A vulnerability described as critical has been identified in Oracle Communications Session Border Controller 8.4/9.0. Impacted is an unknown function of the component Lodash. The manipulation results in command injection.
This vulnerability was named CVE-2021-23337. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability, which was classified as critical, has been found in Oracle Communications Design Studio 7.4.2. This issue affects some unknown processing of the component Lodash. The manipulation leads to command injection.
This vulnerability is documented as CVE-2021-23337. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability marked as critical has been reported in Oracle Communications Cloud Native Core Policy 1.11.0. This issue affects some unknown processing of the component Lodash. The manipulation leads to command injection.
This vulnerability is uniquely identified as CVE-2021-23337. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability, which was classified as very critical, was found in Sparx Systems Enterprise Architect up to 17.1. The impacted element is an unknown function. Such manipulation leads to use of client-side authentication.
This vulnerability is documented as CVE-2026-42098. The attack can be executed remotely. There is not any exploit available.
A vulnerability was found in lodash up to 4.17.20 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Template Handler. The manipulation results in command injection.
This vulnerability is known as CVE-2021-23337. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability described as critical has been identified in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3. This issue affects the function remove_waiter of the component rtmutex. Such manipulation leads to use after free.
This vulnerability is documented as CVE-2026-43499. The attack requires being on the local network. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as critical has been found in Linux Kernel up to 6.6.139/6.12.85/6.18.26/7.0.3/7.1-rc1. Impacted is the function ipv6_rpl_srh_rcv of the component RFC 6554 Source Routing Header Handler. Performing a manipulation results in out-of-bounds write.
This vulnerability is reported as CVE-2026-43501. The attacker must have access to the local network to execute the attack. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Linux Kernel up to 6.6.139/6.12.87/6.18.29/7.0.6/7.1-rc2. The affected element is the function rds_message_purge. Executing a manipulation can lead to privilege escalation.
This vulnerability appears as CVE-2026-43502. The attacker needs to be present on the local network. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability was found in Linux Kernel up to 7.0.6/7.1-rc2 and classified as critical. Affected is the function prime_handle_to_fd of the component ivpu. Such manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2026-43498. The attack can only be initiated within the local network. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability labeled as problematic has been found in Apache CXF up to 3.6.10/4.1.5/4.2.0. This affects an unknown function of the component Certificate Handler. Such manipulation leads to ldap injection.
This vulnerability is documented as CVE-2026-44930. The attack requires being on the local network. There is not any exploit available.
The affected component should be upgraded.
A vulnerability marked as problematic has been reported in Apache CXF up to 3.6.10/4.1.5/4.2.0. This impacts an unknown function of the component WS-Transfer Module. Performing a manipulation results in xml external entity reference.
This vulnerability is reported as CVE-2026-44618. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability identified as critical has been detected in Apache CXF up to 3.6.10/4.1.5/4.2.0. The impacted element is an unknown function of the component JMS Configuration Handler. This manipulation causes improper input validation.
This vulnerability is registered as CVE-2026-44417. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
A vulnerability was found in Osoft Paint Production Management up to 2.0. It has been classified as critical. This affects an unknown function. This manipulation causes sql injection.
This vulnerability appears as CVE-2023-35065. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability was found in BMA Personnel Tracking System. It has been rated as critical. Affected is an unknown function. Performing a manipulation results in sql injection.
This vulnerability is known as CVE-2023-35068. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.
A vulnerability categorized as critical has been discovered in Mava Hotel Management System up to 1.x. Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to sql injection.
This vulnerability is handled as CVE-2023-3616. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability labeled as critical has been found in Coyav Travel Proagent. This affects an unknown part. The manipulation results in sql injection.
This vulnerability was named CVE-2023-35072. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.
A vulnerability has been found in Bookreen up to 2.x and classified as critical. The impacted element is an unknown function. This manipulation causes unrestricted upload.
This vulnerability is tracked as CVE-2023-3375. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
A vulnerability classified as critical has been found in MRV Tech Logging Administration Panel. This affects an unknown function. Performing a manipulation results in sql injection.
This vulnerability is known as CVE-2023-35071. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.