Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In August 2023
Theme Volty CMS Blog up to version v4.0.1 was discovered to contain a SQL injection vulnerability via the id parameter at /tvcmsblog/single.
CVSS Score
9.8
EPSS Score
0.341
Published
2023-08-28
Buffer Overflow vulnerability in O-RAN Software Community ric-plt-lib-rmr v.4.9.0 allows a remote attacker to cause a denial of service via a crafted packet.
CVSS Score
7.5
EPSS Score
0.004
Published
2023-08-28
Buffer Overflow vulnerability in O-RAN Software Community ric-plt-lib-rmr v.4.9.0 allows a remote attacker to cause a denial of service via the packet size component.
CVSS Score
7.5
EPSS Score
0.01
Published
2023-08-28
An issue in Pagekit pagekit v.1.0.18 alows a remote attacker to execute arbitrary code via thedownloadAction and updateAction functions in UpdateController.php
CVSS Score
7.8
EPSS Score
0.009
Published
2023-08-28
A memory leak flaw was found in nft_set_catchall_flush in net/netfilter/nf_tables_api.c in the Linux Kernel. This issue may allow a local attacker to cause double-deactivations of catchall elements, which can result in a memory leak.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-08-28
Buffer Overflow vulnerability in Libming Libming v.0.4.8 allows a remote attacker to cause a denial of service via a crafted .swf file to the makeswf function.
CVSS Score
6.5
EPSS Score
0.002
Published
2023-08-28
An issue in Perfree PerfreeBlog v.3.1.2 allows a remote attacker to execute arbitrary code via crafted plugin listed in admin/plugin/access/list.
CVSS Score
7.2
EPSS Score
0.01
Published
2023-08-28
An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary code via the zippluginPath parameter.
CVSS Score
7.5
EPSS Score
0.007
Published
2023-08-28
An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary code via the loadpluginPath parameter.
CVSS Score
7.5
EPSS Score
0.006
Published
2023-08-28
An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary code via the expandIfZip method in the extract function.
CVSS Score
7.5
EPSS Score
0.008
Published
2023-08-28


Contact Us

Shodan ® - All rights reserved