VYPR

CVEs

102,398 total · page 1133 of 2,048

  • CVE-2022-33021HigJun 29, 2022
    risk 0.49cvss 7.5epss 0.01

    CVA6 commit 909d85a accesses invalid memory when reading the value of MHPMCOUNTER30.

  • CVE-2017-20112HigJun 29, 2022
    risk 0.51cvss 7.8epss 0.00

    A vulnerability has been found in IVPN Client 2.6.6120.33863 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument --up cmd leads to improper privilege management. The attack needs to be approached locally. The…

  • CVE-2017-20111HigJun 29, 2022
    risk 0.48cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, was found in Teleopti WFM 7.1.0. This affects an unknown part of the component Administration. The manipulation leads to improper privilege management. It is possible to initiate the attack remotely. The exploit has been…

  • CVE-2022-31883HigJun 28, 2022
    risk 0.57cvss 8.8epss 0.01

    Marval MSM v14.19.0.12476 is has an Insecure Direct Object Reference (IDOR) vulnerability. A low privilege user is able to see other users API Keys including the Admins API Keys.

  • CVE-2022-31230HigJun 28, 2022
    risk 0.53cvss 8.1epss 0.01

    Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain broken or risky cryptographic algorithm. A remote unprivileged malicious attacker could potentially exploit this vulnerability, leading to full system access.

  • CVE-2022-31106HigJun 28, 2022
    risk 0.00cvss 8.3epss 0.01

    Underscore.deep is a collection of Underscore mixins that operate on nested objects. Versions of `underscore.deep` prior to version 0.5.3 are vulnerable to a prototype pollution vulnerability. An attacker can craft a malicious payload and pass it to `deepFromFlat`, which would…

  • CVE-2022-28621HigJun 28, 2022
    risk 0.49cvss 7.5epss 0.01

    A remote disclosure of sensitive information vulnerability was discovered in HPE NonStop DSM/SCM version: T6031H03^ADP. HPE has provided a software update to resolve this vulnerability in HPE NonStop DSM/SCM.

  • CVE-2022-33108HigJun 28, 2022
    risk 0.51cvss 7.8epss 0.01

    XPDF v4.04 was discovered to contain a stack overflow vulnerability via the Object::Copy class of object.cc files.

  • CVE-2021-40553HigJun 28, 2022
    risk 0.57cvss 8.8epss 0.02

    piwigo 11.5.0 is affected by a remote code execution (RCE) vulnerability in the LocalFiles Editor.

  • CVE-2022-30563HigJun 28, 2022
    risk 0.48cvss 7.4epss 0.01

    When an attacker uses a man-in-the-middle attack to sniff the request packets with success logging in through ONVIF, he can log in to the device by replaying the user's login packet.

  • CVE-2022-30560HigJun 28, 2022
    risk 0.48cvss 7.4epss 0.01

    When an attacker obtaining the administrative account and password, or through a man-in-the-middle attack, the attacker could send a specified crafted packet to the vulnerable interface then lead the device to crash.

  • CVE-2022-23763HigJun 28, 2022
    risk 0.51cvss 7.8epss 0.00

    Origin validation error vulnerability in NeoRS’s ActiveX moudle allows attackers to download and execute arbitrary files. Remote attackers can use this vulerability to encourage users to access crafted web pages, causing damage such as malicious code infections.

  • CVE-2022-34750HigJun 28, 2022
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in MediaWiki through 1.38.1. The lemma length of a Wikibase lexeme is currently capped at a thousand characters. Unfortunately, this length is not validated, allowing much larger lexemes to be created, which introduces various denial-of-service attack…

  • CVE-2022-30997HigJun 28, 2022
    risk 0.47cvss 7.2epss 0.01

    Use of hard-coded credentials vulnerability exists in STARDOM FCN Controller and FCJ Controller R4.10 to R4.31, which may allow an attacker with an administrative privilege to read/change configuration settings or update the controller with tampered firmware.

  • CVE-2022-30707HigJun 28, 2022
    risk 0.57cvss 8.8epss 0.01

    Violation of secure design principles exists in the communication of CAMS for HIS. Affected products and versions are CENTUM series where LHS4800 is installed (CENTUM CS 3000 and CENTUM CS 3000 Small R3.08.10 to R3.09.00), CENTUM series where CAMS function is used (CENTUM VP,…

  • CVE-2022-29519HigJun 28, 2022
    risk 0.49cvss 7.5epss 0.00

    Cleartext transmission of sensitive information vulnerability exists in STARDOM FCN Controller and FCJ Controller R1.01 to R4.31, which may allow an adjacent attacker to login the affected products and alter device configuration settings or tamper with device firmware.

  • CVE-2021-41690HigJun 28, 2022
    risk 0.00cvss 7.5epss 0.02

    DCMTK through 3.6.6 does not handle memory free properly. The malloced memory for storing all file information are recorded in a global variable LST and are not freed properly. Sending specific requests to the dcmqrdb program can incur a memory leak. An attacker can use it to…

  • CVE-2021-41689HigJun 28, 2022
    risk 0.00cvss 7.5epss 0.02

    DCMTK through 3.6.6 does not handle string copy properly. Sending specific requests to the dcmqrdb program, it would query its database and copy the result even if the result is null, which can incur a head-based overflow. An attacker can use it to launch a DoS attack.

  • CVE-2021-41688HigJun 28, 2022
    risk 0.00cvss 7.5epss 0.02

    DCMTK through 3.6.6 does not handle memory free properly. The object in the program is free but its address is still used in other locations. Sending specific requests to the dcmqrdb program will incur a double free. An attacker can use it to launch a DoS attack.

  • CVE-2021-41687HigJun 28, 2022
    risk 0.00cvss 7.5epss 0.02

    DCMTK through 3.6.6 does not handle memory free properly. The program malloc a heap memory for parsing data, but does not free it when error in parsing. Sending specific requests to the dcmqrdb program incur the memory leak. An attacker can use it to launch a DoS attack.

  • CVE-2021-41460HigJun 28, 2022
    risk 0.49cvss 7.5epss 0.07

    ECShop 4.1.0 has SQL injection vulnerability, which can be exploited by attackers to obtain sensitive information.

  • CVE-2022-0624HigJun 28, 2022
    risk 0.41cvss 7.3epss 0.01

    Authorization Bypass Through User-Controlled Key in GitHub repository ionicabizau/parse-path prior to 5.0.0.

  • CVE-2017-20104HigJun 28, 2022
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in Simplessus 3.7.7. It has been declared as critical. This vulnerability affects unknown code of the component Cookie Handler. The manipulation of the argument UWA_SID leads to sql injection (Time). The attack can be initiated remotely. The exploit has…

  • CVE-2022-34134HigJun 28, 2022
    risk 0.00cvss 8.8epss 0.00

    Jorani v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /application/controllers/Users.php.

  • CVE-2022-31103HigJun 27, 2022
    risk 0.42cvss 7.5epss 0.01

    lettersanitizer is a DOM-based HTML email sanitizer for in-browser email rendering. All versions of lettersanitizer below 1.0.2 are affected by a denial of service issue when processing a CSS at-rule `@keyframes`. This package is depended on by…

  • CVE-2022-31101HigJun 27, 2022
    risk 0.50cvss 8.1epss 0.23

    prestashop/blockwishlist is a prestashop extension which adds a block containing the customer's wishlists. In affected versions an authenticated customer can perform SQL injection. This issue is fixed in version 2.1.1. Users are advised to upgrade. There are no known workarounds…

  • CVE-2022-33007HigJun 27, 2022
    risk 0.57cvss 8.8epss 0.01

    TRENDnet Wi-Fi routers TEW751DR v1.03 and TEW-752DRU v1.03 were discovered to contain a stack overflow via the function genacgi_main.

  • CVE-2022-31093HigJun 27, 2022
    risk 0.42cvss 7.5epss 0.02

    NextAuth.js is a complete open source authentication solution for Next.js applications. In affected versions an attacker can send a request to an app using NextAuth.js with an invalid `callbackUrl` query parameter, which internally is converted to a `URL` object. The URL…

  • CVE-2022-31092HigJun 27, 2022
    risk 0.42cvss 7.5epss 0.01

    Pimcore is an Open Source Data & Experience Management Platform. Pimcore offers developers listing classes to make querying data easier. This listing classes also allow to order or group the results based on one or more columns which should be quoted by default. The actual issue…

  • CVE-2022-31091HigJun 27, 2022
    risk 0.43cvss 7.7epss 0.01

    Guzzle, an extensible PHP HTTP client. `Authorization` and `Cookie` headers on requests are sensitive information. In affected versions on making a request which responds with a redirect to a URI with a different port, if we choose to follow it, we should remove the…

  • CVE-2022-31090HigJun 27, 2022
    risk 0.43cvss 7.7epss 0.02

    Guzzle, an extensible PHP HTTP client. `Authorization` headers on requests are sensitive information. In affected versions when using our Curl handler, it is possible to use the `CURLOPT_HTTPAUTH` option to specify an `Authorization` header. On making a request which responds…

  • CVE-2022-31094HigJun 27, 2022
    risk 0.00cvss 7.1epss 0.01

    ScratchTools is a web extension designed to make interacting with the Scratch programming language community (Scratching) easier. In affected versions anybody who uses the Recently Viewed Projects feature is vulnerable to having their account taken over if they view a project…

  • CVE-2022-31089HigJun 27, 2022
    risk 0.42cvss 7.5epss 0.01

    Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. In affected versions certain types of invalid files requests are not handled properly and can crash the server. If you are running multiple Parse Server instances in a…

  • CVE-2022-31087HigJun 27, 2022
    risk 0.00cvss 7.8epss 0.00

    LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 the tmp directory, which is accessible by /lam/tmp/, allows interpretation of .php (and .php5/.php4/.phpt/etc) files. An…

  • CVE-2022-31086HigJun 27, 2022
    risk 0.00cvss 8.8epss 0.02

    LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 incorrect regular expressions allow to upload PHP scripts to config/templates/pdf. This vulnerability could lead to a Remote…

  • CVE-2022-31084HigJun 27, 2022
    risk 0.00cvss 8.1epss 0.02

    LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 There are cases where LAM instantiates objects from arbitrary classes. An attacker can inject the first constructor…

  • CVE-2022-31081HigJun 27, 2022
    risk 0.00cvss 7.3epss 0.02

    HTTP::Daemon is a simple http server class written in perl. Versions prior to 6.15 are subject to a vulnerability which could potentially be exploited to gain privileged access to APIs or poison intermediate caches. It is uncertain how large the risks are, most Perl based…

  • CVE-2022-31034HigJun 27, 2022
    risk 0.47cvss 8.3epss 0.01

    Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. All versions of Argo CD starting with v0.11.0 are vulnerable to a variety of attacks when an SSO login is initiated from the Argo CD CLI or UI. The vulnerabilities are due to the use of insufficiently…

  • CVE-2022-28622HigJun 27, 2022
    risk 0.49cvss 7.5epss 0.01

    A potential security vulnerability has been identified in HPE StoreOnce Software. The SSH server supports weak key exchange algorithms which could lead to remote unauthorized access. HPE has made the following software update to resolve the vulnerability in HPE StoreOnce…

  • CVE-2017-20099HigJun 27, 2022
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in Analytics Stats Counter Statistics Plugin 1.2.2.5 and classified as critical. This issue affects some unknown processing. The manipulation leads to code injection. The attack may be initiated remotely.

  • CVE-2022-28171HigJun 27, 2022
    risk 0.56cvss 7.5epss 0.50

    The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to the insufficient input validation, attacker can exploit the vulnerability to execute restricted commands by sending messages with malicious commands to the…

  • CVE-2022-28168HigJun 27, 2022
    risk 0.49cvss 7.5epss 0.01

    In Brocade SANnav before Brocade SANnav v2.2.0.2 and Brocade SANnav2.1.1.8, encoded scp-server passwords are stored using Base64 encoding, which could allow an attacker able to access log files to easily decode the passwords.

  • CVE-2022-28166HigJun 27, 2022
    risk 0.49cvss 7.5epss 0.01

    In Brocade SANnav version before SANN2.2.0.2 and Brocade SANNav before 2.1.1.8, the implementation of TLS/SSL Server Supports the Use of Static Key Ciphers (ssl-static-key-ciphers) on ports 443 & 18082.

  • CVE-2022-26477HigJun 27, 2022
    risk 0.49cvss 7.5epss 0.02

    The Security Team noticed that the termination condition of the for loop in the readExternal method is a controllable variable, which, if tampered with, may lead to CPU exhaustion. As a fix, we added an upper bound and termination condition in the read and write logic. We…

  • CVE-2021-40941HigJun 27, 2022
    risk 0.49cvss 7.5epss 0.01

    In Bento4 1.6.0-638, there is an allocator is out of memory in the function AP4_Array<AP4_TrunAtom::Entry>::EnsureCapacity in Ap4Array.h:172, as demonstrated by GPAC. This can cause a denial of service (DOS).

  • CVE-2022-2140HigJun 27, 2022
    risk 0.57cvss 8.8epss 0.01

    Elcomplus SmartICS v2.3.4.0 does not neutralize user-controllable input, which allows an authenticated user to inject arbitrary code into specific parameters.

  • CVE-2021-33654HigJun 27, 2022
    risk 0.49cvss 7.5epss 0.01

    When performing the initialization operation of the Split operator, if a dimension in the input shape is 0, it will cause a division by 0 exception.

  • CVE-2021-33653HigJun 27, 2022
    risk 0.49cvss 7.5epss 0.01

    When performing the derivation shape operation of the SpaceToBatch operator, if there is a value of 0 in the parameter block_shape element, it will cause a division by 0 exception.

  • CVE-2021-33652HigJun 27, 2022
    risk 0.49cvss 7.5epss 0.01

    When the Reduce operator run operation is executed, if there is a value of 0 in the parameter axis_sizes element, it will cause a division by 0 exception.

  • CVE-2021-33651HigJun 27, 2022
    risk 0.49cvss 7.5epss 0.01

    When performing the analytical operation of the DepthwiseConv2D operator, if the attribute depth_multiplier is 0, it will cause a division by 0 exception.