VYPR

CVEs

31,785 total · page 327 of 636

  • CVE-2022-1953CriJun 27, 2022
    risk 0.59cvss 9.1epss 0.02

    The Product Configurator for WooCommerce WordPress plugin before 1.2.32 suffers from an arbitrary file deletion vulnerability via an AJAX action, accessible to unauthenticated users, which accepts user input that is being used in a path and passed to unlink() without validation…

  • CVE-2022-1574CriJun 27, 2022
    risk 0.65cvss 9.8epss 0.12

    The HTML2WP WordPress plugin through 1.0.0 does not have authorisation and CSRF checks when importing files, and does not validate them, as a result, unauthenticated attackers can upload arbitrary files (such as PHP) on the remote server

  • CVE-2022-29168CriJun 25, 2022
    risk 0.62cvss 9.6epss 0.01

    Wire is a secure messaging application. Wire is vulnerable to arbitrary HTML and Javascript execution via insufficient escaping when rendering `@mentions` in the wire-webapp. If a user receives and views a malicious message, arbitrary code is injected and executed in the context…

  • CVE-2022-33128CriJun 25, 2022
    risk 0.59cvss 9.1epss 0.01

    RG-EG series gateway EG350 EG_RGOS 11.1(6) was discovered to contain a SQL injection vulnerability via the function get_alarmAction at /alarm_pi/alarmService.php.

  • CVE-2022-34066CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The Texercise package in PyPI v0.0.1 to v0.0.12 was discovered to contain a code execution backdoor. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34065CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The Rondolu-YT-Concate package in PyPI v0.1.0 was discovered to contain a code execution backdoor. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34064CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.01

    The Zibal package in PyPI v1.0.0 was discovered to contain a code execution backdoor. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34061CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The Catly-Translate package in PyPI v0.0.3 to v0.0.5 was discovered to contain a code execution backdoor. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34060CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The Togglee package in PyPI version v0.0.8 was discovered to contain a code execution backdoor. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34059CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The Sixfab-Tool in PyPI v0.0.2 to v0.0.3 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34057CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.01

    The Scoptrial package in PyPI version v0.0.5 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34056CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The Watertools package in PyPI v0.0.0 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34055CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The drxhello package in PyPI v0.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34054CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The Perdido package in PyPI v0.0.1 to v0.0.2 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-34053CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The DR-Web-Engine package in PyPI v0.2.0b0 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-33004CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The Beginner package in PyPI v0.0.2 to v0.0.4 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-33003CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The watools package in PyPI v0.0.1 to v0.0.8 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-33002CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The KGExplore package in PyPI v0.1.1 to v0.1.2 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-33001CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The AAmiles package in PyPI v0.1.0 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-33000CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The ML-Scanner package in PyPI v0.1.0 to v0.1.5 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-32999CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The cloudlabeling package in PyPI v0.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-32998CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The cryptoasset-data-downloader package in PyPI v1.0.0 to v1.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-32997CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The RootInteractive package in PyPI v0.0.5 to v0.0.19b0 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-32996CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The django-navbar-client package of v0.9.50 to v1.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.

  • CVE-2022-30885CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    The pyesasky for python, as distributed on PyPI, included a code-execution backdoor inserted by a third party. The current version, without this backdoor, is 1.2.0-1.4.2.

  • CVE-2021-39409CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.03

    A vulnerability exists in Online Student Rate System v1.0 that allows any user to register as an administrator without needing to be authenticated.

  • CVE-2022-31767CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.05

    IBM CICS TX Standard and Advanced 11.1 could allow a remote attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 227980.

  • CVE-2022-20829CriJun 24, 2022
    risk 0.59cvss 9.1epss 0.03

    A vulnerability in the packaging of Cisco Adaptive Security Device Manager (ASDM) images and the validation of those images by Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker with administrative privileges to upload an ASDM image…

  • CVE-2021-38945CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    IBM Cognos Analytics 11.2.1, 11.2.0, and 11.1.7 could allow a remote attacker to upload arbitrary files, caused by improper content validation. IBM X-Force ID: 211238.

  • CVE-2022-30117CriJun 24, 2022
    risk 0.59cvss 9.1epss 0.02

    Concrete 8.5.7 and below as well as Concrete 9.0 through 9.0.2 allow traversal in /index.php/ccm/system/file/upload which could result in an Arbitrary File Delete exploit. This was remediated by sanitizing /index.php/ccm/system/file/upload to ensure Concrete doesn’t allow…

  • CVE-2022-2105CriJun 24, 2022
    risk 0.61cvss 9.4epss 0.01

    Client-side JavaScript controls may be bypassed to change user credentials and permissions without authentication, including a “root” user level meant only for the vendor. Web server root level access allows for changing of safety critical parameters.

  • CVE-2022-2104CriJun 24, 2022
    risk 0.64cvss 9.9epss 0.01

    The www-data (Apache web server) account is configured to run sudo with no password for many commands (including /bin/sh and /bin/bash).

  • CVE-2022-2103CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.01

    An attacker with weak credentials could access the TCP port via an open FTP port, allowing an attacker to read sensitive files and write to remotely executable directories.

  • CVE-2022-2102CriJun 24, 2022
    risk 0.61cvss 9.4epss 0.01

    Controls limiting uploads to certain file extensions may be bypassed. This could allow an attacker to intercept the initial file upload page response and modify the associated code. This modified code can be forwarded and used by a script loaded later in the sequence, allowing…

  • CVE-2022-28620CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.01

    A remote authentication bypass vulnerability was discovered in HPE Cray Legacy Shasta System Solutions; HPE Slingshot; and HPE Cray EX supercomputers versions: Prior to node controller firmware associated with HPE Cray EX liquid cooled blades, and all versions of chassis…

  • CVE-2022-21829CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    Concrete CMS Versions 9.0.0 through 9.0.2 and 8.5.7 and below can download zip files over HTTP and execute code from those zip files which could lead to an RCE. Fixed by enforcing ‘concrete_secure’ instead of ‘concrete’. Concrete now only makes requests over https even a…

  • CVE-2022-1668CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.02

    Weak default root user credentials allow remote attackers to easily obtain OS superuser privileges over the open TCP port for SSH.

  • CVE-2022-1521CriJun 24, 2022
    risk 0.59cvss 9.1epss 0.01

    LRM does not implement authentication or authorization by default. A malicious actor can inject, replay, modify, and/or intercept sensitive data.

  • CVE-2022-1519CriJun 24, 2022
    risk 0.65cvss 10.0epss 0.01

    LRM does not restrict the types of files that can be uploaded to the affected product. A malicious actor can upload any file type, including executable code that allows for a remote code exploit.

  • CVE-2022-1518CriJun 24, 2022
    risk 0.65cvss 10.0epss 0.02

    LRM contains a directory traversal vulnerability that can allow a malicious actor to upload outside the intended directory structure.

  • CVE-2022-1517CriJun 24, 2022
    risk 0.65cvss 10.0epss 0.02

    LRM utilizes elevated privileges. An unauthenticated malicious actor can upload and execute code remotely at the operating system level, which can allow an attacker to change settings, configurations, software, or access sensitive data on the affected produc. An attacker could…

  • CVE-2022-31806CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.01

    In CODESYS V2 PLCWinNT and Runtime Toolkit 32 in versions prior to V2.4.7.57 password protection is not enabled by default and there is no information or prompt to enable password protection at login in case no password is set at the controller.

  • CVE-2022-31802CriJun 24, 2022
    risk 0.64cvss 9.8epss 0.01

    In CODESYS Gateway Server V2 for versions prior to V2.3.9.38 only a part of the the specified password is been compared to the real CODESYS Gateway password. An attacker may perform authentication by specifying a small password that matches the corresponding part of the longer…

  • CVE-2022-34181CriJun 23, 2022
    risk 0.52cvss 9.1epss 0.01

    Jenkins xUnit Plugin 3.0.8 and earlier implements an agent-to-controller message that creates a user-specified directory if it doesn't exist, and parsing files inside it as test results, allowing attackers able to control agent processes to create an arbitrary directory on the…

  • CVE-2022-33127CriJun 23, 2022
    risk 0.57cvss 9.8epss 0.02

    The function that calls the diff tool in Diffy 3.4.1 does not properly handle double quotes in a filename when run in a windows environment. This allows attackers to execute arbitrary commands via a crafted string.

  • CVE-2022-32554CriJun 23, 2022
    risk 0.64cvss 9.8epss 0.01

    Pure Storage FlashArray products running Purity//FA 6.2.0 - 6.2.3, 6.1.0 - 6.1.12, 6.0.0 - 6.0.8, 5.3.0 - 5.3.17, 5.2.x and prior Purity//FA releases, and Pure Storage FlashBlade products running Purity//FB 3.3.0, 3.2.0 - 3.2.4, 3.1.0 - 3.1.12, 3.0.x and prior Purity//FB…

  • CVE-2022-31787CriJun 23, 2022
    risk 0.64cvss 9.8epss 0.01

    IdeaTMS 2022 is vulnerable to SQL Injection via the PATH_INFO

  • CVE-2022-31361CriJun 23, 2022
    risk 0.64cvss 9.8epss 0.01

    Docebo Community Edition v4.0.5 and below was discovered to contain a SQL injection vulnerability. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

  • CVE-2022-22980CriJun 23, 2022
    risk 0.65cvss 9.8epss 0.17

    A Spring Data MongoDB application is vulnerable to SpEL Injection when using @Query or @Aggregation-annotated query methods with SpEL expressions that contain query parameter placeholders for value binding if the input is not sanitized.

  • CVE-2021-40954CriJun 23, 2022
    risk 0.64cvss 9.8epss 0.02

    Laiketui 3.5.0 is affected by an arbitrary file upload vulnerability that can allow an attacker to execute arbitrary code.