βΌ CVE-2023-38760 βΌ
π Read
via "National Vulnerability Database".
SQL injection vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to obtain sensitive information via the role and gender parameters within the /QueryView.php component.π Read
via "National Vulnerability Database".
βΌ CVE-2023-38766 βΌ
π Read
via "National Vulnerability Database".
Cross Site Scripting (XSS) vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to execute arbitrary code via a crafted payload to the PersonView.php component.π Read
via "National Vulnerability Database".
βΌ CVE-2023-3386 βΌ
π Read
via "National Vulnerability Database".
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in a2 Camera Trap Tracking System allows SQL Injection.This issue affects Camera Trap Tracking System: before 3.1905.π Read
via "National Vulnerability Database".
βΌ CVE-2023-38761 βΌ
π Read
via "National Vulnerability Database".
Cross Site Scripting (XSS) vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to execute arbitrary code via a crafted payload to the systemSettings.php component.π Read
via "National Vulnerability Database".
β€1
β Serious Security: Why learning to touch-type could protect you from audio snooping β
π Read
via "Naked Security".
Fast, quiet, smooth, consistent and low impact... why true hacker-grade touch-typing might keep you more secure.π Read
via "Naked Security".
Sophos News
Serious Security: Why learning to touch-type could protect you from audio snooping
Fast, quiet, smooth, consistent and low impact⦠why true hacker-grade touch-typing might keep you more secure.
βΌ CVE-2023-36896 βΌ
π Read
via "National Vulnerability Database".
Microsoft Excel Remote Code Execution Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-36866 βΌ
π Read
via "National Vulnerability Database".
Microsoft Office Visio Remote Code Execution Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-36865 βΌ
π Read
via "National Vulnerability Database".
Microsoft Office Visio Remote Code Execution Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-36889 βΌ
π Read
via "National Vulnerability Database".
Windows Group Policy Security Feature Bypass Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-20556 βΌ
π Read
via "National Vulnerability Database".
Insufficient validation of the IOCTL (Input Output Control) input buffer in AMD ?Prof may allow an authenticated user to send an arbitrary buffer potentially resulting in a Windows crash leading to denial of service.π Read
via "National Vulnerability Database".
βΌ CVE-2023-36881 βΌ
π Read
via "National Vulnerability Database".
Azure Apache AmbariΓ Spoofing Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-35386 βΌ
π Read
via "National Vulnerability Database".
Windows Kernel Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-36540 βΌ
π Read
via "National Vulnerability Database".
Untrusted search path in the installer for Zoom Desktop Client for Windows before 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.π Read
via "National Vulnerability Database".
βΌ CVE-2023-36876 βΌ
π Read
via "National Vulnerability Database".
Reliability Analysis Metrics Calculation (RacTask) Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-36541 βΌ
π Read
via "National Vulnerability Database".
Insufficient verification of data authenticity in Zoom Desktop Client for Windows before 5.14.5 may allow an authenticated user to enable an escalation of privilege via network access.π Read
via "National Vulnerability Database".
βΌ CVE-2023-38814 βΌ
π Read
via "National Vulnerability Database".
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not in the allowed scope of that CNA's CVE ID assignments. Notes: none.π Read
via "National Vulnerability Database".
βΌ CVE-2023-20588 βΌ
π Read
via "National Vulnerability Database".
A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality.Γ π Read
via "National Vulnerability Database".
βΌ CVE-2023-35378 βΌ
π Read
via "National Vulnerability Database".
Windows Projected File System Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-20586 βΌ
π Read
via "National Vulnerability Database".
A potential vulnerability was reported in RadeonΓ’βΒ’ Software Crimson ReLive Edition which may allow escalation of privilege. RadeonΓ’βΒ’ Software Crimson ReLive Edition falls outside of the security support lifecycle and AMD does not plan to release any mitigationsπ Read
via "National Vulnerability Database".
β€1
βΌ CVE-2023-36893 βΌ
π Read
via "National Vulnerability Database".
Microsoft Outlook Spoofing Vulnerabilityπ Read
via "National Vulnerability Database".
βΌ CVE-2023-35380 βΌ
π Read
via "National Vulnerability Database".
Windows Kernel Elevation of Privilege Vulnerabilityπ Read
via "National Vulnerability Database".