8.1
CVE-2025-23209 - Potential RCE with a compromised security key in craft/cms
Craft is a flexible, user-friendly CMS for creating custom digital experiences on the web and beyond. This is an remote code execution (RCE) vulnerability that affects Craft 4 and 5 installs where your security key has already been compromised. Anyone running an unpatched version of Craft with a coโฆ
8.8
CVE-2023-50739 - A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in variโฆ
Aย buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in various Lexmarkย devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.
5.5
CVE-2024-11923 - Sensitive Information Disclosure in Fortra Application Hub Prior to version 1.3
Under certain log settings the IAM or CORE service will log credentials in the iam logfile inย Fortra Application Hub (Formerly named Helpsystems One) prior to version 1.3
6.7
CVE-2018-9405 -
In BnDmAgent::onTransact of dm_agent.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
7.8
CVE-2018-9401 -
In many locations, there is a possible way to access kernel memory in user space due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
5.5
CVE-2018-9406 -
In NlpService, there is a possible way to obtain location information due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
5.1
CVE-2018-9389 -
In ip6_append_data of ip6_output.c, there is a possible way to achieve code execution due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
7.8
CVE-2018-9387 -
In multiple functions of mnh-sm.c, there is a possible way to trigger a heap overflow due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
7.8
CVE-2018-9464 -
In multiple locations, there is a possible way to read protected files due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
7
CVE-2018-9461 -
In onAttachFragment of ShareIntentActivity.java, there is a possible way for an app to read files in the messages app due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.