Lucene search

K

1.1 Security Vulnerabilities

cve
cve

CVE-2023-47611

A CWE-269: Improper Privilege Management vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinterion PLS62 that could allow a local, low privileged attacker to elevate privileges to "manufacturer" level on the targeted....

7.8CVSS

7.4AI Score

0.0004EPSS

2023-11-10 05:15 PM
24
cve
cve

CVE-2023-47614

A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinterion PLS62 that could allow a local, low privileged attacker to disclose hidden virtual paths....

3.3CVSS

3.9AI Score

0.0004EPSS

2023-11-10 04:15 PM
28
cve
cve

CVE-2021-27067

Azure DevOps Server and Team Foundation Server Information Disclosure...

6.5CVSS

6.3AI Score

0.019EPSS

2021-04-13 08:15 PM
63
3
cve
cve

CVE-2020-17145

Azure DevOps Server and Team Foundation Services Spoofing...

5.4CVSS

6AI Score

0.001EPSS

2020-12-10 12:15 AM
69
cve
cve

CVE-2020-17135

Azure DevOps Server Spoofing...

6.4CVSS

5.9AI Score

0.001EPSS

2020-12-10 12:15 AM
65
cve
cve

CVE-2020-1325

Azure DevOps Server and Team Foundation Services Spoofing...

5.4CVSS

6AI Score

0.001EPSS

2020-11-11 07:15 AM
60
cve
cve

CVE-2020-1326

A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOps Server Cross-site Scripting...

5.4CVSS

6.3AI Score

0.001EPSS

2020-07-14 11:15 PM
57
cve
cve

CVE-2020-1327

A spoofing vulnerability exists in Microsoft Azure DevOps Server when it fails to properly handle web requests, aka 'Azure DevOps Server HTML Injection...

6.1CVSS

6.8AI Score

0.001EPSS

2020-06-09 08:15 PM
58
cve
cve

CVE-2020-0815

An elevation of privilege vulnerability exists when Azure DevOps Server and Team Foundation Services improperly handle pipeline job tokens, aka 'Azure DevOps Server and Team Foundation Services Elevation of Privilege Vulnerability'. This CVE ID is unique from...

7.5CVSS

7.5AI Score

0.001EPSS

2020-03-12 04:15 PM
52
cve
cve

CVE-2020-0700

A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOps Server Cross-site Scripting...

5.4CVSS

5.6AI Score

0.001EPSS

2020-03-12 04:15 PM
53
cve
cve

CVE-2020-0758

An elevation of privilege vulnerability exists when Azure DevOps Server and Team Foundation Services improperly handle pipeline job tokens, aka 'Azure DevOps Server and Team Foundation Services Elevation of Privilege Vulnerability'. This CVE ID is unique from...

7.5CVSS

7.5AI Score

0.001EPSS

2020-03-12 04:15 PM
51
cve
cve

CVE-2011-0467

A vulnerability in the listing of available software of SUSE Studio Onsite, SUSE Studio Onsite 1.1 Appliance allows authenticated users to execute arbitrary SQL statements via SQL injection. Affected releases are SUSE Studio Onsite: versions prior to 1.0.3-0.18.1, SUSE Studio Onsite 1.1 Appliance:....

8.8CVSS

9AI Score

0.001EPSS

2018-06-07 09:29 PM
25
cve
cve

CVE-2018-1214

Dell EMC SupportAssist Enterprise version 1.1 creates a local Windows user account named "OMEAdapterUser" with a default password as part of the installation process. This unnecessary user account also remains even after an upgrade from v1.1 to v1.2. Access to the management console can be...

7CVSS

6.9AI Score

0.0004EPSS

2018-02-12 09:29 PM
23
cve
cve

CVE-2014-3150

Livebox 1.1 allows remote authenticated users to upload arbitrary configuration files, download the configuration file, or obtain sensitive information via crafted...

8.8CVSS

8.1AI Score

0.002EPSS

2017-11-15 06:29 PM
23
cve
cve

CVE-2015-5637

The Newphoria Photon application before 1.2 for Android allows attackers to bypass a URL whitelist protection mechanism and obtain API access via unspecified...

6.7AI Score

0.004EPSS

2015-09-20 05:59 PM
25