VYPR

CVEs

31,787 total · page 318 of 636

  • CVE-2022-35522CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.02

    WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters: ppp_username, ppp_passwd, rwan_gateway, rwan_mask and rwan_ip, which leads to command injection in page /wan.shtml.

  • CVE-2022-35521CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.02

    WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameters: remoteManagementEnabled, blockPortScanEnabled, pingFrmWANFilterEnabled and blockSynFloodEnabled, which leads to command injection in page /man_security.shtml.

  • CVE-2022-35520CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.02

    WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 api.cgi has no filtering on parameter ufconf, and this is a hidden parameter which doesn't appear in POST body, but exist in cgi binary. This leads to command injection in page /ledonoff.shtml.

  • CVE-2022-35519CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.02

    WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameter add_mac, which leads to command injection in page /cli_black_list.shtml.

  • CVE-2022-35518CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.02

    WAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 nas.cgi has no filtering on parameters: User1Passwd and User1, which leads to command injection in page /nas_disk.shtml.

  • CVE-2022-35491CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.01

    TOTOLINK A3002RU V3.0.0-B20220304.1804 has a hardcoded password for root in /etc/shadow.sample.

  • CVE-2022-35426CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.01

    UCMS 1.6 is vulnerable to arbitrary file upload via ucms/sadmin/file PHP file.

  • CVE-2022-35293CriAug 10, 2022
    risk 0.59cvss 9.1epss 0.01

    Due to insecure session management, SAP Enable Now allows an unauthenticated attacker to gain access to user's account. On successful exploitation, an attacker can view or modify user data causing limited impact on confidentiality and integrity of the application.

  • CVE-2022-32429CriAug 10, 2022
    risk 0.73cvss 9.8epss 0.76

    An authentication-bypass issue in the component http://MYDEVICEIP/cgi-bin-sdb/ExportSettings.sh of Mega System Technologies Inc MSNSwitch MNT.2408 allows unauthenticated attackers to arbitrarily configure settings within the application, leading to remote code execution.

  • CVE-2022-2634CriAug 10, 2022
    risk 0.65cvss 10.0epss 0.01

    An attacker may be able to execute malicious actions due to the lack of device access protections and device permissions when using the web application. This could lead to uploading python files which can be later executed.

  • CVE-2022-2457CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.01

    A flaw was found in Red Hat Process Automation Manager 7 where an attacker can benefit from a brute force attack against Administration Console as the application does not limit the number of unsuccessful login attempts.

  • CVE-2022-20361CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.01

    In btif_dm_auth_cmpl_evt of btif_dm.cc, there is a possible vulnerability in Cross-Transport Key Derivation due to Weakness in Bluetooth Standard. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2022-20239CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.00

    remap_pfn_range' here may map out of size kernel memory (for example, may map the kernel area), and because the 'vma->vm_page_prot' can also be controlled by userspace, so userspace may map the kernel area to be writable, which is easy to be exploitedProduct: AndroidVersions:…

  • CVE-2021-33643CriAug 10, 2022
    risk 0.59cvss 9.1epss 0.01

    An attacker who submits a crafted tar file with size in header struct being 0 may be able to trigger an calling of malloc(0) for a variable gnu_longlink, causing an out-of-bounds read.

  • CVE-2022-35280CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.01

    IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 230634.

  • CVE-2022-36323CriAug 10, 2022
    risk 0.59cvss 9.1epss 0.01

    Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative privileges to inject code or spawn a system root shell.

  • CVE-2022-34660CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.01

    A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.15), Teamcenter V13.0 (All versions < V13.0.0.10), Teamcenter V13.1 (All versions < V13.1.0.10), Teamcenter V13.2 (All versions < V13.2.0.9), Teamcenter V13.3 (All versions < V13.3.0.5), Teamcenter…

  • CVE-2022-2242CriAug 10, 2022
    risk 0.64cvss 9.8epss 0.01

    The KUKA SystemSoftware V/KSS in versions prior to 8.6.5 is prone to improper access control as an unauthorized attacker can directly read and write robot configurations when access control is not available or not enabled (default).

  • CVE-2022-20842CriAug 10, 2022
    risk 0.59cvss 9.0epss 0.02

    Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device. For more information about these…

  • CVE-2022-20827CriAug 10, 2022
    risk 0.59cvss 9.0epss 0.02

    Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device. For more information about these…

  • CVE-2022-20841CriAug 10, 2022
    risk 0.59cvss 9.0epss 0.03

    Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition on an affected device. For more information about these…

  • CVE-2022-34715CriAug 9, 2022
    risk 0.70cvss 9.8epss 0.80

    Windows Network File System Remote Code Execution Vulnerability

  • CVE-2022-33649CriAug 9, 2022
    risk 0.63cvss 9.6epss 0.02

    Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability

  • CVE-2022-30133CriAug 9, 2022
    risk 0.64cvss 9.8epss 0.02

    Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability

  • CVE-2021-41615CriAug 8, 2022
    risk 0.64cvss 9.8epss 0.01

    websda.c in GoAhead WebServer 2.1.8 has insufficient nonce entropy because the nonce calculation relies on the hardcoded onceuponatimeinparadise value, which does not follow the secret-data guideline for HTTP Digest Access Authentication in RFC 7616 section 3.3 (or RFC 2617…

  • CVE-2022-36267CriAug 8, 2022
    risk 0.71cvss 9.8epss 0.54

    In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists a Unauthenticated remote command injection vulnerability. The ping functionality can be called without user authentication when crafting a malicious http request by injecting code in one of the parameters allowing…

  • CVE-2022-36264CriAug 8, 2022
    risk 0.59cvss 9.1epss 0.01

    In Airspan AirSpot 5410 version 0.3.4.1-4 and under there exists an Unauthenticated remote Arbitrary File Upload vulnerability which allows overwriting arbitrary files. A malicious actor can remotely upload a file of their choice and overwrite any file in the system by…

  • CVE-2022-2713CriAug 8, 2022
    risk 0.57cvss 9.8epss 0.01

    Insufficient Session Expiration in GitHub repository cockpit-hq/cockpit prior to 2.2.0.

  • CVE-2022-35490CriAug 8, 2022
    risk 0.64cvss 9.8epss 0.01

    Zammad 5.2.0 is vulnerable to privilege escalation. Zammad has a prevention against brute-force attacks trying to guess login credentials. After a configurable amount of attempts, users are invalidated and logins prevented. An attacker might work around this prevention, enabling…

  • CVE-2022-2460CriAug 8, 2022
    risk 0.64cvss 9.8epss 0.01

    The WPDating WordPress plugin before 7.4.0 does not properly escape user input before concatenating it to certain SQL queries, leading to multiple SQL injection vulnerabilities exploitable by unauthenticated users

  • CVE-2022-2269CriAug 8, 2022
    risk 0.64cvss 9.8epss 0.01

    The Website File Changes Monitor WordPress plugin before 1.8.3 does not sanitise and escape user input before using it in a SQL statement via an action available to users with the manage_options capability (by default admins), leading to an SQL injection

  • CVE-2022-37452CriAug 7, 2022
    risk 0.00cvss 9.8epss 0.03

    Exim before 4.95 has a heap-based buffer overflow for the alias list in host_name_lookup in host.c when sender_host_name is set.

  • CVE-2022-29465CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.02

    An out-of-bounds write vulnerability exists in the PSD Header processing memory allocation functionality of Accusoft ImageGear 20.0. A specially-crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

  • CVE-2022-28665CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A memory corruption vulnerability exists in the httpd unescape functionality of FreshTomato 2022.1. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.The `freshtomato-arm` has a vulnerable…

  • CVE-2022-28664CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A memory corruption vulnerability exists in the httpd unescape functionality of FreshTomato 2022.1. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.The `freshtomato-mips` has a vulnerable…

  • CVE-2022-27631CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A memory corruption vulnerability exists in the httpd unescape functionality of DD-WRT Revision 32270 - Revision 48599. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.

  • CVE-2022-27178CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A denial of service vulnerability exists in the confctl_set_wan_cfg functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted network packet can lead to denial of service. An attacker can send packets to trigger this vulnerability.

  • CVE-2022-26376CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A memory corruption vulnerability exists in the httpd unescape functionality of Asuswrt prior to 3.0.0.4.386_48706 and Asuswrt-Merlin New Gen prior to 386.7.. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this…

  • CVE-2022-26346CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A denial of service vulnerability exists in the ucloud_del_node functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted network packet can lead to denial of service. An attacker can send packets to trigger this vulnerability.

  • CVE-2022-26342CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow vulnerability exists in the confsrv ucloud_set_node_location functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted network packet can lead to a buffer overflow. An attacker can send a malicious packet to trigger this vulnerability.

  • CVE-2022-26009CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A stack-based buffer overflow vulnerability exists in the confsrv ucloud_set_node_location functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted network packet can lead to stack-based buffer overflow. An attacker can send a malicious packet to trigger…

  • CVE-2022-25996CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A stack-based buffer overflow vulnerability exists in the confsrv addTimeGroup functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted network packet can lead to a buffer overflow. An attacker can send a malicious packet to trigger this vulnerability.

  • CVE-2022-24029CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability…

  • CVE-2022-24028CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability…

  • CVE-2022-24027CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability…

  • CVE-2022-24026CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability…

  • CVE-2022-24025CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability…

  • CVE-2022-24024CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability…

  • CVE-2022-24022CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability…

  • CVE-2022-24021CriAug 5, 2022
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow vulnerability exists in the GetValue functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted configuration value can lead to a buffer overflow. An attacker can modify a configuration value to trigger this vulnerability.This vulnerability…