Autore: Angelo Barbosa

CVE-2023-46272 | Extreme Networks HiveOS ah_auth stack-based overflow (ZDI-23-1765)

A vulnerability classified as critical was found in Extreme Networks HiveOS. This vulnerability affects the function ah_auth. The manipulation leads to stack-based buffer overflow. This vulnerability was named CVE-2023-46272. The attack needs to be initiated within the local network. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2023-46271 | Extreme Networks AP410C ah_webui improper authentication (ZDI-23-1766)

A vulnerability classified as critical has been found in Extreme Networks AP410C. This affects the function ah_webui. The manipulation leads to improper authentication. This vulnerability is uniquely identified as CVE-2023-46271. The attack needs to be done within the local network. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2023-45725 | Apache CouchDB up to 3.3.2 Design Document improper authorization

A vulnerability was found in Apache CouchDB up to 3.3.2. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Design Document Handler. The manipulation leads to improper authorization. This vulnerability is handled as CVE-2023-45725. The attack can only be initiated within the local network. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2023-50247 | H2O up to 2.3.0-beta2 QUIC Stack allocation of resources

A vulnerability was found in H2O up to 2.3.0-beta2. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component QUIC Stack. The manipulation leads to allocation of resources. This vulnerability is known as CVE-2023-50247. The attack can be launched remotely. There is no exploit available. It is recommended to apply a patch to fix this...

Per saperne di più

CVE-2023-34064 | VMware Workspace ONE Launcher 22.x/23.x Edge Panel information disclosure (VMSA-2023-0027)

A vulnerability was found in VMware Workspace ONE Launcher 22.x/23.x. It has been classified as problematic. Affected is an unknown function of the component Edge Panel. The manipulation leads to information disclosure. This vulnerability is traded as CVE-2023-34064. It is possible to launch the attack on the physical device. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più