Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

CVE güvenlik açıkları, KEV etiketleri, detay sayfaları ve kategori bazlı listeleme.
Toplam kayıt70,903
Sayfa3392 / 3546
FiltreYok
Critical CVSS: 9.1 Yayın: 2025-01-21 22:15:12

CVE-2024-45479

SSRF vulnerability in Edit Service Page of Apache Ranger UI in Apache Ranger Version 2.4.0. Users are recommended to upgrade to version Apache Ranger 2.5.0, which fixes this issue.
Medium CVSS: 4.8 Yayın: 2025-01-21 22:15:12

CVE-2024-45478

Stored XSS vulnerability in Edit Service Page of Apache Ranger UI in Apache Ranger Version 2.4.0. Users are recommended to upgrade to version Apache Ranger 2.5.0, which fixes this issue.
High CVSS: 7.5 Yayın: 2025-01-21 22:15:12

CVE-2024-24451

A stack overflow in the sctp_server::sctp_receiver_thread component of OpenAirInterface CN5G AMF (oai-cn5g-amf) up to v2.0.0 allows attackers to cause a Denial of Service (DoS) by repeatedly establishing SCTP connections with the N2 interface.
Medium CVSS: 6.5 Yayın: 2025-01-21 22:15:11

CVE-2024-24445

OpenAirInterface CN5G AMF (oai-cn5g-amf)
High CVSS: 7.5 Yayın: 2025-01-21 22:15:11

CVE-2024-24444

Improper file descriptor handling for closed connections in OpenAirInterface CN5G AMF (oai-cn5g-amf) up to v2.0.0 allows attackers to cause a Denial of Service (DoS) by repeatedly establishing SCTP connections with the N2 interface.
High CVSS: 7.5 Yayın: 2025-01-21 22:15:11

CVE-2024-24442

A NULL pointer dereference in the ngap_app::handle_receive routine of OpenAirInterface CN5G AMF (oai-cn5g-amf) up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a crafted NGAP message.
High CVSS: 8.6 Yayın: 2025-01-21 22:15:10

CVE-2023-50733

A Server-Side Request Forgery (SSRF) vulnerability has been identified in the Web Services feature of newer Lexmark devices.
Critical CVSS: 9.8 Yayın: 2025-01-21 22:15:09

CVE-2023-27113

pearProjectApi v2.8.10 was discovered to contain a SQL injection vulnerability via the organizationCode parameter at project.php.
Critical CVSS: 9.8 Yayın: 2025-01-21 22:15:09

CVE-2023-27112

pearProjectApi v2.8.10 was discovered to contain a SQL injection vulnerability via the projectCode parameter at project.php.
High CVSS: 7.3 Yayın: 2025-01-21 21:15:24

CVE-2025-21571

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.24 and prior to 7.1.6. Easily exploitable vulnerability allows high privileged attacker with logon t…
Medium CVSS: 6.1 Yayın: 2025-01-21 21:15:24

CVE-2025-21570

Vulnerability in the Oracle Life Sciences Argus Safety product of Oracle Health Sciences Applications (component: Login). The supported version that is affected is 8.2.3. Easily exploitable vulnerability allows unauthenticated attacker with network…
Medium CVSS: 6.6 Yayın: 2025-01-21 21:15:23

CVE-2025-21569

Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Web Services). The supported version that is affected is 11.2.19.0.000. Difficult to exploit vulnerability allows high privileged attacker with…
Medium CVSS: 4.5 Yayın: 2025-01-21 21:15:23

CVE-2025-21568

Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and Security). The supported version that is affected is 11.2.19.0.000. Easily exploitable vulnerability allows high privileged attacker…
Medium CVSS: 4.3 Yayın: 2025-01-21 21:15:23

CVE-2025-21567

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via mu…
Medium CVSS: 6.5 Yayın: 2025-01-21 21:15:23

CVE-2025-21566

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple prot…
High CVSS: 7.5 Yayın: 2025-01-21 21:15:23

CVE-2025-21565

Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Install). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to c…
High CVSS: 8.1 Yayın: 2025-01-21 21:15:23

CVE-2025-21564

Vulnerability in the Oracle Agile PLM Framework product of Oracle Supply Chain (component: Agile Integration Services). The supported version that is affected is 9.3.6. Easily exploitable vulnerability allows low privileged attacker with network ac…
Medium CVSS: 5.4 Yayın: 2025-01-21 21:15:22

CVE-2025-21561

Vulnerability in the PeopleSoft Enterprise SCM Purchasing product of Oracle PeopleSoft (component: Purchasing). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via H…