VYPR

CVEs

102,253 total · page 1169 of 2,046

  • CVE-2022-24528HigApr 15, 2022
    risk 0.57cvss 8.8epss 0.02

    Remote Procedure Call Runtime Remote Code Execution Vulnerability

  • CVE-2022-24527HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.01

    Microsoft Endpoint Configuration Manager Elevation of Privilege Vulnerability

  • CVE-2022-24521HigKEVApr 15, 2022
    risk 0.69cvss 7.8epss 0.07

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

  • CVE-2022-24513HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.01

    Visual Studio Elevation of Privilege Vulnerability

  • CVE-2022-24500HigApr 15, 2022
    risk 0.60cvss 8.8epss 0.37

    Windows SMB Remote Code Execution Vulnerability

  • CVE-2022-24499HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.01

    Windows Installer Elevation of Privilege Vulnerability

  • CVE-2022-24496HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.01

    Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability

  • CVE-2022-24495HigApr 15, 2022
    risk 0.46cvss 7.0epss 0.01

    Windows Direct Show Remote Code Execution Vulnerability

  • CVE-2022-24494HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.02

    Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

  • CVE-2022-24492HigApr 15, 2022
    risk 0.57cvss 8.8epss 0.03

    Remote Procedure Call Runtime Remote Code Execution Vulnerability

  • CVE-2022-24490HigApr 15, 2022
    risk 0.53cvss 8.1epss 0.03

    Windows Hyper-V Shared Virtual Hard Disks Information Disclosure Vulnerability

  • CVE-2022-24489HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.00

    Cluster Client Failover (CCF) Elevation of Privilege Vulnerability

  • CVE-2022-24488HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.01

    Windows Desktop Bridge Elevation of Privilege Vulnerability

  • CVE-2022-24487HigApr 15, 2022
    risk 0.57cvss 8.8epss 0.02

    Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability

  • CVE-2022-24486HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.01

    Windows Kerberos Elevation of Privilege Vulnerability

  • CVE-2022-24485HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    Win32 File Enumeration Remote Code Execution Vulnerability

  • CVE-2022-24482HigApr 15, 2022
    risk 0.46cvss 7.0epss 0.00

    Windows ALPC Elevation of Privilege Vulnerability

  • CVE-2022-24481HigApr 15, 2022
    risk 0.52cvss 7.8epss 0.17

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

  • CVE-2022-24479HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.01

    Connected User Experiences and Telemetry Elevation of Privilege Vulnerability

  • CVE-2022-24474HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.07

    Windows Win32k Elevation of Privilege Vulnerability

  • CVE-2022-24473HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.02

    Microsoft Excel Remote Code Execution Vulnerability

  • CVE-2022-24472HigApr 15, 2022
    risk 0.52cvss 8.0epss 0.02

    Microsoft SharePoint Server Spoofing Vulnerability

  • CVE-2022-23259HigApr 15, 2022
    risk 0.57cvss 8.8epss 0.03

    Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability

  • CVE-2022-23257HigApr 15, 2022
    risk 0.57cvss 8.8epss 0.01

    Windows Hyper-V Remote Code Execution Vulnerability

  • CVE-2022-22009HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.01

    Windows Hyper-V Remote Code Execution Vulnerability

  • CVE-2022-22008HigApr 15, 2022
    risk 0.51cvss 7.8epss 0.00

    Windows Hyper-V Remote Code Execution Vulnerability

  • CVE-2022-21983HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    Win32 Stream Enumeration Remote Code Execution Vulnerability

  • CVE-2022-27369HigApr 15, 2022
    risk 0.47cvss 7.2epss 0.01

    Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component news_News.php_hy.

  • CVE-2022-27368HigApr 15, 2022
    risk 0.47cvss 7.2epss 0.01

    Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Lists.php_zhuan.

  • CVE-2022-27367HigApr 15, 2022
    risk 0.47cvss 7.2epss 0.01

    Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Topic.php_del.

  • CVE-2022-27366HigApr 15, 2022
    risk 0.47cvss 7.2epss 0.01

    Cscms Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the component dance_Dance.php_hy.

  • CVE-2022-27365HigApr 15, 2022
    risk 0.47cvss 7.2epss 0.01

    Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Dance.php_del.

  • CVE-2022-27257HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.01

    A PHP Local File Inclusion vulneraility in the default Redbasic theme for Hubzilla before version 7.2 allows remote attackers to include arbitrary php files via the schema parameter.

  • CVE-2021-44510HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, attackers can cause a calculation of the size of calls to memset in op_fnj3 in sr_port/op_fnj3.c to result in an extremely large value in order to cause a segmentation…

  • CVE-2021-44509HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, attackers can cause an integer underflow of the size of calls to memset in op_fnj3 in sr_port/op_fnj3.c in order to cause a segmentation fault and crash the application.

  • CVE-2021-44508HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). A lack of NULL checks in calls to ious_open in sr_unix/ious_open.c allows attackers to crash the application by dereferencing a NULL pointer.

  • CVE-2021-44507HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). A lack of parameter validation in calls to memcpy in str_tok in sr_unix/ztimeoutroutines.c allows attackers to attempt to read from a NULL pointer.

  • CVE-2021-44506HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). A lack of input validation in calls to do_verify in sr_unix/do_verify.c allows attackers to attempt to jump to a NULL pointer by corrupting a function pointer.

  • CVE-2021-44505HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can cause a NULL pointer dereference after calls to ZPrint.

  • CVE-2021-44504HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can cause a size variable, stored as an signed int, to equal an extremely large value, which is interpreted as a negative value during a check. This value is…

  • CVE-2021-44503HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can cause a call to va_arg on an empty variadic parameter list, most likely causing a memory segmentation fault.

  • CVE-2021-44502HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can control the size of a memset that occurs in calls to util_format in sr_unix/util_output.c.

  • CVE-2021-44501HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can cause calls to ZRead to crash due to a NULL pointer dereference.

  • CVE-2021-44500HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). A lack of input validation in calls to eb_div in sr_port/eb_muldiv.c allows attackers to crash the application by performing a divide by zero.

  • CVE-2021-44499HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can cause a call to $Extract to force an signed integer holding the size of a buffer to take on a large negative number, which is then used as the length of…

  • CVE-2021-44498HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, attackers can cause a type to be incorrectly initialized in the function f_incr in sr_port/f_incr.c and cause a crash due to a NULL pointer dereference.

  • CVE-2021-44497HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, can cause the bounds of a for loop to be miscalculated, which leads to a use after free condition a pointer is pushed into previously free memory by the loop.

  • CVE-2021-44495HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause a NULL pointer dereference after calls to ZPrint.

  • CVE-2021-44494HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause calls to ZRead to crash due to a NULL pointer dereference.

  • CVE-2021-44493HigApr 15, 2022
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause a call to $Extract to force an signed integer holding the size of a buffer to take on a large negative number, which is then used as the length…