5682 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-38831
🔥 KEV Software Genérico General
7.8
HIGH
EPSS
93.9%
2023 58 PoCs

RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive. The issue occurs because a ZIP archive may include a benign file (such as an ordinary .JPG file) and also a folder that has the same name as the benign file, and the contents of the folder (which may include executable content) are processed during an attempt to access only the benign file. This was exploited in the wild in April through October 2023.

CVE-2023-51776
Software Genérico General
7.8
HIGH
EPSS
0.1%
2023 1 PoC

Improper privilege management in Jungo WinDriver before 12.1.0 allows local attackers to escalate privileges and execute arbitrary code.

CVE-2023-21748
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
0.5%
2023 2 PoCs

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-2598
Kernel General
7.8
HIGH
EPSS
0.7%
2023 CWE-416 5 PoCs

A flaw was found in the fixed buffer registration code for io_uring (io_sqe_buffer_register in io_uring/rsrc.c) in the Linux kernel that allows out-of-bounds access to physical memory beyond the end of the buffer. This flaw enables full local privilege escalation.

CVE-2023-20065
Cisco IOS XE Software DevOps Web Networking
7.8
HIGH
EPSS
0.2%
2023 CWE-284 1 PoC

A vulnerability in the Cisco IOx application hosting subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to root on an affected device. This vulnerability is due to insufficient restrictions on the hosted application. An attacker could exploit this vulnerability by logging in to and then escaping the Cisco IOx application container. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with root privileges.

CVE-2023-24994
Tecnomatix Plant Simulation General
7.8
HIGH
EPSS
0.1%
2023 CWE-787 1 PoC

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19816)

CVE-2023-6175
Wireshark General
7.8
HIGH
EPSS
0.0%
2023 CWE-120 1 PoC

NetScreen file parser crash in Wireshark 4.0.0 to 4.0.10 and 3.6.0 to 3.6.18 allows denial of service via crafted capture file

CVE-2023-42096
PDF Reader General
7.8
HIGH
EPSS
2.2%
2023 CWE-416 1 PoC

Foxit PDF Reader PDF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the curren

CVE-2023-20944
Android General
7.8
HIGH
EPSS
0.0%
2023 3 PoCs

In run of ChooseTypeAndAccountActivity.java, there is a possible escalation of privilege due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L Android-13Android ID: A-244154558

CVE-2023-27406
Tecnomatix Plant Simulation General
7.8
HIGH
EPSS
0.1%
2023 CWE-121 1 PoC

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application is vulnerable to stack-based buffer while parsing specially crafted SPP files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-20449)

CVE-2023-20563
Ryzen™ 5000 Series Desktop Processor with Radeon™ Graphics “Cezanne” General
7.8
HIGH
EPSS
0.1%
2023 2 PoCs

Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege via local access.

CVE-2023-23416
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
3.2%
2023 CWE-20 1 PoC

Windows Cryptographic Services Remote Code Execution Vulnerability

CVE-2023-34366
Ichitaro 2023 General
7.8
HIGH
EPSS
0.2%
2023 CWE-416 2 PoCs

A use-after-free vulnerability exists in the Figure stream parsing functionality of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause memory corruption, resulting in arbitrary code execution. Victim would need to open a malicious file to trigger this vulnerability.

CVE-2023-6570
kubeflow/kubeflow General
7.7
HIGH
EPSS
0.2%
2023 CWE-918 1 PoC

Server-Side Request Forgery (SSRF) in kubeflow/kubeflow

CVE-2023-28603
Zoom VDI Windows Meeting Client Windows
7.7
HIGH
EPSS
0.0%
2023 CWE-73 1 PoC

Zoom VDI client installer prior to 5.14.0 contains an improper access control vulnerability. A malicious user may potentially delete local files without proper permissions.

CVE-2023-21985
Solaris Operating System Database
7.7
HIGH
EPSS
0.1%
2023 1 PoC

Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). Supported versions that are affected are 10 and 11. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Solaris, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle Solaris. CVSS 3.1 Base Scor

CVE-2023-23304
Software Genérico Web
7.7
HIGH
EPSS
0.2%
2023 1 PoC

The GarminOS TVM component in CIQ API version 2.1.0 through 4.1.7 allows applications with a specially crafted head section to use the `Toybox.SensorHistory` module without permission. A malicious application could call any functions from the `Toybox.SensorHistory` module without the user's consent and disclose potentially private or sensitive information.

CVE-2023-2590
answerdev/answer General
7.7
HIGH
EPSS
0.1%
2023 CWE-862 1 PoC

Missing Authorization in GitHub repository answerdev/answer prior to 1.0.9.

CVE-2023-42860
macOS General
7.7
HIGH
EPSS
0.4%
2023 1 PoC

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ventura 13.6.1. An app may be able to modify protected parts of the file system.