Search CVE reports
271 – 280 of 33696 results
Nagios Core before 4.5.14 and Nagios XI before 2026R1.7 are vulnerable to reflected cross-site scripting in cmd.cgi via the NagFormId parameter. An unauthenticated remote attacker can craft a malicious link that, when followed by...
1 affected package
nagios4
| Package | 26.04 LTS |
|---|---|
| nagios4 | Needs evaluation |
cJSON versions 1.5.0 through 1.7.19 contain an incorrectly-resolved name or reference vulnerability in the decode_pointer_inplace() function within cJSON_Utils.c that allows unauthenticated attackers to cause JSON Patch operations...
1 affected package
cjson
| Package | 26.04 LTS |
|---|---|
| cjson | Needs evaluation |
CivetWeb (commit 4a4f0c95) contains a heap and stack buffer overflow vulnerability in the read_websocket() function that allows unauthenticated remote attackers to corrupt memory by sending compressed WebSocket frames when both...
1 affected package
civetweb
| Package | 26.04 LTS |
|---|---|
| civetweb | Needs evaluation |
Exposure of sensitive information caused by incorrect data forwarding during transient execution for some Intel(R) Processors within Ring 0: Hypervisor and Kernel may allow information disclosure. System software adversary with a...
1 affected package
intel-microcode
| Package | 26.04 LTS |
|---|---|
| intel-microcode | Needs evaluation |
Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable data...
1 affected package
intel-microcode
| Package | 26.04 LTS |
|---|---|
| intel-microcode | Needs evaluation |
Improper handling of overlap between protected memory ranges in some microcode for some Intel(R) Processors within Ring 0: Hypervisor may allow an escalation of privilege. Authorized adversary with a privileged user combined with...
1 affected package
intel-microcode
| Package | 26.04 LTS |
|---|---|
| intel-microcode | Needs evaluation |
Improper access control for some Intel(R) Processors within Ring 3: User Applications may allow an escalation of privilege. Simple hardware adversary with an authenticated user combined with a high complexity attack may enable...
1 affected package
intel-microcode
| Package | 26.04 LTS |
|---|---|
| intel-microcode | Needs evaluation |
Always-incorrect control flow implementation in some firmware for some Intel(R) Xeon(R) processors may allow an escalation of privilege. System software adversary with a privileged user combined with a high complexity attack may...
1 affected package
intel-microcode
| Package | 26.04 LTS |
|---|---|
| intel-microcode | Needs evaluation |
Hardware logic contains race conditions for some 3rd Gen Intel(R) Xeon(R) Scalable Processors within Ring 3: unprivileged software may allow a denial of service. Unprivileged software adversary with an authenticated user combined...
1 affected package
intel-microcode
| Package | 26.04 LTS |
|---|---|
| intel-microcode | Needs evaluation |
Ixia IxVeriWave and Vector Informatik BLF file parser crashes in 4.6.0 to 4.6.7 allows denial of service on Windows
1 affected package
wireshark
| Package | 26.04 LTS |
|---|---|
| wireshark | Needs evaluation |