| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Azure Apache Ambari Spoofing Vulnerability |
| Service Fabric Explorer Spoofing Vulnerability |
| Azure DevOps Server Cross-Site Scripting Vulnerability |
| Azure Data Box Gateway Remote Code Execution Vulnerability |
| Azure Machine Learning Compute Instance Information Disclosure Vulnerability |
| Azure App Service on Azure Stack Hub Elevation of Privilege Vulnerability |
| Azure DevOps Server Remote Code Execution Vulnerability |
| Azure Service Fabric Container Elevation of Privilege Vulnerability |
| An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps to elevate privileges over a network. |
| Azure Network Watcher VM Agent Elevation of Privilege Vulnerability |
| Azure CycleCloud Remote Code Execution Vulnerability |
| Azure Network Watcher VM Agent Elevation of Privilege Vulnerability |
| Azure Stack Hub Elevation of Privilege Vulnerability |
| Azure Stack Hub Elevation of Privilege Vulnerability |
| Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. An attacker can cause remote code execution due to memory overflow vulnerabilities in Azure RTOS NETX Duo. The affected components include processes/functions related to ftp and sntp in RTOS v6.2.1 and below. The fixes have been included in NetX Duo release 6.3.0. Users are advised to upgrade. There are no known workarounds for this vulnerability. |
| The UAMQP is a general purpose C library for AMQP 1.0. During a call to open_get_offered_capabilities, a memory allocation may fail causing a use-after-free issue and if a client called it during connection communication it may cause a remote code execution. Users are advised to update the submodule with commit `30865c9c`. There are no known workarounds for this vulnerability. |
| NVIDIA GPU Driver for Windows and Linux contains a vulnerability where an improper check or improper handling of exception conditions might lead to denial of service. |
| NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where a user can cause an untrusted pointer dereference by executing a driver API. A successful exploit of this vulnerability might lead to denial of service, information disclosure, and data tampering. |
| NVIDIA GPU driver for Windows and Linux contains a vulnerability where a user can cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. |
| NVIDIA vGPU software for Windows and Linux contains a vulnerability where unprivileged users could execute privileged operations on the host. A successful exploit of this vulnerability might lead to data tampering, escalation of privileges, and denial of service. |