Searching...
Please wait while we search the database
| CVE ID | Severity | Description | Published | Actions |
|---|---|---|---|---|
|
CVE-2023-0524
|
N/A |
As part of our Security Development Lifecycle, a potential privilege escalation issue was identified internally. This could allow a malicious actor with sufficient permissions to modify environment variables and abuse an impacted plugin in order to escalate privileges. We have resolved the issue and also made several defense-in-depth fixes alongside. While the probability of successful exploitation is low, Tenable is committed to securing our customers’ environments and our products. The updates have been distributed via the Tenable plugin feed in feed serial numbers equal to or greater than #202212212055.
|
01 Feb 2023
|
|
|
CVE-2023-0587
|
N/A |
A file upload vulnerability in exists in Trend Micro Apex One server build 11110. Using a malformed Content-Length header in an HTTP PUT message sent to URL /officescan/console/html/cgi/fcgiOfcDDA.exe, an unauthenticated remote attacker can upload arbitrary files to the SampleSubmission directory (i.e., \PCCSRV\TEMP\SampleSubmission) on the server. The attacker can upload a large number of large files to fill up the file system on which the Apex One server is installed.
|
01 Feb 2023
|
|
|
CVE-2023-0606
|
CRITICAL |
Cross-site Scripting (XSS) - Reflected in GitHub repository ampache/ampache prior to 5.5.7.
|
01 Feb 2023
|
|
|
CVE-2023-0607
|
HIGH |
Cross-site Scripting (XSS) - Stored in GitHub repository projectsend/projectsend prior to r1606.
|
01 Feb 2023
|
|
|
CVE-2023-20856
|
N/A |
VMware vRealize Operations (vROps) contains a CSRF bypass vulnerability. A malicious user could execute actions on the vROps platform on behalf of the authenticated victim user.
|
01 Feb 2023
|
|
|
CVE-2022-47770
|
N/A |
Serenissima Informatica Fast Checkin version v1.0 is vulnerable to Unauthenticated SQL Injection.
|
01 Feb 2023
|
|
|
CVE-2023-23846
|
N/A |
Due to insufficient length validation in the Open5GS GTP library versions prior to versions 2.4.13 and 2.5.7, when parsing extension headers in GPRS tunneling protocol (GPTv1-U) messages, a protocol payload with any extension header length set to zero causes an infinite loop. The affected process becomes immediately unresponsive, resulting in denial of service and excessive resource consumption. CVSS3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C
|
01 Feb 2023
|
|
|
CVE-2022-46934
|
N/A |
kkFileView v4.1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the url parameter at /controller/OnlinePreviewController.java.
|
01 Feb 2023
|
|
|
CVE-2022-47769
|
N/A |
An arbitrary file write vulnerability in Serenissima Informatica Fast Checkin v1.0 allows unauthenticated attackers to upload malicious files in the web root of the application to gain access to the server via the web shell.
|
01 Feb 2023
|
|
|
CVE-2022-37033
|
N/A |
In dotCMS 5.x-22.06, TempFileAPI allows a user to create a temporary file based on a passed in URL, while attempting to block any SSRF access to local IP addresses or private subnets. In resolving this URL, the TempFileAPI follows any 302 redirects that the remote URL returns. Because there is no re-validation of the redirect URL, the TempFileAPI can be used to return data from those local/private hosts that should not be accessible remotely.
|
01 Feb 2023
|
|
|
CVE-2022-37034
|
N/A |
In dotCMS 5.x-22.06, it is possible to call the TempResource multiple times, each time requesting the dotCMS server to download a large file. If done repeatedly, this will result in Tomcat request-thread exhaustion and ultimately a denial of any other requests.
|
01 Feb 2023
|
|
|
CVE-2022-45782
|
N/A |
An issue was discovered in dotCMS core 5.3.8.5 through 5.3.8.15 and 21.03 through 22.10.1. A cryptographically insecure random generation algorithm for password-reset token generation leads to account takeover.
|
01 Feb 2023
|
|
|
CVE-2022-45783
|
N/A |
An issue was discovered in dotCMS core 4.x through 22.10.2. An authenticated directory traversal vulnerability in the dotCMS API can lead to Remote Code Execution.
|
01 Feb 2023
|
|
|
CVE-2022-31902
|
N/A |
Notepad++ v8.4.1 was discovered to contain a stack overflow via the component Finder::add().
|
01 Feb 2023
|
|
|
CVE-2023-0610
|
MEDIUM |
Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.3.
|
01 Feb 2023
|
|
|
CVE-2023-0608
|
MEDIUM |
Cross-site Scripting (XSS) - DOM in GitHub repository microweber/microweber prior to 1.3.2.
|
01 Feb 2023
|
|
|
CVE-2023-0609
|
MEDIUM |
Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.3.
|
01 Feb 2023
|
|
|
CVE-2022-48093
|
N/A |
Seacms v12.7 was discovered to contain a remote code execution (RCE) vulnerability via the ip parameter at admin_ ip.php.
|
01 Feb 2023
|
|
|
CVE-2022-48094
|
N/A |
lmxcms v1.41 was discovered to contain an arbitrary file read vulnerability via TemplateAction.class.php.
|
01 Feb 2023
|
|
|
CVE-2023-23076
|
N/A |
OS Command injection vulnerability in Support Center Plus 11 via Executor in Action when creating new schedules.
|
01 Feb 2023
|
|
|
CVE-2023-23077
|
N/A |
Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 13 via the comment field when adding a new status comment.
|
01 Feb 2023
|
|
|
CVE-2023-23078
|
N/A |
Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 14 via the comment field when changing the credentials in the Assets.
|
01 Feb 2023
|
|
|
CVE-2023-23128
|
N/A |
Connectwise Control 22.8.10013.8329 is vulnerable to Cross Origin Resource Sharing (CORS). The vendor's position is that two endpoints have Access-Control-Allow-Origin wildcarding to support product functionality, and that there is no risk from this behavior. The vulnerability report is thus not valid.
|
01 Feb 2023
|
|
|
CVE-2023-23131
|
N/A |
Selfwealth iOS mobile App 3.3.1 is vulnerable to Insecure App Transport Security (ATS) Settings.
|
01 Feb 2023
|
|
|
CVE-2023-23132
|
N/A |
Selfwealth iOS mobile App 3.3.1 is vulnerable to Sensitive key disclosure. The application reveals hardcoded API keys.
|
01 Feb 2023
|
CVE-2023-0524
N/A
01 Feb 2023
As part of our Security Development Lifecycle, a potential privilege escalation issue was identified internally. This could allow a malicious actor with sufficient permissions to modify environment variables and abuse an impacted plugin in order to escalate privileges. We have resolved the issue and also made several defense-in-depth fixes alongside. While the probability of successful exploitation is low, Tenable is committed to securing our customers’ environments and our products. The updates have been distributed via the Tenable plugin feed in feed serial numbers equal to or greater than #202212212055.
CVE-2023-0587
N/A
01 Feb 2023
A file upload vulnerability in exists in Trend Micro Apex One server build 11110. Using a malformed Content-Length header in an HTTP PUT message sent to URL /officescan/console/html/cgi/fcgiOfcDDA.exe, an unauthenticated remote attacker can upload arbitrary files to the SampleSubmission directory (i.e., \PCCSRV\TEMP\SampleSubmission) on the server. The attacker can upload a large number of large files to fill up the file system on which the Apex One server is installed.
CVE-2023-0606
CRITICAL
01 Feb 2023
Cross-site Scripting (XSS) - Reflected in GitHub repository ampache/ampache prior to 5.5.7.
CVE-2023-0607
HIGH
01 Feb 2023
Cross-site Scripting (XSS) - Stored in GitHub repository projectsend/projectsend prior to r1606.
CVE-2023-20856
N/A
01 Feb 2023
VMware vRealize Operations (vROps) contains a CSRF bypass vulnerability. A malicious user could execute actions on the vROps platform on behalf of the authenticated victim user.
CVE-2022-47770
N/A
01 Feb 2023
Serenissima Informatica Fast Checkin version v1.0 is vulnerable to Unauthenticated SQL Injection.
CVE-2023-23846
N/A
01 Feb 2023
Due to insufficient length validation in the Open5GS GTP library versions prior to versions 2.4.13 and 2.5.7, when parsing extension headers in GPRS tunneling protocol (GPTv1-U) messages, a protocol payload with any extension header length set to zero causes an infinite loop. The affected process becomes immediately unresponsive, resulting in denial of service and excessive resource consumption. CVSS3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C
CVE-2022-46934
N/A
01 Feb 2023
kkFileView v4.1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the url parameter at /controller/OnlinePreviewController.java.
CVE-2022-47769
N/A
01 Feb 2023
An arbitrary file write vulnerability in Serenissima Informatica Fast Checkin v1.0 allows unauthenticated attackers to upload malicious files in the web root of the application to gain access to the server via the web shell.
CVE-2022-37033
N/A
01 Feb 2023
In dotCMS 5.x-22.06, TempFileAPI allows a user to create a temporary file based on a passed in URL, while attempting to block any SSRF access to local IP addresses or private subnets. In resolving this URL, the TempFileAPI follows any 302 redirects that the remote URL returns. Because there is no re-validation of the redirect URL, the TempFileAPI can be used to return data from those local/private hosts that should not be accessible remotely.
CVE-2022-37034
N/A
01 Feb 2023
In dotCMS 5.x-22.06, it is possible to call the TempResource multiple times, each time requesting the dotCMS server to download a large file. If done repeatedly, this will result in Tomcat request-thread exhaustion and ultimately a denial of any other requests.
CVE-2022-45782
N/A
01 Feb 2023
An issue was discovered in dotCMS core 5.3.8.5 through 5.3.8.15 and 21.03 through 22.10.1. A cryptographically insecure random generation algorithm for password-reset token generation leads to account takeover.
CVE-2022-45783
N/A
01 Feb 2023
An issue was discovered in dotCMS core 4.x through 22.10.2. An authenticated directory traversal vulnerability in the dotCMS API can lead to Remote Code Execution.
CVE-2022-31902
N/A
01 Feb 2023
Notepad++ v8.4.1 was discovered to contain a stack overflow via the component Finder::add().
CVE-2023-0610
MEDIUM
01 Feb 2023
Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.3.
CVE-2023-0608
MEDIUM
01 Feb 2023
Cross-site Scripting (XSS) - DOM in GitHub repository microweber/microweber prior to 1.3.2.
CVE-2023-0609
MEDIUM
01 Feb 2023
Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.3.
CVE-2022-48093
N/A
01 Feb 2023
Seacms v12.7 was discovered to contain a remote code execution (RCE) vulnerability via the ip parameter at admin_ ip.php.
CVE-2022-48094
N/A
01 Feb 2023
lmxcms v1.41 was discovered to contain an arbitrary file read vulnerability via TemplateAction.class.php.
CVE-2023-23076
N/A
01 Feb 2023
OS Command injection vulnerability in Support Center Plus 11 via Executor in Action when creating new schedules.
CVE-2023-23077
N/A
01 Feb 2023
Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 13 via the comment field when adding a new status comment.
CVE-2023-23078
N/A
01 Feb 2023
Cross site scripting (XSS) vulnerability in Zoho ManageEngine ServiceDesk Plus 14 via the comment field when changing the credentials in the Assets.
CVE-2023-23128
N/A
01 Feb 2023
Connectwise Control 22.8.10013.8329 is vulnerable to Cross Origin Resource Sharing (CORS). The vendor's position is that two endpoints have Access-Control-Allow-Origin wildcarding to support product functionality, and that there is no risk from this behavior. The vulnerability report is thus not valid.
CVE-2023-23131
N/A
01 Feb 2023
Selfwealth iOS mobile App 3.3.1 is vulnerable to Insecure App Transport Security (ATS) Settings.
CVE-2023-23132
N/A
01 Feb 2023
Selfwealth iOS mobile App 3.3.1 is vulnerable to Sensitive key disclosure. The application reveals hardcoded API keys.
Page 709 of 756
Page 709 of 756