Common Vulnerabilities and Exposures (CVE)

CVE-2023-32649

Sep 20, 2024 10:42:46 UTC

A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain fields used in the Asset Intelligence functionality of our IDS, allows an unauthenticated attacker to crash the IDS mod...

CVE-2022-0551

Sep 20, 2024 10:34:31 UTC

Improper Input Validation vulnerability in project file upload in Nozomi Networks Guardian and CMC allows an authenticated attacker with admin or import manager roles to execute unattended commands on the appliance using web server user pri...

CVE-2022-0550

Sep 20, 2024 10:26:05 UTC

Improper Input Validation vulnerability in custom report logo upload in Nozomi Networks Guardian, and CMC allows an authenticated attacker with admin or report manager roles to execute unattended commands on the appliance using web server u...

CVE-2024-3044

Sep 20, 2024 10:09:29 UTC

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previo...

CVE-2024-20483

Sep 20, 2024 03:55:21 UTC

Multiple vulnerabilities in Cisco Routed PON Controller Software, which runs as a docker container on hardware that is supported by Cisco IOS XR Software, could allow an authenticated, remote attacker with Administrator-level privileges on ...

CVE-2014-0502

Sep 20, 2024 03:55:20 UTC

Double free vulnerability in Adobe Flash Player before 11.7.700.269 and 11.8.x through 12.0.x before 12.0.0.70 on Windows and Mac OS X and before 11.2.202.341 on Linux, Adobe AIR before 4.0.0.1628 on Android, Adobe AIR SDK before 4.0.0.1628...

CVE-2013-0648

Sep 20, 2024 03:55:19 UTC

Unspecified vulnerability in the ExternalInterface ActionScript functionality in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux, allow...

CVE-2013-0643

Sep 20, 2024 03:55:18 UTC

The Firefox sandbox in Adobe Flash Player before 10.3.183.67 and 11.x before 11.6.602.171 on Windows and Mac OS X, and before 10.3.183.67 and 11.x before 11.2.202.273 on Linux, does not properly restrict privileges, which makes it easier fo...

CVE-2023-26323

Sep 20, 2024 03:35:34 UTC

A code execution vulnerability exists in the Xiaomi App market product. The vulnerability is caused by unsafe configuration and can be exploited by attackers to execute arbitrary code.

CVE-2024-25699

Sep 20, 2024 02:30:09 UTC

There is a difficult to exploit improper authentication issue in the Home application for Esri Portal for ArcGIS versions 10.8.1 through 11.2 on Windows and Linux, and ArcGIS Enterprise 11.1 and below on Kubernetes which, under unique circu...

CVE-2024-43472

Sep 19, 2024 21:53:23 UTC

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVE-2024-37968

Sep 19, 2024 21:53:22 UTC

Windows DNS Spoofing Vulnerability

CVE-2024-38210

Sep 19, 2024 21:53:22 UTC

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVE-2024-38207

Sep 19, 2024 21:53:21 UTC

Microsoft Edge (HTML-based) Memory Corruption Vulnerability

CVE-2024-38208

Sep 19, 2024 21:53:21 UTC

Microsoft Edge for Android Spoofing Vulnerability