CVE-2023-23457
- EPSS 0.03%
- Veröffentlicht 12.01.2023 19:15:24
- Zuletzt bearbeitet 11.04.2025 12:27:55
A Segmentation fault was found in UPX in PackLinuxElf64::invert_pt_dynamic() in p_lx_elf.cpp. An attacker with a crafted input file allows invalid memory address access that could lead to a denial of service.
CVE-2022-3437
- EPSS 0.71%
- Veröffentlicht 12.01.2023 15:15:10
- Zuletzt bearbeitet 21.11.2024 07:19:30
A heap-based buffer overflow vulnerability was found in Samba within the GSSAPI unwrap_des() and unwrap_des3() routines of Heimdal. The DES and Triple-DES decryption routines in the Heimdal GSSAPI library allow a length-limited write buffer overflow ...
CVE-2022-3592
- EPSS 0.54%
- Veröffentlicht 12.01.2023 15:15:10
- Zuletzt bearbeitet 08.04.2025 16:15:23
A symlink following vulnerability was found in Samba, where a user can create a symbolic link that will make 'smbd' escape the configured share path. This flaw allows a remote user with access to the exported part of the file system under a share via...
CVE-2022-47927
- EPSS 0.03%
- Veröffentlicht 12.01.2023 06:15:08
- Zuletzt bearbeitet 08.04.2025 16:15:24
An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. When installing with a pre-existing data directory that has weak permissions, the SQLite files are created with file mode 0644, i.e., w...
CVE-2023-22945
- EPSS 0.09%
- Veröffentlicht 11.01.2023 01:15:10
- Zuletzt bearbeitet 07.04.2025 19:15:51
In the GrowthExperiments extension for MediaWiki through 1.39, the growthmanagementorlist API allows blocked users (blocked in ApiManageMentorList) to enroll as mentors or edit any of their mentorship-related properties.
CVE-2022-4379
- EPSS 0.41%
- Veröffentlicht 10.01.2023 22:15:14
- Zuletzt bearbeitet 08.04.2025 19:15:46
A use-after-free vulnerability was found in __nfs42_ssc_open() in fs/nfs/nfs4file.c in the Linux kernel. This flaw allows an attacker to conduct a remote denial
CVE-2023-21538
- EPSS 0.81%
- Veröffentlicht 10.01.2023 22:15:14
- Zuletzt bearbeitet 21.11.2024 07:43:02
.NET Denial of Service Vulnerability
CVE-2023-22909
- EPSS 0.21%
- Veröffentlicht 10.01.2023 08:15:10
- Zuletzt bearbeitet 07.04.2025 19:15:51
An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. SpecialMobileHistory allows remote attackers to cause a denial of service because database queries are slow.
CVE-2023-22911
- EPSS 0.37%
- Veröffentlicht 10.01.2023 08:15:10
- Zuletzt bearbeitet 07.04.2025 19:15:51
An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. E-Widgets does widget replacement in HTML attributes, which can lead to XSS, because widget authors often do not expect that their widg...
CVE-2023-0049
- EPSS 0.02%
- Veröffentlicht 04.01.2023 16:15:09
- Zuletzt bearbeitet 17.01.2025 20:15:26
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.1143.