Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
67,775 matching · page 1189/1356Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2023-28531(opens NVD record) | Critical | 9.8 | ssh-add in OpenSSH before 9.3 adds smartcard keys to ssh-agent without the intended per-hop destination constraints. The earliest affected version is 8.9. | Mar 17, 2023 |
| CVE-2023-27789(opens NVD record) | High | 7.5 | An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at the cidr.c:178 endpoint. | Mar 16, 2023 |
| CVE-2023-27788(opens NVD record) | High | 7.5 | An issue found in TCPrewrite v.4.4.3 allows a remote attacker to cause a denial of service via the ports2PORT function at the portmap.c:69 endpoint. | Mar 16, 2023 |
| CVE-2023-27787(opens NVD record) | High | 7.5 | An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse_list function at the list.c:81 endpoint. | Mar 16, 2023 |
| CVE-2023-27786(opens NVD record) | High | 7.5 | An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the macinstring function. | Mar 16, 2023 |
| CVE-2023-27785(opens NVD record) | High | 7.5 | An issue found in TCPreplay TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse endpoints function. | Mar 16, 2023 |
| CVE-2023-27784(opens NVD record) | High | 7.5 | An issue found in TCPReplay v.4.4.3 allows a remote attacker to cause a denial of service via the read_hexstring function at the utils.c:309 endpoint. | Mar 16, 2023 |
| CVE-2023-27783(opens NVD record) | High | 7.5 | An issue found in TCPreplay tcprewrite v.4.4.3 allows a remote attacker to cause a denial of service via the tcpedit_dlt_cleanup function at plugins/dlt_plugins.c. | Mar 16, 2023 |
| CVE-2023-26769(opens NVD record) | High | 7.5 | Buffer Overflow vulnerability found in Liblouis Lou_Trace v.3.24.0 allows a remote attacker to cause a denial of service via the resolveSubtable function at compileTranslationTabel.c. | Mar 16, 2023 |
| CVE-2023-27875(opens NVD record) | High | 7.5 | IBM Aspera Faspex 5.0.4 could allow a user to change other user's credentials due to improper access controls. IBM X-Force ID: 249847. | Mar 16, 2023 |
| CVE-2022-34423(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2023-24671(opens NVD record) | High | 7.8 | VX Search v13.8 and v14.7 was discovered to contain an unquoted service path vulnerability which allows attackers to execute arbitrary commands at elevated privileges via a crafted executable file. | Mar 16, 2023 |
| CVE-2022-34422(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34421(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34420(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34419(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34418(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34417(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34416(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34415(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34414(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34413(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34412(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34411(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34410(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34409(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34408(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34407(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2022-34406(opens NVD record) | High | 7.5 | Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high Privileges may potentially exploit this vulnerability to perform arbitrary code execution or cause denial of service. | Mar 16, 2023 |
| CVE-2023-24571(opens NVD record) | High | 7.5 | Dell BIOS contains an Improper Input Validation vulnerability. A local authenticated malicious user with administrator privileges could potentially exploit this vulnerability to perform arbitrary code execution. | Mar 16, 2023 |
| CVE-2023-28487(opens NVD record) | Medium | 5.3 | Sudo before 1.9.13 does not escape control characters in sudoreplay output. | Mar 16, 2023 |
| CVE-2023-28486(opens NVD record) | Medium | 5.3 | Sudo before 1.9.13 does not escape control characters in log messages. | Mar 16, 2023 |
| CVE-2023-28466(opens NVD record) | High | 7.0 | do_tls_getsockopt in net/tls/tls_main.c in the Linux kernel through 6.2.6 lacks a lock_sock call, leading to a race condition (with a resultant use-after-free or NULL pointer dereference). | Mar 16, 2023 |
| CVE-2023-28461(opens NVD record) | Critical | 9.8 | Array Networks Array AG Series and vxAG (9.4.0.481 and earlier) allow remote code execution. An attacker can browse the filesystem on the SSL VPN gateway using a flags attribute in an HTTP header without authentication. The product could then be exploited through a vulnerable URL. The 2023-03-09 vendor advisory stated "a new Array AG release with the fix will be available soon." | Mar 15, 2023 |
| CVE-2023-28460(opens NVD record) | High | 7.2 | A command injection vulnerability was discovered in Array Networks APV products. A remote attacker can send a crafted packet after logging into the affected appliance as an administrator, resulting in arbitrary shell code execution. This is fixed in 8.6.1.262 or newer and 10.4.2.93 or newer. | Mar 15, 2023 |
| CVE-2023-24468(opens NVD record) | Critical | 9.8 | Broken access control in Advanced Authentication versions prior to 6.4.1.1 and 6.3.7.2 | Mar 15, 2023 |
| CVE-2023-22591(opens NVD record) | Low | 3.9 | IBM Robotic Process Automation 21.0.1 through 21.0.7 and 23.0.0 through 23.0.1 could allow a user with physical access to the system due to session tokens for not being invalidated after a password reset. IBM X-Force ID: 243710. | Mar 15, 2023 |
| CVE-2023-25680(opens NVD record) | Medium | 4.2 | IBM Robotic Process Automation 21.0.1 through 21.0.5 is vulnerable to insufficiently protecting credentials. Queue Provider credentials are not obfuscated while editing queue provider details. IBM X-Force ID: 247032. | Mar 15, 2023 |
| CVE-2022-46773(opens NVD record) | Medium | 4.3 | IBM Robotic Process Automation 21.0.0 - 21.0.7 and 23.0.0 is vulnerable to client-side validation bypass for credential pools. Invalid credential pools may be created as a result. IBM X-Force ID: 242951. | Mar 15, 2023 |
| CVE-2023-22876(opens NVD record) | Medium | 4.3 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.7 and 6.1.0.0 through 6.1.2.1 could allow a privileged user to obtain sensitive information that could aid in further attacks against the system. IBM X-Force ID: 244364. | Mar 15, 2023 |
| CVE-2022-46774(opens NVD record) | Medium | 5.4 | IBM Manage Application 8.8.0 and 8.9.0 in the IBM Maximo Application Suite is vulnerable to incorrect default permissions which could give access to a user to actions that they should not have access to. IBM X-Force ID: 242953. | Mar 15, 2023 |
| CVE-2020-4927(opens NVD record) | Medium | 5.7 | A vulnerability in the Spectrum Scale 5.0.5.0 through 5.1.6.1 core component could allow unauthorized access to user data or injection of arbitrary data in the communication protocol. IBM X-Force ID: 191695. | Mar 15, 2023 |
| CVE-2020-4556(opens NVD record) | Medium | 4.0 | IBM Financial Transaction Manager for High Value Payments for Multi-Platform 3.2.0 through 3.2.10 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 183329. | Mar 15, 2023 |
| CVE-2023-26284(opens NVD record) | High | 7.5 | IBM MQ Certified Container 9.3.0.1 through 9.3.0.3 and 9.3.1.0 through 9.3.1.1 could allow authenticated users with the cluster to be granted administration access to the MQ console due to improper access controls. IBM X-Force ID: 248417. | Mar 15, 2023 |
| CVE-2022-43874(opens NVD record) | Medium | 6.1 | IBM App Connect Enterprise Certified Container 4.1, 4.2, 5.0, 5.1, 5.2, 6.0, 6.1, 6.2, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 239963. | Mar 15, 2023 |
| CVE-2023-24930(opens NVD record) | High | 7.8 | Microsoft OneDrive for MacOS Elevation of Privilege Vulnerability | Mar 14, 2023 |
| CVE-2023-24923(opens NVD record) | Medium | 5.5 | Microsoft OneDrive for Android Information Disclosure Vulnerability | Mar 14, 2023 |
| CVE-2023-24922(opens NVD record) | Medium | 6.5 | Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability | Mar 14, 2023 |
| CVE-2023-24921(opens NVD record) | Medium | 5.4 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability | Mar 14, 2023 |
| CVE-2023-24920(opens NVD record) | Medium | 5.4 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability | Mar 14, 2023 |