3387 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-0817
gpac/gpac General
7.3
HIGH
EPSS
0.1%
2023 CWE-126 1 PoC

Buffer Over-read in GitHub repository gpac/gpac prior to v2.3.0-DEV.

CVE-2023-26110
node-bluetooth General
7.3
HIGH
EPSS
0.2%
2023 CWE-120 1 PoC

All versions of the package node-bluetooth are vulnerable to Buffer Overflow via the findSerialPortChannel method due to improper user input length validation.

CVE-2023-31348
μProf Tool General
7.3
HIGH
EPSS
0.2%
2023 1 PoC

A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.

CVE-2023-4733
vim/vim General
7.3
HIGH
EPSS
0.0%
2023 CWE-416 1 PoC

Use After Free in GitHub repository vim/vim prior to 9.0.1840.

CVE-2023-26135
flatnest General
7.3
HIGH
EPSS
0.1%
2023 CWE-1321 1 PoC

All versions of the package flatnest are vulnerable to Prototype Pollution via the nest() function in the flatnest/nest.js file.

CVE-2023-21420
Samsung Mobile Devices General
7.3
HIGH
EPSS
0.1%
2023 CWE-134 1 PoC

Use of Externally-Controlled Format String vulnerabilities in STST TA prior to SMR Jan-2023 Release 1 allows arbitrary code execution.

CVE-2023-42567
Samsung Mobile Devices General
7.3
HIGH
EPSS
0.1%
2023 1 PoC

Improper size check vulnerability in softsimd prior to SMR Dec-2023 Release 1 allows stack-based buffer overflow.

CVE-2023-4977
librenms/librenms General
7.3
HIGH
EPSS
0.1%
2023 CWE-94 1 PoC

Code Injection in GitHub repository librenms/librenms prior to 23.9.0.

CVE-2023-0760
gpac/gpac General
7.3
HIGH
EPSS
0.0%
2023 CWE-122 1 PoC

Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to V2.1.0-DEV.

CVE-2023-42568
Samsung Mobile Devices General
7.3
HIGH
EPSS
0.1%
2023 1 PoC

Improper access control vulnerability in SmartManagerCN prior to SMR Dec-2023 Release 1 allows local attackers to access arbitrary files with system privilege.

CVE-2023-0512
vim/vim General
7.3
HIGH
EPSS
0.0%
2023 CWE-369 2 PoCs

Divide By Zero in GitHub repository vim/vim prior to 9.0.1247.

CVE-2023-0734
wallabag/wallabag General
7.3
HIGH
EPSS
0.3%
2023 CWE-285 1 PoC

Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.4.

CVE-2023-2531
azuracast/azuracast General
7.3
HIGH
EPSS
0.1%
2023 CWE-307 1 PoC

Improper Restriction of Excessive Authentication Attempts in GitHub repository azuracast/azuracast prior to 0.18.3.

CVE-2023-1170
vim/vim General
7.3
HIGH
EPSS
0.1%
2023 CWE-122 1 PoC

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376.

CVE-2023-46047
Software Genérico General
7.3
HIGH
EPSS
0.0%
2023 1 PoC

An issue in Sane 1.2.1 allows a local attacker to execute arbitrary code via a crafted file to the sanei_configure_attach() function. NOTE: this is disputed because there is no expectation that the product should be starting with an attacker-controlled configuration file.

CVE-2023-1175
vim/vim General
7.3
HIGH
EPSS
0.0%
2023 CWE-131 1 PoC

Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1378.

CVE-2023-4590
Frhed General
7.3
HIGH
EPSS
0.4%
2023 CWE-120 1 PoC

Buffer overflow vulnerability in Frhed hex editor, affecting version 1.6.0. This vulnerability could allow an attacker to execute arbitrary code via a long filename argument through the Structured Exception Handler (SEH) registers.

CVE-2023-0054
vim/vim General
7.3
HIGH
EPSS
0.0%
2023 CWE-787 1 PoC

Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1145.

CVE-2023-37219
Telecom Composit General
7.3
HIGH
EPSS
0.1%
2023 CWE-1236 1 PoC

Tadiran Telecom Composit - CWE-1236: Improper Neutralization of Formula Elements in a CSV File

CVE-2023-31349
μProf Tool General
7.3
HIGH
EPSS
0.2%
2023 CWE-276 1 PoC

Incorrect default permissions in the AMD μProf installation directory could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution.