Search
15,635 CVEs · Low severity
CVEs (15,635, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 426–450 of 15,635 (capped at 500)
| CVE ID | Severity | Patch | CVSS ↓ | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20920 | LOW | 3.8 | 2024-01-16 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). The supported version that is affected is 11. Easily exploitable vulnerability allo… | |
| CVE-2023-45040 | LOW | 3.8 | 2024-01-05 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a… | |
| CVE-2023-45041 | LOW | 3.8 | 2024-01-05 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a… | |
| CVE-2023-45042 | LOW | 3.8 | 2024-01-05 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a… | |
| CVE-2023-45043 | LOW | 3.8 | 2024-01-05 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a… | |
| CVE-2023-45044 | LOW | 3.8 | 2024-01-05 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a… | |
| CVE-2023-45039 | LOW | 3.8 | 2024-01-05 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a… | |
| CVE-2020-26623 | LOW | Patched | 3.8 | 2024-01-02 | SQL Injection vulnerability discovered in Gila CMS 1.15.4 and earlier allows a remote attacker to execute arbitrary web scripts via the Area parameter under the Administrat… |
| CVE-2020-26624 | LOW | Patched | 3.8 | 2024-01-02 | A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the ID parameter after the l… |
| CVE-2020-26625 | LOW | Patched | 3.8 | 2024-01-02 | A SQL injection vulnerability was discovered in Gila CMS 1.15.4 and earlier which allows a remote attacker to execute arbitrary web scripts via the 'user_id' parameter afte… |
| CVE-2023-29062 | LOW | 3.8 | 2023-11-28 | The Operating System hosting the FACSChorus application is configured to allow transmission of hashed user credentials upon user action without adequately validating the id… | |
| CVE-2023-28404 | LOW | Patched | 3.8 | 2023-11-14 | Out-of-bounds read in the Intel(R) Arc(TM) & Iris(R) Xe Graphics - WHQL - Windows drivers before version 31.0.101.4255 may allow an authenticated user to potentially enable… |
| CVE-2023-5834 | LOW | Patched | 3.8 | 2023-10-27 | HashiCorp Vagrant's Windows installer targeted a custom location with a non-protected path that could be junctioned, introducing potential for unauthorized file system writ… |
| CVE-2023-32973 | LOW | Patched | 3.8 | 2023-10-13 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a… |
| CVE-2023-32971 | LOW | Patched | 3.8 | 2023-10-06 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a… |
| CVE-2023-32972 | LOW | Patched | 3.8 | 2023-10-06 | A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a… |
| CVE-2023-5159 | LOW | Patched | 3.8 | 2023-09-29 | Mattermost fails to properly verify the permissions when managing/updating a bot allowing a User Manager role with user edit permissions to manage/update bots. |
| CVE-2023-39265 | LOW | Patched | 3.8 | 2023-09-06 | Apache Superset would allow for SQLite database connections to be incorrectly registered when an attacker uses alternative driver names like sqlite+pysqlite or by using dat… |
| CVE-2022-38076 | LOW | Patched | 3.8 | 2023-08-11 | Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to potentially enable escalation of privilege v… |
| CVE-2023-4304 | LOW | Patched | 3.8 | 2023-08-11 | Business Logic Errors in GitHub repository froxlor/froxlor prior to 2.0.22,2.1.0. |
| CVE-2023-39954 | LOW | Patched | 3.8 | 2023-08-10 | user_oidc provides the OIDC connect user backend for Nextcloud, an open-source cloud platform. Starting in version 1.0.0 and prior to version 1.3.3, an attacker that obtain… |
| CVE-2023-30704 | LOW | Patched | 3.8 | 2023-08-10 | Improper Authorization vulnerability in Samsung Internet prior to version 22.0.0.35 allows physical attacker access downloaded files in Secret Mode without user authentication. |
| CVE-2023-37857 | LOW | Patched | 3.8 | 2023-08-09 | In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin privileges is able to read hardcoded cryptographic ke… |
| CVE-2023-3488 | LOW | Patched | 3.8 | 2023-07-28 | Uninitialized buffer in GBL parser in Silicon Labs GSDK v4.3.0 and earlier allows attacker to leak data from Secure stack via malformed GBL file. |
| CVE-2023-25185 | LOW | Patched | 3.8 | 2023-06-16 | An issue was discovered on NOKIA Airscale ASIKA Single RAN devices before 21B. A mobile network solution internal fault was found in Nokia Single RAN software releases. Cer… |