NA - CVE-2022-3916 - A flaw was found in the offline_access scope in...
A flaw was found in the offline_access scope in Keycloak. This issue would affect users of shared computers more (especially if cookies are not cleared), due to a lack of root session validation,...
NA - CVE-2023-42464 - A Type Confusion vulnerability was found in the...
A Type Confusion vulnerability was found in the Spotlight RPC functions in afpd in Netatalk 3.1.x before 3.1.17. When parsing Spotlight RPC packets, one encoded data structure is a key-value style...
NA - CVE-2023-43630 - PCR14 is not in the list of PCRs that...
PCR14 is not in the list of PCRs that seal/unseal the “vault” key, but due to the change that was implemented in commit “7638364bc0acf8b5c481b5ce5fea11ad44ad7fd4”, fixing this issue alone would not...
NA - CVE-2023-43635 -
Vault Key Sealed With SHA1 PCRs
The...
Vault Key Sealed With SHA1 PCRs The measured boot solution implemented in EVE OS leans on a PCR locking mechanism. Different parts of the system update different PCR values in the TPM,...
NA - CVE-2023-43636 -
In EVE OS, the “measured boot” mechanism...
In EVE OS, the “measured boot” mechanism prevents a compromised device from accessing the encrypted data located in the vault. As per the “measured boot” design, the PCR values calculated at...
NA - CVE-2023-2262 -
A buffer overflow vulnerability exists in...
A buffer overflow vulnerability exists in the Rockwell Automation select 1756-EN* communication devices. If exploited, a threat actor could potentially leverage this vulnerability to perform a...
NA - CVE-2023-2508 - The `PaperCutNG Mobility Print` version...
The `PaperCutNG Mobility Print` version 1.0.3512 application allows an unauthenticated attacker to perform a CSRF attack on an instance administrator to configure the clients host (in the...
NA - CVE-2023-40043 -
In Progress MOVEit Transfer versions released...
In Progress MOVEit Transfer versions released before 2021.1.8 (13.1.8), 2022.0.8 (14.0.8), 2022.1.9 (14.1.9), 2023.0.6 (15.0.6), a SQL injection vulnerability has been identified in the MOVEit...
NA - CVE-2023-42656 -
In Progress MOVEit Transfer versions released...
In Progress MOVEit Transfer versions released before 2021.1.8 (13.1.8), 2022.0.8 (14.0.8), 2022.1.9 (14.1.9), 2023.0.6 (15.0.6), a reflected cross-site scripting (XSS) vulnerability has been...