Lucene search

K

Macos Server Security Vulnerabilities

cve
cve

CVE-2024-29043

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.3AI Score

0.0004EPSS

2024-04-09 05:15 PM
111
cve
cve

CVE-2024-28941

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.3AI Score

0.001EPSS

2024-04-09 05:15 PM
153
cve
cve

CVE-2024-28943

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.3AI Score

0.001EPSS

2024-04-09 05:15 PM
180
cve
cve

CVE-2024-28936

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.001EPSS

2024-04-09 05:15 PM
149
cve
cve

CVE-2024-28937

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.001EPSS

2024-04-09 05:15 PM
165
cve
cve

CVE-2024-28938

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.001EPSS

2024-04-09 05:15 PM
103
cve
cve

CVE-2024-28934

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.001EPSS

2024-04-09 05:15 PM
122
cve
cve

CVE-2024-28933

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.001EPSS

2024-04-09 05:15 PM
153
cve
cve

CVE-2024-28935

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.001EPSS

2024-04-09 05:15 PM
104
cve
cve

CVE-2024-28932

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.0004EPSS

2024-04-09 05:15 PM
105
cve
cve

CVE-2024-28931

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.001EPSS

2024-04-09 05:15 PM
190
cve
cve

CVE-2024-28929

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.001EPSS

2024-04-09 05:15 PM
113
cve
cve

CVE-2024-28930

Microsoft ODBC Driver for SQL Server Remote Code Execution...

8.8CVSS

9.2AI Score

0.001EPSS

2024-04-09 05:15 PM
175
cve
cve

CVE-2023-48795

The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a...

5.9CVSS

6.7AI Score

0.963EPSS

2023-12-18 04:15 PM
438
cve
cve

CVE-2023-49321

Certain WithSecure products allow a Denial of Service because scanning a crafted file takes a long time, and causes the scanner to hang. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17...

5.3CVSS

5.2AI Score

0.0005EPSS

2023-11-27 12:15 AM
11
cve
cve

CVE-2023-49322

Certain WithSecure products allow a Denial of Service because there is an unpack handler crash that can lead to a scanning engine crash. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17...

7.5CVSS

7.4AI Score

0.0005EPSS

2023-11-27 12:15 AM
14
cve
cve

CVE-2023-47263

Certain WithSecure products allow a Denial of Service (DoS) in the antivirus engine when scanning a fuzzed PE32 file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure....

7.5CVSS

7.4AI Score

0.0005EPSS

2023-11-16 03:15 AM
15
cve
cve

CVE-2023-47264

Certain WithSecure products have a buffer over-read whereby processing certain fuzz file types may cause a denial of service (DoS). This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and...

7.5CVSS

7.5AI Score

0.0005EPSS

2023-11-16 03:15 AM
9
cve
cve

CVE-2022-22384

IBM Security Verify Privilege On-Premises 11.5 could allow an attacker to modify messages returned from the server due to hazardous input validation. IBM X-Force ID:...

4.3CVSS

4.3AI Score

0.0004EPSS

2023-10-17 01:15 AM
28
cve
cve

CVE-2023-36728

Microsoft SQL Server Denial of Service...

5.5CVSS

6.3AI Score

0.0005EPSS

2023-10-10 06:15 PM
426
cve
cve

CVE-2023-36730

Microsoft ODBC Driver for SQL Server Remote Code Execution...

7.8CVSS

8.4AI Score

0.001EPSS

2023-10-10 06:15 PM
361
cve
cve

CVE-2023-36785

Microsoft ODBC Driver for SQL Server Remote Code Execution...

7.8CVSS

8.4AI Score

0.001EPSS

2023-10-10 06:15 PM
392
cve
cve

CVE-2023-36420

Microsoft ODBC Driver for SQL Server Remote Code Execution...

7.8CVSS

8.4AI Score

0.001EPSS

2023-10-10 06:15 PM
350
cve
cve

CVE-2023-43766

Certain WithSecure products allow Local privilege escalation via the lhz archive unpack handler. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for.....

7.8CVSS

7.8AI Score

0.0004EPSS

2023-09-22 05:15 AM
19
cve
cve

CVE-2023-43767

Certain WithSecure products allow Denial of Service via the aepack archive unpack handler. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac...

7.5CVSS

7.5AI Score

0.0005EPSS

2023-09-22 05:15 AM
19
cve
cve

CVE-2023-43760

Certain WithSecure products allow Denial of Service via a fuzzed PE32 file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure...

7.5CVSS

7.4AI Score

0.0005EPSS

2023-09-22 05:15 AM
20
cve
cve

CVE-2023-43761

Certain WithSecure products allow Denial of Service (infinite loop). This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure Elements.....

7.5CVSS

7.5AI Score

0.0005EPSS

2023-09-22 05:15 AM
13
cve
cve

CVE-2023-43765

Certain WithSecure products allow Denial of Service in the aeelf component. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for Mac 15, WithSecure...

7.5CVSS

7.5AI Score

0.0005EPSS

2023-09-22 05:15 AM
18
cve
cve

CVE-2023-2508

The PaperCutNG Mobility Print version 1.0.3512 application allows an unauthenticated attacker to perform a CSRF attack on an instance administrator to configure the clients host (in the "configure printer discovery" section). This is possible because the application has no protections against CSRF....

6.5CVSS

6.4AI Score

0.001EPSS

2023-09-20 04:15 PM
8
cve
cve

CVE-2023-42525

Certain WithSecure products allow an infinite loop in a scanning engine via unspecified file types. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security...

7.5CVSS

7.4AI Score

0.0005EPSS

2023-09-18 07:15 AM
12
cve
cve

CVE-2023-42524

Certain WithSecure products allow an infinite loop in a scanning engine via unspecified file types. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security...

7.5CVSS

7.4AI Score

0.0005EPSS

2023-09-18 07:15 AM
12
cve
cve

CVE-2023-42521

Certain WithSecure products allow a remote crash of a scanning engine via processing of a compressed file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client...

7.5CVSS

7.5AI Score

0.0005EPSS

2023-09-18 07:15 AM
15
cve
cve

CVE-2023-42522

Certain WithSecure products allow a remote crash of a scanning engine via processing of an import struct in a PE file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later,...

7.5CVSS

7.4AI Score

0.0005EPSS

2023-09-18 07:15 AM
13
cve
cve

CVE-2023-42523

Certain WithSecure products allow a remote crash of a scanning engine via unpacking of a PE file. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client Security for....

7.5CVSS

7.5AI Score

0.0005EPSS

2023-09-18 07:15 AM
14
cve
cve

CVE-2023-42526

Certain WithSecure products allow a remote crash of a scanning engine via decompression of crafted data files. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client....

7.5CVSS

7.5AI Score

0.0005EPSS

2023-09-18 06:15 AM
15
cve
cve

CVE-2023-42520

Certain WithSecure products allow a remote crash of a scanning engine via unpacking of crafted data files. This affects WithSecure Client Security 15, WithSecure Server Security 15, WithSecure Email and Server Security 15, WithSecure Elements Endpoint Protection 17 and later, WithSecure Client...

7.5CVSS

7.5AI Score

0.0005EPSS

2023-09-18 06:15 AM
13
cve
cve

CVE-2023-1409

If the MongoDB Server running on Windows or macOS is configured to use TLS with a specific set of configuration options that are already known to work securely in other platforms (e.g. Linux), it is possible that client certificate validation may not be in effect, potentially allowing client to...

7.5CVSS

7.2AI Score

0.001EPSS

2023-08-23 04:15 PM
150
cve
cve

CVE-2023-38169

Microsoft SQL OLE DB Remote Code Execution...

8.8CVSS

9.2AI Score

0.026EPSS

2023-08-08 06:15 PM
553
cve
cve

CVE-2023-36858

An insufficient verification of data vulnerability exists in BIG-IP Edge Client for Windows and macOS that may allow an attacker to modify its configured server list. Note: Software versions which have reached End of Technical Support (EoTS) are not...

7.1CVSS

5.5AI Score

0.0004EPSS

2023-08-02 04:15 PM
28
cve
cve

CVE-2023-36000

A missing authorization check in the MacOS agent configuration endpoint of the Insider Threat Management Server enables an anonymous attacker on an adjacent network to obtain sensitive information. Successful exploitation requires an attacker to first obtain a valid agent authentication token. All....

6.5CVSS

6.4AI Score

0.001EPSS

2023-06-27 03:15 PM
4
cve
cve

CVE-2023-33842

IBM SPSS Modeler on Windows 17.0, 18.0, 18.2.2, 18.3, 18.4, and 18.5 requires the end user to have access to the server SSL key which could allow a local user to decrypt and obtain sensitive information. IBM X-Force ID: ...

6.2CVSS

5.2AI Score

0.0004EPSS

2023-06-22 02:15 AM
21
cve
cve

CVE-2023-32026

Microsoft ODBC Driver for SQL Server Remote Code Execution...

7.8CVSS

7.9AI Score

0.001EPSS

2023-06-16 01:15 AM
338
cve
cve

CVE-2023-32027

Microsoft ODBC Driver for SQL Server Remote Code Execution...

7.8CVSS

7.9AI Score

0.001EPSS

2023-06-16 01:15 AM
360
cve
cve

CVE-2023-32025

Microsoft ODBC Driver for SQL Server Remote Code Execution...

7.8CVSS

7.9AI Score

0.001EPSS

2023-06-16 01:15 AM
363
cve
cve

CVE-2023-29349

Microsoft ODBC and OLE DB Remote Code Execution...

7.8CVSS

7.7AI Score

0.001EPSS

2023-06-16 01:15 AM
398
cve
cve

CVE-2023-29356

Microsoft ODBC Driver for SQL Server Remote Code Execution...

7.8CVSS

7.9AI Score

0.001EPSS

2023-06-16 01:15 AM
342
cve
cve

CVE-2023-2847

During internal security analysis, a local privilege escalation vulnerability has been identified. On a machine with the affected ESET product installed, it was possible for a user with lower privileges due to improper privilege management to trigger actions with root privileges. ESET remedied...

7.8CVSS

7.8AI Score

0.0004EPSS

2023-06-15 08:15 AM
151
cve
cve

CVE-2023-3079

Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity:...

8.8CVSS

8.6AI Score

0.138EPSS

2023-06-05 10:15 PM
565
In Wild
cve
cve

CVE-2023-28321

An improper certificate validation vulnerability exists in...

5.9CVSS

6.2AI Score

0.002EPSS

2023-05-26 09:15 PM
154
cve
cve

CVE-2023-28182

The issue was addressed with improved authentication. This issue is fixed in macOS Ventura 13.3, iOS 16.4 and iPadOS 16.4, iOS 15.7.4 and iPadOS 15.7.4, macOS Monterey 12.6.4, macOS Big Sur 11.7.5. A user in a privileged network position may be able to spoof a VPN server that is configured with...

6.5CVSS

5AI Score

0.002EPSS

2023-05-08 08:15 PM
63
Total number of security vulnerabilities238