Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
66,988 matching · page 1144/1340Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2023-32373(opens NVD record) | High | 8.8 | A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, Safari 16.5, iOS 16.5 and iPadOS 16.5. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. | Jun 23, 2023 |
| CVE-2023-25520(opens NVD record) | Medium | 4.4 | NVIDIA Jetson Linux Driver Package contains a vulnerability in nvbootctrl, where a privileged local attacker can configure invalid settings, resulting in denial of service. | Jun 23, 2023 |
| CVE-2023-25518(opens NVD record) | High | 7.1 | NVIDIA Jetson contains a vulnerability in CBoot, where the PCIe controller is initialized without IOMMU, which may allow an attacker with physical access to the target device to read and write to arbitrary memory. A successful exploit of this vulnerability may lead to code execution, denial of service, information disclosure, and loss of integrity. | Jun 23, 2023 |
| CVE-2023-25515(opens NVD record) | High | 7.8 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where unexpected untrusted data is parsed, which may lead to code execution, denial of service, escalation of privileges, data tampering, or information disclosure. | Jun 23, 2023 |
| CVE-2023-28065(opens NVD record) | Medium | 6.7 | Dell Command | Update, Dell Update, and Alienware Update versions 4.8.0 and prior contain an Insecure Operation on Windows Junction / Mount Point vulnerability. A local malicious user could potentially exploit this vulnerability leading to privilege escalation. | Jun 23, 2023 |
| CVE-2023-32480(opens NVD record) | Medium | 6.8 | Dell BIOS contains an Improper Input Validation vulnerability. An unauthenticated physical attacker may potentially exploit this vulnerability to perform arbitrary code execution. | Jun 23, 2023 |
| CVE-2023-28073(opens NVD record) | High | 8.2 | Dell BIOS contains an improper authentication vulnerability. A locally authenticated malicious user may potentially exploit this vulnerability by bypassing certain authentication mechanisms in order to elevate privileges on the system. | Jun 23, 2023 |
| CVE-2023-28071(opens NVD record) | Medium | 6.3 | Dell Command | Update, Dell Update, and Alienware Update versions 4.9.0, A01 and prior contain an Insecure Operation on Windows Junction / Mount Point vulnerability. A local malicious user could potentially exploit this vulnerability to create arbitrary folder leading to permanent Denial of Service (DOS). | Jun 23, 2023 |
| CVE-2023-28064(opens NVD record) | Low | 3.5 | Dell BIOS contains an Out-of-bounds Write vulnerability. An unauthenticated physical attacker may potentially exploit this vulnerability, leading to denial of service. | Jun 23, 2023 |
| CVE-2023-28060(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28058(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28050(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28044(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28036(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28034(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28031(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28027(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28026(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-25938(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28061(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28059(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28056(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28054(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28052(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28042(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28041(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28040(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28039(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28035(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28033(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28032(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28030(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-28029(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable | Jun 23, 2023 |
| CVE-2023-28028(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-25937(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-25936(opens NVD record) | Medium | 5.1 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with administrator privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Jun 23, 2023 |
| CVE-2023-33299(opens NVD record) | Critical | 9.8 | A deserialization of untrusted data in Fortinet FortiNAC below 7.2.1, below 9.4.3, below 9.2.8 and all earlier versions of 8.x allows attacker to execute unauthorized code or commands via specifically crafted request on inter-server communication port. Note FortiNAC versions 8.x will not be fixed. | Jun 23, 2023 |
| CVE-2023-32464(opens NVD record) | Low | 2.7 | Dell VxRail, versions prior to 7.0.450, contain an improper certificate validation vulnerability. A high privileged remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim’s data in transit. | Jun 23, 2023 |
| CVE-2023-32463(opens NVD record) | Low | 3.4 | Dell VxRail, version(s) 8.0.100 and earlier contain a denial-of-service vulnerability in the upgrade functionality. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to degraded performance and system malfunction. | Jun 23, 2023 |
| CVE-2023-33141(opens NVD record) | High | 7.5 | Yet Another Reverse Proxy (YARP) Denial of Service Vulnerability | Jun 23, 2023 |
| CVE-2023-35174(opens NVD record) | High | 8.6 | Livebook is a web application for writing interactive and collaborative code notebooks. On Windows, it is possible to open a `livebook://` link from a browser which opens Livebook Desktop and triggers arbitrary code execution on victim's machine. Any user using Livebook Desktop on Windows is potentially vulnerable to arbitrary code execution when they expect Livebook to be opened from browser. This vulnerability has been fixed in version 0.8.2 and 0.9.3. | Jun 22, 2023 |
| CVE-2023-20896(opens NVD record) | Medium | 5.9 | The VMware vCenter Server contains an out-of-bounds read vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger an out-of-bounds read by sending a specially crafted packet leading to denial-of-service of certain services (vmcad, vmdird, and vmafdd). | Jun 22, 2023 |
| CVE-2023-31868(opens NVD record) | Medium | 5.4 | Sage X3 version 12.14.0.50-0 is vulnerable to Cross Site Scripting (XSS). Some parts of the Web application are dynamically built using user's inputs. Yet, those inputs are not verified nor filtered by the application, so they mathed the expected format. Therefore, when HTML/JavaScript code is injected into those fields, this code will be saved by the application and executed by the web browser of the user viewing the web page. Several injection points have been identified on the application. The major one requires the user to be authenticated with a common account, he can then target an Administrator. All others endpoints need the malicious user to be authenticated as an Administrator. Therefore, the impact is diminished. | Jun 22, 2023 |
| CVE-2023-31867(opens NVD record) | High | 7.2 | Sage X3 version 12.14.0.50-0 is vulnerable to CSV Injection. | Jun 22, 2023 |
| CVE-2023-20895(opens NVD record) | High | 8.1 | The VMware vCenter Server contains a memory corruption vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger a memory corruption vulnerability which may bypass authentication. | Jun 22, 2023 |
| CVE-2023-20894(opens NVD record) | High | 8.1 | The VMware vCenter Server contains an out-of-bounds write vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger an out-of-bound write by sending a specially crafted packet leading to memory corruption. | Jun 22, 2023 |
| CVE-2023-20893(opens NVD record) | High | 8.1 | The VMware vCenter Server contains a use-after-free vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may exploit this issue to execute arbitrary code on the underlying operating system that hosts vCenter Server. | Jun 22, 2023 |
| CVE-2023-20892(opens NVD record) | High | 8.1 | The vCenter Server contains a heap overflow vulnerability due to the usage of uninitialized memory in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may exploit heap-overflow vulnerability to execute arbitrary code on the underlying operating system that hosts vCenter Server. | Jun 22, 2023 |
| CVE-2023-32449(opens NVD record) | High | 7.2 | Dell PowerStore versions prior to 3.5 contain an improper verification of cryptographic signature vulnerability. An attacker can trick a high privileged user to install a malicious binary by bypassing the existing cryptographic signature checks | Jun 22, 2023 |
| CVE-2023-33842(opens NVD record) | Medium | 6.2 | IBM SPSS Modeler on Windows 17.0, 18.0, 18.2.2, 18.3, 18.4, and 18.5 requires the end user to have access to the server SSL key which could allow a local user to decrypt and obtain sensitive information. IBM X-Force ID: 256117. | Jun 22, 2023 |