NA - CVE-2023-5631 -
Roundcube before 1.4.15, 1.5.x before 1.5.5,...
Roundcube before 1.4.15, 1.5.x before 1.5.5, and 1.6.x before 1.6.4 allows stored XSS via an HTML e-mail message with a crafted SVG document because of program/lib/Roundcube/rcube_washtml.php...
NA - CVE-2023-43250 - XNSoft Nconvert 7.136 is vulnerable to Buffer...
XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow. There is a User Mode Write AV via a crafted image file. Attackers could exploit this issue for a Denial of Service (DoS) or possibly to...
NA - CVE-2023-45383 - In the module "SoNice etiquetage"...
In the module "SoNice etiquetage" (sonice_etiquetage) up to version 2.5.9 from Common-Services for PrestaShop, a guest can download personal information without restriction by performing a path...
NA - CVE-2023-5642 - Advantech R-SeeNet v2.4.23 allows an...
Advantech R-SeeNet v2.4.23 allows an unauthenticated remote attacker to read from and write to the snmpmon.ini file, which contains sensitive information.
NA - CVE-2023-20261 - A vulnerability in the web UI of Cisco Catalyst...
A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to retrieve arbitrary files from an affected system. This vulnerability is due to...
NA - CVE-2023-45912 - WIPOTEC GmbH ComScale v4.3.29.21344 and...
WIPOTEC GmbH ComScale v4.3.29.21344 and v4.4.12.723 fails to validate user sessions, allowing unauthenticated attackers to read files from the underlying operating system and obtain directory...