| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-30142 | Hig | 0.49 | 7.5 | 0.02 | Jun 15, 2022 | Windows File History Remote Code Execution Vulnerability | ||
| CVE-2022-30141 | Hig | 0.53 | 8.1 | 0.02 | Jun 15, 2022 | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability | ||
| CVE-2022-30140 | Hig | 0.49 | 7.5 | 0.02 | Jun 15, 2022 | Windows iSCSI Discovery Service Remote Code Execution Vulnerability | ||
| CVE-2022-30139 | Hig | 0.49 | 7.5 | 0.02 | Jun 15, 2022 | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability | ||
| CVE-2022-30135 | Hig | 0.51 | 7.8 | 0.01 | Jun 15, 2022 | Windows Media Center Elevation of Privilege Vulnerability | ||
| CVE-2022-30132 | Hig | 0.51 | 7.8 | 0.01 | Jun 15, 2022 | Windows Container Manager Service Elevation of Privilege Vulnerability | ||
| CVE-2022-30131 | Hig | 0.51 | 7.8 | 0.01 | Jun 15, 2022 | Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability | ||
| CVE-2022-29149 | Hig | 0.51 | 7.8 | 0.01 | Jun 15, 2022 | Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability | ||
| CVE-2022-29143 | Hig | 0.49 | 7.5 | 0.02 | Jun 15, 2022 | Microsoft SQL Server Remote Code Execution Vulnerability | ||
| CVE-2022-29119 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | HEVC Video Extensions Remote Code Execution Vulnerability | ||
| CVE-2022-29111 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | HEVC Video Extensions Remote Code Execution Vulnerability | ||
| CVE-2022-22021 | Hig | 0.54 | 8.3 | 0.03 | Jun 15, 2022 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | ||
| CVE-2022-22018 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | HEVC Video Extensions Remote Code Execution Vulnerability | ||
| CVE-2022-20203 | Hig | 0.51 | 7.8 | 0.00 | Jun 15, 2022 | In multiple locations of the nanopb library, there is a possible way to corrupt memory when decoding untrusted protobuf files. This could lead to local escalation of privilege,with no additional execution privileges needed. User interaction is not needed for exploitation. | ||
| CVE-2022-32372 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject.php?id=. | ||
| CVE-2022-32371 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher.php?id=. | ||
| CVE-2022-32370 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_classroom.php?id=. | ||
| CVE-2022-30649 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim… | ||
| CVE-2022-30648 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must… | ||
| CVE-2022-30647 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must… | ||
| CVE-2022-24946 | Hig | 0.49 | 7.5 | 0.02 | Jun 15, 2022 | Improper Resource Locking vulnerability in Mitsubishi Electric MELSEC iQ-R Series R12CCPU-V firmware versions "16" and prior, Mitsubishi Electric MELSEC-Q Series Q03UDECPU the first 5 digits of serial No. "24061" and prior, Mitsubishi Electric MELSEC-Q Series… | ||
| CVE-2022-22788 | Hig | 0.46 | 7.1 | 0.01 | Jun 15, 2022 | The Zoom Opener installer is downloaded by a user from the Launch meeting page, when attempting to join a meeting without having the Zoom Meeting Client installed. The Zoom Opener installer for Zoom Client for Meetings before version 5.10.3 and Zoom Rooms for Conference Room for… | ||
| CVE-2022-21938 | Hig | 0.53 | 8.1 | 0.00 | Jun 15, 2022 | Under certain circumstances, a vulnerability in Metasys ADS/ADX/OAS 10 versions prior to 10.1.5 and Metasys ADS/ADX/OAS 11 versions prior to 11.0.2 could allow a user to inject malicious code into the MUI Graphics web interface. | ||
| CVE-2022-32374 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject_routing.php?id=. | ||
| CVE-2022-32373 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_exam.php?id=. | ||
| CVE-2022-32368 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_grade.php?id=. | ||
| CVE-2022-28849 | Hig | 0.51 | 7.8 | 0.03 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | ||
| CVE-2022-28848 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious… | ||
| CVE-2022-28847 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious… | ||
| CVE-2022-28846 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious… | ||
| CVE-2022-28845 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious… | ||
| CVE-2022-28844 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious… | ||
| CVE-2022-28843 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious… | ||
| CVE-2022-28842 | Hig | 0.51 | 7.8 | 0.03 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | ||
| CVE-2022-28841 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious… | ||
| CVE-2022-28840 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious… | ||
| CVE-2022-28839 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious… | ||
| CVE-2022-28226 | Hig | 0.51 | 7.8 | 0.00 | Jun 15, 2022 | Local privilege vulnerability in Yandex Browser for Windows prior to 22.3.3.801 allows a local, low privileged, attacker to execute arbitary code with the SYSTEM privileges through manipulating temporary files in directory with insecure permissions during Yandex Browser update… | ||
| CVE-2022-28225 | Hig | 0.51 | 7.8 | 0.00 | Jun 15, 2022 | Local privilege vulnerability in Yandex Browser for Windows prior to 22.3.3.684 allows a local, low privileged, attacker to execute arbitary code with the SYSTEM privileges through manipulating symlinks to installation file during Yandex Browser update process. | ||
| CVE-2022-21937 | Hig | 0.57 | 8.7 | 0.01 | Jun 15, 2022 | Under certain circumstances, a vulnerability in Metasys ADS/ADX/OAS 10 versions prior to 10.1.5 and Metasys ADS/ADX/OAS 11 versions prior to 11.0.2 could allow a user to inject malicious code into the web interface. | ||
| CVE-2022-21935 | Hig | 0.49 | 7.5 | 0.01 | Jun 15, 2022 | A vulnerability in Metasys ADS/ADX/OAS 10 versions prior to 10.1.5 and Metasys ADS/ADX/OAS 11 versions prior to 11.0.2 allows unverified password change. | ||
| CVE-2021-43755 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe After Effects versions 22.0 (and earlier) and 18.4.2 (and earlier) are affected by an Out-of-bounds Write vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is… | ||
| CVE-2021-42735 | Hig | 0.51 | 7.8 | 0.02 | Jun 15, 2022 | Adobe Photoshop version 22.5.1 (and earlier versions ) is affected by an Access of Memory Location After End of Buffer vulnerability, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability. | ||
| CVE-2021-25261 | Hig | 0.51 | 7.8 | 0.00 | Jun 15, 2022 | Local privilege vulnerability in Yandex Browser for Windows prior to 22.5.0.862 allows a local, low privileged, attacker to execute arbitary code with the SYSTEM privileges through manipulating symlinks to installation file during Yandex Browser update process. | ||
| CVE-2022-32433 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to Arbitrary code execution via ip/school/view/all_teacher.php. | ||
| CVE-2022-32381 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_admin_profile.php?my_index=. | ||
| CVE-2022-32380 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_student_subject.php?index=. | ||
| CVE-2022-32379 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_parents_profile.php?my_index=. | ||
| CVE-2022-32378 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher_profile.php?my_index=. | ||
| CVE-2022-32377 | Hig | 0.47 | 7.2 | 0.01 | Jun 15, 2022 | itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_exam_timetable.php?id=. |
- risk 0.49cvss 7.5epss 0.02
Windows File History Remote Code Execution Vulnerability
- risk 0.53cvss 8.1epss 0.02
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows iSCSI Discovery Service Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Media Center Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Container Manager Service Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
- risk 0.49cvss 7.5epss 0.02
Microsoft SQL Server Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
HEVC Video Extensions Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
HEVC Video Extensions Remote Code Execution Vulnerability
- risk 0.54cvss 8.3epss 0.03
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
HEVC Video Extensions Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.00
In multiple locations of the nanopb library, there is a possible way to corrupt memory when decoding untrusted protobuf files. This could lead to local escalation of privilege,with no additional execution privileges needed. User interaction is not needed for exploitation.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject.php?id=.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher.php?id=.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_classroom.php?id=.
- risk 0.51cvss 7.8epss 0.02
Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim…
- risk 0.51cvss 7.8epss 0.02
Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must…
- risk 0.51cvss 7.8epss 0.02
Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must…
- risk 0.49cvss 7.5epss 0.02
Improper Resource Locking vulnerability in Mitsubishi Electric MELSEC iQ-R Series R12CCPU-V firmware versions "16" and prior, Mitsubishi Electric MELSEC-Q Series Q03UDECPU the first 5 digits of serial No. "24061" and prior, Mitsubishi Electric MELSEC-Q Series…
- risk 0.46cvss 7.1epss 0.01
The Zoom Opener installer is downloaded by a user from the Launch meeting page, when attempting to join a meeting without having the Zoom Meeting Client installed. The Zoom Opener installer for Zoom Client for Meetings before version 5.10.3 and Zoom Rooms for Conference Room for…
- risk 0.53cvss 8.1epss 0.00
Under certain circumstances, a vulnerability in Metasys ADS/ADX/OAS 10 versions prior to 10.1.5 and Metasys ADS/ADX/OAS 11 versions prior to 11.0.2 could allow a user to inject malicious code into the MUI Graphics web interface.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject_routing.php?id=.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_exam.php?id=.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_grade.php?id=.
- risk 0.51cvss 7.8epss 0.03
Adobe Bridge version 12.0.1 (and earlier versions) is affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
- risk 0.51cvss 7.8epss 0.02
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…
- risk 0.51cvss 7.8epss 0.02
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…
- risk 0.51cvss 7.8epss 0.02
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…
- risk 0.51cvss 7.8epss 0.02
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…
- risk 0.51cvss 7.8epss 0.02
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…
- risk 0.51cvss 7.8epss 0.02
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…
- risk 0.51cvss 7.8epss 0.03
Adobe Bridge version 12.0.1 (and earlier versions) is affected by a Use-After-Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
- risk 0.51cvss 7.8epss 0.02
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…
- risk 0.51cvss 7.8epss 0.02
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…
- risk 0.51cvss 7.8epss 0.02
Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious…
- risk 0.51cvss 7.8epss 0.00
Local privilege vulnerability in Yandex Browser for Windows prior to 22.3.3.801 allows a local, low privileged, attacker to execute arbitary code with the SYSTEM privileges through manipulating temporary files in directory with insecure permissions during Yandex Browser update…
- risk 0.51cvss 7.8epss 0.00
Local privilege vulnerability in Yandex Browser for Windows prior to 22.3.3.684 allows a local, low privileged, attacker to execute arbitary code with the SYSTEM privileges through manipulating symlinks to installation file during Yandex Browser update process.
- risk 0.57cvss 8.7epss 0.01
Under certain circumstances, a vulnerability in Metasys ADS/ADX/OAS 10 versions prior to 10.1.5 and Metasys ADS/ADX/OAS 11 versions prior to 11.0.2 could allow a user to inject malicious code into the web interface.
- risk 0.49cvss 7.5epss 0.01
A vulnerability in Metasys ADS/ADX/OAS 10 versions prior to 10.1.5 and Metasys ADS/ADX/OAS 11 versions prior to 11.0.2 allows unverified password change.
- risk 0.51cvss 7.8epss 0.02
Adobe After Effects versions 22.0 (and earlier) and 18.4.2 (and earlier) are affected by an Out-of-bounds Write vulnerability due to insecure handling of a malicious file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is…
- risk 0.51cvss 7.8epss 0.02
Adobe Photoshop version 22.5.1 (and earlier versions ) is affected by an Access of Memory Location After End of Buffer vulnerability, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.
- risk 0.51cvss 7.8epss 0.00
Local privilege vulnerability in Yandex Browser for Windows prior to 22.5.0.862 allows a local, low privileged, attacker to execute arbitary code with the SYSTEM privileges through manipulating symlinks to installation file during Yandex Browser update process.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to Arbitrary code execution via ip/school/view/all_teacher.php.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_admin_profile.php?my_index=.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_student_subject.php?index=.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_parents_profile.php?my_index=.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher_profile.php?my_index=.
- risk 0.47cvss 7.2epss 0.01
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_exam_timetable.php?id=.