Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2023-36354

Description: TP-Link TL-WR940N V4, TL-WR841N V8/V10, TL-WR740N V1/V2, TL-WR940N V2/V3, and TL-WR941ND V5/V6 were discovered to contain a buffer overflow in the component /userRpm/AccessCtrlTimeSchedRpm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted GET request.

CVSS: LOW (0.0)

EPSS Score: 0.07%

Source: CVE
December 3rd, 2024 (5 months ago)

CVE-2023-36273

Description: LibreDWG v0.12.5 was discovered to contain a heap buffer overflow via the function bit_calc_CRC at bits.c.

CVSS: LOW (0.0)

EPSS Score: 0.21%

Source: CVE
December 3rd, 2024 (5 months ago)

CVE-2023-36272

Description: LibreDWG v0.12.5 was discovered to contain a heap buffer overflow via the function bit_utf8_to_TU at bits.c.

CVSS: LOW (0.0)

EPSS Score: 0.21%

Source: CVE
December 3rd, 2024 (5 months ago)

CVE-2023-36271

Description: LibreDWG v0.12.5 was discovered to contain a heap buffer overflow via the function bit_wcs2nlen at bits.c.

CVSS: LOW (0.0)

EPSS Score: 0.21%

Source: CVE
December 3rd, 2024 (5 months ago)

CVE-2023-36243

Description: FLVMeta v1.2.1 was discovered to contain a buffer overflow via the xml_on_metadata_tag_only function at dump_xml.c.

CVSS: LOW (0.0)

EPSS Score: 0.1%

Source: CVE
December 3rd, 2024 (5 months ago)

CVE-2023-36239

Description: libming listswf 0.4.7 was discovered to contain a buffer overflow in the parseSWF_DEFINEFONTINFO() function at parser.c.

CVSS: LOW (0.0)

EPSS Score: 0.21%

Source: CVE
December 3rd, 2024 (5 months ago)

CVE-2023-36193

Description: Gifsicle v1.9.3 was discovered to contain a heap buffer overflow via the ambiguity_error component at /src/clp.c.

CVSS: LOW (0.0)

EPSS Score: 0.1%

Source: CVE
December 3rd, 2024 (5 months ago)

CVE-2023-36097

Description: funadmin v3.3.2 and v3.3.3 are vulnerable to Insecure file upload via the plugins install.

CVSS: LOW (0.0)

EPSS Score: 0.3%

Source: CVE
December 3rd, 2024 (5 months ago)

CVE-2023-36093

Description: There is a storage type cross site scripting (XSS) vulnerability in the filing number of the Basic Information tab on the backend management page of EyouCMS v1.6.3

CVSS: LOW (0.0)

EPSS Score: 0.05%

Source: CVE
December 3rd, 2024 (5 months ago)

CVE-2023-35800

Description: Stormshield Endpoint Security Evolution 2.0.0 through 2.4.2 has Insecure Permissions. An ACL entry on the SES Evolution agent directory that contains the agent logs displayed in the GUI allows interactive users to read data, which could allow access to information reserved to administrators.

CVSS: LOW (0.0)

EPSS Score: 0.07%

Source: CVE
December 3rd, 2024 (5 months ago)