VYPR

CVEs

38,098 total · page 412 of 762

  • CVE-2022-48123CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.02

    TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the servername parameter in the setting/delStaticDhcpRules function.

  • CVE-2022-48122CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.02

    TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the dayvalid parameter in the setting/delStaticDhcpRules function.

  • CVE-2022-48121CriJan 20, 2023
    risk 0.64cvss 9.8epss 0.02

    TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the rsabits parameter in the setting/delStaticDhcpRules function.

  • CVE-2023-20025CriJan 20, 2023
    risk 0.59cvss 9.0epss 0.02

    A vulnerability in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, and RV082 Routers could allow an unauthenticated, remote attacker to bypass authentication on an affected device. This vulnerability is due to improper validation of user input…

  • CVE-2022-46476CriJan 19, 2023
    risk 0.67cvss 9.8epss 0.41

    D-Link DIR-859 A1 1.05 was discovered to contain a command injection vulnerability via the service= variable in the soapcgi_main function.

  • CVE-2023-22741CriJan 19, 2023
    risk 0.00cvss 9.8epss 0.02

    Sofia-SIP is an open-source SIP User-Agent library, compliant with the IETF RFC3261 specification. In affected versions Sofia-SIP **lacks both message length and attributes length checks** when it handles STUN packets, leading to controllable heap-over-flow. For example, in…

  • CVE-2022-46887CriJan 19, 2023
    risk 0.65cvss 9.8epss 0.19

    Multiple SQL injection vulnerabilities in NexusPHP before 1.7.33 allow remote attackers to execute arbitrary SQL commands via the conuser[] parameter in takeconfirm.php; the delcheater parameter in cheaterbox.php; or the usernw parameter in nowarn.php.

  • CVE-2022-47740CriJan 19, 2023
    risk 0.64cvss 9.8epss 0.01

    Seltmann GmbH Content Management System 6 is vulnerable to SQL Injection via /index.php.

  • CVE-2022-47105CriJan 19, 2023
    risk 0.57cvss 9.8epss 0.01

    Jeecg-boot v3.4.4 was discovered to contain a SQL injection vulnerability via the component /sys/dict/queryTableData.

  • CVE-2023-0397CriJan 19, 2023
    risk 0.62cvss 9.6epss 0.00

    A malicious / defect bluetooth controller can cause a Denial of Service due to unchecked input in le_read_buffer_size_complete.

  • CVE-2020-35326CriJan 18, 2023
    risk 0.65cvss 9.8epss 0.14

    SQL Injection vulnerability in file /inxedu/demo_inxedu_open/src/main/resources/mybatis/inxedu/website/WebsiteImagesMapper.xml in inxedu 2.0.6 via the id value.

  • CVE-2022-47966CriKEVJan 18, 2023
    risk 0.93cvss 9.8epss 1.00

    Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because the xmlsec XSLT features, by design in that version, make the application…

  • CVE-2022-41417CriJan 18, 2023
    risk 0.00cvss 9.8epss 0.01

    BlogEngine.NET v3.3.8.0 allows an attacker to create any folder with "files" prefix under ~/App_Data/.

  • CVE-2022-47911CriJan 18, 2023
    risk 0.59cvss 9.1epss 0.01

    Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not properly validate the input module name to the backup services of the software. This could allow a remote attacker to access sensitive functions of the application and…

  • CVE-2022-45444CriJan 18, 2023
    risk 0.65cvss 10.0epss 0.01

    Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 contains hard-coded passwords for select users in the application’s database. This could allow a remote attacker to login to the database with unrestricted access.

  • CVE-2022-43483CriJan 18, 2023
    risk 0.59cvss 9.1epss 0.01

    Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not properly validate the input module name to the monitor services of the software. This could allow a remote attacker to access sensitive functions of the application and…

  • CVE-2022-41989CriJan 18, 2023
    risk 0.59cvss 9.0epss 0.01

    Sewio’s Real-Time Location System (RTLS) Studio version 2.0.0 up to and including version 2.6.2 does not validate the length of RTLS report payloads during communication. This allows an attacker to send an exceedingly long payload, resulting in an out-of-bounds write to cause…

  • CVE-2023-21890CriJan 18, 2023
    risk 0.64cvss 9.8epss 0.01

    Vulnerability in the Oracle Communications Converged Application Server product of Oracle Communications (component: Core). Supported versions that are affected are 7.1.0 and 8.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via UDP to…

  • CVE-2022-46732CriJan 18, 2023
    risk 0.64cvss 9.8epss 0.01

    Even if the authentication fails for local service authentication, the requested command could still execute regardless of authentication status.

  • CVE-2022-41903CriJan 17, 2023
    risk 0.04cvss 9.8epss 0.44

    Git is distributed revision control system. `git log` can display commits in an arbitrary format using its `--format` specifiers. This functionality is also exposed to `git archive` via the `export-subst` gitattribute. When processing the padding operators, there is a integer…

  • CVE-2022-23521CriJan 17, 2023
    risk 0.05cvss 9.8epss 0.56

    Git is distributed revision control system. gitattributes are a mechanism to allow defining attributes for paths. These attributes can be defined by adding a `.gitattributes` file to the repository, which contains a set of file patterns and the attributes that should be set for…

  • CVE-2023-22731CriJan 17, 2023
    risk 0.57cvss 9.9epss 0.01

    Shopware is an open source commerce platform based on Symfony Framework and Vue js. In a Twig environment **without the Sandbox extension**, it is possible to refer to PHP functions in twig filters like `map`, `filter`, `sort`. This allows a template to call any global PHP…

  • CVE-2023-22727CriJan 17, 2023
    risk 0.57cvss 9.8epss 0.01

    CakePHP is a development framework for PHP web apps. In affected versions the `Cake\Database\Query::limit()` and `Cake\Database\Query::offset()` methods are vulnerable to SQL injection if passed un-sanitized user request data. This issue has been fixed in 4.2.12, 4.3.11, 4.4.10.…

  • CVE-2022-46475CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.10

    D-Link DIR 645A1 1.06B01_Beta01 was discovered to contain a stack overflow via the service= variable in the genacgi_main function.

  • CVE-2022-43977CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered on GE Grid Solutions MS3000 devices before 3.7.6.25p0_3.2.2.17p0_4.7p0. The debug port accessible via TCP (a qconn service) lacks access control.

  • CVE-2022-43976CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in FC46-WebBridge on GE Grid Solutions MS3000 devices before 3.7.6.25p0_3.2.2.17p0_4.7p0. Direct access to the API is possible on TCP port 8888 via programs located in the cgi-bin folder without any authentication.

  • CVE-2022-36760CriJan 17, 2023
    risk 0.59cvss 9.0epss 0.02

    Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') vulnerability in mod_proxy_ajp of Apache HTTP Server allows an attacker to smuggle requests to the AJP server it forwards requests to. This issue affects Apache HTTP Server Apache HTTP Server 2.4 version…

  • CVE-2022-47853CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.02

    TOTOlink A7100RU V7.4cu.2313_B20191024 is vulnerable to Command Injection Vulnerability in the httpd service. An attacker can obtain a stable root shell through a specially constructed payload.

  • CVE-2022-23739CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    An incorrect authorization vulnerability was identified in GitHub Enterprise Server, allowing for escalation of privileges in GraphQL API requests from GitHub Apps. This vulnerability allowed an app installed on an organization to gain access to and modify most…

  • CVE-2023-22357CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    Active debug code exists in OMRON CP1L-EL20DR-D all versions, which may lead to a command that is not specified in FINS protocol being executed without authentication. A remote unauthenticated attacker may read/write in arbitrary area of the device memory, which may lead to…

  • CVE-2023-22303CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    TP-Link SG105PE firmware prior to 'TL-SG105PE(UN) 1.0_1.0.0 Build 20221208' contains an authentication bypass vulnerability. Under the certain conditions, an attacker may impersonate an administrator of the product. As a result, information may be obtained and/or the product's…

  • CVE-2023-22279CriJan 17, 2023
    risk 0.64cvss 9.8epss 0.01

    MAHO-PBX NetDevancer Lite/Uni/Pro/Cloud prior to Ver.1.11.00, MAHO-PBX NetDevancer VSG Lite/Uni prior to Ver.1.11.00, and MAHO-PBX NetDevancer MobileGate Home/Office prior to Ver.1.11.00 allow a remote unauthenticated attacker to execute an arbitrary OS command.

  • CVE-2022-43462CriJan 17, 2023
    risk 0.59cvss 9.1epss 0.01

    Auth. SQL Injection (SQLi) vulnerability in Adeel Ahmed's IP Blacklist Cloud plugin <= 5.00 versions.

  • CVE-2022-4447CriJan 16, 2023
    risk 0.64cvss 9.8epss 0.05

    The Fontsy WordPress plugin through 1.8.6 does not properly sanitize and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2022-4101CriJan 16, 2023
    risk 0.61cvss 9.1epss 0.29

    The Images Optimize and Upload CF7 WordPress plugin through 2.1.4 does not validate the file to be deleted via an AJAX action available to unauthenticated users, which could allow them to delete arbitrary files on the server via path traversal attack.

  • CVE-2022-4060CriJan 16, 2023
    risk 0.67cvss 9.8epss 0.43

    The User Post Gallery WordPress plugin through 2.19 does not limit what callback functions can be called by users, making it possible to any visitors to run code on sites running it.

  • CVE-2023-0311CriJan 15, 2023
    risk 0.57cvss 9.8epss 0.01

    Improper Authentication in GitHub repository thorsten/phpmyfaq prior to 3.1.10.

  • CVE-2023-0307CriJan 15, 2023
    risk 0.57cvss 9.8epss 0.01

    Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.10.

  • CVE-2023-0299CriJan 14, 2023
    risk 0.57cvss 9.8epss 0.01

    Improper Input Validation in GitHub repository publify/publify prior to 9.2.10.

  • CVE-2022-1812CriJan 14, 2023
    risk 0.59cvss 9.8epss 0.31

    Integer Overflow or Wraparound in GitHub repository publify/publify prior to 9.2.10.

  • CVE-2023-0297CriJan 14, 2023
    risk 0.67cvss 9.8epss 0.96

    Code Injection in GitHub repository pyload/pyload prior to 0.5.0b3.dev31.

  • CVE-2023-22495CriJan 14, 2023
    risk 0.64cvss 9.8epss 0.01

    Izanami is a shared configuration service well-suited for micro-service architecture implementation. Attackers can bypass the authentication in this application when deployed using the official Docker image. Because a hard coded secret is used to sign the authentication token…

  • CVE-2022-45299CriJan 13, 2023
    risk 0.57cvss 9.8epss 0.01

    An issue in the IpFile argument of rust-lang webbrowser-rs v0.8.2 allows attackers to access arbitrary files via supplying a crafted URL.

  • CVE-2022-46955CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=save_queue.

  • CVE-2022-46954CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=delete_transaction.

  • CVE-2022-3782CriJan 13, 2023
    risk 0.53cvss 9.1epss 0.06

    keycloak: path traversal via double URL encoding. A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. An attacker can use this flaw to construct a malicious request to bypass validation and access other URLs and potentially sensitive…

  • CVE-2023-23566CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    A 2-Step Verification problem in Axigen 10.3.3.52 allows an attacker to access a mailbox by bypassing 2-Step Verification when they try to add an account to any third-party webmail service (or add an account to Outlook or Gmail, etc.) with IMAP or POP3 without any verification…

  • CVE-2022-46502CriJan 13, 2023
    risk 0.65cvss 9.8epss 0.14

    Online Student Enrollment System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter at /student_enrollment/admin/login.php.

  • CVE-2022-46478CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    The RPC interface in datax-web v1.0.0 and v2.0.0 to v2.1.2 contains no permission checks by default which allows attackers to execute arbitrary commands via crafted Hessian serialized data.

  • CVE-2022-46471CriJan 13, 2023
    risk 0.64cvss 9.8epss 0.01

    Online Health Care System v1.0 was discovered to contain a SQL injection vulnerability via the consulting_id parameter at /healthcare/Admin/consulting_detail.php.