CVE-2023-43454 |
|
CVE-2023-43320 |
Description: An issue in Proxmox Server Solutions GmbH Proxmox VE v.5.4 thru v.8.0, Proxmox Backup Server v.1.1 thru v.3.0, and Proxmox Mail Gateway v.7.1 thru v.8.0 allows a remote authenticated attacker to escalate privileges via bypassing the two-factor authentication component.
CVSS: LOW (0.0) EPSS Score: 0.15%
November 27th, 2024 (5 months ago)
|
CVE-2023-43298 |
|
CVE-2023-42479 |
Description: An unauthenticated attacker can embed a hidden access to a Biller Direct URL in a frame which, when loaded by the user, will submit a cross-site scripting request to the Biller Direct system. This can result in the disclosure or modification of non-sensitive information.
CVSS: MEDIUM (6.1) EPSS Score: 0.08%
November 27th, 2024 (5 months ago)
|
CVE-2023-42325 |
|
CVE-2023-42189 |
Description: Insecure Permissions vulnerability in Connectivity Standards Alliance Matter Official SDK v.1.1.0.0 , Nanoleaf Light strip v.3.5.10, Govee LED Strip v.3.00.42, switchBot Hub2 v.1.0-0.8, Phillips hue hub v.1.59.1959097030, and yeelight smart lamp v.1.12.69 allows a remote attacker to cause a denial of service via a crafted script to the KeySetRemove function.
CVSS: LOW (0.0) EPSS Score: 0.47%
November 27th, 2024 (5 months ago)
|
CVE-2023-41621 |
|
CVE-2023-41618 |
|
CVE-2023-41171 |
|
CVE-2023-41166 |
Description: An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.39, 3.11.0 through 3.11.27, 4.3.0 through 4.3.22, 4.6.0 through 4.6.9, and 4.7.0 through 4.7.1. It's possible to know if a specific user account exists on the SNS firewall by using remote access commands.
CVSS: LOW (0.0) EPSS Score: 0.06%
November 27th, 2024 (5 months ago)
|