A vulnerability classified as problematic has been found in I Recommend This Plugin up to 3.8.3 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2023-28696. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability has been found in Smarty up to 3.1.47/4.3.0 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2023-28447. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Fluid Components on TYPO3. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2023-28604. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Apple iOS and iPadOS up to 16.3.1. It has been classified as critical. Affected is an unknown function of the component WebKit. The manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability is traded as CVE-2023-27932. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
Microsoft warns that threat actor Storm-1977 is behind password spraying attacks against cloud tenants in the education sector. Over the past year, Microsoft Threat Intelligence researchers observed a threat actor, tracked as Storm-1977, using AzureChecker.exe to launch password spray attacks against cloud tenants in the education sector. AzureChecker.exe connected to sac-auth[.]nodefunction[.]vip to download AES-encrypted data, which, […]
A vulnerability, which was classified as problematic, has been found in Apple tvOS up to 16.3.3. Affected by this issue is some unknown functionality of the component WebKit. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2023-27932. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Apple watchOS up to 9.3.1. Affected by this issue is some unknown functionality of the component WebKit. The manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability is handled as CVE-2023-27932. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Apple macOS up to 13.2.1. It has been rated as critical. Affected by this issue is some unknown functionality of the component Archive Utility. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2023-27951. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in GNU Binutils. This vulnerability affects the function bfd_mach_o_get_synthetic_symtab. The manipulation of the argument the_bfd leads to uninitialized pointer.
This vulnerability was named CVE-2023-25588. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in GNU Binutils up to 2.39.2. It has been rated as problematic. This issue affects the function compare_symbols. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2022-47696. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in OpenBSD OpenSSH up to 9.x. It has been classified as problematic. This affects an unknown part of the component DisableForwarding Directive Handler. The manipulation leads to expected behavior violation.
This vulnerability is uniquely identified as CVE-2025-32728. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in GNU Binutils. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument file_table leads to uninitialized pointer.
This vulnerability is handled as CVE-2023-25585. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in GNU Binutils. It has been rated as critical. This issue affects some unknown processing of the component vms-alpha. The manipulation of the argument length leads to memory corruption.
The identification of this vulnerability is CVE-2023-25584. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in GNU Binutils up to 2.39.2. This issue affects the function parse_module of the component addr2line. The manipulation leads to out-of-bounds read.
The identification of this vulnerability is CVE-2022-47673. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in codeprojects News Publishing Site Dashboard 1.0. It has been rated as critical. This issue affects some unknown processing of the file /edit-category.php of the component Edit Category Page. The manipulation of the argument category_image leads to unrestricted upload.
The identification of this vulnerability is CVE-2025-3969. The attack may be initiated remotely. Furthermore, there is an exploit available.