| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2017-16282 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16281 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16280 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16279 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16278 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16277 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16276 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16275 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16274 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16273 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16272 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16271 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16270 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16269 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16268 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16267 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16266 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16265 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16264 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16263 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16262 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16260 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16259 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16258 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16257 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2017-16256 | Cri | 0.64 | 9.9 | 0.01 | Jan 11, 2023 | Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary… | ||
| CVE-2022-4873 | Cri | 0.64 | 9.8 | 0.07 | Jan 11, 2023 | On Netcomm router models NF20MESH, NF20, and NL1902 a stack based buffer overflow affects the sessionKey parameter. By providing a specific number of bytes, the instruction pointer is able to be overwritten on the stack and crashes the application at a known location. | ||
| CVE-2022-4498 | Cri | 0.64 | 9.8 | 0.02 | Jan 11, 2023 | In TP-Link routers, Archer C5 and WR710N-V1, running the latest available code, when receiving HTTP Basic Authentication the httpd service can be sent a crafted packet that causes a heap overflow. This can result in either a DoS (by crashing the httpd process) or an arbitrary… | ||
| CVE-2022-47864 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeCategories.php. | ||
| CVE-2022-47862 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the customer_id parameter in ajax_represent.php. | ||
| CVE-2022-47861 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeLead.php. | ||
| CVE-2022-47860 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeProduct.php. | ||
| CVE-2022-47859 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the user_id parameter in changePassword.php. | ||
| CVE-2022-47866 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead management system v1.0 is vulnerable to SQL Injection via the id parameter in removeBrand.php. | ||
| CVE-2022-47865 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeOrder.php. | ||
| CVE-2021-3966 | Cri | 0.62 | 9.6 | 0.00 | Jan 11, 2023 | usb device bluetooth class includes a buffer overflow related to implementation of net_buf_add_mem. | ||
| CVE-2022-48253 | Cri | 0.64 | 9.8 | 0.03 | Jan 11, 2023 | nhttpd in Nostromo before 2.1 is vulnerable to a path traversal that may allow an attacker to execute arbitrary commands on the remote server. The vulnerability occurs when the homedirs option is used. | ||
| CVE-2022-48252 | Cri | 0.64 | 9.8 | 0.03 | Jan 11, 2023 | The jokob-sk/Pi.Alert fork (before 22.12.20) of Pi.Alert allows Remote Code Execution via nmap_scan.php (scan parameter) OS Command Injection. | ||
| CVE-2022-4338 | Cri | 0.00 | 9.8 | 0.01 | Jan 10, 2023 | An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch. | ||
| CVE-2022-4337 | Cri | 0.00 | 9.8 | 0.01 | Jan 10, 2023 | An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch. | ||
| CVE-2022-38490 | Cri | 0.62 | 9.6 | 0.01 | Jan 10, 2023 | An issue was discovered in EasyVista 2020.2.125.3 and 2022.1.109.0.03. Some parameters allow SQL injection. Version 2022.1.110.1.02 corrects this issue. | ||
| CVE-2022-4422 | Cri | 0.64 | 9.8 | 0.01 | Jan 10, 2023 | Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injection vulnerability. This has been fixed in the version 3.0 | ||
| CVE-2022-3792 | Cri | 0.65 | 9.8 | 0.14 | Jan 10, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in GullsEye GullsEye terminal operating system allows SQL Injection. This issue affects GullsEye terminal operating system: from unspecified before 5.0.13. | ||
| CVE-2022-46823 | Cri | 0.60 | 9.3 | 0.00 | Jan 10, 2023 | A vulnerability has been identified in Mendix SAML (Mendix 8 compatible) (All versions >= V2.3.0 < V2.3.4), Mendix SAML (Mendix 9 compatible, New Track) (All versions >= V3.3.0 < V3.3.9), Mendix SAML (Mendix 9 compatible, Upgrade Track) (All versions >= V3.3.0 < V3.3.8). The… | ||
| CVE-2022-45092 | Cri | 0.67 | 9.9 | 0.31 | Jan 10, 2023 | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1). An authenticated remote attacker with access to the Web Based Management (443/tcp) of the affected product, could potentially read and write arbitrary files from and to the device's file system.… | ||
| CVE-2023-22903 | Cri | 0.00 | 9.8 | 0.01 | Jan 10, 2023 | api/views/user.py in LibrePhotos before e19e539 has incorrect access control. | ||
| CVE-2017-20166 | — | Cri | 0.57 | 9.8 | 0.01 | Jan 10, 2023 | Ecto 2.2.0 lacks a certain protection mechanism associated with the interaction between is_nil and raise. | |
| CVE-2023-0022 | Cri | 0.64 | 9.9 | 0.01 | Jan 10, 2023 | SAP BusinessObjects Business Intelligence Analysis edition for OLAP allows an authenticated attacker to inject malicious code that can be executed by the application over the network. On successful exploitation, an attacker can perform operations that may completely compromise… | ||
| CVE-2023-0018 | Cri | 0.65 | 10.0 | 0.01 | Jan 10, 2023 | Due to improper input sanitization of user-controlled input in SAP BusinessObjects Business Intelligence Platform CMC application - versions 420, and 430, an attacker with basic user-level privileges can modify/upload crystal reports containing a malicious payload. Once these… | ||
| CVE-2023-0017 | Cri | 0.62 | 9.4 | 0.16 | Jan 10, 2023 | An unauthenticated attacker in SAP NetWeaver AS for Java - version 7.50, due to improper access control, can attach to an open interface and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting users and… |
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.9epss 0.01
Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary…
- risk 0.64cvss 9.8epss 0.07
On Netcomm router models NF20MESH, NF20, and NL1902 a stack based buffer overflow affects the sessionKey parameter. By providing a specific number of bytes, the instruction pointer is able to be overwritten on the stack and crashes the application at a known location.
- risk 0.64cvss 9.8epss 0.02
In TP-Link routers, Archer C5 and WR710N-V1, running the latest available code, when receiving HTTP Basic Authentication the httpd service can be sent a crafted packet that causes a heap overflow. This can result in either a DoS (by crashing the httpd process) or an arbitrary…
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeCategories.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the customer_id parameter in ajax_represent.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeLead.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeProduct.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the user_id parameter in changePassword.php.
- risk 0.64cvss 9.8epss 0.01
Lead management system v1.0 is vulnerable to SQL Injection via the id parameter in removeBrand.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeOrder.php.
- risk 0.62cvss 9.6epss 0.00
usb device bluetooth class includes a buffer overflow related to implementation of net_buf_add_mem.
- risk 0.64cvss 9.8epss 0.03
nhttpd in Nostromo before 2.1 is vulnerable to a path traversal that may allow an attacker to execute arbitrary commands on the remote server. The vulnerability occurs when the homedirs option is used.
- risk 0.64cvss 9.8epss 0.03
The jokob-sk/Pi.Alert fork (before 22.12.20) of Pi.Alert allows Remote Code Execution via nmap_scan.php (scan parameter) OS Command Injection.
- risk 0.00cvss 9.8epss 0.01
An integer underflow in Organization Specific TLV was found in various versions of OpenvSwitch.
- risk 0.00cvss 9.8epss 0.01
An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.
- risk 0.62cvss 9.6epss 0.01
An issue was discovered in EasyVista 2020.2.125.3 and 2022.1.109.0.03. Some parameters allow SQL injection. Version 2022.1.110.1.02 corrects this issue.
- risk 0.64cvss 9.8epss 0.01
Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injection vulnerability. This has been fixed in the version 3.0
- risk 0.65cvss 9.8epss 0.14
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in GullsEye GullsEye terminal operating system allows SQL Injection. This issue affects GullsEye terminal operating system: from unspecified before 5.0.13.
- risk 0.60cvss 9.3epss 0.00
A vulnerability has been identified in Mendix SAML (Mendix 8 compatible) (All versions >= V2.3.0 < V2.3.4), Mendix SAML (Mendix 9 compatible, New Track) (All versions >= V3.3.0 < V3.3.9), Mendix SAML (Mendix 9 compatible, Upgrade Track) (All versions >= V3.3.0 < V3.3.8). The…
- risk 0.67cvss 9.9epss 0.31
A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1). An authenticated remote attacker with access to the Web Based Management (443/tcp) of the affected product, could potentially read and write arbitrary files from and to the device's file system.…
- risk 0.00cvss 9.8epss 0.01
api/views/user.py in LibrePhotos before e19e539 has incorrect access control.
- risk 0.57cvss 9.8epss 0.01
Ecto 2.2.0 lacks a certain protection mechanism associated with the interaction between is_nil and raise.
- risk 0.64cvss 9.9epss 0.01
SAP BusinessObjects Business Intelligence Analysis edition for OLAP allows an authenticated attacker to inject malicious code that can be executed by the application over the network. On successful exploitation, an attacker can perform operations that may completely compromise…
- risk 0.65cvss 10.0epss 0.01
Due to improper input sanitization of user-controlled input in SAP BusinessObjects Business Intelligence Platform CMC application - versions 420, and 430, an attacker with basic user-level privileges can modify/upload crystal reports containing a malicious payload. Once these…
- risk 0.62cvss 9.4epss 0.16
An unauthenticated attacker in SAP NetWeaver AS for Java - version 7.50, due to improper access control, can attach to an open interface and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting users and…