| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-23287 | Hig | 0.46 | 7.0 | 0.01 | Mar 9, 2022 | Windows ALPC Elevation of Privilege Vulnerability | ||
| CVE-2022-23286 | Hig | 0.46 | 7.0 | 0.04 | Mar 9, 2022 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | ||
| CVE-2022-23285 | Hig | 0.59 | 8.8 | 0.26 | Mar 9, 2022 | Remote Desktop Client Remote Code Execution Vulnerability | ||
| CVE-2022-23284 | Hig | 0.47 | 7.2 | 0.03 | Mar 9, 2022 | Windows Print Spooler Elevation of Privilege Vulnerability | ||
| CVE-2022-23283 | Hig | 0.46 | 7.0 | 0.00 | Mar 9, 2022 | Windows ALPC Elevation of Privilege Vulnerability | ||
| CVE-2022-23282 | Hig | 0.51 | 7.8 | 0.02 | Mar 9, 2022 | Paint 3D Remote Code Execution Vulnerability | ||
| CVE-2022-23277 | Hig | 0.63 | 8.8 | 0.40 | Mar 9, 2022 | Microsoft Exchange Server Remote Code Execution Vulnerability | ||
| CVE-2022-23266 | Hig | 0.51 | 7.8 | 0.01 | Mar 9, 2022 | Microsoft Defender for IoT Elevation of Privilege Vulnerability | ||
| CVE-2022-23265 | Hig | 0.47 | 7.2 | 0.03 | Mar 9, 2022 | Microsoft Defender for IoT Remote Code Execution Vulnerability | ||
| CVE-2022-22007 | Hig | 0.51 | 7.8 | 0.02 | Mar 9, 2022 | HEVC Video Extensions Remote Code Execution Vulnerability | ||
| CVE-2022-22006 | Hig | 0.51 | 7.8 | 0.02 | Mar 9, 2022 | HEVC Video Extensions Remote Code Execution Vulnerability | ||
| CVE-2022-21990 | Hig | 0.59 | 8.8 | 0.19 | Mar 9, 2022 | Remote Desktop Client Remote Code Execution Vulnerability | ||
| CVE-2022-21967 | Hig | 0.46 | 7.0 | 0.01 | Mar 9, 2022 | Xbox Live Auth Manager for Windows Elevation of Privilege Vulnerability | ||
| CVE-2021-36777 | Hig | 0.53 | 8.1 | 0.01 | Mar 9, 2022 | A Reliance on Untrusted Inputs in a Security Decision vulnerability in the login proxy of the openSUSE Build service allowed attackers to present users with a expected login form that then sends the clear text credentials to an attacker specified server. This issue affects:… | ||
| CVE-2022-0896 | Hig | 0.50 | 8.8 | 0.01 | Mar 9, 2022 | Improper Neutralization of Special Elements Used in a Template Engine in GitHub repository microweber/microweber prior to 1.3. | ||
| CVE-2022-25943 | Hig | 0.51 | 7.8 | 0.01 | Mar 9, 2022 | The installer of WPS Office for Windows versions prior to v11.2.0.10258 fails to configure properly the ACL for the directory where the service program is installed. | ||
| CVE-2022-26337 | Hig | 0.51 | 7.8 | 0.01 | Mar 8, 2022 | Trend Micro Password Manager (Consumer) installer version 5.0.0.1262 and below is vulnerable to an Uncontrolled Search Path Element vulnerability that could allow an attacker to use a specially crafted file to exploit the vulnerability and escalate local privileges on the… | ||
| CVE-2022-24739 | Hig | 0.41 | 7.3 | 0.01 | Mar 8, 2022 | alltube is an html front end for youtube-dl. On releases prior to 3.0.3, an attacker could craft a special HTML page to trigger either an open redirect attack or a Server-Side Request Forgery attack (depending on how AllTube is configured). The impact is mitigated by the fact… | ||
| CVE-2022-24716 | Hig | 0.10 | 7.5 | 0.89 | Mar 8, 2022 | Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Unauthenticated users can leak the contents of files of the local system accessible to the web-server user, including `icingaweb2` configuration files with database credentials. This… | ||
| CVE-2022-24715 | Hig | 0.04 | 8.5 | 0.15 | Mar 8, 2022 | Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Authenticated users, with access to the configuration, can create SSH resource files in unintended directories, leading to the execution of arbitrary code. This issue has been resolved… | ||
| CVE-2022-24713 | Hig | 0.43 | 7.5 | 0.14 | Mar 8, 2022 | regex is an implementation of regular expressions for the Rust language. The regex crate features built-in mitigations to prevent denial of service attacks caused by untrusted regexes, or untrusted input matched by trusted regexes. Those (tunable) mitigations already provide… | ||
| CVE-2022-25311 | Hig | 0.47 | 7.3 | 0.01 | Mar 8, 2022 | A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions). The affected software do not properly check privileges between users during the same web browser session, creating an unintended… | ||
| CVE-2022-24661 | Hig | 0.51 | 7.8 | 0.01 | Mar 8, 2022 | A vulnerability has been identified in Simcenter STAR-CCM+ Viewer (All versions < V2022.1). The starview+.exe contains a memory corruption vulnerability while parsing specially crafted .SCE files. This could allow an attacker to execute code in the context of the current process. | ||
| CVE-2022-24408 | Hig | 0.51 | 7.8 | 0.00 | Mar 8, 2022 | A vulnerability has been identified in SINUMERIK MC (All versions < V1.15 SP1), SINUMERIK ONE (All versions < V6.15 SP1). The sc SUID binary on affected devices provides several commands that are used to execute system commands or modify system files. A specific set of… | ||
| CVE-2022-24282 | Hig | 0.47 | 7.2 | 0.01 | Mar 8, 2022 | A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions). The affected system allows to upload JSON objects that are deserialized to Java objects. Due to insecure deserialization of… | ||
| CVE-2022-24281 | Hig | 0.47 | 7.2 | 0.03 | Mar 8, 2022 | A vulnerability has been identified in SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions). A privileged authenticated attacker could execute arbitrary commands in the local database by sending specially crafted requests to the webserver of the affected… | ||
| CVE-2021-42020 | Hig | 0.49 | 7.5 | 0.01 | Mar 8, 2022 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i802, RUGGEDCOM i802NC, RUGGEDCOM i803, RUGGEDCOM i803NC, RUGGEDCOM M2100, RUGGEDCOM M2100NC, RUGGEDCOM M2200, RUGGEDCOM M2200NC, RUGGEDCOM M969, RUGGEDCOM… | ||
| CVE-2021-42016 | Hig | 0.49 | 7.5 | 0.01 | Mar 8, 2022 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802, RUGGEDCOM i803, RUGGEDCOM M2100, RUGGEDCOM M2100F, RUGGEDCOM M2200, RUGGEDCOM M2200F, RUGGEDCOM M969, RUGGEDCOM M969F, RUGGEDCOM RMC30, RUGGEDCOM RMC8388 V4.X, RUGGEDCOM RMC8388 V5.X,… | ||
| CVE-2021-43944 | Hig | 0.47 | 7.2 | 0.02 | Mar 8, 2022 | This issue exists to document that a security improvement in the way that Jira Server and Data Center use templates has been implemented. Affected versions of Atlassian Jira Server and Data Center allowed remote attackers with system administrator permissions to execute… | ||
| CVE-2022-24738 | — | Hig | 0.46 | 8.1 | 0.01 | Mar 7, 2022 | Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. In versions of evmos prior to 2.0.1 attackers are able to drain unclaimed funds from user addresses. To do this an attacker must create a new chain which does not enforce signature verification and connects… | |
| CVE-2022-22351 | Hig | 0.56 | 8.6 | 0.01 | Mar 7, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged trusted host user to exploit a vulnerability in the nimsh daemon to cause a denial of service in the nimsh daemon on another trusted host. IBM X-Force ID: 220396 | ||
| CVE-2021-4199 | Hig | 0.51 | 7.8 | 0.01 | Mar 7, 2022 | Incorrect Permission Assignment for Critical Resource vulnerability in the crash handling component BDReinit.exe as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools for Windows allows a remote attacker to escalate local privileges to… | ||
| CVE-2022-0440 | Hig | 0.47 | 7.2 | 0.01 | Mar 7, 2022 | The Catch Themes Demo Import WordPress plugin before 2.1.1 does not validate one of the file to be imported, which could allow high privivilege admin to upload an arbitrary PHP file and gain RCE even in the case of an hardened blog (ie DISALLOW_UNFILTERED_HTML,… | ||
| CVE-2022-0439 | Hig | 0.58 | 8.8 | 0.04 | Mar 7, 2022 | The Email Subscribers & Newsletters WordPress plugin before 5.3.2 does not correctly escape the `order` and `orderby` parameters to the `ajax_fetch_report_list` action, making it vulnerable to blind SQL injection attacks by users with roles as low as Subscriber. Further, it does… | ||
| CVE-2022-0420 | Hig | 0.47 | 7.2 | 0.01 | Mar 7, 2022 | The RegistrationMagic WordPress plugin before 5.0.2.2 does not sanitise and escape the rm_form_id parameter before using it in a SQL statement in the Automation admin dashboard, allowing high privilege users to perform SQL injection attacks | ||
| CVE-2022-0410 | Hig | 0.57 | 8.8 | 0.01 | Mar 7, 2022 | The WP Visitor Statistics (Real Time Traffic) WordPress plugin before 5.6 does not sanitise and escape the id parameter before using it in a SQL statement via the refUrlDetails AJAX action, available to any authenticated user, leading to a SQL injection | ||
| CVE-2022-0267 | Hig | 0.47 | 7.2 | 0.01 | Mar 7, 2022 | The AdRotate WordPress plugin before 5.8.22 does not sanitise and escape the adrotate_action before using it in a SQL statement via the adrotate_request_action function available to admins, leading to a SQL injection | ||
| CVE-2021-25087 | Hig | 0.49 | 7.5 | 0.02 | Mar 7, 2022 | The Download Manager WordPress plugin before 3.2.35 does not have any authorisation checks in some of the REST API endpoints, allowing unauthenticated attackers to call them, which could lead to sensitive information disclosure, such as posts passwords (fixed in 3.2.24) and… | ||
| CVE-2021-24952 | Hig | 0.57 | 8.8 | 0.01 | Mar 7, 2022 | The Conversios.io WordPress plugin before 4.6.2 does not sanitise, validate and escape the sync_progressive_data parameter for the tvcajax_product_sync_bantch_wise AJAX action before using it in a SQL statement, allowing any authenticated user to perform SQL injection attacks. | ||
| CVE-2021-24778 | Hig | 0.47 | 7.2 | 0.01 | Mar 7, 2022 | The test parameter of the xmlfeed in the Tradetracker-Store WordPress plugin before 4.6.60 is not sanitised, escaped or validated before inserting to a SQL statement, leading to SQL injection. | ||
| CVE-2021-24777 | Hig | 0.47 | 7.2 | 0.01 | Mar 7, 2022 | The view submission functionality in the Hotscot Contact Form WordPress plugin before 1.3 makes a get request with the sub_id parameter which not sanitised, escaped or validated before inserting to a SQL statement, leading to an SQL injection. | ||
| CVE-2021-24216 | Hig | 0.40 | 7.2 | 0.02 | Mar 7, 2022 | The All-in-One WP Migration WordPress plugin before 7.41 does not validate uploaded files' extension, which allows administrators to upload PHP files on their site, even on multisite installations. | ||
| CVE-2022-26505 | Hig | 0.48 | 7.4 | 0.02 | Mar 6, 2022 | A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files. | ||
| CVE-2022-26490 | Hig | 0.00 | 7.8 | 0.00 | Mar 6, 2022 | st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVT_TRANSACTION buffer overflows because of untrusted length parameters. | ||
| CVE-2022-24921 | — | Hig | 0.49 | 7.5 | 0.03 | Mar 5, 2022 | regexp.Compile in Go before 1.16.15 and 1.17.x before 1.17.8 allows stack exhaustion via a deeply nested expression. | |
| CVE-2022-25465 | Hig | 0.51 | 7.8 | 0.01 | Mar 5, 2022 | Espruino 2v11 release was discovered to contain a stack buffer overflow via src/jsvar.c in jsvGetNextSibling. | ||
| CVE-2022-25044 | Hig | 0.00 | 7.8 | 0.01 | Mar 5, 2022 | Espruino 2v11.251 was discovered to contain a stack buffer overflow via src/jsvar.c in jsvNewFromString. | ||
| CVE-2021-44827 | Hig | 0.62 | 8.8 | 0.54 | Mar 4, 2022 | There is remote authenticated OS command injection on TP-Link Archer C20i 0.9.1 3.2 v003a.0 Build 170221 Rel.55462n devices vie the X_TP_ExternalIPv6Address HTTP parameter, allowing a remote attacker to run arbitrary commands on the router with root privileges. | ||
| CVE-2021-40846 | Hig | 0.49 | 7.5 | 0.01 | Mar 4, 2022 | An issue was discovered in Rhinode Trading Paints through 2.0.36. TP Updater.exe uses cleartext HTTP to check, and request, updates. Thus, attackers can man-in-the-middle a victim to download a malicious binary in place of the real update, with no SSL errors or warnings. | ||
| CVE-2021-27756 | Hig | 0.49 | 7.5 | 0.01 | Mar 4, 2022 | "TLS-RSA cipher suites are not disabled in BigFix Compliance up to v2.0.5. If TLS 2.0 and secure ciphers are not enabled then an attacker can passively record traffic and later decrypt it." |
- risk 0.46cvss 7.0epss 0.01
Windows ALPC Elevation of Privilege Vulnerability
- risk 0.46cvss 7.0epss 0.04
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
- risk 0.59cvss 8.8epss 0.26
Remote Desktop Client Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.03
Windows Print Spooler Elevation of Privilege Vulnerability
- risk 0.46cvss 7.0epss 0.00
Windows ALPC Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.02
Paint 3D Remote Code Execution Vulnerability
- risk 0.63cvss 8.8epss 0.40
Microsoft Exchange Server Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Microsoft Defender for IoT Elevation of Privilege Vulnerability
- risk 0.47cvss 7.2epss 0.03
Microsoft Defender for IoT Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
HEVC Video Extensions Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.02
HEVC Video Extensions Remote Code Execution Vulnerability
- risk 0.59cvss 8.8epss 0.19
Remote Desktop Client Remote Code Execution Vulnerability
- risk 0.46cvss 7.0epss 0.01
Xbox Live Auth Manager for Windows Elevation of Privilege Vulnerability
- risk 0.53cvss 8.1epss 0.01
A Reliance on Untrusted Inputs in a Security Decision vulnerability in the login proxy of the openSUSE Build service allowed attackers to present users with a expected login form that then sends the clear text credentials to an attacker specified server. This issue affects:…
- risk 0.50cvss 8.8epss 0.01
Improper Neutralization of Special Elements Used in a Template Engine in GitHub repository microweber/microweber prior to 1.3.
- risk 0.51cvss 7.8epss 0.01
The installer of WPS Office for Windows versions prior to v11.2.0.10258 fails to configure properly the ACL for the directory where the service program is installed.
- risk 0.51cvss 7.8epss 0.01
Trend Micro Password Manager (Consumer) installer version 5.0.0.1262 and below is vulnerable to an Uncontrolled Search Path Element vulnerability that could allow an attacker to use a specially crafted file to exploit the vulnerability and escalate local privileges on the…
- risk 0.41cvss 7.3epss 0.01
alltube is an html front end for youtube-dl. On releases prior to 3.0.3, an attacker could craft a special HTML page to trigger either an open redirect attack or a Server-Side Request Forgery attack (depending on how AllTube is configured). The impact is mitigated by the fact…
- risk 0.10cvss 7.5epss 0.89
Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Unauthenticated users can leak the contents of files of the local system accessible to the web-server user, including `icingaweb2` configuration files with database credentials. This…
- risk 0.04cvss 8.5epss 0.15
Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Authenticated users, with access to the configuration, can create SSH resource files in unintended directories, leading to the execution of arbitrary code. This issue has been resolved…
- risk 0.43cvss 7.5epss 0.14
regex is an implementation of regular expressions for the Rust language. The regex crate features built-in mitigations to prevent denial of service attacks caused by untrusted regexes, or untrusted input matched by trusted regexes. Those (tunable) mitigations already provide…
- risk 0.47cvss 7.3epss 0.01
A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions). The affected software do not properly check privileges between users during the same web browser session, creating an unintended…
- risk 0.51cvss 7.8epss 0.01
A vulnerability has been identified in Simcenter STAR-CCM+ Viewer (All versions < V2022.1). The starview+.exe contains a memory corruption vulnerability while parsing specially crafted .SCE files. This could allow an attacker to execute code in the context of the current process.
- risk 0.51cvss 7.8epss 0.00
A vulnerability has been identified in SINUMERIK MC (All versions < V1.15 SP1), SINUMERIK ONE (All versions < V6.15 SP1). The sc SUID binary on affected devices provides several commands that are used to execute system commands or modify system files. A specific set of…
- risk 0.47cvss 7.2epss 0.01
A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions). The affected system allows to upload JSON objects that are deserialized to Java objects. Due to insecure deserialization of…
- risk 0.47cvss 7.2epss 0.03
A vulnerability has been identified in SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions). A privileged authenticated attacker could execute arbitrary commands in the local database by sending specially crafted requests to the webserver of the affected…
- risk 0.49cvss 7.5epss 0.01
A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i802, RUGGEDCOM i802NC, RUGGEDCOM i803, RUGGEDCOM i803NC, RUGGEDCOM M2100, RUGGEDCOM M2100NC, RUGGEDCOM M2200, RUGGEDCOM M2200NC, RUGGEDCOM M969, RUGGEDCOM…
- risk 0.49cvss 7.5epss 0.01
A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802, RUGGEDCOM i803, RUGGEDCOM M2100, RUGGEDCOM M2100F, RUGGEDCOM M2200, RUGGEDCOM M2200F, RUGGEDCOM M969, RUGGEDCOM M969F, RUGGEDCOM RMC30, RUGGEDCOM RMC8388 V4.X, RUGGEDCOM RMC8388 V5.X,…
- risk 0.47cvss 7.2epss 0.02
This issue exists to document that a security improvement in the way that Jira Server and Data Center use templates has been implemented. Affected versions of Atlassian Jira Server and Data Center allowed remote attackers with system administrator permissions to execute…
- risk 0.46cvss 8.1epss 0.01
Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network. In versions of evmos prior to 2.0.1 attackers are able to drain unclaimed funds from user addresses. To do this an attacker must create a new chain which does not enforce signature verification and connects…
- risk 0.56cvss 8.6epss 0.01
IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged trusted host user to exploit a vulnerability in the nimsh daemon to cause a denial of service in the nimsh daemon on another trusted host. IBM X-Force ID: 220396
- risk 0.51cvss 7.8epss 0.01
Incorrect Permission Assignment for Critical Resource vulnerability in the crash handling component BDReinit.exe as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools for Windows allows a remote attacker to escalate local privileges to…
- risk 0.47cvss 7.2epss 0.01
The Catch Themes Demo Import WordPress plugin before 2.1.1 does not validate one of the file to be imported, which could allow high privivilege admin to upload an arbitrary PHP file and gain RCE even in the case of an hardened blog (ie DISALLOW_UNFILTERED_HTML,…
- risk 0.58cvss 8.8epss 0.04
The Email Subscribers & Newsletters WordPress plugin before 5.3.2 does not correctly escape the `order` and `orderby` parameters to the `ajax_fetch_report_list` action, making it vulnerable to blind SQL injection attacks by users with roles as low as Subscriber. Further, it does…
- risk 0.47cvss 7.2epss 0.01
The RegistrationMagic WordPress plugin before 5.0.2.2 does not sanitise and escape the rm_form_id parameter before using it in a SQL statement in the Automation admin dashboard, allowing high privilege users to perform SQL injection attacks
- risk 0.57cvss 8.8epss 0.01
The WP Visitor Statistics (Real Time Traffic) WordPress plugin before 5.6 does not sanitise and escape the id parameter before using it in a SQL statement via the refUrlDetails AJAX action, available to any authenticated user, leading to a SQL injection
- risk 0.47cvss 7.2epss 0.01
The AdRotate WordPress plugin before 5.8.22 does not sanitise and escape the adrotate_action before using it in a SQL statement via the adrotate_request_action function available to admins, leading to a SQL injection
- risk 0.49cvss 7.5epss 0.02
The Download Manager WordPress plugin before 3.2.35 does not have any authorisation checks in some of the REST API endpoints, allowing unauthenticated attackers to call them, which could lead to sensitive information disclosure, such as posts passwords (fixed in 3.2.24) and…
- risk 0.57cvss 8.8epss 0.01
The Conversios.io WordPress plugin before 4.6.2 does not sanitise, validate and escape the sync_progressive_data parameter for the tvcajax_product_sync_bantch_wise AJAX action before using it in a SQL statement, allowing any authenticated user to perform SQL injection attacks.
- risk 0.47cvss 7.2epss 0.01
The test parameter of the xmlfeed in the Tradetracker-Store WordPress plugin before 4.6.60 is not sanitised, escaped or validated before inserting to a SQL statement, leading to SQL injection.
- risk 0.47cvss 7.2epss 0.01
The view submission functionality in the Hotscot Contact Form WordPress plugin before 1.3 makes a get request with the sub_id parameter which not sanitised, escaped or validated before inserting to a SQL statement, leading to an SQL injection.
- risk 0.40cvss 7.2epss 0.02
The All-in-One WP Migration WordPress plugin before 7.41 does not validate uploaded files' extension, which allows administrators to upload PHP files on their site, even on multisite installations.
- risk 0.48cvss 7.4epss 0.02
A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files.
- risk 0.00cvss 7.8epss 0.00
st21nfca_connectivity_event_received in drivers/nfc/st21nfca/se.c in the Linux kernel through 5.16.12 has EVT_TRANSACTION buffer overflows because of untrusted length parameters.
- risk 0.49cvss 7.5epss 0.03
regexp.Compile in Go before 1.16.15 and 1.17.x before 1.17.8 allows stack exhaustion via a deeply nested expression.
- risk 0.51cvss 7.8epss 0.01
Espruino 2v11 release was discovered to contain a stack buffer overflow via src/jsvar.c in jsvGetNextSibling.
- risk 0.00cvss 7.8epss 0.01
Espruino 2v11.251 was discovered to contain a stack buffer overflow via src/jsvar.c in jsvNewFromString.
- risk 0.62cvss 8.8epss 0.54
There is remote authenticated OS command injection on TP-Link Archer C20i 0.9.1 3.2 v003a.0 Build 170221 Rel.55462n devices vie the X_TP_ExternalIPv6Address HTTP parameter, allowing a remote attacker to run arbitrary commands on the router with root privileges.
- risk 0.49cvss 7.5epss 0.01
An issue was discovered in Rhinode Trading Paints through 2.0.36. TP Updater.exe uses cleartext HTTP to check, and request, updates. Thus, attackers can man-in-the-middle a victim to download a malicious binary in place of the real update, with no SSL errors or warnings.
- risk 0.49cvss 7.5epss 0.01
"TLS-RSA cipher suites are not disabled in BigFix Compliance up to v2.0.5. If TLS 2.0 and secure ciphers are not enabled then an attacker can passively record traffic and later decrypt it."