wibu — codemeter_runtime
  A heap buffer overflow vulnerability in Wibu CodeMeter Runtime network service up to version 7.60b allows an unauthenticated, remote attacker to achieve RCE and gain full access of the host system. 2023-09-13 10 CVE-2023-3935
MISC
MISC sap — businessobjects_business_intelligence SAP BusinessObjects Business Intelligence Platform (Promotion Management) – versions 420, 430, under certain condition allows an authenticated attacker to view sensitive information which is otherwise restricted. On successful exploitation, the attacker can completely compromise the application causing high impact on confidentiality, integrity, and availability. 2023-09-12 9.9 CVE-2023-40622
MISC
MISC dlink — dir-619l_firmware Buffer overflow vulnerability in DLINK 619L version B 2.06beta via the FILECODE parameter on login. 2023-09-11 9.8 CVE-2020-19319
MISC dlink — dir-619l_firmware Buffer overflow vulnerability in DLINK 619L version B 2.06beta via the curTime parameter on login. 2023-09-11 9.8 CVE-2020-19320
MISC
MISC mofinetwork — mofi4500-4gxelte-v2_firmware An issue was discovered in MoFi Network MOFI4500-4GXeLTE-V2 3.5.6-xnet-5052 allows attackers to bypass the authentication and execute arbitrary code via crafted HTTP request. 2023-09-08 9.8 CVE-2021-27715
MISC
MISC rockwell_automation — factorytalk_view Rockwell Automation FactoryTalk View Machine Edition on the PanelView Plus, improperly verifies user’s input, which allows unauthenticated attacker to achieve remote code executed via crafted malicious packets.  The device has the functionality, through a CIP class, to execute exported functions from libraries.  There is a routine that restricts it to execute specific functions from two dynamic link library files.  By using a CIP class, an attacker can upload a self-made library to the device which allows the attacker to bypass the security check and execute any code written in the function. 2023-09-12 9.8 CVE-2023-2071
MISC xxyopen — novel-plus novel-plus 3.6.2 is vulnerable to SQL Injection. 2023-09-11 9.8 CVE-2023-30058
MISC
MISC tsplus — tsplus_remote_access An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%TSplusClientswww. 2023-09-11 9.8 CVE-2023-31067
MISC
MISC tsplus — tsplus_remote_access An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%TSplusUserDesktopthemes. 2023-09-11 9.8 CVE-2023-31068
MISC
MISC google — android In eatt_l2cap_reconfig_completed of eatt_impl.h, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 9.8 CVE-2023-35681
MISC
MISC phpjabbers — cleaning_business_software In PHPJabbers Cleaning Business Software 1.0, there is no encryption on user passwords allowing an attacker to gain access to all user accounts. 2023-09-11 9.8 CVE-2023-36140
MISC
MISC trendylogics — crypto_currency_tracker Incorrect access control in the User Registration page of Crypto Currency Tracker (CCT) before v9.5 allows unauthenticated attackers to register as an Admin account via a crafted POST request. 2023-09-08 9.8 CVE-2023-37759
MISC
MISC
MISC adobe — coldfusion
  Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by a Deserialization of Untrusted Data vulnerability that could result in Arbitrary code execution. Exploitation of this issue does not require user interaction. 2023-09-14 9.8 CVE-2023-38204
MISC conemu_project — conemu ConEmu before commit 230724 does not sanitize title responses correctly for control characters, potentially leading to arbitrary code execution. This is related to an incomplete fix for CVE-2022-46387. 2023-09-12 9.8 CVE-2023-39150
MISC
MISC golang — go The go.mod toolchain directive, introduced in Go 1.21, can be leveraged to execute scripts and binaries relative to the root of the module when the “go” command was executed within the module. This applies to modules downloaded using the “go” command from the module proxy, as well as modules downloaded directly using VCS software. 2023-09-08 9.8 CVE-2023-39320
MISC
MISC
MISC
MISC dlink — dir-816_firmware D-Link DIR-816 A2 1.10 B05 was discovered to contain a command injection vulnerability via the component /goform/Diagnosis. 2023-09-12 9.8 CVE-2023-39637
MISC
MISC
MISC
MISC arris — tg852g_firmware An issue was discovered on ARRIS TG852G, TG862G, and TG1672G devices. A remote attacker (in proximity to a Wi-Fi network) can derive the default WPA2-PSK value by observing a beacon frame. 2023-09-11 9.8 CVE-2023-40039
MISC
MISC
MISC dedecms — dedecms DedeCMS 5.7.102 has a File Upload vulnerability via uploads/dede/module_make.php. 2023-09-12 9.8 CVE-2023-40784
MISC
MISC opencart — opencart OpenCart v4.0.2.2 is vulnerable to Brute Force Attack. 2023-09-12 9.8 CVE-2023-40834
MISC
MISC schoolmate — schoolmate Schoolmate 1.3 is vulnerable to SQL Injection in the variable schoolname from Database at ~header.php. 2023-09-11 9.8 CVE-2023-40944
MISC sourcecodester — doctor_appointment_system Sourcecodester Doctor Appointment System 1.0 is vulnerable to SQL Injection in the variable $userid at doctorsmyDetails.php. 2023-09-11 9.8 CVE-2023-40945
MISC schoolmate — schoolmate Schoolmate 1.3 is vulnerable to SQL Injection in the variable $username from SESSION in ValidateLogin.php. 2023-09-11 9.8 CVE-2023-40946
MISC zoo_management_system_project — zoo_management_system Zoo Management System v1.0 was discovered to contain multiple SQL injection vulnerabilities in the Admin sign-in page via the username and password fields. 2023-09-08 9.8 CVE-2023-41615
MISC
MISC
MISC jeecg — jeecg_boot Jeecg boot up to v3.5.3 was discovered to contain a SQL injection vulnerability via the component /jeecg-boot/jmreport/show. 2023-09-08 9.8 CVE-2023-42268
MISC hutool — hutool hutool v5.8.21 was discovered to contain a buffer overflow via the component jsonArray. 2023-09-08 9.8 CVE-2023-42276
MISC hutool — hutool hutool v5.8.21 was discovered to contain a buffer overflow via the component jsonObject.putByPath. 2023-09-08 9.8 CVE-2023-42277
MISC imoulife — life The Imou Life com.mm.android.smartlifeiot application through 6.8.0 for Android allows Remote Code Execution via a crafted intent to an exported component. This relates to the com.mm.android.easy4ip.MainActivity activity. JavaScript execution is enabled in the WebView, and direct web content loading occurs. 2023-09-11 9.8 CVE-2023-42470
MISC
MISC
MISC wave-ai — wave The wave.ai.browser application through 1.0.35 for Android allows a remote attacker to execute arbitrary JavaScript code via a crafted intent. It contains a manifest entry that exports the wave.ai.browser.ui.splash.SplashScreen activity. This activity uses a WebView component to display web content and doesn’t adequately validate or sanitize the URI or any extra data passed in the intent by a third-party application (with no permissions). 2023-09-11 9.8 CVE-2023-42471
MISC
MISC
MISC sourcecodester — simple_membership_system A vulnerability was found in SourceCodester Simple Membership System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file account_edit_query.php. The manipulation of the argument admin_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-239254 is the identifier assigned to this vulnerability. 2023-09-09 9.8 CVE-2023-4845
MISC
MISC
MISC sourcecodester — simple_book_catalog_app A vulnerability classified as critical was found in SourceCodester Simple Book Catalog App 1.0. Affected by this vulnerability is an unknown functionality of the file delete_book.php. The manipulation of the argument delete leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-239257 was assigned to this vulnerability. 2023-09-09 9.8 CVE-2023-4848
MISC
MISC
MISC sourcecodester — online_tours_&_travels_management_system A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0 and classified as critical. This issue affects the function exec of the file booking.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-239351. 2023-09-10 9.8 CVE-2023-4866
MISC
MISC
MISC sourcecodester — contact_manager_app A vulnerability classified as critical was found in SourceCodester Contact Manager App 1.0. This vulnerability affects unknown code of the file delete.php. The manipulation of the argument contact/contactName leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-239356. 2023-09-10 9.8 CVE-2023-4871
MISC
MISC
MISC sourcecodester — contact_manager_app A vulnerability, which was classified as critical, has been found in SourceCodester Contact Manager App 1.0. This issue affects some unknown processing of the file add.php. The manipulation of the argument contact/contactName leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-239357 was assigned to this vulnerability. 2023-09-10 9.8 CVE-2023-4872
MISC
MISC
MISC byzoro — smart_s45f_firmware A vulnerability, which was classified as critical, was found in Beijing Baichuo Smart S45F Multi-Service Secure Gateway Intelligent Management Platform up to 20230906. Affected is an unknown function of the file /importexport.php. The manipulation of the argument sql leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-239358 is the identifier assigned to this vulnerability. 2023-09-10 9.8 CVE-2023-4873
MISC
MISC
MISC mintplexlabs — anythingllm Relative Path Traversal in GitHub repository mintplex-labs/anything-llm prior to 0.0.1. 2023-09-11 9.8 CVE-2023-4897
MISC
MISC adobe — commerce
  Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an improper input validation vulnerability. Exploitation of this issue does not require user interaction and could result in a post-authentication arbitrary code execution. 2023-09-12 9.1 CVE-2022-24093
MISC ibm — security_directory_server IBM Security Directory Server 7.2.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing “dot dot” sequences (/../) to view or write to arbitrary files on the system. IBM X-Force ID: 228579. 2023-09-08 9.1 CVE-2022-33164
MISC
MISC dlink — dir-605l_firmware Buffer Overflow vulnerability in D-Link DIR-605L, hardware version AX, firmware version 1.17beta and below, allows authorized attackers execute arbitrary code via sending crafted data to the webserver service program. 2023-09-11 8.8 CVE-2020-19318
MISC redhat — decision_manager A flaw was found where some utility classes in Drools core did not use proper safeguards when deserializing data. This flaw allows an authenticated attacker to construct malicious serialized objects (usually called gadgets) and achieve code execution on the server. 2023-09-11 8.8 CVE-2022-1415
MISC
MISC
MISC microsoft — azure_devops
  Azure DevOps Server Remote Code Execution Vulnerability 2023-09-12 8.8 CVE-2023-33136
MISC google — android In gatt_process_prep_write_rsp of gatt_cl.cc, there is a possible privilege escalation due to a use after free. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 8.8 CVE-2023-35658
MISC
MISC google — android In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 8.8 CVE-2023-35673
MISC
MISC google — android In avdt_msg_asmbl of avdt_msg.cc, there is a possible out of bounds write due to an integer overflow. This could lead to paired device escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 8.8 CVE-2023-35684
MISC
MISC govee — home Govee Home app has unprotected access to WebView component which can be opened by any app on the device. By sending an URL to a specially crafted site, the attacker can execute JavaScript in context of WebView or steal sensitive user data by displaying phishing content. 2023-09-11 8.8 CVE-2023-3612
MISC microsoft — sharepoint_server
  Microsoft SharePoint Server Elevation of Privilege Vulnerability 2023-09-12 8.8 CVE-2023-36764
MISC microsoft — windows_11
  Windows Themes Remote Code Execution Vulnerability 2023-09-12 8.8 CVE-2023-38146
MISC microsoft — multiple_products
  Windows Miracast Wireless Display Remote Code Execution Vulnerability 2023-09-12 8.8 CVE-2023-38147
MISC microsoft — multiple_products
  Internet Connection Sharing (ICS) Remote Code Execution Vulnerability 2023-09-12 8.8 CVE-2023-38148
MISC netis-systems — wf2409e_firmware An issue in NETIS SYSTEMS WF2409E v.3.6.42541 allows a remote attacker to execute arbitrary code via the ping and traceroute functions of the diagnostic tools component in the admin management interface. 2023-09-11 8.8 CVE-2023-38829
MISC siemens — qms_automotive
  A vulnerability has been identified in QMS Automotive (All versions < V12.39). The affected application server responds with sensitive information about the server. This could allow an attacker to directly access the database. 2023-09-12 8.8 CVE-2023-40726
MISC idreamsoft — icms icms 7.0.16 is vulnerable to Cross Site Request Forgery (CSRF). 2023-09-08 8.8 CVE-2023-40953
MISC
MISC wordpress — wordpress
  The BAN Users plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.5.3 due to a missing capability check on the ‘w3dev_save_ban_user_settings_callback’ function. This makes it possible for authenticated attackers, with minimal permissions such as a subscriber, to modify the plugin settings to access the ban and unban functionality and set the role of the unbanned user. 2023-09-13 8.8 CVE-2023-4153
MISC
MISC
MISC wordpress — wordpress
  The Simplr Registration Form Plus+ plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and including, 2.4.5. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources. This makes it possible for authenticated attackers with subscriber-level permissions or above to change user passwords and potentially take over administrator accounts. 2023-09-13 8.8 CVE-2023-4213
MISC
MISC mozilla — firefox Due to large allocation checks in Angle for glsl shaders being too lenient a buffer overflow could have occured when allocating too much private shader memory on mac OS. This bug only affects Firefox on macOS. Other operating systems are unaffected. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and Thunderbird < 115.2. 2023-09-11 8.8 CVE-2023-4582
MISC
MISC
MISC
MISC mozilla — thunderbird Memory safety bugs present in Firefox 116, Firefox ESR 102.14, Firefox ESR 115.1, Thunderbird 102.14, and Thunderbird 115.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 117, Firefox ESR < 102.15, Firefox ESR < 115.2, Thunderbird < 102.15, and Thunderbird < 115.2. 2023-09-11 8.8 CVE-2023-4584
MISC
MISC
MISC
MISC
MISC
MISC mozilla — thunderbird Memory safety bugs present in Firefox 116, Firefox ESR 115.1, and Thunderbird 115.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and Thunderbird < 115.2. 2023-09-11 8.8 CVE-2023-4585
MISC
MISC
MISC
MISC wibu — codemeter_runtime
  A Improper Privilege Management vulnerability through an incorrect use of privileged APIs in CodeMeter Runtime versions prior to 7.60c allow a local, low privileged attacker to use an API call for escalation of privileges in order gain full admin access on the host system. 2023-09-13 8.8 CVE-2023-4701
MISC
MISC hitachi_energy — asset_suite A vulnerability exists in the Equipment Tag Out authentication, when configured with Single Sign-On (SSO) with password validation in T214. This vulnerability can be exploited by an authenticated user per-forming an Equipment Tag Out holder action (Accept, Release, and Clear) for another user and entering an arbitrary password in the holder action confirmation dialog box. Despite entering an arbitrary password in the confirmation box, the system will execute the selected holder action. 2023-09-11 8.8 CVE-2023-4816
MISC sourcecodester — take-note_app A vulnerability has been found in SourceCodester Take-Note App 1.0 and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-239350 is the identifier assigned to this vulnerability. 2023-09-09 8.8 CVE-2023-4865
MISC
MISC
MISC sourcecodester — contact_manager_app A vulnerability was found in SourceCodester Contact Manager App 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file add.php. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-239353 was assigned to this vulnerability. 2023-09-10 8.8 CVE-2023-4868
MISC
MISC
MISC sourcecodester — contact_manager_app A vulnerability was found in SourceCodester Contact Manager App 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file update.php. The manipulation leads to cross-site request forgery. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-239354 is the identifier assigned to this vulnerability. 2023-09-10 8.8 CVE-2023-4869
MISC
MISC
MISC mintplexlabs — anything-llm SQL Injection in GitHub repository mintplex-labs/anything-llm prior to 0.0.1. 2023-09-12 8.8 CVE-2023-4899
MISC
MISC wordpress — wordpress
  The Login with phone number plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.4.8. This is due to missing nonce validation on the ‘lwp_update_password_action’ function. This makes it possible for unauthenticated attackers to change user password via a forged request granted they can trick a site administrator into performing an action such as clicking on a link. 2023-09-13 8.8 CVE-2023-4916
MISC
MISC mozilla — firefox On Windows, an integer overflow could occur in `RecordedSourceSurfaceCreation` which resulted in a heap buffer overflow potentially leaking sensitive data that could have led to a sandbox escape. *This bug only affects Firefox on Windows. Other operating systems are unaffected. This vulnerability affects Firefox < 117, Firefox ESR < 102.15, Firefox ESR < 115.2, Thunderbird < 102.15, and Thunderbird < 115.2. 2023-09-11 8.6 CVE-2023-4576
MISC
MISC
MISC
MISC
MISC
MISC siemens — spectrum_power_7
  A vulnerability has been identified in Spectrum Power 7 (All versions < V23Q3). The affected product assigns improper access rights to the update script. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges. 2023-09-14 8.2 CVE-2023-38557
MISC hichip — shenzhen_hichip_vision_technology_firmware Shenzhen Hichip Vision Technology IP Camera Firmware V11.4.8.1.1-20170926 has a denial of service vulnerability through sending a crafted multicast message in a local network. 2023-09-11 8.1 CVE-2022-23382
MISC openpmix — openpmix OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of library code with UID 0. 2023-09-09 8.1 CVE-2023-41915
MISC
CONFIRM
CONFIRM microsoft — exchange_server
  Microsoft Exchange Server Remote Code Execution Vulnerability 2023-09-12 8 CVE-2023-36744
MISC microsoft — exchange_server
  Microsoft Exchange Server Remote Code Execution Vulnerability 2023-09-12 8 CVE-2023-36745
MISC microsoft — exchange_server
  Microsoft Exchange Server Remote Code Execution Vulnerability 2023-09-12 8 CVE-2023-36756
MISC microsoft — exchange_server
  Microsoft Exchange Server Spoofing Vulnerability 2023-09-12 8 CVE-2023-36757
MISC foxconn — live_update_utility An issue was discovered in MmMapIoSpace routine in Foxconn Live Update Utility 2.1.6.26, allows local attackers to escalate privileges. 2023-09-11 7.8 CVE-2020-24088
MISC
MISC
MISC adobe — indesign Adobe InDesign versions 17.1 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.8 CVE-2022-28831
MISC adobe — indesign Adobe InDesign versions 17.1 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.8 CVE-2022-28832
MISC adobe — indesign Adobe InDesign versions 17.1 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.8 CVE-2022-28833
MISC adobe — incopy Adobe InCopy versions 17.1 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.8 CVE-2022-28834
MISC adobe — incopy Adobe InCopy versions 17.1 (and earlier) and 16.4.1 (and earlier) are affected by an Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.8 CVE-2022-28835
MISC adobe — incopy Adobe InCopy versions 17.1 (and earlier) and 16.4.1 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.8 CVE-2022-28836
MISC adobe — acrobat_reader Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.8 CVE-2022-34224
MISC adobe — acrobat_reader Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012.30229 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.8 CVE-2022-34227
MISC adobe — acrobat_reader
  Acrobat Reader versions 23.003.20284 (and earlier), 20.005.30516 (and earlier) and 20.005.30514 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-13 7.8 CVE-2023-26369
MISC microsoft — multiple_products
  Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-35355
MISC google — android In multiple files, there is a possible way to import a contact from another user due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 7.8 CVE-2023-35665
MISC
MISC google — android In bta_av_rc_msg of bta_av_act.cc, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 7.8 CVE-2023-35666
MISC
MISC google — android In updateList of NotificationAccessSettings.java, there is a possible way to hide approved notification listeners in the settings due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 7.8 CVE-2023-35667
MISC
MISC google — android In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to control other running activities due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 7.8 CVE-2023-35669
MISC
MISC google — android In computeValuesFromData of FileUtils.java, there is a possible way to insert files to other apps’ external private directories due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 7.8 CVE-2023-35670
MISC
MISC google — android In onCreate of WindowState.java, there is a possible way to launch a background activity due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 7.8 CVE-2023-35674
MISC
MISC google — android In createQuickShareAction of SaveImageInBackgroundTask.java, there is a possible way to trigger a background activity launch due to an unsafe PendingIntent. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 7.8 CVE-2023-35676
MISC
MISC google — android In hasPermissionForActivity of PackageManagerHelper.java, there is a possible way to start arbitrary components due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation. 2023-09-11 7.8 CVE-2023-35682
MISC
MISC google — android In MtpPropertyValue of MtpProperty.h, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. 2023-09-11 7.8 CVE-2023-35687
MISC
MISC microsoft — 3d_viewer
  3D Viewer Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36739
MISC microsoft — 3d_viewer
  3D Viewer Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36740
MISC microsoft — visual_studio
  Visual Studio Code Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36742
MISC microsoft — visual_studio
  Visual Studio Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-36758
MISC microsoft — 3d_viewer
  3D Viewer Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36760
MISC microsoft — office
  Microsoft Office Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-36765
MISC microsoft — excel
  Microsoft Excel Information Disclosure Vulnerability 2023-09-12 7.8 CVE-2023-36766
MISC microsoft — 3d_builder
  3D Builder Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36770
MISC microsoft — 3d_builder
  3D Builder Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36771
MISC microsoft — 3d_builder
  3D Builder Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36772
MISC microsoft — 3d_builder 3D Builder Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36773
MISC microsoft — .net
  .NET Framework Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36788
MISC microsoft — visual_studio
  Visual Studio Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36792
MISC microsoft — visual_studio
  Visual Studio Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36793
MISC microsoft — visual_studio
  Visual Studio Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36794
MISC microsoft — visual_studio
  Visual Studio Remote Code Execution Vulnerability 2023-09-12 7.8 CVE-2023-36796
MISC microsoft — multiple_products
  Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-36802
MISC microsoft — multiple_products
  Windows GDI Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-36804
MISC siemens — teamcenter_visualization
  A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0.1). The affected application is vulnerable to stack-based buffer overflow while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-20818) 2023-09-12 7.8 CVE-2023-38070
MISC siemens — teamcenter_visualization
  A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0.1). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-20824) 2023-09-12 7.8 CVE-2023-38071
MISC siemens — teamcenter_visualization
  A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0.1). The affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-20825) 2023-09-12 7.8 CVE-2023-38072
MISC siemens — teamcenter_visualization
  A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0.1). The affected application contains a type confusion vulnerability while parsing WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-20826) 2023-09-12 7.8 CVE-2023-38073
MISC siemens — teamcenter_visualization
  A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0.1). The affected application contains a type confusion vulnerability while parsing WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-20840) 2023-09-12 7.8 CVE-2023-38074
MISC siemens — teamcenter_visualization
  A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0.1). The affected application contains a use-after-free vulnerability that could be triggered while parsing specially crafted WRL files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-20842) 2023-09-12 7.8 CVE-2023-38075
MISC siemens — teamcenter_visualization
  A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0.1). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21041) 2023-09-12 7.8 CVE-2023-38076
MISC microsoft — multiple_products
  Windows Kernel Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-38139
MISC microsoft — multiple_products
  Windows Kernel Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-38141
MISC microsoft — multiple_products
  Windows Kernel Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-38142
MISC microsoft — multiple_products
  Windows Common Log File System Driver Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-38143
MISC microsoft — multiple_products
  Windows Common Log File System Driver Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-38144
MISC microsoft — windows_11
  Windows Kernel Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-38150
MISC microsoft — multiple_products
  Windows GDI Elevation of Privilege Vulnerability 2023-09-12 7.8 CVE-2023-38161
MISC microsoft — windows_defender_security_intelligence_updates Windows Defender Attack Surface Reduction Security Feature Bypass 2023-09-12 7.8 CVE-2023-38163
MISC ibm — qradar_wincollect IBM QRadar WinCollect Agent 10.0 through 10.1.6, when installed to run as ADMIN or SYSTEM, is vulnerable to a local escalation of privilege attack that a normal user could utilize to gain SYSTEM permissions. IBM X-Force ID: 262542. 2023-09-08 7.8 CVE-2023-38736
MISC
MISC raidenftpd — raidenftpd Buffer Overflow vulnerability in RaidenFTPD 2.4.4005 allows a local attacker to execute arbitrary code via the Server name field of the Step by step setup wizard. 2023-09-11 7.8 CVE-2023-39063
MISC siemens — qms_automotive
  A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application uses weak outdated application signing mechanism. This could allow an attacker to tamper the application code. 2023-09-12 7.8 CVE-2023-40727
MISC siemens — parasolid
  A vulnerability has been identified in Parasolid V34.1 (All versions < V34.1.258), Parasolid V35.0 (All versions < V35.0.253), Parasolid V35.1 (All versions < V35.1.184), Parasolid V36.0 (All versions < V36.0.142). The affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted X_T files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21263) 2023-09-12 7.8 CVE-2023-41032
MISC siemens — parasolid
  A vulnerability has been identified in Parasolid V35.0 (All versions < V35.0.260), Parasolid V35.1 (All versions < V35.1.246), Parasolid V36.0 (All versions < V36.0.156). The affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted X_T files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21266) 2023-09-12 7.8 CVE-2023-41033
MISC siemens — parasolid
  A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0002). The affected application is vulnerable to memory corruption while parsing specially crafted SPP files. This could allow an attacker to execute code in the context of the current process. 2023-09-12 7.8 CVE-2023-41846
MISC apple — macos The issue was addressed with improved handling of caches. This issue is fixed in macOS Ventura 13.2, iOS 15.7.8 and iPadOS 15.7.8, watchOS 9.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3, macOS Big Sur 11.7.9, macOS Monterey 12.6.8. Processing a font file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.1. 2023-09-12 7.8 CVE-2023-41990
MISC
MISC
MISC
MISC
MISC
MISC
MISC hashicorp — terraform Terraform version 1.0.8 through 1.5.6 allows arbitrary file write during the `init` operation if run on maliciously crafted Terraform configuration. This vulnerability is fixed in Terraform 1.5.7. 2023-09-08 7.8 CVE-2023-4782
MISC microsoft — dynamics_265_for_finance_and_operations
  Dynamics Finance and Operations Cross-site Scripting Vulnerability 2023-09-12 7.6 CVE-2023-36800
MISC dlink — dir-619l_firmware An issue was discovered in /bin/mini_upnpd on D-Link DIR-619L 2.06beta devices. There is a heap buffer overflow allowing remote attackers to restart router via the M-search request ST parameter. No authentication required 2023-09-11 7.5 CVE-2020-19323
MISC
MISC ibm — aspera_faspex IBM Aspera Faspex 5.0.5 could allow a remote attacker to gather or persuade a naive user to supply sensitive information. IBM X-Force ID: 222567. 2023-09-08 7.5 CVE-2022-22401
MISC
MISC siemens — multiple_products
  The ANSI C OPC UA SDK contains an integer overflow vulnerability that could cause the application to run into an infinite loop during certificate validation. This could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate. 2023-09-12 7.5 CVE-2023-28831
MISC microsoft — azure_kubernetes_service
  Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability 2023-09-12 7.5 CVE-2023-29332
MISC ibm — aspera_faspex IBM Aspera Faspex 5.0.5 could allow a malicious actor to bypass IP whitelist restrictions using a specially crafted HTTP request. IBM X-Force ID: 254268. 2023-09-08 7.5 CVE-2023-30995
MISC
MISC tsplus — tsplus_remote_access An issue was discovered in TSplus Remote Access through 16.0.2.14. Credentials are stored as cleartext within the HTML source code of the login page. 2023-09-11 7.5 CVE-2023-31069
MISC
MISC quboworld — smart_plug_10a_firmware An issue was discovered in Qubo Smart Plug 10A version HSP02_01_01_14_SYSTEM-10A, allows attackers to cause a denial of service (DoS) via Wi-Fi deauthentication. 2023-09-11 7.5 CVE-2023-36161
MISC aptosfoundation — aptos CMysten Labs Sui blockchain v1.2.0 was discovered to contain a stack overflow via the component /spec/openrpc.json. 2023-09-08 7.5 CVE-2023-36184
MISC
MISC
MISC
MISC microsoft — outlook
  Microsoft Outlook Information Disclosure Vulnerability 2023-09-12 7.5 CVE-2023-36763
MISC samsung — exynos_9810_firmware An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor, and Modem (Exynos Mobile Processor, Automotive Processor, and Modem – Exynos 9810, Exynos 9610, Exynos 9820, Exynos 980, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123). In the Shannon MM Task, Missing validation of a NULL pointer can cause abnormal termination via a malformed NR MM packet. 2023-09-08 7.5 CVE-2023-37368
MISC samsung — exynos_980_firmware An issue was discovered in Samsung Exynos Mobile Processor and Wearable Processor (Exynos 980, Exynos 850, Exynos 2100, and Exynos W920). Improper handling of length parameter inconsistency can cause incorrect packet filtering. 2023-09-08 7.5 CVE-2023-37377
MISC microsoft — multiple_products
  Windows TCP/IP Denial of Service Vulnerability 2023-09-12 7.5 CVE-2023-38149
MISC microsoft — multiple_products
  DHCP Server Service Denial of Service Vulnerability 2023-09-12 7.5 CVE-2023-38162
MISC adobe — coldfusion
  Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints. Exploitation of this issue does not require user interaction. 2023-09-14 7.5 CVE-2023-38205
MISC golang — go Processing an incomplete post-handshake message for a QUIC connection can cause a panic. 2023-09-08 7.5 CVE-2023-39321
MISC
MISC
MISC
MISC golang — go QUIC connections do not set an upper bound on the amount of data buffered when reading post-handshake messages, allowing a malicious QUIC connection to cause unbounded memory growth. With fix, connections now consistently reject messages larger than 65KiB in size. 2023-09-08 7.5 CVE-2023-39322
MISC
MISC
MISC
MISC hexo — hexo Hexo up to v7.0.0 (RC2) was discovered to contain an arbitrary file read vulnerability. 2023-09-08 7.5 CVE-2023-39584
MISC
MISC
MISC buffalo — terastation_nas_5410r_firmware An Issue in Buffalo America, Inc. TeraStation NAS TS5410R v.5.00 thru v.0.07 allows a remote attacker to obtain sensitive information via the guest account function. 2023-09-08 7.5 CVE-2023-39620
MISC
MISC arm — trusted_firmware-m In Trusted Firmware-M through TF-Mv1.8.0, for platforms that integrate the CryptoCell accelerator, when the CryptoCell PSA Driver software Interface is selected, and the Authenticated Encryption with Associated Data Chacha20-Poly1305 algorithm is used, with the single-part verification function (defined during the build-time configuration phase) implemented with a dedicated function (i.e., not relying on usage of multipart functions), the buffer comparison during the verification of the authentication tag does not happen on the full 16 bytes but just on the first 4 bytes, thus leading to the possibility that unauthenticated payloads might be identified as authentic. This affects TF-Mv1.6.0, TF-Mv1.6.1, TF-Mv1.7.0, and TF-Mv1.8. 2023-09-08 7.5 CVE-2023-40271
MISC
MISC apple — macos This issue was addressed with improved state management of S/MIME encrypted emails. This issue is fixed in macOS Monterey 12.6.8. A S/MIME encrypted email may be inadvertently sent unencrypted. 2023-09-12 7.5 CVE-2023-40440
MISC jeecg — jeecg_boot Jeecg boot up to v3.5.3 was discovered to contain an arbitrary file read vulnerability via the interface /testConnection. 2023-09-08 7.5 CVE-2023-41578
MISC dairy_farm_shop_management_system — dairy_farm_shop_management_system Dairy Farm Shop Management System Using PHP and MySQL v1.1 was discovered to contain multiple SQL injection vulnerabilities in the Login function via the Username and Password parameters. 2023-09-08 7.5 CVE-2023-41594
MISC
MISC
MISC hutool — hutool hutool v5.8.21 was discovered to contain a buffer overflow via the component JSONUtil.parse(). 2023-09-08 7.5 CVE-2023-42278
MISC mozilla — multiple_products When checking if the Browsing Context had been discarded in `HttpBaseChannel`, if the load group was not available then it was assumed to have already been discarded which was not always the case for private channels after the private session had ended. This vulnerability affects Firefox < 117, Firefox ESR < 115.2, and Thunderbird < 115.2. 2023-09-11 7.5 CVE-2023-4583
MISC
MISC
MISC
MISC sourcecodester — simple_membership_system A vulnerability was found in SourceCodester Simple Membership System 1.0. It has been classified as critical. This affects an unknown part of the file club_edit_query.php. The manipulation of the argument club_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-239253 was assigned to this vulnerability. 2023-09-08 7.5 CVE-2023-4844
MISC
MISC
MISC sourcecodester — simple_membership_system A vulnerability was found in SourceCodester Simple Membership System 1.0. It has been rated as critical. This issue affects some unknown processing of the file delete_member.php. The manipulation of the argument mem_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-239255. 2023-09-09 7.5 CVE-2023-4846
MISC
MISC
MISC inure — inure Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository hamza417/inure prior to build92. 2023-09-10 7.5 CVE-2023-4876
MISC
MISC inure — inure Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository hamza417/inure prior to build92. 2023-09-10 7.5 CVE-2023-4877
MISC
MISC mintplexlabs — anything-llm Authentication Bypass by Primary Weakness in GitHub repository mintplex-labs/anything-llm prior to 0.0.1. 2023-09-12 7.5 CVE-2023-4898
MISC
MISC cecil — cecil Relative Path Traversal in GitHub repository cecilapp/cecil prior to 7.47.1. 2023-09-12 7.5 CVE-2023-4914
MISC
MISC adobe — acrobat_dc Adobe Acrobat Reader versions 2019.021.20056 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.3 CVE-2019-16470
MISC adobe — acrobat_dc Adobe Acrobat Reader versions 2019.021.20056 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. 2023-09-11 7.3 CVE-2019-16471
MISC microsoft — multiple_products
  Microsoft Word Remote Code Execution Vulnerability 2023-09-12 7.3 CVE-2023-36762
MISC siemens — qms_automotive
  A vulnerability has been identified in QMS Automotive (All versions < V12.39). User credentials are found in memory as plaintext. An attacker could perform a memory dump, and get access to credentials, and use it for impersonation. 2023-09-12 7.3 CVE-2023-40724
MISC siemens — qms_automotive
  A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application stores sensitive application data in an external insecure storage. This could allow an attacker to alter content, leading to arbitrary code execution or denial-of-service condition. 2023-09-12 7.3 CVE-2023-40728
MISC siemens — qms_automotive
  A vulnerability has been identified in QMS Automotive (All versions < V12.39). The affected application lacks security control to prevent unencrypted communication without HTTPS. An attacker who managed to gain machine-in-the-middle position could manipulate or steal confidential information. 2023-09-12 7.3 CVE-2023-40729
MISC sap — businessobjects_business_intelligence_platform Due to insufficient file type validation, SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML interface) – version 420, allows a report creator to upload files from local system into the report over the network. When uploading the image file, an authenticated attacker could intercept the request, modify the content type and the extension to read and modify sensitive data causing a high impact on confidentiality and integrity of the application. 2023-09-12 7.3 CVE-2023-42472
MISC
MISC

microsoft — azure_hdinsights

Azure HDInsight Apache Ambari Elevation of Privilege Vulnerability 2023-09-12 7.2 CVE-2023-38156
MISC zohocorp — manageengine_admanager_plus Zoho ManageEngine ADManager Plus before Build 7200 allows admin users to execute commands on the host machine. 2023-09-11 7.2 CVE-2023-38743
MISC insyde — iscflashx64.sys An issue was discovered in iscflashx64.sys 3.9.3.0 in Insyde H2OFFT 6.20.00. When handling IOCTL 0x22229a, the input used to allocate a buffer and copy memory is mishandled. This could cause memory corruption or a system crash. 2023-09-08 7.1 CVE-2021-33834
MISC
MISC sap — businessobjects SAP BusinessObjects Suite Installer – version 420, 430, allows an attacker within the network to create a directory under temporary directory and link it to a directory with operating system files. On successful exploitation the attacker can delete all the operating system files causing a limited impact on integrity and completely compromising the availability of the system. 2023-09-12 7.1 CVE-2023-40623
MISC
MISC siemens — qms_automotive
  A vulnerability has been identified in QMS Automotive (All versions < V12.39). The QMS.Mobile module of the affected application lacks sufficient authorization checks. This could allow an attacker to access confidential information, perform administrative functions, or lead to a denial-of-service condition. 2023-09-12 7.1 CVE-2023-40730
MISC linux — kernel A stack based out-of-bounds write flaw was found in the netfilter subsystem in the Linux kernel. If the expression length is a multiple of 4 (register size), the `nft_exthdr_eval` family of functions writes 4 NULL bytes past the end of the `regs` argument, leading to stack corruption and potential information disclosure or a denial of service. 2023-09-11 7.1 CVE-2023-4881
MISC
MISC n-able — take_control BASupSrvcUpdater.exe in N-able Take Control Agent through 7.0.41.1141 before 7.0.43 has a TOCTOU Race Condition via a pseudo-symlink at %PROGRAMDATA%GetSupportService_N-CentralPushUpdates, leading to arbitrary file deletion. 2023-09-11 7 CVE-2023-27470
MISC microsoft — windows_server_2012 Windows MSHTML Platform Security Feature Bypass Vulnerability 2023-09-12 7 CVE-2023-36805
MISC microsoft — azure_devops
  Azure DevOps Server Remote Code Execution Vulnerability 2023-09-12 7 CVE-2023-38155
MISC