Vulnerabilities (CVE)

Filtered by CWE-782
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-32370 2024-07-03 N/A 9.8 CRITICAL
An issue in HSC Cybersecurity HC Mailinspector 5.2.17-3 through 5.2.18 allows a remote attacker to obtain sensitive information via a crafted payload to the id parameter in the mliSystemUsers.php component.
CVE-2023-35841 2024-05-14 N/A 7.8 HIGH
Exposed IOCTL with Insufficient Access Control in Phoenix WinFlash Driver on Windows allows Privilege Escalation which allows for modification of system firmware.This issue affects WinFlash Driver: before 4.5.0.0.