single file MIT licensed...
stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory allocation failure in `start_decoder`. In that case the function returns early,...
NA - CVE-2023-45680 - stb_vorbis is a single file MIT licensed...
stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory allocation failure in `start_decoder`. In that case the function returns early,...
Cisco IOS XE Software Web UI Command Injection Vulnerability
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to inject arbitrary commands that can be executed as the root user. This vulnerability is due to insufficient input validation. An attacker could...
Lehetővé teszi egy távoli, hitelesítés nélküli támadó számára, hogy átvegye az irányítást az érintett rendszer felett. A sérülékenység minden Cisco eszközt érint, melyen Cisco IOS XE szoftver fut és a webes felhasználói felület funkció engedélyezve...
NA - CVE-2023-34437 -
Baker Hughes – Bently Nevada 3500 System TDI...
Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05 contains a vulnerability in their password retrieval functionality which could allow an attacker to access passwords stored...
NA - CVE-2023-34441 -
Baker Hughes – Bently Nevada 3500 System TDI...
Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05 contains a cleartext transmission vulnerability which could allow an attacker to steal the authentication secret from...
NA - CVE-2023-36857 -
Baker Hughes – Bently Nevada 3500 System TDI...
Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05 contains a replay vulnerability which could allow an attacker to replay older captured packets of traffic to the device...
NA - CVE-2023-37504 - HCL Compass is vulnerable to failure to...
HCL Compass is vulnerable to failure to invalidate sessions. The application does not invalidate authenticated sessions when the log out functionality is called. If the session identifier can be...
NA - CVE-2023-4645 - The Ad Inserter for WordPress is vulnerable to...
The Ad Inserter for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.7.30 via the ai_ajax function. This can allow unauthenticated attackers to extract...