CVE-2023-22000 to CVE-2023-22999
66 CVEs with public proof-of-concept exploits.
- CVE-2023-220474 PoCsVulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Portal). Supported versions that are…
- CVE-2023-220742 PoCsVulnerability in the Oracle Database Sharding component of Oracle Database Server. Supported versions that are affected are 19.3-19.20 and…
- CVE-2023-220771 PoCVulnerability in the Oracle Database Recovery Manager component of Oracle Database Server. Supported versions that are affected are…
- CVE-2023-220981 PoCVulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are…
- CVE-2023-222323 PoCsAdobe Connect Improper Access Control Security feature bypass
- CVE-2023-222911 PoCAn invalid free vulnerability exists in the Frame stream parser functionality of Ichitaro 2022 1.0.1.57600. A specially crafted document…
- CVE-2023-222991 PoCAn OS command injection vulnerability exists in the vtysh_ubus _get_fw_logs functionality of Milesight UR32L v32.3.0.5. A specially…
- CVE-2023-223061 PoCAn OS command injection vulnerability exists in the libzebra.so bridge_group functionality of Milesight UR32L v32.3.0.5. A specially…
- CVE-2023-223081 PoCAn integer underflow vulnerability exists in the vpnserver OvsProcessData functionality of SoftEther VPN 5.01.9674 and 5.02. A specially…
- CVE-2023-223191 PoCA sql injection vulnerability exists in the requestHandlers.js LoginAuth functionality of Milesight VPN v2.0.2. A specially-crafted…
- CVE-2023-223251 PoCA denial of service vulnerability exists in the DCRegister DDNS_RPC_MAX_RECV_SIZE functionality of SoftEther VPN 4.41-9782-beta, 5.01.9674…
- CVE-2023-223711 PoCAn os command injection vulnerability exists in the liburvpn.so create_private_key functionality of Milesight VPN v2.0.2. A…
- CVE-2023-224322 PoCsOpen redirect vulnerability exists in web2py versions prior to 2.23.1. When using the tool, a web2py user may be redirected to an…
- CVE-2023-224632 PoCsKubePi's Hardcoded Jwtsigkeys allows malicious actor to login with a forged JWT token
- CVE-2023-224781 PoCKubePi is vulnerable to missing authorization
- CVE-2023-224801 PoCKubeOperator is vulnerable to unauthorized access to system API
- CVE-2023-224811 PoCSensitive information exposure in the logs of greader API in FreshRSS
- CVE-2023-224831 PoCcmark-gfm Quadratic complexity bugs may lead to a denial of service
- CVE-2023-224841 PoCInefficient Quadratic complexity bug in handle_pointy_brace may lead to a denial of service
- CVE-2023-224851 PoCcmark-gfm out-of-bounds read in validate_protocol
- CVE-2023-224861 PoCcmark-gfm Quadratic complexity bug in handle_close_bracket may lead to a denial of service
- CVE-2023-224901 PoCGit vulnerable to local clone-based data exfiltration with non-local transports
- CVE-2023-224931 PoCRSSHub is vulnerable to SSRF (Server-Side Request Forgery)
- CVE-2023-224961 PoCNetdata vulnerable to command injection
- CVE-2023-2251536 PoCsKEVAtlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited a previously…
- CVE-2023-2251814 PoCsKEVAll versions of Confluence Data Center and Server are affected by this unexploited vulnerability. This Improper Authorization…
- CVE-2023-225242 PoCsCertain versions of the Atlassian Companion App for MacOS were affected by a remote code execution vulnerability. An attacker could…
- CVE-2023-2252730 PoCsKEVA template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated attacker to achieve…
- CVE-2023-225511 PoCThe FTP (aka "Implementation of a simple FTP client and server") project through 96c1a35 allows remote attackers to cause a denial of…
- CVE-2023-226141 PoCAn issue was discovered in ChipsetSvcSmm in Insyde InsydeH2O with kernel 5.0 through 5.5. There is insufficient input validation in BIOS…
- CVE-2023-226161 PoCAn issue was discovered in Insyde InsydeH2O with kernel 5.2 through 5.5. The Save State register is not checked before use. The IhisiSmm…
- CVE-2023-226204 PoCsAn issue was discovered in SecurePoint UTM before 12.2.5.1. The firewall's endpoint at /spcgi.cgi allows sessionid information disclosure…
- CVE-2023-226213 PoCsStrapi through 4.5.5 allows authenticated Server-Side Template Injection (SSTI) that can be exploited to execute arbitrary code on the…
- CVE-2023-226223 PoCsWordPress through 6.1.1 depends on unpredictable client visits to cause wp-cron.php execution and the resulting security updates, and the…
- CVE-2023-226293 PoCsAn issue was discovered in TitanFTP through 1.94.1205. The move-file function has a path traversal vulnerability in the newPath parameter.…
- CVE-2023-226301 PoCIzyBat Orange casiers before 20221102_1 allows SQL Injection via a getCasier.php?taille= URI.
- CVE-2023-226491 PoCRancher 'Audit Log' leaks sensitive information
- CVE-2023-226531 PoCAn OS command injection vulnerability exists in the vtysh_ubus tcpdump_start_cb functionality of Milesight UR32L v32.3.0.5. A specially…
- CVE-2023-226591 PoCAn os command injection vulnerability exists in the libzebra.so change_hostname functionality of Milesight UR32L v32.3.0.5. A…
- CVE-2023-226601 PoCA heap-based buffer overflow vulnerability exists in the way Ichitaro version 2022 1.0.1.57600 processes certain LayoutBox stream record…
- CVE-2023-226711 PoCGhidra/RuntimeScripts/Linux/support/launch.sh in NSA Ghidra through 10.2.2 passes user-provided input into eval, leading to command…
- CVE-2023-227263 PoCsUnrestricted file upload leading to privilege escalation in act
- CVE-2023-227411 PoCheap-over-flow in stun_parse_attribute in sofia-sip
- CVE-2023-227451 PoCBuffer Overlow in TSS2_RC_Decode in tpm2-tss
- CVE-2023-2280920 PoCsIn Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environment variables…
- CVE-2023-228441 PoCAn authentication bypass vulnerability exists in the requestHandlers.js verifyToken functionality of Milesight VPN v2.0.2. A…
- CVE-2023-228451 PoCAn out-of-bounds read vulnerability exists in the TGAInput::decode_pixel() functionality of OpenImageIO Project OpenImageIO v2.4.7.1. A…
- CVE-2023-228555 PoCsKardex Mlog MCC 5.7.12+0-a203c2a213-master allows remote code execution. It spawns a web interface listening on port 8088. A…
- CVE-2023-228841 PoCApache Airflow, Apache Airflow MySQL Provider: Arbitrary file read via MySQL provider in Apache Airflow
- CVE-2023-228933 PoCsStrapi through 4.5.5 does not verify the access or ID tokens issued during the OAuth flow when the AWS Cognito login provider is used for…
- CVE-2023-228945 PoCsStrapi through 4.5.5 allows attackers (with access to the admin panel) to discover sensitive user details by exploiting the query filter.…
- CVE-2023-228974 PoCsAn issue was discovered in SecurePoint UTM before 12.2.5.1. The firewall's endpoint at /spcgi.cgi allows information disclosure of memory…
- CVE-2023-228991 PoCZip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive.
- CVE-2023-229061 PoCHero Qubo HCD01_02_V1.38_20220125 devices allow TELNET access with root privileges by default, without a password.
- CVE-2023-229411 PoCImproperly Formatted ‘INGEST_EVAL’ Parameter Crashes Splunk Daemon
- CVE-2023-229471 PoCInsecure folder permissions in the Windows installation path of Shibboleth Service Provider (SP) before 3.4.1 allow an unprivileged local…
- CVE-2023-229524 PoCsKEVIn SugarCRM before 12.0. Hotfix 91155, a crafted request can inject custom PHP code through the EmailTemplates because of missing input…
- CVE-2023-229551 PoCAn issue was discovered on AudioCodes VoIP desk phones through 3.4.4.1000. The validation of firmware images only consists of simple…
- CVE-2023-229562 PoCsAn issue was discovered on AudioCodes VoIP desk phones through 3.4.4.1000. Due to the use of a hard-coded cryptographic key, an attacker…
- CVE-2023-229573 PoCsAn issue was discovered in libac_des3.so on AudioCodes VoIP desk phones through 3.4.4.1000. Due to the use of hard-coded cryptographic…
- CVE-2023-229581 PoCThe Syracom Secure Login plugin before 3.1.1.0 for Jira may allow spoofing of 2FA PIN validation via the…
- CVE-2023-229591 PoCWebChess through 0.9.0 and 1.0.0.rc2 allows SQL injection: mainmenu.php, chess.php, and opponentspassword.php (txtFirstName, txtLastName).
- CVE-2023-229601 PoCLexmark products through 2023-01-10 have Improper Control of Interaction Frequency.
- CVE-2023-229711 PoCCross Site Scripting (XSS) vulnerability in Hughes Network Systems Router Terminal for HX200 v8.3.1.14, HX90 v6.11.0.5, HX50L v6.10.0.18,…
- CVE-2023-229741 PoCA Path Traversal in setup.php in OpenEMR < 7.0.0 allows remote unauthenticated users to read arbitrary files by controlling a connection…
- CVE-2023-229841 PoCA Vulnerability was discovered in Axis 207W network camera. There is a reflected XSS vulnerability in the web administration portal, which…