Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In March 2023
Jenkins update-center2 3.13 and 3.14 renders the required Jenkins core version on plugin download index pages without sanitization, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to provide a plugin for hosting.
CVSS Score
9.6
EPSS Score
0.044
Published
2023-03-10
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-03-10
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-03-10
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-03-10
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-03-10
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-03-10
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-03-10
In telephony service, there is a missing permission check. This could lead to local denial of service in telephone service with no additional execution privileges needed.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-03-10
NVIDIA CUDA Toolkit SDK contains a vulnerability in cuobjdump, where a local user running the tool against a malicious binary may cause an out-of-bounds read, which may result in a limited denial of service and limited information disclosure.
CVSS Score
4.4
EPSS Score
0.001
Published
2023-03-10
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saysis Starcities allows SQL Injection.This issue affects Starcities: through 1.3.
CVSS Score
9.8
EPSS Score
0.003
Published
2023-03-10


Contact Us

Shodan ® - All rights reserved