7.5

CVSS3.1

CVE-2023-31343 -

Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to arbitrary code execution.

πŸ“… Published: Feb. 11, 2025, 10:35 p.m. πŸ”„ Last Modified: Sept. 23, 2025, 10:15 p.m.

7.5

CVSS3.1

CVE-2023-31342 -

Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to arbitrary code execution.

πŸ“… Published: Feb. 11, 2025, 10:24 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:08 p.m.

8.8

CVSS3.1

CVE-2025-1240 - WinZip 7Z File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

WinZip 7Z File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of WinZip. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open…

πŸ“… Published: Feb. 11, 2025, 9:53 p.m. πŸ”„ Last Modified: Aug. 18, 2025, 6:14 p.m.

0

CVSS3.1

CVE-2024-32037 - GeoNetwork vulnerable to search end-point information disclosure in response headers

GeoNetwork is a catalog application to manage spatially referenced resources. In versions prior to 4.2.10 and 4.4.5, the search end-point response headers contain information about Elasticsearch software in use. This information is valuable from a security point of view because it allows software u…

πŸ“… Published: Feb. 11, 2025, 9:50 p.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:37 p.m.

3

CVSS3.1

CVE-2023-31331 -

Improper access control in the DRTM firmware could allow a privileged attacker to perform multiple driver initializations, resulting in stack memory corruption that could potentially lead to loss of integrity or availability.

πŸ“… Published: Feb. 11, 2025, 9:44 p.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:36 p.m.

9.8

CVSS3.1

CVE-2022-3180 - WPGateway <= 3.5 - Unauthenticated Privilege Escalation

The WPGateway Plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 3.5. This allows unauthenticated attackers to create arbitrary malicious administrator accounts.

πŸ“… Published: Feb. 11, 2025, 9:38 p.m. πŸ”„ Last Modified: June 5, 2025, 2:24 p.m.

5.3

CVSS3.1

CVE-2023-20582 -

Improper handling of invalid nested page table entries in the IOMMU may allow a privileged attacker to induce page table entry (PTE) faults to bypass RMP checks in SEV-SNP, potentially leading to a loss of guest memory integrity.

πŸ“… Published: Feb. 11, 2025, 9:35 p.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:56 p.m.

2.5

CVSS3.1

CVE-2023-20581 -

Improper access control in the IOMMU may allow a privileged attacker to bypass RMP checks, potentially leading to a loss of guest memory integrity.

πŸ“… Published: Feb. 11, 2025, 9:26 p.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:34 p.m.

5.7

CVSS3.1

CVE-2023-20515 -

Improper access control in the fTPM driver in the trusted OS could allow a privileged attacker to corrupt system memory, potentially leading to loss of integrity, confidentiality, or availability.

πŸ“… Published: Feb. 11, 2025, 9:16 p.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:35 p.m.

2.3

CVSS3.1

CVE-2023-20507 -

An integer overflow in the ASP could allow a privileged attacker to perform an out-of-bounds write, potentially resulting in loss of data integrity.

πŸ“… Published: Feb. 11, 2025, 9:02 p.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:35 p.m.
Total resulsts: 343971
Page 6256 of 34,398
Β« previous page Β» next page
Filters