VYPR

CVEs

31,783 total · page 360 of 636

  • CVE-2021-44882CriFeb 4, 2022
    risk 0.64cvss 9.8epss 0.05

    D-Link device DIR_878_FW1.30B08_Hotfix_02 was discovered to contain a command injection vulnerability in the twsystem function. This vulnerability allows attackers to execute arbitrary commands via a crafted HNAP1 POST request.

  • CVE-2021-44881CriFeb 4, 2022
    risk 0.64cvss 9.8epss 0.05

    D-Link device DIR_882 DIR_882_FW1.30B06_Hotfix_02 was discovered to contain a command injection vulnerability in the twsystem function. This vulnerability allows attackers to execute arbitrary commands via a crafted HNAP1 POST request.

  • CVE-2021-44880CriFeb 4, 2022
    risk 0.64cvss 9.8epss 0.04

    D-Link devices DIR_878 DIR_878_FW1.30B08_Hotfix_02 and DIR_882 DIR_882_FW1.30B06_Hotfix_02 were discovered to contain a command injection vulnerability in the system function. This vulnerability allows attackers to execute arbitrary commands via a crafted HNAP1 POST request.

  • CVE-2021-44247CriFeb 4, 2022
    risk 0.64cvss 9.8epss 0.03

    Totolink devices A3100R v4.1.2cu.5050_B20200504, A830R v5.9c.4729_B20191112, and A720R v4.1.5cu.470_B20200911 were discovered to contain command injection vulnerability in the function setNoticeCfg. This vulnerability allows attackers to execute arbitrary commands via the IpFrom…

  • CVE-2022-24307CriFeb 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Mastodon before 3.3.2 and 3.4.x before 3.4.6 has incorrect access control because it does not compact incoming signed JSON-LD activities. (JSON-LD signing has been supported since version 1.6.0.)

  • CVE-2022-23357CriFeb 3, 2022
    risk 0.61cvss 9.1epss 0.20

    mozilo2.0 was discovered to be vulnerable to directory traversal attacks via the parameter curent_dir.

  • CVE-2021-42640CriFeb 2, 2022
    risk 0.59cvss 9.1epss 0.02

    PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to reassign drivers for any printer.

  • CVE-2021-42637CriFeb 2, 2022
    risk 0.64cvss 9.8epss 0.02

    PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use user-controlled input to craft a URL, resulting in a Server Side Request Forgery (SSRF) vulnerability.

  • CVE-2022-21817CriFeb 2, 2022
    risk 0.61cvss 9.3epss 0.02

    NVIDIA Omniverse Launcher contains a Cross-Origin Resource Sharing (CORS) vulnerability which can allow an unprivileged remote attacker, if they can get user to browse malicious site, to acquire access tokens allowing them to access resources in other security domains, which may…

  • CVE-2021-39070CriFeb 2, 2022
    risk 0.64cvss 9.8epss 0.02

    IBM Security Verify Access 10.0.0.0, 10.0.1.0 and 10.0.2.0 with the advanced access control authentication service enabled could allow an attacker to authenticate as any user on the system. IBM X-Force ID: 215353.

  • CVE-2021-24043CriFeb 2, 2022
    risk 0.59cvss 9.1epss 0.01

    A missing bound check in RTCP flag parsing code prior to WhatsApp for Android v2.21.23.2, WhatsApp Business for Android v2.21.23.2, WhatsApp for iOS v2.21.230.6, WhatsApp Business for iOS 2.21.230.7, and WhatsApp Desktop v2.2145.0 could have allowed an out-of-bounds heap read if…

  • CVE-2022-24300CriFeb 2, 2022
    risk 0.00cvss 9.8epss 0.02

    Minetest before 5.4.0 allows attackers to add or modify arbitrary meta fields of the same item stack as saved user input, aka ItemStack meta injection.

  • CVE-2022-24223CriFeb 1, 2022
    risk 0.72cvss 9.8epss 0.62

    AtomCMS v2.0 was discovered to contain a SQL injection vulnerability via /admin/login.php.

  • CVE-2022-24222CriFeb 1, 2022
    risk 0.64cvss 9.8epss 0.01

    eliteCMS v1.0 was discovered to contain a SQL injection vulnerability via /admin/edit_user.php.

  • CVE-2022-24221CriFeb 1, 2022
    risk 0.64cvss 9.8epss 0.01

    eliteCMS v1.0 was discovered to contain a SQL injection vulnerability via /admin/functions/functions.php.

  • CVE-2022-24220CriFeb 1, 2022
    risk 0.64cvss 9.8epss 0.01

    eliteCMS v1.0 was discovered to contain a SQL injection vulnerability via /admin/edit_post.php.

  • CVE-2022-24219CriFeb 1, 2022
    risk 0.64cvss 9.8epss 0.01

    eliteCMS v1.0 was discovered to contain a SQL injection vulnerability via /admin/edit_page.php.

  • CVE-2022-24218CriFeb 1, 2022
    risk 0.61cvss 9.1epss 0.17

    An issue in /admin/delete_image.php of eliteCMS v1.0 allows attackers to delete arbitrary files.

  • CVE-2021-46093CriFeb 1, 2022
    risk 0.64cvss 9.8epss 0.01

    eliteCMS v1.0 is vulnerable to Insecure Permissions via manage_uploads.php.

  • CVE-2021-43510CriFeb 1, 2022
    risk 0.64cvss 9.8epss 0.08

    SQL Injection vulnerability exists in Sourcecodester Simple Client Management System 1.0 via the username field in login.php.

  • CVE-2021-43509CriFeb 1, 2022
    risk 0.64cvss 9.8epss 0.02

    SQL Injection vulnerability exists in Sourcecodester Simple Client Management System 1.0 via the id parameter in view-service.php.

  • CVE-2022-0401CriFeb 1, 2022
    risk 0.57cvss 9.8epss 0.02

    Path Traversal in NPM w-zip prior to 1.0.12.

  • CVE-2022-0320CriFeb 1, 2022
    risk 0.64cvss 9.8epss 0.02

    The Essential Addons for Elementor WordPress plugin before 5.0.5 does not validate and sanitise some template data before it them in include statements, which could allow unauthenticated attackers to perform Local File Inclusion attack and read arbitrary files on the server,…

  • CVE-2021-24814CriFeb 1, 2022
    risk 0.63cvss 9.6epss 0.02

    The check_privacy_settings AJAX action of the WordPress GDPR WordPress plugin before 1.9.26, available to both unauthenticated and authenticated users, responds with JSON data without an "application/json" content-type. Since an HTML payload isn't properly escaped, it may be…

  • CVE-2021-24762CriFeb 1, 2022
    risk 0.74cvss 9.8epss 0.87

    The Perfect Survey WordPress plugin before 1.5.2 does not validate and escape the question_id GET parameter before using it in a SQL statement in the get_question AJAX action, allowing unauthenticated users to perform SQL injection.

  • CVE-2022-23603CriFeb 1, 2022
    risk 0.00cvss 9.9epss 0.01

    iTunesRPC-Remastered is a discord rich presence application for use with iTunes & Apple Music. In code before commit 24f43aa user input is not properly sanitized and code injection is possible. Users are advised to upgrade as soon as is possible. There are no known workarounds…

  • CVE-2022-24263CriJan 31, 2022
    risk 0.67cvss 9.8epss 0.08

    Hospital Management System v4.0 was discovered to contain a SQL injection vulnerability in /Hospital-Management-System-master/func.php via the email parameter.

  • CVE-2021-31617CriJan 31, 2022
    risk 0.64cvss 9.8epss 0.02

    In ASQ in Stormshield Network Security (SNS) 1.0.0 through 2.7.8, 2.8.0 through 2.16.0, 3.0.0 through 3.7.20, 3.8.0 through 3.11.8, and 4.0.1 through 4.2.2, mishandling of memory management can lead to remote code execution.

  • CVE-2020-36064CriJan 31, 2022
    risk 0.64cvss 9.8epss 0.01

    Online Course Registration v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.

  • CVE-2021-45079CriJan 31, 2022
    risk 0.59cvss 9.1epss 0.03

    In strongSwan before 5.9.5, a malicious responder can send an EAP-Success message too early without actually authenticating the client and (in the case of EAP methods with mutual authentication and EAP-only authentication for IKEv2) even without server authentication.

  • CVE-2022-0339CriJan 30, 2022
    risk 0.57cvss 9.8epss 0.01

    Server-Side Request Forgery (SSRF) in Pypi calibreweb prior to 0.6.16.

  • CVE-2021-46660CriJan 30, 2022
    risk 0.64cvss 9.8epss 0.01

    Signiant Manager+Agents before 15.1 allows XML External Entity (XXE) attacks.

  • CVE-2022-24123CriJan 29, 2022
    risk 0.00cvss 9.0epss 0.02

    MarkText through 0.16.3 does not sanitize the input of a mermaid block before rendering. This could lead to Remote Code Execution via a .md file containing a mutation Cross-Site Scripting (XSS) payload.

  • CVE-2021-46448CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.01

    H.H.G Multistore v5.1.0 and below was discovered to contain a SQL injection vulnerability via /admin/customers.php?page=1&cID.

  • CVE-2021-46446CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.01

    H.H.G Multistore v5.1.0 and below was discovered to contain a SQL injection vulnerability via /admin/admin.php?module=admin_access_group_edit&aagID.

  • CVE-2021-46445CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.01

    H.H.G Multistore v5.1.0 and below was discovered to contain a SQL injection vulnerability via /admin/categories.php?box_group_id.

  • CVE-2021-46444CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.01

    H.H.G Multistore v5.1.0 and below was discovered to contain a SQL injection vulnerability via /admin/admin.php?module=admin_group_edit&agID.

  • CVE-2021-23484CriJan 28, 2022
    risk 0.57cvss 9.8epss 0.02

    The package zip-local before 0.3.5 are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) which can lead to an extraction of a crafted file outside the intended extraction directory.

  • CVE-2022-21217CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.01

    An out-of-bounds write vulnerability exists in the device TestEmail functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted network request can lead to an out-of-bounds write. An attacker can send an HTTP request to trigger this vulnerability.

  • CVE-2021-40409CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.04

    An OS command injection vulnerability exists in the device network settings functionality of reolink RLC-410W v3.0.0.136_20121102. At [1] or [2], based on DDNS type, the ddns->password variable, that has the value of the password parameter provided through the SetDdns API, is…

  • CVE-2021-40408CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.04

    An OS command injection vulnerability exists in the device network settings functionality of reolink RLC-410W v3.0.0.136_20121102. At [1] or [2], based on DDNS type, the ddns->username variable, that has the value of the userName parameter provided through the SetDdns API, is…

  • CVE-2021-22820CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.01

    A CWE-614 Insufficient Session Expiration vulnerability exists that could allow an attacker to maintain an unauthorized access over a hijacked session to the charger station web server even after the legitimate user account holder has changed his password. Affected Products:…

  • CVE-2021-44971CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.02

    Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an attacker can obtain sensitive information, and even combine it with authenticated command injection to implement RCE.

  • CVE-2021-41609CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.02

    SQL injection in the ID parameter of the UploadedImageDisplay.aspx endpoint of SelectSurvey.NET before 5.052.000 allows a remote, unauthenticated attacker to retrieve data from the application's backend database via boolean-based blind and UNION injection.

  • CVE-2022-22294CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability exists in ZFAKA<=1.43 which an attacker can use to complete SQL injection in the foreground and add a background administrator account.

  • CVE-2021-45899CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.02

    SuiteCRM before 7.12.3 and 8.x before 8.0.2 allows PHAR deserialization that can lead to remote code execution.

  • CVE-2021-45898CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.01

    SuiteCRM before 7.12.3 and 8.x before 8.0.2 allows local file inclusion.

  • CVE-2022-23097CriJan 28, 2022
    risk 0.59cvss 9.1epss 0.02

    An issue was discovered in the DNS proxy in Connman through 1.40. forward_dns_reply mishandles a strnlen call, leading to an out-of-bounds read.

  • CVE-2022-23096CriJan 28, 2022
    risk 0.59cvss 9.1epss 0.03

    An issue was discovered in the DNS proxy in Connman through 1.40. The TCP server reply implementation lacks a check for the presence of sufficient Header Data, leading to an out-of-bounds read.

  • CVE-2020-25905CriJan 28, 2022
    risk 0.64cvss 9.8epss 0.02

    An SQL Injection vulnerabilty exists in Sourcecodester Mobile Shop System in PHP MySQL 1.0 via the email parameter in (1) login.php or (2) LoginAsAdmin.php.