Common Vulnerabilities and Exposures

View Source

CVE-2023-46954

SQL Injection vulnerability in Relativity ODA LLC RelativityOne v.12.1.537.3 Patch 2 and earlier allows a remote attacker to execute arbitrary code via the name parameter.

  • 2023-11-03T03:15:07Z
View Source

CVE-2023-46947

Subrion 4.2.1 has a remote command execution vulnerability in the backend.

  • 2023-11-03T13:15:08Z
View Source

CVE-2023-46931

GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in ffdmx_parse_side_data /afltest/gpac/src/filters/ff_dmx.c:202:14 in gpac/MP4Box.

  • 2023-11-01T14:15:38Z
View Source

CVE-2023-46930

GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_isom_find_od_id_for_track /afltest/gpac/src/isomedia/media_odf.c:522:14.

  • 2023-11-01T14:15:38Z
View Source

CVE-2023-46928

GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_media_change_pl /afltest/gpac/src/media_tools/isom_tools.c:3293:42.

  • 2023-11-01T15:15:08Z
View Source

CVE-2023-46927

GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in gf_isom_use_compact_size gpac/src/isomedia/isom_write.c:3403:3 in gpac/MP4Box.

  • 2023-11-01T15:15:08Z
View Source

CVE-2023-46925

Reportico 7.1.21 is vulnerable to Cross Site Scripting (XSS).

  • 2023-11-02T17:15:11Z
View Source

CVE-2023-46911

There is a Cross Site Scripting (XSS) vulnerability in the choose_style_tree.do interface of Jspxcms v10.2.0 backend.

  • 2023-11-01T17:15:11Z

Copyright @2023 ZAMBIA CIRT