VYPR

CVEs

31,788 total · page 286 of 636

  • CVE-2020-35326CriJan 18, 2023
    risk 0.65cvss 9.8epss 0.14

    SQL Injection vulnerability in file /inxedu/demo_inxedu_open/src/main/resources/mybatis/inxedu/website/WebsiteImagesMapper.xml in inxedu 2.0.6 via the id value.

  • CVE-2022-47966CriKEVJan 18, 2023
    risk 0.93cvss 9.8epss 1.00

    Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because the xmlsec XSLT features, by design in that version, make the application…

  • CVE-2022-41417CriJan 18, 2023
    risk 0.00cvss 9.8epss 0.01

    BlogEngine.NET v3.3.8.0 allows an attacker to create any folder with "files" prefix under ~/App_Data/.

  • CVE-2022-47911CriJan 18, 2023
    risk 0.59cvss 9.1epss 0.01

    Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not properly validate the input module name to the backup services of the software. This could allow a remote attacker to access sensitive functions of the application and…

  • CVE-2022-45444CriJan 18, 2023
    risk 0.65cvss 10.0epss 0.01

    Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 contains hard-coded passwords for select users in the application’s database. This could allow a remote attacker to login to the database with unrestricted access.

  • CVE-2022-43483CriJan 18, 2023
    risk 0.59cvss 9.1epss 0.01

    Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not properly validate the input module name to the monitor services of the software. This could allow a remote attacker to access sensitive functions of the application and…

  • CVE-2022-41989CriJan 18, 2023
    risk 0.59cvss 9.0epss 0.01

    Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not validate the length of RTLS report payloads during communication. This allows an attacker to send an exceedingly long payload, resulting in an out-of-bounds write to cause…

  • CVE-2023-21890CriJan 18, 2023
    risk 0.64cvss 9.8epss 0.01

    Vulnerability in the Oracle Communications Converged Application Server product of Oracle Communications (component: Core). Supported versions that are affected are 7.1.0 and 8.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via UDP to…

  • CVE-2022-46732CriJan 18, 2023
    risk 0.64cvss 9.8epss 0.01

    Even if the authentication fails for local service authentication, the requested command could still execute regardless of authentication status.

  • CVE-2022-41903CriJan 17, 2023
    risk 0.04cvss 9.8epss 0.44

    Git is distributed revision control system. `git log` can display commits in an arbitrary format using its `--format` specifiers. This functionality is also exposed to `git archive` via the `export-subst` gitattribute. When processing the padding operators, there is a integer…

  • CVE-2022-23521CriJan 17, 2023
    risk 0.05cvss 9.8epss 0.56

    Git is distributed revision control system. gitattributes are a mechanism to allow defining attributes for paths. These attributes can be defined by adding a `.gitattributes` file to the repository, which contains a set of file patterns and the attributes that should be set for…

  • CVE-2023-22731CriJan 17, 2023
    risk 0.57cvss 9.9epss 0.01

    Shopware is an open source commerce platform based on Symfony Framework and Vue js. In a Twig environment **without the Sandbox extension**, it is possible to refer to PHP functions in twig filters like `map`, `filter`, `sort`. This allows a template to call any global PHP…

  • CVE-2023-22727CriJan 17, 2023
    risk 0.57cvss 9.8epss 0.01

    CakePHP is a development framework for PHP web apps. In affected versions the `Cake\Database\Query::limit()` and `Cake\Database\Query::offset()` methods are vulnerable to SQL injection if passed un-sanitized user request data. This issue has been fixed in 4.2.12, 4.3.11, 4.4.10.…

  • CVE-2022-46475CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.10

    D-Link DIR 645A1 1.06B01_Beta01 was discovered to contain a stack overflow via the service= variable in the genacgi_main function.

  • CVE-2022-43977CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered on GE Grid Solutions MS3000 devices before 3.7.6.25p0_3.2.2.17p0_4.7p0. The debug port accessible via TCP (a qconn service) lacks access control.

  • CVE-2022-43976CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in FC46-WebBridge on GE Grid Solutions MS3000 devices before 3.7.6.25p0_3.2.2.17p0_4.7p0. Direct access to the API is possible on TCP port 8888 via programs located in the cgi-bin folder without any authentication.

  • CVE-2022-36760CriJan 17, 2023
    risk 0.59cvss 9.0epss 0.02

    Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in mod_proxy_ajp of Apache HTTP Server allows an attacker to smuggle requests to the AJP server it forwards requests to. This issue affects Apache HTTP Server Apache HTTP Server 2.4 version…

  • CVE-2022-47853CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.02

    TOTOlink A7100RU V7.4cu.2313_B20191024 is vulnerable to Command Injection Vulnerability in the httpd service. An attacker can obtain a stable root shell through a specially constructed payload.

  • CVE-2022-23739CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    An incorrect authorization vulnerability was identified in GitHub Enterprise Server, allowing for escalation of privileges in GraphQL API requests from GitHub Apps. This vulnerability allowed an app installed on an organization to gain access to and modify most…

  • CVE-2023-22357CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    Active debug code exists in OMRON CP1L-EL20DR-D all versions, which may lead to a command that is not specified in FINS protocol being executed without authentication. A remote unauthenticated attacker may read/write in arbitrary area of the device memory, which may lead to…

  • CVE-2023-22303CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    TP-Link SG105PE firmware prior to 'TL-SG105PE(UN) 1.0_1.0.0 Build 20221208' contains an authentication bypass vulnerability. Under the certain conditions, an attacker may impersonate an administrator of the product. As a result, information may be obtained and/or the product's…

  • CVE-2023-22279CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    MAHO-PBX NetDevancer Lite/Uni/Pro/Cloud prior to Ver.1.11.00, MAHO-PBX NetDevancer VSG Lite/Uni prior to Ver.1.11.00, and MAHO-PBX NetDevancer MobileGate Home/Office prior to Ver.1.11.00 allow a remote unauthenticated attacker to execute an arbitrary OS command.

  • CVE-2022-43462CriJan 17, 2023
    risk 0.59cvss 9.1epss 0.01

    Auth. SQL Injection (SQLi) vulnerability in Adeel Ahmed's IP Blacklist Cloud plugin <= 5.00 versions.

  • CVE-2022-4447CriJan 16, 2023
    risk 0.64cvss 9.8epss 0.05

    The Fontsy WordPress plugin through 1.8.6 does not properly sanitize and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2022-4101CriJan 16, 2023
    risk 0.61cvss 9.1epss 0.29

    The Images Optimize and Upload CF7 WordPress plugin through 2.1.4 does not validate the file to be deleted via an AJAX action available to unauthenticated users, which could allow them to delete arbitrary files on the server via path traversal attack.

  • CVE-2022-4060CriJan 16, 2023
    risk 0.67cvss 9.8epss 0.43

    The User Post Gallery WordPress plugin through 2.19 does not limit what callback functions can be called by users, making it possible to any visitors to run code on sites running it.

  • CVE-2023-0311CriJan 15, 2023
    risk 0.57cvss 9.8epss 0.01

    Improper Authentication in GitHub repository thorsten/phpmyfaq prior to 3.1.10.

  • CVE-2023-0307CriJan 15, 2023
    risk 0.57cvss 9.8epss 0.01

    Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.10.

  • CVE-2023-0299CriJan 14, 2023
    risk 0.57cvss 9.8epss 0.01

    Improper Input Validation in GitHub repository publify/publify prior to 9.2.10.

  • CVE-2022-1812CriJan 14, 2023
    risk 0.59cvss 9.8epss 0.31

    Integer Overflow or Wraparound in GitHub repository publify/publify prior to 9.2.10.

  • CVE-2023-0297CriJan 14, 2023
    risk 0.04cvss 9.8epss 0.96

    Code Injection in GitHub repository pyload/pyload prior to 0.5.0b3.dev31.

  • CVE-2023-22495CriJan 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Izanami is a shared configuration service well-suited for micro-service architecture implementation. Attackers can bypass the authentication in this application when deployed using the official Docker image. Because a hard coded secret is used to sign the authentication token…

  • CVE-2022-45299CriJan 13, 2023
    risk 0.57cvss 9.8epss 0.01

    An issue in the IpFile argument of rust-lang webbrowser-rs v0.8.2 allows attackers to access arbitrary files via supplying a crafted URL.

  • CVE-2022-46955CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=save_queue.

  • CVE-2022-46954CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=delete_transaction.

  • CVE-2022-3782CriJan 13, 2023
    risk 0.53cvss 9.1epss 0.06

    keycloak: path traversal via double URL encoding. A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. An attacker can use this flaw to construct a malicious request to bypass validation and access other URLs and potentially sensitive…

  • CVE-2023-23566CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    A 2-Step Verification problem in Axigen 10.3.3.52 allows an attacker to access a mailbox by bypassing 2-Step Verification when they try to add an account to any third-party webmail service (or add an account to Outlook or Gmail, etc.) with IMAP or POP3 without any verification…

  • CVE-2022-46502CriJan 13, 2023
    risk 0.65cvss 9.8epss 0.14

    Online Student Enrollment System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter at /student_enrollment/admin/login.php.

  • CVE-2022-46478CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    The RPC interface in datax-web v1.0.0 and v2.0.0 to v2.1.2 contains no permission checks by default which allows attackers to execute arbitrary commands via crafted Hessian serialized data.

  • CVE-2022-46471CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Health Care System v1.0 was discovered to contain a SQL injection vulnerability via the consulting_id parameter at /healthcare/Admin/consulting_detail.php.

  • CVE-2022-41778CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Delta Electronics InfraSuite Device Master versions 00.00.01a and prior deserialize user-supplied data provided through the Device-DataCollect service port without proper verification. An attacker could provide malicious serialized objects to execute arbitrary code upon…

  • CVE-2023-22601CriJan 12, 2023
    risk 0.65cvss 10.0epss 0.01

    InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r5542, contain vulnerability CWE-330: Use of Insufficiently Random Values. They do not properly randomize MQTT ClientID parameters. An unauthorized user could…

  • CVE-2023-22600CriJan 12, 2023
    risk 0.65cvss 10.0epss 0.00

    InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r5542, contain vulnerability CWE-284: Improper Access Control. They allow unauthenticated devices to subscribe to MQTT topics on the same network as the device…

  • CVE-2022-39185CriJan 12, 2023
    risk 0.64cvss 9.8epss 0.01

    EXFO - BV-10 Performance Endpoint Unit Undocumented privileged user. Unit has an undocumented hard-coded privileged user.

  • CVE-2022-39184CriJan 12, 2023
    risk 0.64cvss 9.8epss 0.01

    EXFO - BV-10 Performance Endpoint Unit authentication bypass User can manually manipulate access enabling authentication bypass.

  • CVE-2022-3515CriJan 12, 2023
    risk 0.64cvss 9.8epss 0.02

    A vulnerability was found in the Libksba library due to an integer overflow within the CRL parser. The vulnerability can be exploited remotely for code execution on the target system by passing specially crafted data to the application, for example, a malicious S/MIME attachment.

  • CVE-2017-16336CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16335CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16334CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…

  • CVE-2017-16333CriJan 11, 2023
    risk 0.64cvss 9.9epss 0.01

    Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…