All CVEs — page 235 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The vulnerability allows for authentication bypass in H3C NX15 V100R017 through manipulation of an API endpoint, leading to potential unauthorized access.
The flaw allows a remote unauthenticated actor to execute arbitrary code by manipulating the search path in Kiro CLI versions before 2.10.0 on Windows.
The flaw allows a remote unauthenticated actor to execute arbitrary code by manipulating the project directory path in Kiro IDE versions before 1.0.228 on Windows.
The flaw allows an authenticated attacker to execute arbitrary operating system commands as a privileged user in Lenovo XClarity Orchestrator 2.2.0, posing a significant risk of unauthorized access and control over the system.
The flaw allows attackers to inject malicious SQL queries via a GET parameter, potentially leading to unauthorized data deletion and extraction.
Atlas-Livre has an improper access control vulnerability that allows unauthenticated attackers to bypass session-based authentication and execute admin actions, potentially leading to data deletion.
The flaw allows authenticated attackers to crash SnailJob 1.7.0 servers by sending a specially crafted payload, leading to an OutOfMemoryError due to unbounded array allocation.
The flaw is a stack-based buffer overflow in Keysight IxChariot Endpoint, allowing unauthenticated remote attackers to execute arbitrary code with administrative privileges. This vulnerability is critical due to its high impact on system integrity and availability.