Export limit exceeded: 386256 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (386256 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2023-49563 | 1 Voltronicpower | 1 Snmp Web Pro | 2024-11-21 | 6.1 Medium |
| Cross Site Scripting (XSS) in Voltronic Power SNMP Web Pro v.1.1 allows an attacker to execute arbitrary code via a crafted script within a request to the webserver. | ||||
| CVE-2023-49551 | 1 Cesanta | 1 Mjs | 2024-11-21 | 7.5 High |
| An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_parse function in the msj.c file. | ||||
| CVE-2023-49515 | 1 Tp-link | 4 Tapo C200, Tapo C200 Firmware, Tapo Tc70 and 1 more | 2024-11-21 | 4.6 Medium |
| Insecure Permissiosn vulnerability in TP Link TC70 and C200 WIFI Camera v.3 firmware v.1.3.4 and fixed in v.1.3.11 allows a physically proximate attacker to obtain sensitive information via a connection to the UART pin components. | ||||
| CVE-2023-49494 | 1 Dedecms | 1 Dedecms | 2024-11-21 | 6.1 Medium |
| DedeCMS v5.7.111 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component select_media_post_wangEditor.php. | ||||
| CVE-2023-49492 | 1 Dedecms | 1 Dedecms | 2024-11-21 | 6.1 Medium |
| DedeCMS v5.7.111 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the imgstick parameter at selectimages.php. | ||||
| CVE-2023-49488 | 1 Openfiler | 1 Openfiler | 2024-11-21 | 6.1 Medium |
| A cross-site scripting (XSS) vulnerability in Openfiler ESA v2.99.1 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the nic parameter. | ||||
| CVE-2023-49487 | 1 Jfinalcms Project | 1 Jfinalcms | 2024-11-21 | 5.4 Medium |
| JFinalCMS v5.0.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the navigation management department. | ||||
| CVE-2023-49486 | 1 Jfinalcms Project | 1 Jfinalcms | 2024-11-21 | 5.4 Medium |
| JFinalCMS v5.0.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the model management department. | ||||
| CVE-2023-49484 | 1 Iteachyou | 1 Dreamer Cms | 2024-11-21 | 5.4 Medium |
| Dreamer CMS v4.1.3 was discovered to contain a cross-site scripting (XSS) vulnerability in the article management department. | ||||
| CVE-2023-49469 | 1 Shaarli Project | 1 Shaarli | 2024-11-21 | 6.1 Medium |
| Reflected Cross Site Scripting (XSS) vulnerability in Shaarli v0.12.2, allows remote attackers to execute arbitrary code via search tag function. | ||||
| CVE-2023-49468 | 2 Libde265, Struktur | 2 Libde265, Libde265 | 2024-11-21 | 8.8 High |
| Libde265 v1.0.14 was discovered to contain a global buffer overflow vulnerability in the read_coding_unit function at slice.cc. | ||||
| CVE-2023-49467 | 1 Struktur | 1 Libde265 | 2024-11-21 | 8.8 High |
| Libde265 v1.0.14 was discovered to contain a heap-buffer-overflow vulnerability in the derive_combined_bipredictive_merging_candidates function at motion.cc. | ||||
| CVE-2023-49465 | 1 Struktur | 1 Libde265 | 2024-11-21 | 8.8 High |
| Libde265 v1.0.14 was discovered to contain a heap-buffer-overflow vulnerability in the derive_spatial_luma_vector_prediction function at motion.cc. | ||||
| CVE-2023-49464 | 1 Struktur | 1 Libheif | 2024-11-21 | 8.8 High |
| libheif v1.17.5 was discovered to contain a segmentation violation via the function UncompressedImageCodec::get_luma_bits_per_pixel_from_configuration_unci. | ||||
| CVE-2023-49463 | 1 Struktur | 1 Libheif | 2024-11-21 | 8.8 High |
| libheif v1.17.5 was discovered to contain a segmentation violation via the function find_exif_tag at /libheif/exif.cc. | ||||
| CVE-2023-49460 | 1 Struktur | 1 Libheif | 2024-11-21 | 8.8 High |
| libheif v1.17.5 was discovered to contain a segmentation violation via the function UncompressedImageCodec::decode_uncompressed_image. | ||||
| CVE-2023-49448 | 1 Jfinalcms Project | 1 Jfinalcms | 2024-11-21 | 8.8 High |
| JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via admin/nav/delete. | ||||
| CVE-2023-49447 | 1 Jfinalcms Project | 1 Jfinalcms | 2024-11-21 | 8.8 High |
| JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/nav/update. | ||||
| CVE-2023-49446 | 1 Jfinalcms Project | 1 Jfinalcms | 2024-11-21 | 8.8 High |
| JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/nav/save. | ||||
| CVE-2023-49444 | 1 Html-js | 1 Doracms | 2024-11-21 | 5.4 Medium |
| An arbitrary file upload vulnerability in DoraCMS v2.1.8 allow attackers to execute arbitrary code via uploading a crafted HTML or image file to the user avatar. | ||||