8.1

CVSS3.1

CVE-2025-23209 - Potential RCE with a compromised security key in craft/cms

Craft is a flexible, user-friendly CMS for creating custom digital experiences on the web and beyond. This is an remote code execution (RCE) vulnerability that affects Craft 4 and 5 installs where your security key has already been compromised. Anyone running an unpatched version of Craft with a coโ€ฆ

๐Ÿ“… Published: Jan. 18, 2025, 12:32 a.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

8.8

CVSS3.1

CVE-2023-50739 - A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in variโ€ฆ

Aย buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in various Lexmarkย devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.

๐Ÿ“… Published: Jan. 17, 2025, 11:47 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2024-11923 - Sensitive Information Disclosure in Fortra Application Hub Prior to version 1.3

Under certain log settings the IAM or CORE service will log credentials in the iam logfile inย Fortra Application Hub (Formerly named Helpsystems One) prior to version 1.3

๐Ÿ“… Published: Jan. 17, 2025, 11:44 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.7

CVSS3.1

CVE-2018-9405 -

In BnDmAgent::onTransact of dm_agent.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Jan. 17, 2025, 11:17 p.m. ๐Ÿ”„ Last Modified: July 10, 2025, 8:42 p.m.

7.8

CVSS3.1

CVE-2018-9401 -

In many locations, there is a possible way to access kernel memory in user space due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Jan. 17, 2025, 11:17 p.m. ๐Ÿ”„ Last Modified: July 10, 2025, 8:42 p.m.

5.5

CVSS3.1

CVE-2018-9406 -

In NlpService, there is a possible way to obtain location information due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Jan. 17, 2025, 11:16 p.m. ๐Ÿ”„ Last Modified: Jan. 31, 2025, 9:15 p.m.

5.1

CVSS3.1

CVE-2018-9389 -

In ip6_append_data of ip6_output.c, there is a possible way to achieve code execution due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Jan. 17, 2025, 11:15 p.m. ๐Ÿ”„ Last Modified: Feb. 3, 2025, 2:15 p.m.

7.8

CVSS3.1

CVE-2018-9387 -

In multiple functions of mnh-sm.c, there is a possible way to trigger a heap overflow due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Jan. 17, 2025, 11:14 p.m. ๐Ÿ”„ Last Modified: July 10, 2025, 8:42 p.m.

7.8

CVSS3.1

CVE-2018-9464 -

In multiple locations, there is a possible way to read protected files due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Jan. 17, 2025, 11:14 p.m. ๐Ÿ”„ Last Modified: July 10, 2025, 8:42 p.m.

7

CVSS3.1

CVE-2018-9461 -

In onAttachFragment of ShareIntentActivity.java, there is a possible way for an app to read files in the messages app due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

๐Ÿ“… Published: Jan. 17, 2025, 11:13 p.m. ๐Ÿ”„ Last Modified: July 10, 2025, 8:42 p.m.
Total resulsts: 349182
Page 7055 of 34,919
ยซ previous page ยป next page
Filters