CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2023-28374
6.1 MEDIUM

Improper input validation for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow an unauthenticated user to potentially enable denial of …

Feb 14, 2024
CVE-2023-27517
6.6 MEDIUM

Improper access control in some Intel(R) Optane(TM) PMem software before versions 01.00.00.3547, 02.00.00.3915, 03.00.00.0483 may allow an athenticated user to potentially enable escalation of privilege …

Feb 14, 2024
CVE-2023-27308
4.6 MEDIUM

Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow a privileged user to potentially enable escalation of privilege …

Feb 14, 2024
CVE-2023-27307
3.8 LOW

Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable information disclosure via …

Feb 14, 2024
CVE-2023-27303
3.8 LOW

Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable information disclosure via …

Feb 14, 2024
CVE-2023-27301
4.2 MEDIUM

Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable escalation of privilege …

Feb 14, 2024
CVE-2023-27300
3.8 LOW

Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable information disclosure via …

Feb 14, 2024
CVE-2023-26596
2.5 LOW

Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable denial of service …

Feb 14, 2024
CVE-2023-26592
3.8 LOW

Deserialization of untrusted data in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable a denial …

Feb 14, 2024
CVE-2023-26591
2.0 LOW

Unchecked return value in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an unauthenticated user to potentially enable denial of service …

Feb 14, 2024
CVE-2023-26586
4.3 MEDIUM

Uncaught exception for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow an unauthenticated user to potentially enable denial of service …

Feb 14, 2024
CVE-2023-26585
5.0 MEDIUM

Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable denial of service …

Feb 14, 2024
CVE-2023-25951
6.0 MEDIUM

Improper input validation for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow a privileged user to potentially enable escalation of …

Feb 14, 2024
CVE-2023-25945
6.7 MEDIUM

Protection mechanism failure in some Intel(R) OFU software before version 14.1.31 may allow an authenticated user to potentially enable escalation of privilege via local access.

Feb 14, 2024
CVE-2023-25779
6.7 MEDIUM

Uncontrolled search path element in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable escalation of …

Feb 14, 2024
CVE-2023-25777
7.9 HIGH

Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable escalation of privilege …

Feb 14, 2024
CVE-2023-25769
5.5 MEDIUM

Uncontrolled resource consumption in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable denial of service …

Feb 14, 2024
CVE-2023-25174
6.7 MEDIUM

Improper access control in some Intel(R) Chipset Driver Software before version 10.1.19444.8378 may allow an authenticated user to potentially enable escalation of privilege via local …

Feb 14, 2024
CVE-2023-25073
5.5 MEDIUM

Improper access control in some Intel(R) DSA software before version 23.4.33 may allow an authenticated user to potentially enable denial of service via local access.

Feb 14, 2024
CVE-2023-24591
6.7 MEDIUM

Uncontrolled search path in some Intel(R) Binary Configuration Tool software before version 3.4.4 may allow an authenticated user to potentially enable escalation of privilege via …

Feb 14, 2024
CVE-2023-24589
6.1 MEDIUM

Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow a privileged user to potentially enable escalation of privilege …

Feb 14, 2024
CVE-2023-24542
6.7 MEDIUM

Unquoted search path or element in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable escalation …

Feb 14, 2024
CVE-2023-24481
6.3 MEDIUM

Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable escalation of privilege …

Feb 14, 2024
CVE-2023-24463
4.3 MEDIUM

Improper input validation in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an unauthenticated user to potentially enable information disclosure via …

Feb 14, 2024
CVE-2023-22848
5.5 MEDIUM

Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable denial of service …

Feb 14, 2024
CVE-2023-22390
6.5 MEDIUM

Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable information disclosure via …

Feb 14, 2024
CVE-2023-22342
7.7 HIGH

Improper input validation in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable escalation of privilege …

Feb 14, 2024
CVE-2023-22311
6.7 MEDIUM

Improper access control in some Intel(R) Optane(TM) PMem 100 Series Management Software before version 01.00.00.3547 may allow an authenticated user to potentially enable escalation of …

Feb 14, 2024
CVE-2023-22293
8.2 HIGH

Improper access control in the Intel(R) Thunderbolt(TM) DCH drivers for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.

Feb 14, 2024
CVE-2024-23952
6.5 MEDIUM

This is a duplicate for CVE-2023-46104. With correct CVE version ranges for affected Apache Superset. Uncontrolled resource consumption can be triggered by authenticated attacker that …

Feb 14, 2024
CVE-2024-23789
8.8 HIGH

Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary OS command on the affected …

Feb 14, 2024
CVE-2024-23788
8.1 HIGH

Server-side request forgery vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to send an arbitrary …

Feb 14, 2024
CVE-2024-23787
6.5 MEDIUM

Path traversal vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to obtain an arbitrary file …

Feb 14, 2024
CVE-2024-23786
9.3 CRITICAL

Cross-site scripting vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary script …

Feb 14, 2024
CVE-2024-23785
6.5 MEDIUM

Cross-site request forgery vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a remote unauthenticated attacker to change the product …

Feb 14, 2024
CVE-2024-23784
6.5 MEDIUM

Improper access control vulnerability exists in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier, which may allow a network-adjacent unauthenticated attacker to …

Feb 14, 2024
CVE-2024-23783
8.8 HIGH

Improper authentication vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to access the affected product …

Feb 14, 2024
CVE-2023-48987
7.5 HIGH

Blind SQL Injection vulnerability in CU Solutions Group (CUSG) Content Management System (CMS) before v.7.75 allows a remote attacker to execute arbitrary code, escalate privileges, …

Feb 14, 2024
CVE-2023-48986
6.1 MEDIUM

Cross Site Scripting (XSS) vulnerability in CU Solutions Group (CUSG) Content Management System (CMS) before v.7.75 allows a remote attacker to execute arbitrary code, escalate …

Feb 14, 2024
CVE-2023-48985
6.1 MEDIUM

Cross Site Scripting (XSS) vulnerability in CU Solutions Group (CUSG) Content Management System (CMS) before v.7.75 allows a remote attacker to execute arbitrary code, escalate …

Feb 14, 2024
CVE-2023-44294
5.4 MEDIUM

In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user …

Feb 14, 2024
CVE-2023-44293
5.4 MEDIUM

In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user …

Feb 14, 2024
CVE-2023-44283
7.8 HIGH

In Dell SupportAssist for Home PCs (between v3.0 and v3.14.1) and SupportAssist for Business PCs (between v3.0 and v3.4.1), a security concern has been identified, …

Feb 14, 2024
CVE-2023-39249
6.3 MEDIUM

Dell SupportAssist for Business PCs version 3.4.0 contains a local Authentication Bypass vulnerability that allows locally authenticated non-admin users to gain temporary privilege within the …

Feb 14, 2024
CVE-2023-25535
7.2 HIGH

Dell SupportAssist for Home PCs Installer Executable file version prior to 3.13.2.19 used for initial installation has a high vulnerability that can result in local …

Feb 14, 2024
CVE-2024-22455
4.4 MEDIUM

Dell Mobility - E-Lab Navigator, version(s) 3.1.9, 3.2.0, contain(s) an Authorization Bypass Through User-Controlled Key vulnerability. An unauthenticated attacker with local access could potentially exploit …

Feb 14, 2024
CVE-2024-25125
5.3 MEDIUM

Digdag is an open source tool that to build, run, schedule, and monitor complex pipelines of tasks across various platforms. Treasure Data's digdag workload automation …

Feb 14, 2024
CVE-2024-24699
6.5 MEDIUM

Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network access.

Feb 14, 2024
CVE-2024-24698
4.9 MEDIUM

Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access.

Feb 14, 2024
CVE-2024-24697
7.2 HIGH

Untrusted search path in some Zoom 32 bit Windows clients may allow an authenticated user to conduct an escalation of privilege via local access.

Feb 14, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.