Vulnerabilities
Vulnerable Software
Security Vulnerabilities - Known exploited
CVE-2023-36874
Known exploited
Windows Error Reporting Service Elevation of Privilege Vulnerability
CVSS Score
7.8
EPSS Score
0.434
Published
2023-07-11
CVE-2023-35311
Known exploited
Microsoft Outlook Security Feature Bypass Vulnerability
CVSS Score
8.8
EPSS Score
0.155
Published
2023-07-11
CVE-2023-32046
Known exploited
Windows MSHTML Platform Elevation of Privilege Vulnerability
CVSS Score
7.8
EPSS Score
0.1
Published
2023-07-11
CVE-2023-32049
Known exploited
Windows SmartScreen Security Feature Bypass Vulnerability
CVSS Score
8.8
EPSS Score
0.042
Published
2023-07-11
CVE-2023-24489
Known exploited
A vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, could allow an unauthenticated attacker to remotely compromise the customer-managed ShareFile storage zones controller.
CVSS Score
9.8
EPSS Score
0.973
Published
2023-07-10
CVE-2023-34192
Known exploited
Cross Site Scripting vulnerability in Zimbra ZCS v.8.8.15 allows a remote authenticated attacker to execute arbitrary code via a crafted script to the /h/autoSaveDraft function.
CVSS Score
9.0
EPSS Score
0.773
Published
2023-07-06
CVE-2023-21237
Known exploited
In applyRemoteView of NotificationContentInflater.java, there is a possible way to hide foreground service notification due to misleading or insufficient UI. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-251586912
CVSS Score
5.5
EPSS Score
0.003
Published
2023-06-28
CVE-2023-32409
Known exploited
The issue was addressed with improved bounds checks. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.8 and iPadOS 15.7.8, Safari 16.5, iOS 16.5 and iPadOS 16.5. A remote attacker may be able to break out of Web Content sandbox. Apple is aware of a report that this issue may have been actively exploited.
CVSS Score
8.6
EPSS Score
0.165
Published
2023-06-23
CVE-2023-32434
Known exploited
An integer overflow was addressed with improved input validation. This issue is fixed in watchOS 9.5.2, macOS Big Sur 11.7.8, iOS 15.7.7 and iPadOS 15.7.7, macOS Monterey 12.6.7, watchOS 8.8.1, iOS 16.5.1 and iPadOS 16.5.1, macOS Ventura 13.4.1. An app may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.
CVSS Score
7.8
EPSS Score
0.515
Published
2023-06-23
CVE-2023-32435
Known exploited
A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safari 16.4, iOS 16.4 and iPadOS 16.4, iOS 15.7.7 and iPadOS 15.7.7. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.
CVSS Score
8.8
EPSS Score
0.228
Published
2023-06-23


Contact Us

Shodan ® - All rights reserved