3387 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-21500
Samsung Mobile Devices General
6.0
MEDIUM
EPSS
0.1%
2023 CWE-415 1 PoC

Double free validation vulnerability in setPinPadImages in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to access the trustlet memory.

CVE-2023-31346
3rd Gen AMD EPYC™ Processors General
6.0
MEDIUM
EPSS
0.0%
2023 2 PoCs

Failure to initialize memory in SEV Firmware may allow a privileged attacker to access stale data from other guests.

CVE-2023-27897
CRM General
6.0
MEDIUM
EPSS
1.3%
2023 CWE-94 1 PoC

In SAP CRM - versions 700, 701, 702, 712, 713, an attacker who is authenticated with a non-administrative role and a common remote execution authorization can use a vulnerable interface to execute an application function to perform actions which they would not normally be permitted to perform. Depending on the function executed, the attack can can have limited impact on confidentiality and integrity of non-critical user or application data and application availability.

CVE-2023-1541
answerdev/answer General
6.0
MEDIUM
EPSS
0.4%
2023 CWE-840 1 PoC

Business Logic Errors in GitHub repository answerdev/answer prior to 1.0.6.

CVE-2023-35874
SAP NetWeaver AS ABAP and ABAP Platform General
6.0
MEDIUM
EPSS
0.1%
2023 CWE-306 1 PoC

SAP NetWeaver Application Server ABAP and ABAP Platform - version KRNL64NUC, 7.22, KRNL64NUC 7.22EXT, KRNL64UC 7.22, KRNL64UC 7.22EXT, KRNL64UC 7.53, KERNEL 7.22, KERNEL, 7.53, KERNEL 7.77, KERNEL 7.81, KERNEL 7.85, KERNEL 7.89, KERNEL 7.54, KERNEL 7.92, KERNEL 7.93, under some conditions, performs improper authentication checks for functionalities that require user identity. An attacker can perform malicious actions over the network, extending the scope of impact, causing a limited impact on confidentiality, integrity and availability.

CVE-2023-21453
Samsung Mobile Devices General
6.0
MEDIUM
EPSS
0.1%
2023 CWE-20 1 PoC

Improper input validation vulnerability in SoftSim TA prior to SMR Mar-2023 Release 1 allows local attackers access to protected data.

CVE-2023-1367
alextselegidis/easyappointments General
6.0
MEDIUM
EPSS
0.2%
2023 CWE-94 1 PoC

Code Injection in GitHub repository alextselegidis/easyappointments prior to 1.5.0.

CVE-2023-31355
3rd Gen AMD EPYC™ Processors General
6.0
MEDIUM
EPSS
0.8%
2023 CWE-119 1 PoC

Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to overwrite a guest's UMC seed potentially allowing reading of memory from a decommissioned guest.

CVE-2023-21478
Samsung Mobile Devices General
6.0
MEDIUM
EPSS
0.0%
2023 1 PoC

Improper input validation vulnerability in TIGERF trustlet prior to SMR Apr-2023 Release 1 allows local attackers to access protected data.

CVE-2023-21498
Samsung Mobile Devices General
6.0
MEDIUM
EPSS
0.1%
2023 CWE-20 1 PoC

Improper input validation vulnerability in setPartnerTAInfo in mPOS TUI trustlet prior to SMR May-2023 Release 1 allows local attackers to overwrite the trustlet memory.

CVE-2023-42558
Samsung Mobile Devices General
6.0
MEDIUM
EPSS
0.1%
2023 1 PoC

Out of bounds write vulnerability in HDCP in HAL prior to SMR Dec-2023 Release 1 allows attacker to perform code execution.

CVE-2023-6566
microweber/microweber General
5.9
MEDIUM
EPSS
0.1%
2023 CWE-840 1 PoC

Business Logic Errors in GitHub repository microweber/microweber prior to 2.0.

CVE-2023-4813
Red Hat Enterprise Linux 8 General
5.9
MEDIUM
EPSS
0.3%
2023 CWE-416 1 PoC

A flaw has been identified in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge.

CVE-2023-42538
Samsung Mobile Devices General
5.9
MEDIUM
EPSS
0.1%
2023 1 PoC

An improper input validation in saped_rec_silence in libsaped prior to SMR Nov-2023 Release 1 allows local attackers to cause out-of-bounds read and write.

CVE-2023-28098
opensips General
5.9
MEDIUM
EPSS
0.4%
2023 CWE-20 1 PoC

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Prior to versions 3.1.7 and 3.2.4, a specially crafted Authorization header causes OpenSIPS to crash or behave in an unexpected way due to a bug in the function `parse_param_name()` . This issue was discovered while performing coverage guided fuzzing of the function parse_msg. The AddressSanitizer identified that the issue occurred in the function `q_memchr()` which is being called by the function `parse_param_name()`. This issue may cause erratic program behaviour or a server crash. It affects configurations containing fun

CVE-2023-5405
Experion Server General
5.9
MEDIUM
EPSS
0.1%
2023 CWE-787 1 PoC

Server information leak for the CDA Server process memory can occur when an error is generated in response to a specially crafted message. See Honeywell Security Notification for recommendations on upgrading and versioning.

CVE-2023-31421
Beats General
5.9
MEDIUM
EPSS
0.1%
2023 CWE-295 1 PoC

It was discovered that when acting as TLS clients, Beats, Elastic Agent, APM Server, and Fleet Server did not verify whether the server certificate is valid for the target IP address; however, certificate signature validation is still performed. More specifically, when the client is configured to connect to an IP address (instead of a hostname) it does not validate the server certificate's IP SAN values against that IP address and certificate validation fails, and therefore the connection is not blocked as expected.

CVE-2023-49083
cryptography General
5.9
MEDIUM
EPSS
0.9%
2023 CWE-476 1 PoC

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Calling `load_pem_pkcs7_certificates` or `load_der_pkcs7_certificates` could lead to a NULL-pointer dereference and segfault. Exploitation of this vulnerability poses a serious risk of Denial of Service (DoS) for any application attempting to deserialize a PKCS7 blob/certificate. The consequences extend to potential disruptions in system availability and stability. This vulnerability has been patched in version 41.0.6.

CVE-2023-37368
Software Genérico General
5.9
MEDIUM
EPSS
0.1%
2023 1 PoC

An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor, and Modem (Exynos Mobile Processor, Automotive Processor, and Modem - Exynos 9810, Exynos 9610, Exynos 9820, Exynos 980, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos Modem 5123, Exynos Modem 5300, and Exynos Auto T5123). In the Shannon MM Task, Missing validation of a NULL pointer can cause abnormal termination via a malformed NR MM packet.

CVE-2023-4778
gpac/gpac General
5.9
MEDIUM
EPSS
0.0%
2023 CWE-125 1 PoC

Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.