CVE-2023-39360
- EPSS 0.63%
- Veröffentlicht 05.09.2023 21:15:46
- Zuletzt bearbeitet 21.11.2024 08:15:14
Cacti is an open source operational monitoring and fault management framework.Affected versions are subject to a Stored Cross-Site-Scripting (XSS) Vulnerability allows an authenticated user to poison data. The vulnerability is found in `graphs_new.ph...
CVE-2023-39361
- EPSS 92.28%
- Veröffentlicht 05.09.2023 21:15:46
- Zuletzt bearbeitet 21.11.2024 08:15:14
Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a SQL injection discovered in graph_view.php. Since guest users can access graph_view.php without authentication by default, if guest user...
CVE-2023-39366
- EPSS 0.33%
- Veröffentlicht 05.09.2023 21:15:46
- Zuletzt bearbeitet 21.11.2024 08:15:15
Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored Cross-Site-Scripting (XSS) Vulnerability allows an authenticated user to poison data stored in the _cacti_'s database. These data...
CVE-2023-41909
- EPSS 0.1%
- Veröffentlicht 05.09.2023 07:15:14
- Zuletzt bearbeitet 21.11.2024 08:21:53
An issue was discovered in FRRouting FRR through 9.0. bgp_nlri_parse_flowspec in bgpd/bgp_flowspec.c processes malformed requests with no attributes, leading to a NULL pointer dereference.
CVE-2023-4750
- EPSS 0.04%
- Veröffentlicht 04.09.2023 14:15:08
- Zuletzt bearbeitet 21.11.2024 08:35:53
Use After Free in GitHub repository vim/vim prior to 9.0.1857.
CVE-2023-4752
- EPSS 0.05%
- Veröffentlicht 04.09.2023 14:15:08
- Zuletzt bearbeitet 03.11.2025 21:16:02
Use After Free in GitHub repository vim/vim prior to 9.0.1858.
CVE-2023-4733
- EPSS 0.04%
- Veröffentlicht 04.09.2023 14:15:07
- Zuletzt bearbeitet 21.11.2024 08:35:51
Use After Free in GitHub repository vim/vim prior to 9.0.1840.
CVE-2023-36328
- EPSS 0.61%
- Veröffentlicht 01.09.2023 16:15:08
- Zuletzt bearbeitet 26.06.2025 14:15:28
Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, allows attackers to execute arbitrary code and cause a denial of service (DoS).
CVE-2023-40186
- EPSS 0.1%
- Veröffentlicht 31.08.2023 22:15:08
- Zuletzt bearbeitet 03.11.2025 21:16:00
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an IntegerOverflow leading to Out-Of-Bound Write Vulnerability in the `gdi_CreateSurface` function. This issue ...
CVE-2023-40188
- EPSS 0.07%
- Veröffentlicht 31.08.2023 22:15:08
- Zuletzt bearbeitet 03.11.2025 21:16:00
FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-Bounds Read in the `general_LumaToYUV444` function. This Out-Of-Bounds Read occurs because processing...