CVE-2023-50000 to CVE-2023-50999
89 CVEs with public proof-of-concept exploits.
- CVE-2023-500001 PoCTenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function formResetMeshNode.
- CVE-2023-500011 PoCTenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function formUpgradeMeshOnline.
- CVE-2023-500021 PoCTenda W30E V16.01.0.12(4843) was discovered to contain a stack overflow via the function formRebootMeshNode.
- CVE-2023-500071 PoCFFmpeg v.n6.1-3-g466799d4f5 allows an attacker to trigger use of a parameter of negative size in the av_samples_set_silence function in…
- CVE-2023-500081 PoCFFmpeg v.n6.1-3-g466799d4f5 allows memory consumption when using the colorcorrect filter, in the av_malloc function in…
- CVE-2023-500091 PoCFFmpeg v.n6.1-3-g466799d4f5 allows a heap-based buffer overflow via the ff_gaussian_blur_8 function in libavfilter/edge_template.c:116:5…
- CVE-2023-500101 PoCFFmpeg v.n6.1-3-g466799d4f5 allows a buffer over-read at ff_gradfun_blur_line_movdqa_sse2, as demonstrated by a call to the set_encoder_id…
- CVE-2023-500112 PoCsPopojiCMS version 2.0.1 is vulnerable to remote command execution in the Meta Social field.
- CVE-2023-500171 PoCDreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/database/backup
- CVE-2023-500271 PoCSQL Injection vulnerability in Buy Addons baproductzoommagnifier module for PrestaShop versions 1.0.16 and before, allows remote attackers…
- CVE-2023-500291 PoCPHP Injection vulnerability in the module "M4 PDF Extensions" (m4pdf) up to version 3.3.2 from PrestaAddons for PrestaShop allows…
- CVE-2023-500301 PoCIn the module "Jms Setting" (jmssetting) from Joommasters for PrestaShop, a guest can perform SQL injection in versions <= 1.1.0. The…
- CVE-2023-500691 PoCWireMock with GUI versions 3.2.0.0 through 3.0.4.0 are vulnerable to stored cross-site scripting (SXSS) through the recording feature. An…
- CVE-2023-500701 PoCSourcecodester Customer Support System 1.0 has multiple SQL injection vulnerabilities in /customer_support/ajax.php?action=save_ticket via…
- CVE-2023-500711 PoCSourcecodester Customer Support System 1.0 has multiple SQL injection vulnerabilities in /customer_support/ajax.php?action=save_department…
- CVE-2023-500721 PoCA Stored Cross-Site Scripting (XSS) vulnerability exists in OpenKM version 7.1.40 (dbb6e88) With Professional Extension that allows an…
- CVE-2023-500891 PoCA Command Injection vulnerability exists in NETGEAR WNR2000v4 version 1.0.0.70. When using HTTP for SOAP authentication, command execution…
- CVE-2023-500943 PoCsreNgine before 2.1.2 allows OS Command Injection if an adversary has a valid session ID. The attack places shell metacharacters in an…
- CVE-2023-500961 PoCSTMicroelectronics STSAFE-A1xx middleware before 3.3.7 allows MCU code execution if an adversary has the ability to read from and write to…
- CVE-2023-501101 PoCTestLink through 1.9.20 allows type juggling for authentication bypass because === is not used.
- CVE-2023-501201 PoCMP4Box GPAC version 2.3-DEV-rev636-gfbd7e13aa-master was discovered to contain an infinite loop in the function av1_uvlc at…
- CVE-2023-501231 PoCThe number of attempts to bring the Hozard Alarm system (alarmsystemen) v1.0 to a disarmed state is not limited. This could allow an…
- CVE-2023-501241 PoCFlient Smart Door Lock v1.0 is vulnerable to Use of Default Credentials. Due to default credentials on a debug interface, in combination…
- CVE-2023-501271 PoCHozard alarm system (Alarmsysteem) v1.0 is vulnerable to Improper Authentication. Commands sent via the SMS functionality are accepted…
- CVE-2023-501291 PoCMissing encryption in the NFC tags of the Flient Smart Door Lock v1.0 allows attackers to create a cloned tag via brief physical proximity…
- CVE-2023-501592 PoCsIn ScaleFusion (Windows Desktop App) agent 10.5.2, Kiosk mode application restrictions can be bypassed allowing arbitrary code to be…
- CVE-2023-5016417 PoCsApache Struts: File upload component had a directory traversal vulnerability
- CVE-2023-501721 PoCA recovery notification bypass vulnerability exists in the userRecoverPass.php captcha validation functionality of WWBN AVideo dev master…
- CVE-2023-502261 PoCParallels Desktop Updater Link Following Local Privilege Escalation Vulnerability
- CVE-2023-502391 PoCTwo stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam functionality of Realtek rtl819x Jungle SDK…
- CVE-2023-502401 PoCTwo stack-based buffer overflow vulnerabilities exist in the boa set_RadvdInterfaceParam functionality of Realtek rtl819x Jungle SDK…
- CVE-2023-502431 PoCTwo stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of Realtek rtl819x Jungle SDK v3.4.11. A…
- CVE-2023-502441 PoCTwo stack-based buffer overflow vulnerabilities exist in the boa formIpQoS functionality of Realtek rtl819x Jungle SDK v3.4.11. A…
- CVE-2023-502452 PoCsOpenEXR-viewer memory overflow vulnerability
- CVE-2023-502461 PoCjq has heap-buffer-overflow vulnerability in the function decToString in decNumber.c
- CVE-2023-502501 PoCCross-Site Scripting vulnerability when Import xml template file
- CVE-2023-502512 PoCsphp-svg-lib possible DoS caused by infinite recursion when parsing SVG document
- CVE-2023-502521 PoCphp-svg-lib unsafe attributes merge when parsing `use` tag
- CVE-2023-502531 PoClaf logs leak
- CVE-2023-502542 PoCsDeepin Reader RCE vulnerability due to a design flaw
- CVE-2023-502551 PoCZip Path Traversal in Deepin-Compressor
- CVE-2023-502571 PoCDisconnect Vulnerability in RTPS Packets Used by SROS2
- CVE-2023-502582 PoCsBlind SSRF in `/home/testdiscord` endpoint
- CVE-2023-502592 PoCsBlind SSRF in /home/testslack endpoint
- CVE-2023-502601 PoCWazuh's vulnerability in host_deny AR script allows arbitrary command execution
- CVE-2023-502622 PoCsDompdf possible DoS caused by infinite recursion when parsing SVG images
- CVE-2023-502641 PoCBazarr Arbitrary file read in /system/backup/download/ endpoint
- CVE-2023-502651 PoCBazarr Arbitrary file read in /api/swaggerui/static endpoint
- CVE-2023-502901 PoCApache Solr: Host environment variables are published via the Metrics API
- CVE-2023-502921 PoCApache Solr: Solr Schema Designer blindly "trusts" all configsets, possibly leading to RCE by unauthenticated users
- CVE-2023-503811 PoCThree os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially…
- CVE-2023-503863 PoCsApache Solr: Backup/Restore APIs allow for deployment of executables in malicious ConfigSets
- CVE-2023-503874 PoCsCertain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of…
- CVE-2023-504291 PoCIzyBat Orange casiers before 20230803_1 allows getEnsemble.php ensemble SQL injection.
- CVE-2023-504451 PoCShell Injection vulnerability GL.iNet A1300 v4.4.6, AX1800 v4.4.6, AXT1800 v4.4.6, MT3000 v4.4.6, MT2500 v4.4.6, MT6000 v4.5.0, MT1300…
- CVE-2023-504491 PoCJFinalCMS 5.0.0 could allow a remote attacker to read files via ../ Directory Traversal in the /common/down/file fileKey parameter.
- CVE-2023-504651 PoCA stored cross-site scripting (XSS) vulnerability exists in Monica (aka MonicaHQ) 4.0.0 via an SVG document uploaded by an authenticated…
- CVE-2023-504701 PoCA cross-site scripting (XSS) vulnerability in the component admin_ Video.php of SeaCMS v12.8 allows attackers to execute arbitrary web…
- CVE-2023-504711 PoCcJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c.
- CVE-2023-504721 PoCcJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.
- CVE-2023-504882 PoCsAn issue in Blurams Lumi Security Camera (A31C) v23.0406.435.4120 allows attackers to execute arbitrary code.
- CVE-2023-504951 PoCNCurse v6.4-20230418 was discovered to contain a segmentation fault via the component _nc_wrap_entry().
- CVE-2023-5056410 PoCsAn arbitrary file upload vulnerability in the component /inc/modules_install.php of Pluck-CMS v4.7.18 allows attackers to execute…
- CVE-2023-505782 PoCsMingsoft MCMS v5.2.9 was discovered to contain a SQL injection vulnerability via the categoryType parameter at /content/list.do.
- CVE-2023-505891 PoCGrupo Embras GEOSIAP ERP v2.2.167.02 was discovered to contain a SQL injection vulnerability via the codLogin parameter on the login page.
- CVE-2023-506121 PoCInsecure Permissions vulnerability in fit2cloud Cloud Explorer Lite version 1.4.1, allow local attackers to escalate privileges and obtain…
- CVE-2023-506281 PoCBuffer Overflow vulnerability in libming version 0.4.8, allows attackers to execute arbitrary code and obtain sensitive information via…
- CVE-2023-506301 PoCCross Site Scripting (XSS) vulnerability in xiweicheng TMS v.2.28.0 allows a remote attacker to execute arbitrary code via a crafted…
- CVE-2023-506432 PoCsAn issue in Evernote Evernote for MacOS v.10.68.2 allows a remote attacker to execute arbitrary code via the RunAsNode and…
- CVE-2023-506511 PoCTOTOLINK X6000R v9.4.0cu.852_B20230719 was discovered to contain a remote command execution (RCE) vulnerability via the component…
- CVE-2023-506931 PoCAn issue in Jester v.0.6.0 and before allows a remote attacker to send a malicious crafted request.
- CVE-2023-506941 PoCAn issue in dom96 HTTPbeast v.0.4.1 and before allows a remote attacker to send a malicious crafted request due to insufficient parsing in…
- CVE-2023-507151 PoCUser accounts disclosed to unauthenticated actors on the LAN
- CVE-2023-507171 PoCNocoDB Allows Preview of File with Dangerous Content
- CVE-2023-507191 PoCXWiki Platform Solr search discloses password hashes of all users
- CVE-2023-507201 PoCXWiki Platform Solr search discloses email addresses of users
- CVE-2023-507311 PoCMindsDB has arbitrary file write in file.py
- CVE-2023-507801 PoCApache ActiveMQ Artemis: Authenticated users could perform RCE via Jolokia MBeans
- CVE-2023-508391 PoCWordPress JS Help Desk – Best Help Desk & Support Plugin <= 2.8.1 is vulnerable to SQL Injection
- CVE-2023-508682 PoCsThe Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a…
- CVE-2023-508831 PoCONLYOFFICE Docs before 8.0.1 allows XSS because a macro is an immediately-invoked function expression (IIFE), and therefore a sandbox…
- CVE-2023-509161 PoCKyocera Device Manager before 3.1.1213.0 allows NTLM credential exposure during UNC path authentication via a crafted change from a local…
- CVE-2023-509173 PoCsMajorDoMo (aka Major Domestic Module) before 0662e5e allows command execution via thumb.php shell metacharacters. NOTE: this is unrelated…
- CVE-2023-509191 PoCAn issue was discovered on GL.iNet devices before version 4.5.0. There is an NGINX authentication bypass via Lua string pattern matching.…
- CVE-2023-509652 PoCsIn MicroHttpServer (aka Micro HTTP Server) through 4398570, _ReadStaticFiles in lib/middleware.c allows a stack-based buffer overflow and…
- CVE-2023-509671 PoClatchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.
- CVE-2023-509681 PoCApache OFBiz: Arbitrary file properties reading and SSRF attack
- CVE-2023-509801 PoCgf2n.cpp in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (application crash) via DER public-key…
- CVE-2023-509821 PoCStud.IP 5.x through 5.3.3 allows XSS with resultant upload of executable files, because upload_action and edit_action in…