|
CVE-2023-26359
KEV
|
|
【KEV】Adobe coldfusion に 安全でないデシリアライゼーション (CVE-2023-26359)
Adobe coldfusion に 脆弱性 (CVE-2023-26359) が存在。不正な操作・情報露出のリスクがあります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Adobe
Coldfusion
CWE-502: 安全でないデシリアライゼーション
|
3年前
|
|
CVE-2023-38838
|
|
sqli に SQLインジェクション (CVE-2023-38838)
sqli に SQLインジェクション (CVE-2023-38838) が存在。機密情報が外部に流出する可能性があります。
|
High
|
PHP
SQLインジェクション
CWE-89: SQLインジェクション
Kiduswb
+1
|
3年前
|
|
CVE-2023-24489
KEV
|
|
【KEV】Citrix content-collaboration の脆弱性 (CVE-2023-24489)
Citrix content-collaboration に 脆弱性 (CVE-2023-24489) が存在。不正な操作・情報露出のリスクがあります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Citrix
Content Collaboration
Cwe 284
|
3年前
|
|
CVE-2023-38180
KEV
|
|
【KEV】Microsoft net-core-and-visual-studio の脆弱性 (CVE-2023-38180)
Microsoft net-core-and-visual-studio に 脆弱性 (CVE-2023-38180) が存在。不正な操作・情報露出のリスクがあります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Microsoft
Net Core And Visual Studio
C#
サービス拒否 (DoS)
+6
|
3年前
|
|
CVE-2023-39086
|
|
ASUS RT-AC66U B1 3.0.0.4.286_51665 was discovered to transmit sensitive information in cleartext.
ASUS RT-AC66U B1 3.0.0.4.286_51665 was discovered to transmit sensitive information in cleartext.
|
High
|
Cwe 319
Asus
Rt Ac66U B1 Firmware
Rt Ac66U B1
|
3年前
|
|
CVE-2023-36873
|
|
.NET Framework Spoofing Vulnerability
.NET Framework Spoofing Vulnerability
|
High
|
C#
CWE-20: 入力検証の不備
Microsoft
Net Framework
+11
|
3年前
|
|
CVE-2023-36899
|
|
ASP.NET Elevation of Privilege Vulnerability
ASP.NET Elevation of Privilege Vulnerability
|
High
|
C#
CWE-20: 入力検証の不備
Microsoft
Net Framework
+9
|
3年前
|
|
CVE-2023-38185
|
|
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 23
Microsoft
Exchange Server
|
3年前
|
|
CVE-2023-38186
|
|
Windows Mobile Device Management Elevation of Privilege Vulnerability
Windows Mobile Device Management Elevation of Privilege Vulnerability
|
High
|
Cwe 306
Microsoft
Windows 10 21H2
Windows 10 22H2
+3
|
3年前
|
|
CVE-2023-38167
|
|
Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
|
High
|
Cwe 284
Microsoft
Dynamics 365 Business Central
|
3年前
|
|
CVE-2023-38169
|
|
Microsoft SQL OLE DB Remote Code Execution Vulnerability
Microsoft SQL OLE DB Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-416: 解放後使用 (Use-After-Free)
Microsoft
Odbc Driver For Sql Server
+2
|
3年前
|
|
CVE-2023-38170
|
|
HEVC Video Extensions Remote Code Execution Vulnerability
HEVC Video Extensions Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 122
Microsoft
Hevc Video Extensions
|
3年前
|
|
CVE-2023-38172
|
|
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
|
High
|
サービス拒否 (DoS)
Cwe 126
Microsoft
Windows 10 1507
+11
|
3年前
|
|
CVE-2023-38175
|
|
Microsoft Windows Defender Elevation of Privilege Vulnerability
Microsoft Windows Defender Elevation of Privilege Vulnerability
|
High
|
Cwe 59
Microsoft
Windows Defender
|
3年前
|
|
CVE-2023-38176
|
|
Azure Arc-Enabled Servers Elevation of Privilege Vulnerability
Azure Arc-Enabled Servers Elevation of Privilege Vulnerability
|
High
|
CWE-22: パストラバーサル
Microsoft
Azure Arc Enabled Servers
|
3年前
|
|
CVE-2023-38178
|
|
.NET Core and Visual Studio Denial of Service Vulnerability
.NET Core and Visual Studio Denial of Service Vulnerability
|
High
|
C#
サービス拒否 (DoS)
Cwe 400
Microsoft
+2
|
3年前
|
|
CVE-2023-38181
|
|
Microsoft Exchange Server Spoofing Vulnerability
Microsoft Exchange Server Spoofing Vulnerability
|
High
|
CWE-502: 安全でないデシリアライゼーション
Microsoft
Exchange Server
|
3年前
|
|
CVE-2023-38182
|
|
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-502: 安全でないデシリアライゼーション
Microsoft
Exchange Server
|
3年前
|
|
CVE-2023-38184
|
|
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-416: 解放後使用 (Use-After-Free)
Microsoft
Windows 10 1507
+11
|
3年前
|
|
CVE-2023-36912
|
|
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
|
High
|
サービス拒否 (DoS)
CWE-20: 入力検証の不備
Microsoft
Windows 10
+11
|
3年前
|
|
CVE-2023-36898
|
|
Tablet Windows User Interface Application Core Remote Code Execution Vulnerability
Tablet Windows User Interface Application Core Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 426
Microsoft
Windows 11 21H2
+1
|
3年前
|
|
CVE-2023-36900
|
|
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
|
High
|
Cwe 190
Microsoft
Windows 10
Windows 10 1607
+10
|
3年前
|
|
CVE-2023-36903
|
|
Windows System Assessment Tool Elevation of Privilege Vulnerability
Windows System Assessment Tool Elevation of Privilege Vulnerability
|
High
|
Cwe 59
Microsoft
Windows 10
Windows 10 1607
+10
|
3年前
|
|
CVE-2023-36904
|
|
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
|
High
|
Cwe 126
Microsoft
Windows 10 1809
Windows 10 21H2
+5
|
3年前
|
|
CVE-2023-36897
|
|
Visual Studio Tools for Office Runtime Spoofing Vulnerability
Visual Studio Tools for Office Runtime Spoofing Vulnerability
|
High
|
CWE-20: 入力検証の不備
Microsoft
365 Apps
Office
+5
|
3年前
|
|
CVE-2023-36895
|
|
Microsoft Outlook Remote Code Execution Vulnerability
Microsoft Outlook Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-416: 解放後使用 (Use-After-Free)
Microsoft
365 Apps
+2
|
3年前
|
|
CVE-2023-36896
|
|
Microsoft Excel Remote Code Execution Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 122
Microsoft
365 Apps
+3
|
3年前
|
|
CVE-2023-36865
|
|
Microsoft Office Visio Remote Code Execution Vulnerability
Microsoft Office Visio Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 122
Microsoft
365 Apps
+2
|
3年前
|
|
CVE-2023-36866
|
|
Microsoft Office Visio Remote Code Execution Vulnerability
Microsoft Office Visio Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 190
Microsoft
365 Apps
+2
|
3年前
|
|
CVE-2023-36882
|
|
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-416: 解放後使用 (Use-After-Free)
Microsoft
Windows 10 1507
+11
|
3年前
|
|
CVE-2023-35382
|
|
Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
|
High
|
CWE-416: 解放後使用 (Use-After-Free)
Microsoft
Windows 10 1809
Windows 10 21H2
+5
|
3年前
|
|
CVE-2023-35383
|
|
Microsoft Message Queuing Information Disclosure Vulnerability
Microsoft Message Queuing Information Disclosure Vulnerability
|
High
|
Cwe 190
Microsoft
Windows 10 1507
Windows 10 1607
+10
|
3年前
|
|
CVE-2023-35386
|
|
Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
|
High
|
Cwe 125
Microsoft
Windows 10 1507
Windows 10 1607
+9
|
3年前
|
|
CVE-2023-35387
|
|
Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability
Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability
|
High
|
Cwe 191
Microsoft
Windows 10 1507
Windows 10 1607
+9
|
3年前
|
|
CVE-2023-35388
|
|
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft Exchange Server Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-502: 安全でないデシリアライゼーション
Microsoft
Exchange Server
|
3年前
|
|
CVE-2023-35390
|
|
.NET and Visual Studio Remote Code Execution Vulnerability
.NET and Visual Studio Remote Code Execution Vulnerability
|
High
|
C#
リモートコード実行 (RCE)
Cwe 77
Microsoft
+2
|
3年前
|
|
CVE-2023-35359
|
|
Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
|
High
|
Cwe 23
Microsoft
Windows 10 1507
Windows 10 1607
+10
|
3年前
|
|
CVE-2023-35368
|
|
Microsoft Exchange Remote Code Execution Vulnerability
Microsoft Exchange Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-20: 入力検証の不備
Microsoft
Exchange Server
|
3年前
|
|
CVE-2023-35371
|
|
Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 415
Microsoft
365 Apps
+3
|
3年前
|
|
CVE-2023-35372
|
|
Microsoft Office Visio Remote Code Execution Vulnerability
Microsoft Office Visio Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 190
Microsoft
365 Apps
+2
|
3年前
|
|
CVE-2023-35378
|
|
Windows Projected File System Elevation of Privilege Vulnerability
Windows Projected File System Elevation of Privilege Vulnerability
|
High
|
Cwe 367
Cwe 362
Microsoft
Windows 10 1809
+6
|
3年前
|
|
CVE-2023-35380
|
|
Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
|
High
|
CWE-416: 解放後使用 (Use-After-Free)
Microsoft
Windows 10 1507
Windows 10 1607
+10
|
3年前
|
|
CVE-2023-35381
|
|
Windows Fax Service Remote Code Execution Vulnerability
Windows Fax Service Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 190
Microsoft
Windows 10 1507
+11
|
3年前
|
|
CVE-2023-29328
|
|
Microsoft Teams Remote Code Execution Vulnerability
Microsoft Teams Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-416: 解放後使用 (Use-After-Free)
Microsoft
Teams
|
3年前
|
|
CVE-2023-29330
|
|
Microsoft Teams Remote Code Execution Vulnerability
Microsoft Teams Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-416: 解放後使用 (Use-After-Free)
Microsoft
Teams
|
3年前
|
|
CVE-2017-18368
KEV
|
|
【KEV】Zyxel p660hn-t1a-routers に OSコマンドインジェクション (CVE-2017-18368)
Zyxel p660hn-t1a-routers に OSコマンドインジェクション (CVE-2017-18368) が存在。不正な操作・情報露出のリスクがあります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Zyxel
P660Hn T1A Routers
CWE-78: OSコマンドインジェクション
|
3年前
|
|
CVE-2023-38952
|
|
zkteco の脆弱性 (CVE-2023-38952)
zkteco に 脆弱性 (CVE-2023-38952) が存在。機密情報が外部に流出する可能性があります。
|
High
|
Cwe 552
Zkteco
Biotime
|
3年前
|
|
CVE-2023-38949
|
|
zkteco の脆弱性 (CVE-2023-38949)
zkteco に 脆弱性 (CVE-2023-38949) が存在。データの不正な改ざんを許す可能性があります。
|
High
|
Zkteco
Biotime
|
3年前
|
|
CVE-2023-38955
|
|
zkteco の脆弱性 (CVE-2023-38955)
zkteco に 脆弱性 (CVE-2023-38955) が存在。機密情報が外部に流出する可能性があります。
|
High
|
Cwe 668
Zkteco
Bioaccess Ivs
|
3年前
|
|
CVE-2023-38956
|
|
path-traversal に パストラバーサル (CVE-2023-38956)
path-traversal に パストラバーサル (CVE-2023-38956) が存在。機密情報が外部に流出する可能性があります。
|
High
|
パストラバーサル
CWE-22: パストラバーサル
Zkteco
Bioaccess Ivs
|
3年前
|