3387 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-37022
Software Genérico General
7.5
HIGH
EPSS
0.3%
2023 1 PoC

Open5GS MME versions <= 2.6.4 contain a reachable assertion in the `UE Context Release Request` packet handler. A packet containing an invalid `MME_UE_S1AP_ID` field causes Open5gs to crash; an attacker may repeatedly send such packets to cause denial of service.

CVE-2023-37014
Software Genérico General
7.5
HIGH
EPSS
0.3%
2023 1 PoC

Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the S1AP interface. An attacker may send a `UE Context Release Request` message missing a required `MME_UE_S1AP_ID` field to repeatedly crash the MME, resulting in denial of service.

CVE-2023-26575
IDWeb General
7.5
HIGH
EPSS
0.1%
2023 CWE-306 1 PoC

Missing authentication in the SearchStudentsStaff method in IDAttend’s IDWeb application 3.1.052 and earlier allows extraction sensitive student and teacher data by unauthenticated attackers.

CVE-2023-21443
Samsung Flow for Android General
7.5
HIGH
EPSS
0.1%
2023 CWE-326 1 PoC

Improper cryptographic implementation in Samsung Flow for Android prior to version 4.9.04 allows adjacent attackers to decrypt encrypted messages or inject commands.

CVE-2023-20530
3rd Gen EPYC General
7.5
HIGH
EPSS
0.4%
2023 1 PoC

Insufficient input validation of BIOS mailbox messages in SMU may result in out-of-bounds memory reads potentially resulting in a denial of service.

CVE-2023-6293
robinbuschmann/sequelize-typescript General
7.5
HIGH
EPSS
0.1%
2023 CWE-1321 1 PoC

Prototype Pollution in GitHub repository robinbuschmann/sequelize-typescript prior to 2.1.6.

CVE-2023-28770
DX5401-B0 firmware General
7.5
HIGH
EPSS
83.7%
2023 CWE-200 1 PoC

The sensitive information exposure vulnerability in the CGI “Export_Log” and the binary “zcmd” in Zyxel DX5401-B0 firmware versions prior to V5.17(ABYO.1)C0 could allow a remote unauthenticated attacker to read the system files and to retrieve the password of the supervisor from the encrypted file.

CVE-2023-22435
Experion Server General
7.5
HIGH
EPSS
0.1%
2023 CWE-697 1 PoC

Experion server may experience a DoS due to a stack overflow when handling a specially crafted message.

CVE-2023-26111
@nubosoftware/node-static General
7.5
HIGH
EPSS
1.3%
2023 CWE-22 2 PoCs

All versions of the package @nubosoftware/node-static; all versions of the package node-static are vulnerable to Directory Traversal due to improper file path sanitization in the startsWith() method in the servePath function.

CVE-2023-40278
Software Genérico General
7.5
HIGH
EPSS
11.3%
2023 3 PoCs

An issue was discovered in OpenClinic GA 5.247.01. An Information Disclosure vulnerability has been identified in the printAppointmentPdf.jsp component of OpenClinic GA. By changing the AppointmentUid parameter, an attacker can determine whether a specific appointment exists based on the error message.

CVE-2023-24329
Software Genérico General
7.5
HIGH
EPSS
1.4%
2023 4 PoCs

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVE-2023-32767
Software Genérico General
7.5
HIGH
EPSS
0.1%
2023 1 PoC

The web interface of Symcon IP-Symcon before 6.3 (i.e., before 2023-05-12) allows a remote attacker to read sensitive files via .. directory-traversal sequences in the URL.

CVE-2023-0122
Kernel General
7.5
HIGH
EPSS
0.2%
2023 CWE-476 1 PoC

A NULL pointer dereference vulnerability in the Linux kernel NVMe functionality, in nvmet_setup_auth(), allows an attacker to perform a Pre-Auth Denial of Service (DoS) attack on a remote machine. Affected versions v6.0-rc1 to v6.0-rc3, fixed in v6.0-rc4.

CVE-2023-26597
C300 General
7.5
HIGH
EPSS
0.1%
2023 CWE-400 1 PoC

Controller DoS due to buffer overflow in the handling of a specially crafted message received by the controller. See Honeywell Security Notification for recommendations on upgrading and versioning. See Honeywell Security Notification for recommendations on upgrading and versioning.

CVE-2023-52340
Software Genérico General
7.5
HIGH
EPSS
0.1%
2023 1 PoC

The IPv6 implementation in the Linux kernel before 6.3 has a net/ipv6/route.c max_size threshold that can be consumed easily, e.g., leading to a denial of service (network is unreachable errors) when IPv6 packets are sent in a loop via a raw socket.

CVE-2023-31904
Software Genérico General
7.5
HIGH
EPSS
0.5%
2023 1 PoC

savysoda Wifi HD Wireless Disk Drive 11 is vulnerable to Local File Inclusion.

CVE-2023-24472
OpenImageIO General
7.5
HIGH
EPSS
0.1%
2023 CWE-674 1 PoC

A denial of service vulnerability exists in the FitsOutput::close() functionality of OpenImageIO Project OpenImageIO v2.4.7.1. A specially crafted ImageOutput Object can lead to denial of service. An attacker can provide malicious input to trigger this vulnerability.

CVE-2023-24506
NCR/Camera General
7.5
HIGH
EPSS
0.3%
2023 CWE-522 1 PoC

Milesight NCR/camera version 71.8.0.6-r5 exposes credentials through an unspecified request.

CVE-2023-26925
Software Genérico General
7.5
HIGH
EPSS
0.9%
2023 2 PoCs

An information disclosure vulnerability exists in the Syslog functionality of D-LINK DIR-882 1.30. A specially crafted network request can lead to the disclosure of sensitive information.

CVE-2023-28509
UniData General
7.5
HIGH
EPSS
0.1%
2023 CWE-327 1 PoC

Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 use weak encryption for packet-level security and passwords transferred on the wire.