Lista CVE 2023/5xxx

CVE nel gruppo: 5xxx

CVE-2023-5062 (Clicca per dettagli)

CVE-2023-5063 (Clicca per dettagli)

CVE-2023-5068 (Clicca per dettagli)

CVE-2023-5070 (Delta Electronics DIAScreen Out-of-bounds Write)

CVE-2023-5071 (Clicca per dettagli)

CVE-2023-5072 (Clicca per dettagli)

CVE-2023-5073 (DoS Vulnerability in JSON-Java)

CVE-2023-5074 (Clicca per dettagli)

CVE-2023-5075 (Authentication Bypass in D-Link D-View 8)

CVE-2023-5076 (Clicca per dettagli)

CVE-2023-5077 (Clicca per dettagli)

CVE-2023-5078 (Vault’s Google Cloud Secrets Engine Removed Existing IAM Conditions When Creating / Updating Rolesets)

CVE-2023-5079 (Clicca per dettagli)

CVE-2023-5080 (Clicca per dettagli)

CVE-2023-5081 (Clicca per dettagli)

CVE-2023-5082 (Clicca per dettagli)

CVE-2023-5084 (History Log by click5 < 1.0.13 - Admin+ Time-Based Blind SQL Injection)

CVE-2023-5085 (Cross-site Scripting (XSS) – Reflected in hestiacp/hestiacp)

CVE-2023-5086 (Clicca per dettagli)

CVE-2023-5087 (Clicca per dettagli)

CVE-2023-5088 (PageLayer < 1.7.8 - Author+ Stored XSS)

CVE-2023-5089 (Qemu: improper ide controller reset can lead to mbr overwrite)

CVE-2023-5090 (Defender Security < 4.1.0 - Protection Bypass (Hidden Login Page))

CVE-2023-5091 (Kernel: kvm: svm: improper check in svm_set_x2apic_msr_interception allows direct access to host x2apic msrs)

CVE-2023-5096 (Mali GPU Kernel Driver allows improper GPU processing operations)

CVE-2023-5097 (Clicca per dettagli)

CVE-2023-5098 (Clicca per dettagli)

CVE-2023-5099 (Campaign Monitor Forms < 2.5.6 - Subscriber+ Arbitrary Options Update)

CVE-2023-5100 (Clicca per dettagli)

CVE-2023-5101 (Clicca per dettagli)

CVE-2023-5102 (Clicca per dettagli)

CVE-2023-5103 (Clicca per dettagli)

CVE-2023-5104 (Clicca per dettagli)

CVE-2023-5105 (Improper Input Validation in nocodb/nocodb)

CVE-2023-5106 (Frontend File Manager < 22.6 - Editor+ Arbitrary File Download)

CVE-2023-5108 (Incorrect Authorization in GitLab)

CVE-2023-5109 (Easy Newsletter Signups <= 1.0.4 - Admin+ SQLi)

CVE-2023-5110 (Clicca per dettagli)

CVE-2023-5111 (Clicca per dettagli)

CVE-2023-5112 (Os Commerce 4.12.56860 – Cross Site Scripting Reflected (XSS))

CVE-2023-5113 (Os Commerce 4.12.56860 – Cross Site Scripting Reflected (XSS))

CVE-2023-5114 (Certain HP Enterprise LaserJet, LaserJet Managed printers – Potential denial of service, potential Cross Site Scripting (XSS))

CVE-2023-5115 (Clicca per dettagli)

CVE-2023-5116 (Ansible: malicious role archive can cause ansible-galaxy to overwrite arbitrary files)

CVE-2023-5117 (Clicca per dettagli)

CVE-2023-5118 (Exposure of Sensitive Information Due to Incompatible Policies in GitLab)

CVE-2023-5119 (Stored cross-site scripting vulnerability in Kofax Capture software)

CVE-2023-5120 (Forminator and Forminator Pro < 1.27.0 - Admin+ Stored Cross-Site Scripting)

CVE-2023-5121 (Clicca per dettagli)

CVE-2023-5122 (Clicca per dettagli)

CVE-2023-5123 (SSRF in CSV Datasource Plugin)

CVE-2023-5124 (Improper Path Sanitization in JSON Datasource Plugin)

CVE-2023-5125 (PageLayer < 1.8.0 - Author+ Stored XSS)

CVE-2023-5126 (Clicca per dettagli)

CVE-2023-5127 (Clicca per dettagli)

CVE-2023-5128 (Clicca per dettagli)

CVE-2023-5129 (Clicca per dettagli)

CVE-2023-5130 (Clicca per dettagli)

CVE-2023-5131 (Delta Electronics WPLSoft Buffer-Overflow)

CVE-2023-5132 (Delta Electronics ISPSoft Heap Buffer-Overflow)

CVE-2023-5133 (Clicca per dettagli)

CVE-2023-5134 (User Activity Log Pro < 2.3.4 - IP Spoofing)

CVE-2023-5135 (Clicca per dettagli)

CVE-2023-5136 (Clicca per dettagli)

CVE-2023-5137 (Incorrect Permission Assignment in the TopoGrafix DataPlugin for GPX)

CVE-2023-5138 (Simply Excerpts <= 1.4 - Admin+ Stored XSS)

CVE-2023-5139 (Glitch detection not active by default in Silicon Labs Secure Vault High devices)

CVE-2023-5140 (Potential buffer overflow vulnerability in the Zephyr STM32 Crypto driver)

CVE-2023-5141 (Bonus for Woo < 5.8.3 - Reflected Cross-Site Scripting)

CVE-2023-5142 (BSK Contact Form 7 Blacklist <= 1.0.1 - Reflected Cross-Site Scripting)

CVE-2023-5143 (H3C ER6300G2 Config File userLogin.asp path traversal)

CVE-2023-5144 (D-Link DAR-7000 webmailattach.php Privilege Escalation)

CVE-2023-5145 (D-Link DAR-7000/DAR-8000 updateos.php unrestricted upload)

CVE-2023-5146 (D-Link DAR-7000 licence.php unrestricted upload)

CVE-2023-5147 (D-Link DAR-7000/DAR-8000 updatelib.php unrestricted upload)

CVE-2023-5148 (D-Link DAR-7000 updateos.php unrestricted upload)

CVE-2023-5149 (D-Link DAR-7000/DAR-8000 uploadfile.php unrestricted upload)

CVE-2023-5150 (D-Link DAR-7000 userattestation.php unrestricted upload)

CVE-2023-5151 (D-Link DAR-7000/DAR-8000 web.php unrestricted upload)

CVE-2023-5152 (D-Link DAR-8000 autheditpwd.php sql injection)