Vulnerabilities (CVE)

CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-49085 1 Cacti 1 Cacti 2023-12-29 N/A 8.8 HIGH
Cacti provides an operational monitoring and fault management framework. In versions 1.2.25 and prior, it is possible to execute arbitrary SQL code through the `pollers.php` script. An authorized user may be able to execute arbitrary SQL code. The vulnerable component is the `pollers.php`. Impact of the vulnerability - arbitrary SQL code execution. As of time of publication, a patch does not appear to exist.
CVE-2023-37188 1 C-blosc2 Project 1 C-blosc2 2023-12-29 N/A 7.5 HIGH
C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the function zfp_rate_decompress at zfp/blosc2-zfp.c.
CVE-2023-37187 1 C-blosc2 Project 1 C-blosc2 2023-12-29 N/A 7.5 HIGH
C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the zfp/blosc2-zfp.c zfp_acc_decompress. function.
CVE-2023-37186 1 C-blosc2 Project 1 C-blosc2 2023-12-29 N/A 7.5 HIGH
C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference in ndlz/ndlz8x8.c via a NULL pointer to memset.
CVE-2023-37185 1 C-blosc2 Project 1 C-blosc2 2023-12-29 N/A 7.5 HIGH
C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the function zfp_prec_decompress at zfp/blosc2-zfp.c.
CVE-2022-38223 2 Fedoraproject, Tats 2 Fedora, W3m 2023-12-29 N/A 7.8 HIGH
There is an out-of-bounds write in checkType located in etc.c in w3m 0.5.3. It can be triggered by sending a crafted HTML file to the w3m binary. It allows an attacker to cause Denial of Service or possibly have unspecified other impact.
CVE-2018-6197 2 Canonical, Tats 2 Ubuntu Linux, W3m 2023-12-29 5.0 MEDIUM 7.5 HIGH
w3m through 0.5.3 is prone to a NULL pointer dereference flaw in formUpdateBuffer in form.c.
CVE-2018-6196 2 Canonical, Tats 2 Ubuntu Linux, W3m 2023-12-29 5.0 MEDIUM 7.5 HIGH
w3m through 0.5.3 is prone to an infinite recursion flaw in HTMLlineproc0 because the feed_table_block_tag function in table.c does not prevent a negative indent value.
CVE-2016-9429 1 Tats 1 W3m 2023-12-29 6.8 MEDIUM 8.8 HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Buffer overflow in the formUpdateBuffer function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.
CVE-2016-9428 1 Tats 1 W3m 2023-12-29 6.8 MEDIUM 8.8 HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.
CVE-2016-9426 1 Tats 1 W3m 2023-12-29 6.8 MEDIUM 8.8 HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows remote attackers to cause a denial of service (OOM) and possibly execute arbitrary code due to bdwgc's bug (CVE-2016-9427) via a crafted HTML page.
CVE-2016-9425 1 Tats 1 W3m 2023-12-29 6.8 MEDIUM 8.8 HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.
CVE-2016-9424 1 Tats 1 W3m 2023-12-29 6.8 MEDIUM 8.8 HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m doesn't properly validate the value of tag attribute, which allows remote attackers to cause a denial of service (heap buffer overflow crash) and possibly execute arbitrary code via a crafted HTML page.
CVE-2016-9423 1 Tats 1 W3m 2023-12-29 6.8 MEDIUM 8.8 HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.
CVE-2016-9422 1 Tats 1 W3m 2023-12-29 6.8 MEDIUM 8.8 HIGH
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn't properly validate the value of table span, which allows remote attackers to cause a denial of service (stack and/or heap buffer overflow) and possibly execute arbitrary code via a crafted HTML page.
CVE-2023-31455 1 Pexip 1 Pexip Infinity 2023-12-29 N/A 7.5 HIGH
Pexip Infinity before 31.2 has Improper Input Validation for RTCP, allowing remote attackers to trigger an abort.
CVE-2023-31289 1 Pexip 1 Pexip Infinity 2023-12-29 N/A 7.5 HIGH
Pexip Infinity before 31.2 has Improper Input Validation for signalling, allowing remote attackers to trigger an abort.
CVE-2023-44481 1 Projectworlds 1 Leave Management System 2023-12-29 N/A 8.8 HIGH
Leave Management System Project v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'setearnleave' parameter of the admin/setleaves.php resource does not validate the characters received and they are sent unfiltered to the database.
CVE-2021-27085 1 Microsoft 3 Internet Explorer, Windows 10, Windows Server 2019 2023-12-29 7.6 HIGH 8.8 HIGH
Internet Explorer Remote Code Execution Vulnerability
CVE-2021-27084 1 Microsoft 1 Visual Studio Code 2023-12-29 9.3 HIGH 7.8 HIGH
Visual Studio Code Java Extension Pack Remote Code Execution Vulnerability
CVE-2021-27083 1 Microsoft 1 Remote Development 2023-12-29 9.3 HIGH 7.8 HIGH
Remote Development Extension for Visual Studio Code Remote Code Execution Vulnerability
CVE-2021-27082 1 Microsoft 1 Quantum Development Kit 2023-12-29 9.3 HIGH 7.8 HIGH
Quantum Development Kit for Visual Studio Code Remote Code Execution Vulnerability
CVE-2021-27081 1 Microsoft 1 Visual Studio Code Eslint Extension 2023-12-29 9.3 HIGH 7.8 HIGH
Visual Studio Code ESLint Extension Remote Code Execution Vulnerability
CVE-2021-27076 1 Microsoft 3 Business Productivity Servers, Sharepoint Foundation, Sharepoint Server 2023-12-29 6.5 MEDIUM 8.8 HIGH
Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2021-27062 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2021-27061 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2021-27060 1 Microsoft 1 Visual Studio Code 2023-12-29 6.8 MEDIUM 7.8 HIGH
Visual Studio Code Remote Code Execution Vulnerability
CVE-2021-27059 1 Microsoft 1 Office 2023-12-29 8.5 HIGH 7.6 HIGH
Microsoft Office Remote Code Execution Vulnerability
CVE-2021-27058 1 Microsoft 1 365 Apps 2023-12-29 9.3 HIGH 7.8 HIGH
Microsoft Office ClickToRun Remote Code Execution Vulnerability
CVE-2021-27057 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2023-12-29 6.8 MEDIUM 7.8 HIGH
Microsoft Office Remote Code Execution Vulnerability
CVE-2021-27056 1 Microsoft 3 365 Apps, Office, Powerpoint 2023-12-29 6.8 MEDIUM 7.8 HIGH
Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2021-27055 1 Microsoft 3 365 Apps, Office, Visio 2023-12-29 6.8 MEDIUM 7.0 HIGH
Microsoft Visio Security Feature Bypass Vulnerability
CVE-2021-27054 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2023-12-29 6.8 MEDIUM 7.8 HIGH
Microsoft Excel Remote Code Execution Vulnerability
CVE-2021-27053 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2023-12-29 6.8 MEDIUM 7.8 HIGH
Microsoft Excel Remote Code Execution Vulnerability
CVE-2021-27051 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2021-27050 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2021-27049 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2021-27048 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2021-27047 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2021-26902 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2021-26859 1 Microsoft 1 Power Bi Report Server 2023-12-29 4.0 MEDIUM 7.7 HIGH
Microsoft Power BI Information Disclosure Vulnerability
CVE-2021-27065 1 Microsoft 1 Exchange Server 2023-12-29 6.8 MEDIUM 7.8 HIGH
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-26858 1 Microsoft 1 Exchange Server 2023-12-29 6.8 MEDIUM 7.8 HIGH
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-26857 1 Microsoft 1 Exchange Server 2023-12-29 6.8 MEDIUM 7.8 HIGH
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-26701 2 Fedoraproject, Microsoft 5 Fedora, .net, .net Core and 2 more 2023-12-29 7.5 HIGH 8.1 HIGH
.NET Core Remote Code Execution Vulnerability
CVE-2021-26700 1 Microsoft 1 Visual Studio Code Npm-script Extension 2023-12-29 6.8 MEDIUM 7.8 HIGH
Visual Studio Code npm-script Extension Remote Code Execution Vulnerability
CVE-2021-26411 1 Microsoft 10 Edge, Internet Explorer, Windows 10 and 7 more 2023-12-29 5.1 MEDIUM 8.8 HIGH
Internet Explorer Memory Corruption Vulnerability
CVE-2021-24110 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2021-24108 1 Microsoft 2 365 Apps, Office 2023-12-29 6.8 MEDIUM 7.8 HIGH
Microsoft Office Remote Code Execution Vulnerability
CVE-2021-24089 1 Microsoft 1 High Efficiency Video Coding 2023-12-29 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability