Search
Search Results (379048 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2024-3172 | 1 Google | 1 Chrome | 2025-03-18 | 8.8 High |
| Insufficient data validation in DevTools in Google Chrome prior to 121.0.6167.85 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: High) | ||||
| CVE-2024-23786 | 1 Sharp | 4 Jh-rv11, Jh-rv11 Firmware, Jh-rvb1 and 1 more | 2025-03-18 | 9.3 Critical |
| Cross-site scripting vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary script on the web browser of the user who is accessing the management page of the affected product. | ||||
| CVE-2024-21113 | 1 Oracle | 1 Vm Virtualbox | 2025-03-18 | 8.8 High |
| Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H). | ||||
| CVE-2024-20941 | 1 Oracle | 1 Installed Base | 2025-03-18 | 6.1 Medium |
| Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: HTML UI). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Installed Base. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Installed Base, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Installed Base accessible data as well as unauthorized read access to a subset of Oracle Installed Base accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N). | ||||
| CVE-2023-37037 | 1 Linuxfoundation | 1 Magma | 2025-03-18 | 6.5 Medium |
| A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `S1Setup Request` packet missing an expected `Supported TAs` field. | ||||
| CVE-2024-27183 | 1 Dj-extensions | 1 Dj-helpfularticles | 2025-03-18 | 6.1 Medium |
| XSS vulnerability in DJ-HelpfulArticles component for Joomla. | ||||
| CVE-2025-27768 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2025-27767 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2025-27766 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2025-27765 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2025-27764 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2025-27763 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2025-27762 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2025-27761 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2025-27760 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2024-56506 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2024-56505 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2024-56504 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2024-56503 | 2025-03-17 | N/A | ||
| Not used | ||||
| CVE-2024-56502 | 2025-03-17 | N/A | ||
| Not used | ||||