2111
|
7.5 |
HIGH
Network
loytec
|
linx-212_firmware lvis-3me12-a1_firmware liob-586_firmware
|
LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) use cleartext HTTP for login.
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2023-46382
|
2024-09-20 05:15 |
2023-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
2112
|
8.2 |
HIGH
Network
loytec
|
linx-212_firmware lvis-3me12-a1_firmware liob-586_firmware
|
LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) lack authentication for the preinstalled version of LWEB-802 via an lweb802_pre/ U…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2023-46381
|
2024-09-20 05:15 |
2023-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
2113
|
7.5 |
HIGH
Network
loytec
|
linx-212_firmware lvis-3me12-a1_firmware liob-586_firmware
|
LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) send password-change requests via cleartext HTTP.
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2023-46380
|
2024-09-20 05:15 |
2023-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
2114
|
7.5 |
HIGH
Network
zoom
|
video_software_development_kit meeting_software_development_kit
|
Uncontrolled resource consumption in Zoom SDKs before 5.14.7 may allow an unauthenticated user to enable a denial of service via network access.
|
NVD-CWE-noinfo
|
CVE-2023-36533
|
2024-09-20 05:15 |
2023-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
2115
|
7.8 |
HIGH
Local
|
zoom
|
rooms
|
Improper privilege management in Zoom Rooms for Windows before version 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
|
NVD-CWE-noinfo
|
CVE-2023-36537
|
2024-09-20 05:15 |
2023-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2116
|
7.8 |
HIGH
Local
|
zoom
|
rooms
|
Insecure temporary file in the installer for Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user to enable an escalation of privilege via local access.
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2023-34119
|
2024-09-20 05:15 |
2023-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2117
|
7.8 |
HIGH
Local
|
zoom
|
rooms
|
Improper privilege management in Zoom Rooms for Windows before version 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
|
NVD-CWE-noinfo
|
CVE-2023-34118
|
2024-09-20 05:15 |
2023-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2118
|
8.8 |
HIGH
Network
|
zoom
|
zoom
|
Improper input validation in the Zoom Desktop Client for Windows before version 5.15.0 may allow an unauthorized user to enable an escalation of privilege via network access.
|
NVD-CWE-noinfo
|
CVE-2023-34116
|
2024-09-20 05:15 |
2023-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2119
|
8.8 |
HIGH
Network
|
zoom
|
zoom rooms virtual_desktop_infrastructure
|
Improper input validation in the Zoom for Windows, Zoom Rooms, Zoom VDI Windows Meeting clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privilege via …
|
NVD-CWE-noinfo
|
CVE-2023-34121
|
2024-09-20 05:15 |
2023-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2120
|
7.8 |
HIGH
Local
|
zoom
|
virtual_desktop_infrastructure
|
Improper privilege management in Zoom for Windows, Zoom Rooms for Windows, and Zoom VDI for Windows clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privi…
|
NVD-CWE-noinfo
|
CVE-2023-34120
|
2024-09-20 05:15 |
2023-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|