Page 208 of 3592 results (0.020 seconds)

CVSS: 4.7EPSS: 0%CPEs: 6EXPL: 0

23 Sep 2020 — An attacker could possibly use this issue to cause a denial of service, obtain sensitive information or escalate privileges. • http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00008.html • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVSS: 6.0EPSS: 0%CPEs: 6EXPL: 0

23 Sep 2020 — An attacker could possibly use this issue to cause a denial of service, obtain sensitive information or escalate privileges. • http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00008.html • CWE-755: Improper Handling of Exceptional Conditions •

CVSS: 5.5EPSS: 0%CPEs: 6EXPL: 0

23 Sep 2020 — An attacker could possibly use this issue to cause a denial of service, obtain sensitive information or escalate privileges. • http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00008.html •

CVSS: 5.5EPSS: 0%CPEs: 6EXPL: 0

23 Sep 2020 — An attacker could possibly use this issue to cause a denial of service, obtain sensitive information or escalate privileges. • http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00008.html • CWE-787: Out-of-bounds Write •

CVSS: 7.0EPSS: 0%CPEs: 6EXPL: 0

23 Sep 2020 — An attacker could possibly use this issue to cause a denial of service, obtain sensitive information or escalate privileges. • http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00008.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVSS: 6.5EPSS: 0%CPEs: 2EXPL: 0

23 Sep 2020 — An attacker could possibly use this issue to cause a denial of service, obtain sensitive information or escalate privileges. • http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00008.html • CWE-755: Improper Handling of Exceptional Conditions •

CVSS: 7.8EPSS: 0%CPEs: 6EXPL: 0

23 Sep 2020 — An attacker could possibly use this issue to cause a denial of service, obtain sensitive information or escalate privileges. • http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00008.html • CWE-269: Improper Privilege Management •

CVSS: 6.5EPSS: 0%CPEs: 26EXPL: 0

22 Sep 2020 — Liferay Portal before 7.3.3, and Liferay DXP 7.1 before fix pack 18 and 7.2 before fix pack 6, does not restrict the size of a multipart/form-data POST action, which allows remote authenticated users to conduct denial-of-service attacks by uploading large files. Liferay Portal versiones anteriores a 7.3.3, y Liferay DXP versiones 7.1 anteriores a fixpack 18 y versiones 7.2 anteriores a fixpack 6, no reucir ataques de denegación de servicio mediante la carga de archivos grandes • https://issues.liferay.com/browse/LPE-17029 • CWE-434: Unrestricted Upload of File with Dangerous Type •

CVSS: 8.4EPSS: 0%CPEs: 1EXPL: 0

22 Sep 2020 —  La vulnerabilidad podría permitir a atacantes locales en el host OBR ejecutar código con privilegios escalados This vulnerability allows local attackers to escalate privileges on affected installations of Micro Focus Operations Bridge Reporter. ... An attacker can leverage this vulnerability to escalate privileges and execute code in the context of SYSTEM. • https://softwaresupport.softwaregrp.com/doc/KM03710590 • CWE-732: Incorrect Permission Assignment for Critical Resource •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

21 Sep 2020 —  Una aplicación puede ejecutar código arbitrario con privilegios de kernel This vulnerability allows local attackers to escalate privileges on affected installations of Apple macOS. ... An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the kernel. • https://support.apple.com/kb/HT211289 • CWE-787: Out-of-bounds Write •