VYPR

CVEs

31,785 total · page 356 of 636

  • CVE-2022-25130CriFeb 19, 2022
    risk 0.64cvss 9.8epss 0.02

    A command injection vulnerability in the function updateWifiInfo of TOTOLINK Technology routers T6 V3_Firmware T6_V3_V4.1.5cu.748_B20211015 and T10 V2_Firmware V4.1.8cu.5207_B20210320 allows attackers to execute arbitrary commands via a crafted MQTT packet.

  • CVE-2021-29656CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.01

    Pexip Infinity Connect before 1.8.0 mishandles TLS certificate validation. The allow list is not properly checked.

  • CVE-2021-29655CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.01

    Pexip Infinity Connect before 1.8.0 omits certain provisioning authenticity checks. Thus, untrusted code may execute.

  • CVE-2021-46110CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.01

    Online Shopping Portal v3.1 was discovered to contain multiple time-based SQL injection vulnerabilities via the email and contactno parameters.

  • CVE-2022-24049CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.07

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1 (S2 systems) and 11.2.13 build 57923290 (S1 systems). Authentication is not required to exploit this vulnerability. The specific flaw exists within…

  • CVE-2022-24047CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.02

    This vulnerability allows remote attackers to bypass authentication on affected installations of BMC Track-It! 20.21.01.102. Authentication is not required to exploit this vulnerability. The specific flaw exists within the authorization of HTTP requests. The issue results from…

  • CVE-2022-0543CriKEVFeb 18, 2022
    risk 0.88cvss 10.0epss 1.00

    It was discovered, that redis, a persistent key-value database, due to a packaging issue, is prone to a (Debian-specific) Lua sandbox escape, which could result in remote code execution.

  • CVE-2021-46063CriFeb 18, 2022
    risk 0.59cvss 9.1epss 0.03

    MCMS v5.2.5 was discovered to contain a Server Side Template Injection (SSTI) vulnerability via the Template Management module.

  • CVE-2021-46036CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.04

    An arbitrary file upload vulnerability in the component /ms/file/uploadTemplate.do of MCMS v5.2.4 allows attackers to execute arbitrary code.

  • CVE-2022-25337CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.01

    Ibexa DXP ezsystems/ezpublish-kernel 7.5.x before 7.5.26 and 1.3.x before 1.3.12 allows injection attacks via image filenames.

  • CVE-2022-21215CriFeb 18, 2022
    risk 0.65cvss 10.0epss 0.01

    This vulnerability could allow an attacker to force the server to create and execute a web request granting access to backend APIs that are only accessible to the Mimosa MMP server, or request pages that could perform some actions themselves. The attacker could force the server…

  • CVE-2022-21196CriFeb 18, 2022
    risk 0.65cvss 10.0epss 0.04

    MMP: All versions prior to v1.0.3, PTP C-series: Device versions prior to v2.8.6.1, and PTMP C-series and A5x: Device versions prior to v2.5.4.1 does not perform proper authorization and authentication checks on multiple API routes. An attacker may gain access to these API…

  • CVE-2022-21141CriFeb 18, 2022
    risk 0.65cvss 10.0epss 0.03

    MMP: All versions prior to v1.0.3, PTP C-series: Device versions prior to v2.8.6.1, and PTMP C-series and A5x: Device versions prior to v2.5.4.1 does not perform proper authorization checks on multiple API functions. An attacker may gain access to these functions and achieve…

  • CVE-2022-0671CriFeb 18, 2022
    risk 0.59cvss 9.1epss 0.01

    A flaw was found in vscode-xml in versions prior to 0.19.0. Schema download could lead to blind SSRF or DoS via a large file.

  • CVE-2021-45401CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.03

    A Command injection vulnerability exists in Tenda AC10U AC1200 Smart Dual-band Wireless Router AC10U V1.0 Firmware V15.03.06.49_multi via the setUsbUnload functionality. The vulnerability is caused because the client controlled "deviceName" value is passed directly to the…

  • CVE-2021-3657CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.03

    A flaw was found in mbsync versions prior to 1.4.4. Due to inadequate handling of extremely large (>=2GiB) IMAP literals, malicious or compromised IMAP servers, and hypothetically even external email senders, could cause several different buffer overflows, which could…

  • CVE-2021-20325CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Missing fixes for CVE-2021-40438 and CVE-2021-26691 in the versions of httpd, as shipped in Red Hat Enterprise Linux 8.5.0, causes a security regression compared to the versions shipped in Red Hat Enterprise Linux 8.4. A user who installs or updates to Red Hat Enterprise Linux…

  • CVE-2022-25322CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.08

    ZEROF Web Server 2.0 allows /HandleEvent SQL Injection.

  • CVE-2022-0664CriFeb 18, 2022
    risk 0.57cvss 9.8epss 0.02

    Use of Hard-coded Cryptographic Key in Go github.com/gravitl/netmaker prior to 0.8.5,0.9.4,0.10.0,0.10.1.

  • CVE-2022-0631CriFeb 18, 2022
    risk 0.00cvss 9.8epss 0.01

    Heap-based Buffer Overflow in Homebrew mruby prior to 3.2.

  • CVE-2022-25299CriFeb 18, 2022
    risk 0.00cvss 9.8epss 0.01

    This affects the package cesanta/mongoose before 7.6. The unsafe handling of file names during upload using mg_http_upload() method may enable attackers to write files to arbitrary locations outside the designated target folder.

  • CVE-2022-25315CriFeb 18, 2022
    risk 0.00cvss 9.8epss 0.05

    In Expat (aka libexpat) before 2.4.5, there is an integer overflow in storeRawNames.

  • CVE-2022-22922CriFeb 18, 2022
    risk 0.64cvss 9.8epss 0.01

    TP-Link TL-WA850RE Wi-Fi Range Extender before v6_200923 was discovered to use highly predictable and easily detectable session keys, allowing attackers to gain administrative privileges.

  • CVE-2022-22916CriFeb 17, 2022
    risk 0.67cvss 9.8epss 0.38

    O2OA v6.4.7 was discovered to contain a remote code execution (RCE) vulnerability via /x_program_center/jaxrs/invoke.

  • CVE-2021-46319CriFeb 17, 2022
    risk 0.64cvss 9.8epss 0.07

    Remote Code Execution (RCE) vulnerability exists in D-Link Router DIR-846 DIR846A1_FW100A43.bin and DIR846enFW100A53DLA-Retail.bin. Malicious users can use this vulnerability to use "\ " or backticks to bypass the shell metacharacters in the ssid0 or ssid1 parameters to execute…

  • CVE-2021-46315CriFeb 17, 2022
    risk 0.64cvss 9.8epss 0.07

    Remote Command Execution (RCE) vulnerability exists in HNAP1/control/SetWizardConfig.php in D-Link Router DIR-846 DIR846A1_FW100A43.bin and DIR846enFW100A53DLA-Retail.bin. Malicoius users can use this vulnerability to use "\ " or backticks in the shell metacharacters in the…

  • CVE-2021-46314CriFeb 17, 2022
    risk 0.66cvss 9.8epss 0.33

    A Remote Command Execution (RCE) vulnerability exists in HNAP1/control/SetNetworkTomographySettings.php of D-Link Router DIR-846 DIR846A1_FW100A43.bin and DIR846enFW100A53DLA-Retail.bin because backticks can be used for command injection when judging whether it is a reasonable…

  • CVE-2021-45382CriKEVFeb 17, 2022
    risk 0.84cvss 9.8epss 0.98

    A Remote Command Execution (RCE) vulnerability exists in all series H/W revisions D-link DIR-810L, DIR-820L/LW, DIR-826L, DIR-830L, and DIR-836L routers via the DDNS function in ncc2 binary file. Note: DIR-810L, DIR-820L, DIR-830L, DIR-826L, DIR-836L, all hardware revisions,…

  • CVE-2022-22912CriFeb 17, 2022
    risk 0.57cvss 9.8epss 0.03

    Prototype pollution vulnerability via .parse() in Plist before v3.0.4 allows attackers to cause a Denial of Service (DoS) and may lead to remote code execution.

  • CVE-2021-44868CriFeb 17, 2022
    risk 0.64cvss 9.8epss 0.01

    A problem was found in ming-soft MCMS v5.1. There is a sql injection vulnerability in /ms/cms/content/list.do

  • CVE-2022-0623CriFeb 17, 2022
    risk 0.00cvss 9.1epss 0.02

    Out-of-bounds Read in Homebrew mruby prior to 3.2.

  • CVE-2022-24984CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.03

    Forms generated by JQueryForm.com before 2022-02-05 (if file-upload capability is enabled) allow remote unauthenticated attackers to upload executable files and achieve remote code execution. This occurs because file-extension checks occur on the client side, and because not all…

  • CVE-2022-22885CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.01

    Hutool v5.7.18's HttpRequest was discovered to ignore all TLS/SSL certificate validation.

  • CVE-2022-22881CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.01

    Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /sys/user/queryUserComponentData.

  • CVE-2022-22880CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.01

    Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /jeecg-boot/sys/user/queryUserByDepId.

  • CVE-2021-43303CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.02

    Buffer overflow in PJSUA API when calling pjsua_call_dump. An attacker-controlled 'buffer' argument may cause a buffer overflow, since supplying an output buffer smaller than 128 characters may overflow the output buffer, regardless of the 'maxlen' argument supplied

  • CVE-2021-43302CriFeb 16, 2022
    risk 0.59cvss 9.1epss 0.02

    Read out-of-bounds in PJSUA API when calling pjsua_recorder_create. An attacker-controlled 'filename' argument may cause an out-of-bounds read when the filename is shorter than 4 characters.

  • CVE-2021-43301CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.02

    Stack overflow in PJSUA API when calling pjsua_playlist_create. An attacker-controlled 'file_names' argument may cause a buffer overflow since it is copied to a fixed-size stack buffer without any size validation.

  • CVE-2021-43300CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.02

    Stack overflow in PJSUA API when calling pjsua_recorder_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is copied to a fixed-size stack buffer without any size validation.

  • CVE-2021-43299CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.03

    Stack overflow in PJSUA API when calling pjsua_player_create. An attacker-controlled 'filename' argument may cause a buffer overflow since it is copied to a fixed-size stack buffer without any size validation.

  • CVE-2021-3242CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.01

    DuxCMS v3.1.3 was discovered to contain a SQL injection vulnerability via the component s/tools/SendTpl/index?keyword=.

  • CVE-2021-3781CriFeb 16, 2022
    risk 0.71cvss 9.9epss 0.84

    A trivial sandbox (enabled with the `-dSAFER` option) escape flaw was found in the ghostscript interpreter by injecting a specially crafted pipe command. This flaw allows a specially crafted document to execute arbitrary commands on the system in the context of the ghostscript…

  • CVE-2021-3773CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.05

    A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for further use in traditional network attacks.

  • CVE-2022-24665CriFeb 16, 2022
    risk 0.65cvss 9.9epss 0.03

    PHP Everywhere <= 2.0.3 included functionality that allowed execution of PHP Code Snippets via a WordPress gutenberg block by any user able to edit posts.

  • CVE-2022-24664CriFeb 16, 2022
    risk 0.64cvss 9.9epss 0.02

    PHP Everywhere <= 2.0.3 included functionality that allowed execution of PHP Code Snippets via WordPress metaboxes, which could be used by any user able to edit posts.

  • CVE-2022-24663CriFeb 16, 2022
    risk 0.65cvss 9.9epss 0.02

    PHP Everywhere <= 2.0.3 included functionality that allowed execution of PHP Code Snippets via WordPress shortcodes, which can be used by any authenticated user.

  • CVE-2022-24086CriKEVFeb 16, 2022
    risk 0.84cvss 9.8epss 0.99

    Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an improper input validation vulnerability during the checkout process. Exploitation of this issue does not require user interaction and could result in arbitrary code execution.

  • CVE-2022-0513CriFeb 16, 2022
    risk 0.68cvss 9.8epss 0.53

    The WP Statistics WordPress plugin is vulnerable to SQL Injection due to insufficient escaping and parameterization of the exclusion_reason parameter found in the ~/includes/class-wp-statistics-exclusion.php file which allows attackers without authentication to inject arbitrary…

  • CVE-2022-23358CriFeb 16, 2022
    risk 0.64cvss 9.8epss 0.01

    EasyCMS v1.6 allows for SQL injection via ArticlemAction.class.php. In the background, search terms provided by the user were not sanitized and were used directly to construct a SQL statement.

  • CVE-2022-0559CriFeb 16, 2022
    risk 0.00cvss 9.8epss 0.01

    Use After Free in GitHub repository radareorg/radare2 prior to 5.6.2.