Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
66,988 matching · page 1158/1340Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2022-41739(opens NVD record) | High | 7.9 | IBM Spectrum Scale (IBM Spectrum Scale Container Native Storage Access 5.1.2.1 through 5.1.6.0) could allow programs running inside the container to overcome isolation mechanism and gain additional capabilities or access sensitive information on the host. IBM X-Force ID: 237815. | Apr 26, 2023 |
| CVE-2022-36769(opens NVD record) | High | 7.2 | IBM Cloud Pak for Data 4.5 and 4.6 could allow a privileged user to upload malicious files of dangerous types that can be automatically processed within the product's environment. IBM X-Force ID: 232034. | Apr 26, 2023 |
| CVE-2023-30404(opens NVD record) | Critical | 9.8 | Aigital Wireless-N Repeater Mini_Router v0.131229 was discovered to contain a remote code execution (RCE) vulnerability via the sysCmd parameter in the formSysCmd function. This vulnerability is exploited via a crafted HTTP request. | Apr 26, 2023 |
| CVE-2023-26735(opens NVD record) | High | 7.5 | blackbox_exporter v0.23.0 was discovered to contain an access control issue in its probe interface. This vulnerability allows attackers to detect intranet ports and services, as well as download resources. NOTE: this is disputed by third parties because authentication can be configured. | Apr 26, 2023 |
| CVE-2023-0045(opens NVD record) | Medium | 4.7 | The current implementation of the prctl syscall does not issue an IBPB immediately during the syscall. The ib_prctl_set function updates the Thread Information Flags (TIFs) for the task and updates the SPEC_CTRL MSR on the function __speculation_ctrl_update, but the IBPB is only issued on the next schedule, when the TIF bits are checked. This leaves the victim vulnerable to values already injected on the BTB, prior to the prctl syscall. The patch that added the support for the conditional mitigation via prctl (ib_prctl_set) dates back to the kernel 4.9.176. We recommend upgrading past commit a664ec9158eeddd75121d39c9a0758016097fa96 | Apr 25, 2023 |
| CVE-2023-20870(opens NVD record) | Medium | 6.0 | VMware Workstation and Fusion contain an out-of-bounds read vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual machine. | Apr 25, 2023 |
| CVE-2023-20869(opens NVD record) | High | 8.2 | VMware Workstation (17.x) and VMware Fusion (13.x) contain a stack-based buffer-overflow vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual machine. | Apr 25, 2023 |
| CVE-2023-30549(opens NVD record) | High | 7.1 | Apptainer is an open source container platform for Linux. There is an ext4 use-after-free flaw that is exploitable through versions of Apptainer < 1.1.0 and installations that include apptainer-suid < 1.1.8 on older operating systems where that CVE has not been patched. That includes Red Hat Enterprise Linux 7, Debian 10 buster (unless the linux-5.10 package is installed), Ubuntu 18.04 bionic and Ubuntu 20.04 focal. Use-after-free flaws in the kernel can be used to attack the kernel for denial of service and potentially for privilege escalation. Apptainer 1.1.8 includes a patch that by default disables mounting of extfs filesystem types in setuid-root mode, while continuing to allow mounting of extfs filesystems in non-setuid "rootless" mode using fuse2fs. Some workarounds are possible. Either do not install apptainer-suid (for versions 1.1.0 through 1.1.7) or set `allow setuid = no` in apptainer.conf. This requires having unprivileged user namespaces enabled and except for apptainer 1.1.x versions will disallow mounting of sif files, extfs files, and squashfs files in addition to other, less significant impacts. (Encrypted sif files are also not supported unprivileged in apptainer 1.1.x.). Alternatively, use the `limit containers` options in apptainer.conf/singularity.conf to limit sif files to trusted users, groups, and/or paths, and set `allow container extfs = no` to disallow mounting of extfs overlay files. The latter option by itself does not disallow mounting of extfs overlay partitions inside SIF files, so that's why the former options are also needed. | Apr 25, 2023 |
| CVE-2023-2269(opens NVD record) | Medium | 4.4 | A denial of service problem was found, due to a possible recursive locking scenario, resulting in a deadlock in table_clear in drivers/md/dm-ioctl.c in the Linux Kernel Device Mapper-Multipathing sub-component. | Apr 25, 2023 |
| CVE-2023-24512(opens NVD record) | High | 8.8 | On affected platforms running Arista EOS, an authorized attacker with permissions to perform gNMI requests could craft a request allowing it to update arbitrary configurations in the switch. This situation occurs only when the Streaming Telemetry Agent (referred to as the TerminAttr agent) is enabled and gNMI access is configured on the agent. Note: This gNMI over the Streaming Telemetry Agent scenario is mostly commonly used when streaming to a 3rd party system and is not used by default when streaming to CloudVision | Apr 25, 2023 |
| CVE-2023-23839(opens NVD record) | Medium | 6.5 | The SolarWinds Platform was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users to access Orion.WebCommunityStrings SWIS schema object and obtain sensitive information. | Apr 25, 2023 |
| CVE-2023-20872(opens NVD record) | High | 8.8 | VMware Workstation and Fusion contain an out-of-bounds read/write vulnerability in SCSI CD/DVD device emulation. | Apr 25, 2023 |
| CVE-2023-20871(opens NVD record) | High | 7.8 | VMware Fusion contains a local privilege escalation vulnerability. A malicious actor with read/write access to the host operating system can elevate privileges to gain root access to the host operating system. | Apr 25, 2023 |
| CVE-2023-28084(opens NVD record) | Medium | 5.5 | HPE OneView and HPE OneView Global Dashboard appliance dumps may expose authentication tokens | Apr 25, 2023 |
| CVE-2023-2282(opens NVD record) | Medium | 6.5 | Improper access control in the Web Login listener in Devolutions Remote Desktop Manager 2023.1.22 and earlier on Windows allows an authenticated user to bypass administrator-enforced Web Login restrictions and gain access to entries via an unexpected vector. | Apr 25, 2023 |
| CVE-2023-28090(opens NVD record) | Medium | 5.5 | An HPE OneView appliance dump may expose SNMPv3 read credentials | Apr 25, 2023 |
| CVE-2023-28089(opens NVD record) | High | 7.1 | An HPE OneView appliance dump may expose FTP credentials for c7000 Interconnect Modules | Apr 25, 2023 |
| CVE-2023-28088(opens NVD record) | High | 7.8 | An HPE OneView appliance dump may expose SAN switch administrative credentials | Apr 25, 2023 |
| CVE-2023-28087(opens NVD record) | Medium | 5.5 | An HPE OneView appliance dump may expose OneView user accounts | Apr 25, 2023 |
| CVE-2023-28086(opens NVD record) | Medium | 5.5 | An HPE OneView appliance dump may expose proxy credential settings | Apr 25, 2023 |
| CVE-2022-40725(opens NVD record) | High | 7.3 | PingID Desktop prior to the latest released version 1.7.4 contains a vulnerability that can be exploited to bypass the maximum PIN attempts permitted before the time-based lockout is activated. | Apr 25, 2023 |
| CVE-2022-40724(opens NVD record) | Medium | 6.4 | The PingFederate Local Identity Profiles '/pf/idprofile.ping' endpoint is vulnerable to Cross-Site Request Forgery (CSRF) through crafted GET requests. | Apr 25, 2023 |
| CVE-2022-40723(opens NVD record) | Medium | 6.5 | The PingID RADIUS PCV adapter for PingFederate, which supports RADIUS authentication with PingID MFA, is vulnerable to MFA bypass under certain configurations. | Apr 25, 2023 |
| CVE-2022-40722(opens NVD record) | High | 7.7 | A misconfiguration of RSA padding implemented in the PingID Adapter for PingFederate to support Offline MFA with PingID mobile authenticators is vulnerable to pre-computed dictionary attacks, leading to a bypass of offline MFA. | Apr 25, 2023 |
| CVE-2022-23721(opens NVD record) | Low | 3.8 | PingID integration for Windows login prior to 2.9 does not handle duplicate usernames, which can lead to a username collision when two people with the same username are provisioned onto the same machine at different times. | Apr 25, 2023 |
| CVE-2023-23838(opens NVD record) | Medium | 6.5 | Directory traversal and file enumeration vulnerability which allowed users to enumerate to different folders of the server. | Apr 25, 2023 |
| CVE-2023-23837(opens NVD record) | High | 7.5 | No exception handling vulnerability which revealed sensitive or excessive information to users. | Apr 25, 2023 |
| CVE-2023-29552(opens NVD record) | High | 7.5 | The Service Location Protocol (SLP, RFC 2608) allows an unauthenticated, remote attacker to register arbitrary services. This could allow the attacker to use spoofed UDP traffic to conduct a denial-of-service attack with a significant amplification factor. | Apr 25, 2023 |
| CVE-2022-31244(opens NVD record) | High | 7.8 | Nokia OneNDS 17r2 has Insecure Permissions vulnerability that allows for privilege escalation. | Apr 25, 2023 |
| CVE-2023-26058(opens NVD record) | Medium | 6.5 | An XXE issue was discovered in Nokia NetAct before 22 FP2211 via an XML document to a Performance Manager page. Input validation and a proper XML parser configuration are missing. For an external attacker, it is very difficult to exploit this, because a few dynamically created parameters such as Jsession-id, a CSRF token, and an Nxsrf token would be needed. The attack can realistically only be performed by an internal user. | Apr 25, 2023 |
| CVE-2023-26057(opens NVD record) | Medium | 6.5 | An XXE issue was discovered in Nokia NetAct before 22 FP2211 via an XML document to the Configuration Dashboard page. Input validation and a proper XML parser configuration are missing. For an external attacker, it is very difficult to exploit this, because a few dynamically created parameters such as Jsession-id, a CSRF token, and an Nxsrf token would be needed. The attack can realistically only be performed by an internal user. | Apr 25, 2023 |
| CVE-2023-2007(opens NVD record) | High | 7.8 | The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel. | Apr 24, 2023 |
| CVE-2023-2019(opens NVD record) | Medium | 4.4 | A flaw was found in the Linux kernel's netdevsim device driver, within the scheduling of events. This issue results from the improper management of a reference count. This may allow an attacker to create a denial of service condition on the system. | Apr 24, 2023 |
| CVE-2023-2006(opens NVD record) | High | 7.0 | A race condition was found in the Linux kernel's RxRPC network protocol, within the processing of RxRPC bundles. This issue results from the lack of proper locking when performing operations on an object. This may allow an attacker to escalate privileges and execute arbitrary code in the context of the kernel. | Apr 24, 2023 |
| CVE-2023-2257(opens NVD record) | High | 7.8 | Authentication Bypass in Hub Business integration in Devolutions Workspace Desktop 2023.1.1.3 and earlier on Windows and macOS allows an attacker with access to the user interface to unlock a Hub Business space without being prompted to enter the password via an unimplemented "Force Login" security feature. This vulnerability occurs only if "Force Login" feature is enabled on the Hub Business instance and that an attacker has access to a locked Workspace desktop application configured with a Hub Business space. | Apr 24, 2023 |
| CVE-2023-26059(opens NVD record) | Medium | 6.8 | An issue was discovered in Nokia NetAct before 22 SP1037. On the Site Configuration Tool tab, attackers can upload a ZIP file which, when processed, exploits Stored XSS. The upload option of the Site Configuration tool does not validate the file contents. The application is in a demilitarised zone behind a perimeter firewall and without exposure to the internet. The attack can only be performed by an internal user. | Apr 24, 2023 |
| CVE-2023-26061(opens NVD record) | Medium | 6.8 | An issue was discovered in Nokia NetAct before 22 FP2211. On the Scheduled Search tab under the Alarm Reports Dashboard page, users can create a script to inject XSS. Input validation was missing during creation of a scheduled task. For an external attacker, it is very difficult to exploit this, because a few dynamically created parameters such as Jsession-id, a CSRF token, and an Nxsrf token would be needed. The attack can realistically only be performed by an internal user. | Apr 24, 2023 |
| CVE-2023-26060(opens NVD record) | Medium | 6.8 | An issue was discovered in Nokia NetAct before 22 FP2211. On the Working Set Manager page, users can create a Working Set with a name that has a client-side template injection payload. Input validation is missing during creation of the working set. For an external attacker, it is very difficult to exploit this, because a few dynamically created parameters such as Jsession-id, a CSRF token, and an Nxsrf token would be needed. The attack can realistically only be performed by an internal user. | Apr 24, 2023 |
| CVE-2023-31084(opens NVD record) | Medium | 5.5 | An issue was discovered in drivers/media/dvb-core/dvb_frontend.c in the Linux kernel 6.2. There is a blocking operation when a task is in !TASK_RUNNING. In dvb_frontend_get_event, wait_event_interruptible is called; the condition is dvb_frontend_test_event(fepriv,events). In dvb_frontend_test_event, down(&fepriv->sem) is called. However, wait_event_interruptible would put the process to sleep, and down(&fepriv->sem) may block the process. | Apr 24, 2023 |
| CVE-2023-25514(opens NVD record) | Medium | 5.3 | NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds read by tricking a user into running cuobjdump on a malformed input file. A successful exploit of this vulnerability may lead to limited denial of service, code execution, and limited information disclosure. | Apr 22, 2023 |
| CVE-2023-25513(opens NVD record) | Medium | 5.3 | NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds read by tricking a user into running cuobjdump on a malformed input file. A successful exploit of this vulnerability may lead to limited denial of service, code execution, and limited information disclosure. | Apr 22, 2023 |
| CVE-2023-25512(opens NVD record) | Medium | 5.3 | NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds memory read by running cuobjdump on a malformed input file. A successful exploit of this vulnerability may lead to limited denial of service, code execution, and limited information disclosure. | Apr 22, 2023 |
| CVE-2023-25511(opens NVD record) | Low | 3.3 | NVIDIA CUDA Toolkit for Linux and Windows contains a vulnerability in cuobjdump, where a division-by-zero error may enable a user to cause a crash, which may lead to a limited denial of service. | Apr 22, 2023 |
| CVE-2023-25510(opens NVD record) | Low | 3.3 | NVIDIA CUDA Toolkit SDK for Linux and Windows contains a NULL pointer dereference in cuobjdump, where a local user running the tool against a malformed binary may cause a limited denial of service. | Apr 22, 2023 |
| CVE-2023-25509(opens NVD record) | Medium | 6.0 | NVIDIA DGX-1 SBIOS contains a vulnerability in Bds, which may lead to code execution, denial of service, and escalation of privileges. | Apr 22, 2023 |
| CVE-2023-25508(opens NVD record) | Medium | 6.7 | NVIDIA DGX-1 BMC contains a vulnerability in the IPMI handler, where an attacker with the appropriate level of authorization can upload and download arbitrary files under certain circumstances, which may lead to denial of service, escalation of privileges, information disclosure, and data tampering. | Apr 22, 2023 |
| CVE-2023-25507(opens NVD record) | High | 7.2 | NVIDIA DGX-1 BMC contains a vulnerability in the SPX REST API, where an attacker with the appropriate level of authorization can inject arbitrary shell commands, which may lead to code execution, denial of service, information disclosure, and data tampering. | Apr 22, 2023 |
| CVE-2023-25506(opens NVD record) | High | 7.5 | NVIDIA DGX-1 contains a vulnerability in Ofbd in AMI SBIOS, where a preconditioned heap can allow a user with elevated privileges to cause an access beyond the end of a buffer, which may lead to code execution, escalation of privileges, denial of service and information disclosure. The scope of the impact of this vulnerability can extend to other components. | Apr 22, 2023 |
| CVE-2023-25505(opens NVD record) | High | 7.8 | NVIDIA DGX-1 BMC contains a vulnerability in the IPMI handler of the AMI MegaRAC BMC , where an attacker with the appropriate level of authorization can cause a buffer overflow, which may lead to denial of service, information disclosure, or arbitrary code execution. | Apr 22, 2023 |
| CVE-2023-0209(opens NVD record) | High | 8.2 | NVIDIA DGX-1 SBIOS contains a vulnerability in the Uncore PEI module, where authentication of the code executed by SSA is missing, which may lead to arbitrary code execution, denial of service, escalation of privileges assisted by a firmware implant, information disclosure assisted by a firmware implant, data tampering, and SecureBoot bypass. | Apr 22, 2023 |