CVE-2023-26000 to CVE-2023-26999
146 CVEs with public proof-of-concept exploits.
- CVE-2023-260341 PoCZoneMinder SQL Injection
- CVE-2023-260359 PoCsZoneMinder vulnerable to Missing Authorization
- CVE-2023-260432 PoCsXML External Entity (XXE) injection in GeoServer style upload functionality
- CVE-2023-260481 PoCOutOfMemoryError for large multipart without filename in Eclipse Jetty
- CVE-2023-260491 PoCCookie parsing of quoted values can exfiltrate values from other cookies in Eclipse Jetty
- CVE-2023-260551 PoCXWiki Commons may allow privilege escalation to programming rights via user's first name
- CVE-2023-260674 PoCsCertain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).
- CVE-2023-260681 PoCCertain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).
- CVE-2023-260811 PoCIn Epiphany (aka GNOME Web) through 43.0, untrusted web content can trick users into exfiltrating passwords, because autofill occurs in…
- CVE-2023-260833 PoCsKEVMemory leak vulnerability in Mali GPU Kernel Driver in Midgard GPU Kernel Driver all versions from r6p0 - r32p0, Bifrost GPU Kernel Driver…
- CVE-2023-261022 PoCsAll versions of the package rangy are vulnerable to Prototype Pollution when using the extend() function in file rangy-core.js.The…
- CVE-2023-261031 PoCVersions of the package deno before 1.31.0 are vulnerable to Regular Expression Denial of Service (ReDoS) due to the upgradeWebSocket…
- CVE-2023-261041 PoCAll versions of the package lite-web-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes…
- CVE-2023-261052 PoCsAll versions of the package utilities are vulnerable to Prototype Pollution via the _mix function.
- CVE-2023-261061 PoCAll versions of the package dot-lens are vulnerable to Prototype Pollution via the set() function in index.js file.
- CVE-2023-261071 PoCAll versions of the package sketchsvg are vulnerable to Arbitrary Code Injection when invoking shell.exec without sanitization nor…
- CVE-2023-261091 PoCAll versions of the package node-bluetooth-serial-port are vulnerable to Buffer Overflow via the findSerialPortChannel method due to…
- CVE-2023-261101 PoCAll versions of the package node-bluetooth are vulnerable to Buffer Overflow via the findSerialPortChannel method due to improper user…
- CVE-2023-261113 PoCsAll versions of the package @nubosoftware/node-static; all versions of the package node-static are vulnerable to Directory Traversal due…
- CVE-2023-261121 PoCAll versions of the package configobj are vulnerable to Regular Expression Denial of Service (ReDoS) via the validate function, using…
- CVE-2023-261132 PoCsVersions of the package collection.js before 6.8.1 are vulnerable to Prototype Pollution via the extend function in…
- CVE-2023-261152 PoCsAll versions of the package word-wrap are vulnerable to Regular Expression Denial of Service (ReDoS) due to the usage of an insecure…
- CVE-2023-261164 PoCsVersions of the package angular from 1.2.21 are vulnerable to Regular Expression Denial of Service (ReDoS) via the angular.copy() utility…
- CVE-2023-261174 PoCsVersions of the package angular from 1.0.0 are vulnerable to Regular Expression Denial of Service (ReDoS) via the $resource service due to…
- CVE-2023-261183 PoCsVersions of the package angular from 1.4.9 are vulnerable to Regular Expression Denial of Service (ReDoS) via the <input type="url">…
- CVE-2023-261201 PoCThis affects all versions of the package com.xuxueli:xxl-job. HTML uploaded payload executed successfully through /xxl-job-admin/user/add…
- CVE-2023-261211 PoCAll versions of the package safe-eval are vulnerable to Prototype Pollution via the safeEval function, due to improper sanitization of its…
- CVE-2023-261222 PoCsAll versions of the package safe-eval are vulnerable to Sandbox Bypass due to improper input sanitization. The vulnerability is derived…
- CVE-2023-261231 PoCVersions of the package raysan5/raylib before 4.5.0 are vulnerable to Cross-site Scripting (XSS) such that the SetClipboardText API does…
- CVE-2023-261251 PoCVersions of the package github.com/gin-gonic/gin before 1.9.0 are vulnerable to Improper Input Validation by allowing an attacker to use a…
- CVE-2023-261262 PoCsAll versions of the package m.static are vulnerable to Directory Traversal due to improper input sanitization of the path being requested…
- CVE-2023-261281 PoCAll versions of the package keep-module-latest are vulnerable to Command Injection due to missing input sanitization or other checks and…
- CVE-2023-261291 PoCAll versions of the package bwm-ng are vulnerable to Command Injection due to improper input sanitization in the 'check' function in the…
- CVE-2023-261312 PoCsAll versions of the package github.com/xyproto/algernon/engine; all versions of the package github.com/xyproto/algernon/themes are…
- CVE-2023-261321 PoCVersions of the package dottie before 2.0.4 are vulnerable to Prototype Pollution due to insufficient checks, via the set() function and…
- CVE-2023-261331 PoCAll versions of the package progressbar.js are vulnerable to Prototype Pollution via the function extend() in the file utils.js.
- CVE-2023-261342 PoCsVersions of the package git-commit-info before 2.0.2 are vulnerable to Command Injection such that the package-exported method…
- CVE-2023-261352 PoCsAll versions of the package flatnest are vulnerable to Prototype Pollution via the nest() function in the flatnest/nest.js file.
- CVE-2023-261364 PoCsVersions of the package tough-cookie before 4.1.3 are vulnerable to Prototype Pollution due to improper handling of Cookies when using…
- CVE-2023-261421 PoCAll versions of the package crow are vulnerable to HTTP Response Splitting when untrusted user input is used to build header values.…
- CVE-2023-261431 PoCVersions of the package blamer before 1.0.4 are vulnerable to Arbitrary Argument Injection via the blameByFile() API. The library does not…
- CVE-2023-261441 PoCVersions of the package graphql from 16.3.0 and before 16.8.1 are vulnerable to Denial of Service (DoS) due to insufficient checks in the…
- CVE-2023-261451 PoCThis affects versions of the package pydash before 6.0.0. A number of pydash methods such as pydash.objects.invoke() and…
- CVE-2023-261461 PoCAll versions of the package ithewei/libhv are vulnerable to Cross-site Scripting (XSS) such that when a file with a name containing a…
- CVE-2023-261471 PoCAll versions of the package ithewei/libhv are vulnerable to HTTP Response Splitting when untrusted user input is used to build headers…
- CVE-2023-261481 PoCAll versions of the package ithewei/libhv are vulnerable to CRLF Injection when untrusted user input is used to set request headers. An…
- CVE-2023-261501 PoCVersions of the package asyncua before 0.9.96 are vulnerable to Improper Authentication such that it is possible to access Address Space…
- CVE-2023-261511 PoCVersions of the package asyncua before 0.9.96 are vulnerable to Denial of Service (DoS) such that an attacker can send a malformed packet…
- CVE-2023-261522 PoCsAll versions of the package static-server are vulnerable to Directory Traversal due to improper input sanitization passed via the…
- CVE-2023-261532 PoCsVersions of the package geokit-rails before 2.5.0 are vulnerable to Command Injection due to unsafe deserialisation of YAML within the…
- CVE-2023-261552 PoCsAll versions of the package node-qpdf are vulnerable to Command Injection such that the package-exported method encrypt() fails to…
- CVE-2023-261581 PoCAll versions of the package mockjs are vulnerable to Prototype Pollution via the Util.extend function due to missing check if the…
- CVE-2023-261592 PoCsVersions of the package follow-redirects before 1.15.4 are vulnerable to Improper Input Validation due to the improper handling of URLs by…
- CVE-2023-262082 PoCsA improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiAuthenticator 6.4.x and before allows…
- CVE-2023-262092 PoCsA improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiDeceptor 3.1.x and before allows a…
- CVE-2023-262132 PoCsOn Barracuda CloudGen WAN Private Edge Gateway devices before 8 webui-sdwan-1089-8.3.1-174141891, an OS command injection vulnerability…
- CVE-2023-262553 PoCsAn unauthenticated path traversal vulnerability affects the "STAGIL Navigation for Jira - Menu & Themes" plugin before 2.0.52 for Jira. By…
- CVE-2023-262569 PoCsAn unauthenticated path traversal vulnerability affects the "STAGIL Navigation for Jira - Menu & Themes" plugin before 2.0.52 for Jira. By…
- CVE-2023-262582 PoCsArcserve UDP through 9.0.6034 allows authentication bypass. The method getVersionInfo at WebServiceImpl/services/FlashServiceImpl leaks…
- CVE-2023-262621 PoCAn issue was discovered in Sitecore XP/XM 10.3. As an authenticated Sitecore user, a unrestricted language file upload vulnerability…
- CVE-2023-262691 PoCApache James server: Privilege escalation through unauthenticated JMX
- CVE-2023-263251 PoCThe 'rx_export_review' action in the ReviewX WordPress Plugin, is affected by an authenticated SQL injection vulnerability in the…
- CVE-2023-263263 PoCsThe BuddyForms WordPress plugin, in versions prior to 2.7.8, was affected by an unauthenticated insecure deserialization issue. An…
- CVE-2023-263471 PoCCVE-2023-38205 issues | ColdFusion Admin Panel Access
- CVE-2023-263591 PoCKEVAdobe ColdFusion Deserialization of Untrusted Data Arbitrary code execution
- CVE-2023-2636010 PoCsKEVAdobe ColdFusion Improper Access Control Arbitrary code execution
- CVE-2023-263611 PoCAdobe ColdFusion Directory Traversal Arbitrary file system read Vulnerability
- CVE-2023-263691 PoCKEV[Google Project Zero] Adobe Acrobat DC OOBW 0-day actively exploited in the wild
- CVE-2023-264698 PoCsIn Jorani 1.0.0, an attacker could leverage path traversal to access files and execute code on the server.
- CVE-2023-264751 PoCXWiki Platform vulnerable to Remote Code Execution in Annotations
- CVE-2023-264822 PoCsScope of workflow operations is not validated in nextcloud server
- CVE-2023-264851 PoCQuadratic complexity may lead to a denial of service in cmark-gfm
- CVE-2023-264862 PoCsVega `scale` expression function cross site scripting
- CVE-2023-264872 PoCsVega has cross-site scripting vulnerability in `lassoAppend` function
- CVE-2023-264901 PoCmailcow is vulnerable to shell command injection via xoauth2 authentication in imapsync
- CVE-2023-264921 PoCDirectus vulnerable to Server-Side Request Forgery On File Import
- CVE-2023-264931 PoCCommand Injection in Cocos Engine workflow
- CVE-2023-264941 PoClorawan-stack has open redirect vulnerability
- CVE-2023-265631 PoCThe Syncfusion EJ2 Node File Provider 0102271 is vulnerable to filesystem-server.js directory traversal. As a result, an unauthenticated…
- CVE-2023-266025 PoCsASUS ASMB8 iKVM firmware through 1.14.51 allows remote attackers to execute arbitrary code by using SNMP to create extensions, as…
- CVE-2023-266045 PoCssystemd before 247 does not adequately block local privilege escalation for some Sudo configurations, e.g., plausible sudoers files in…
- CVE-2023-266071 PoCIn the Linux kernel 6.0.8, there is an out-of-bounds read in ntfs_attr_find in fs/ntfs/attrib.c.
- CVE-2023-266095 PoCsABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin/mft/wireless_mft…
- CVE-2023-266121 PoCD-Link DIR-823G firmware version 1.02B05 has a buffer overflow vulnerability, which originates from the HostName field in…
- CVE-2023-266131 PoCAn OS command injection vulnerability in D-Link DIR-823G firmware version 1.02B05 allows unauthorized attackers to execute arbitrary…
- CVE-2023-266151 PoCD-Link DIR-823G firmware version 1.02B05 has a password reset vulnerability, which originates from the SetMultipleActions API, allowing…
- CVE-2023-266161 PoCD-Link DIR-823G firmware version 1.02B05 has a buffer overflow vulnerability, which originates from the URL field in SetParentsControlInfo.
- CVE-2023-266881 PoCCross Site Scripting (XSS) vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via the product_data…
- CVE-2023-266891 PoCAn issue discovered in CS-Cart MultiVendor 4.16.1 allows attackers to alter arbitrary user account profiles via crafted post request.
- CVE-2023-266901 PoCFile Upload vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via File Manager/Editor component in…
- CVE-2023-266923 PoCsZCBS Zijper Collectie Beheer Systeem (ZCBS), Zijper Publication Management System (ZPBS), and Zijper Image Bank Management System (ZBBS)…
- CVE-2023-267332 PoCsBuffer Overflow vulnerability found in tinyTIFF v.3.0 allows a local attacker to cause a denial of service via the…
- CVE-2023-267501 PoCSQL injection vulnerability found in Yii Framework Yii 2 Framework before v.2.0.47 allows the a remote attacker to execute arbitrary code…
- CVE-2023-267561 PoCThe login page of Revive Adserver v5.4.1 is vulnerable to brute force attacks. NOTE: The vendor's position is that this is effectively…
- CVE-2023-267581 PoCSme.UP TOKYO V6R1M220406 was discovered to contain an arbitrary file download vulnerabilty via the component /ResourceService.
- CVE-2023-267591 PoCSme.UP ERP TOKYO V6R1M220406 was discovered to contain an OS command injection vulnerability via calls made to the XMService component.
- CVE-2023-267601 PoCSme.UP ERP TOKYO V6R1M220406 was discovered to contain an information disclosure vulnerability via the /debug endpoint. This vulnerability…
- CVE-2023-267621 PoCSme.UP ERP TOKYO V6R1M220406 was discovered to contain an arbitrary file upload vulnerability.
- CVE-2023-267671 PoCBuffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remote attacker to cause a denial of service via the lou_logFile…
- CVE-2023-267681 PoCBuffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remote attacker to cause a denial of service via the…
- CVE-2023-267731 PoCCross Site Scripting vulnerability found in Sales Tracker Management System v.1.0 allows a remote attacker to gain privileges via the…
- CVE-2023-267931 PoClibmodbus v3.1.10 has a heap-based buffer overflow vulnerability in read_io_status function in src/modbus.c.
- CVE-2023-268001 PoCRuijie Networks RG-EW1200 Wireless Routers EW_3.0(1)B11P204 was discovered to contain a command injetion vulnerability via the params.path…
- CVE-2023-268011 PoCLB-LINK BL-AC1900_2.0 v1.0.1, LB-LINK BL-WR9000 v2.4.9, LB-LINK BL-X26 v1.2.5, and LB-LINK BL-LTE300 v1.0.8 were discovered to contain a…
- CVE-2023-268022 PoCsAn issue in the component /network_config/nsg_masq.cgi of DCN (Digital China Networks) DCBI-Netlog-LAB v1.0 allows attackers to bypass…
- CVE-2023-268051 PoCTenda W20E v15.11.0.6 (US_W20EV4.0br_v15.11.0.6(1068_1546_841)_CN_TDC) is vulnerable to Buffer Overflow via function formIPMacBindModify.
- CVE-2023-268061 PoCTenda W20E v15.11.0.6(US_W20EV4.0br_v15.11.0.6(1068_1546_841 is vulnerable to Buffer Overflow via function formSetSysTime,
- CVE-2023-268171 PoCcodefever before 2023.2.7-commit-b1c2e7f was discovered to contain a remote code execution (RCE) vulnerability via the component…
- CVE-2023-268182 PoCsTelegram 9.3.1 and 9.4.0 allows attackers to access restricted files, microphone ,or video recording via the DYLD_INSERT_LIBRARIES flag.
- CVE-2023-268201 PoCsiteproxy v1.0 was discovered to contain a path traversal vulnerability via the component index.js.
- CVE-2023-268221 PoCD-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at soapcgi.main.
- CVE-2023-268391 PoCA cross-site request forgery (CSRF) vulnerability in ChurchCRM v4.5.3 allows attackers to edit information for existing people on the site.
- CVE-2023-268401 PoCA cross-site request forgery (CSRF) vulnerability in ChurchCRM v4.5.3 allows attackers to set a person to a user and set that user to be…
- CVE-2023-268411 PoCA cross-site request forgery (CSRF) vulnerability in ChurchCRM v4.5.3 allows attackers to change any user's password except for the user…
- CVE-2023-268421 PoCA stored Cross-site scripting (XSS) vulnerability in ChurchCRM 4.5.3 allows remote attackers to inject arbitrary web script or HTML via…
- CVE-2023-268432 PoCsA stored Cross-site scripting (XSS) vulnerability in ChurchCRM 4.5.3 allows remote attackers to inject arbitrary web script or HTML via…
- CVE-2023-268481 PoCTOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the org parameter at…
- CVE-2023-268521 PoCAn arbitrary file upload vulnerability in the upload plugin of Textpattern v4.8.8 and below allows attackers to execute arbitrary code by…
- CVE-2023-268581 PoCSQL injection vulnerability found in PrestaSHp faqs v.3.1.6 allows a remote attacker to escalate privileges via the…
- CVE-2023-268601 PoCSQL injection vulnerability found in PrestaShop Igbudget v.1.0.3 and before allow a remote attacker to gain privileges via the…
- CVE-2023-268641 PoCSQL injection vulnerability found in PrestaShop smplredirectionsmanager v.1.1.19 and before allow a remote attacker to gain privileges via…
- CVE-2023-268651 PoCSQL injection vulnerability found in PrestaShop bdroppy v.2.2.12 and before allowing a remote attacker to gain privileges via the…
- CVE-2023-268661 PoCGreenPacket OH736's WR-1200 Indoor Unit, OT-235 with firmware versions M-IDU-1.6.0.3_V1.1 and MH-46360-2.0.3-R5-GP respectively are…
- CVE-2023-268762 PoCsSQL injection vulnerability found in Piwigo v.13.5.0 and before allows a remote attacker to execute arbitrary code via the filter_user_id…
- CVE-2023-269121 PoCCross site scripting (XSS) vulnerability in xenv S-mall-ssm thru commit 3d9e77f7d80289a30f67aaba1ae73e375d33ef71 on Feb 17, 2020, allows…
- CVE-2023-269131 PoCEVOLUCARE ECSIMAGING (aka ECS Imaging) < 6.21.5 is vulnerable to Cross Site Scripting (XSS) via new_movie. php.
- CVE-2023-269182 PoCsDiasoft File Replication Pro 7.5.0 allows attackers to escalate privileges by replacing a legitimate file with a Trojan horse that will be…
- CVE-2023-269191 PoCdelight-nashorn-sandbox 0.2.4 and 0.2.5 is vulnerable to sandbox escape. When allowExitFunctions is set to false, the loadWithNewGlobal…
- CVE-2023-269211 PoCOS Command Injection vulnerability in quectel AG550QCN allows attackers to execute arbitrary commands via ql_atfwd.
- CVE-2023-269221 PoCSQL injection vulnerability found in Varisicte matrix-gui v.2 allows a remote attacker to execute arbitrary code via the shell_exect…
- CVE-2023-269231 PoCMusescore 3.0 to 4.0.1 has a stack buffer overflow vulnerability that occurs when reading misconfigured midi files. If attacker can…
- CVE-2023-269251 PoCAn information disclosure vulnerability exists in the Syslog functionality of D-LINK DIR-882 1.30. A specially crafted network request can…
- CVE-2023-269491 PoCAn arbitrary file upload vulnerability in the component /admin1/config/update of onekeyadmin v1.3.9 allows attackers to execute arbitrary…
- CVE-2023-269501 PoConekeyadmin v1.3.9 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Title parameter under the Adding…
- CVE-2023-269521 PoConekeyadmin v1.3.9 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Add Menu module.
- CVE-2023-269541 PoConekeyadmin v1.3.9 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the User Group module.
- CVE-2023-269561 PoConekeyadmin v1.3.9 was discovered to contain an arbitrary file read vulnerability via the component /admin1/curd/code.
- CVE-2023-269611 PoCAlteryx Server 2022.1.1.42590 does not employ file type verification for uploaded files. This vulnerability allows attackers to upload…
- CVE-2023-269661 PoClibtiff 4.5.0 is vulnerable to Buffer Overflow in uv_encode() when libtiff reads a corrupted little-endian TIFF file and specifies the…
- CVE-2023-269741 PoCIrfanview v4.62 allows a user-mode write access violation via a crafted JPEG 2000 file starting at JPEG2000+0x0000000000001bf0.
- CVE-2023-269762 PoCsTenda AC6 v15.03.05.09_multi was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.
- CVE-2023-269781 PoCTOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the pppoeAcName parameter at…
- CVE-2023-269822 PoCsTrudesk v1.2.6 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Add Tags parameter under the Create…
- CVE-2023-269841 PoCAn issue in the password reset function of Peppermint v0.2.4 allows attackers to access the emails and passwords of the Tickets page via a…
- CVE-2023-269872 PoCsAn issue discovered in Konga 0.14.9 allows remote attackers to manipulate user accounts regardless of privilege via crafted POST request.
- CVE-2023-269911 PoCSWFTools v0.9.2 was discovered to contain a stack-use-after-scope in the swf_ReadSWF2 function in lib/rfxswf.c.