VYPR

CVEs

38,096 total · page 426 of 762

  • CVE-2022-44053CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The d8s-networking for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-user-agents package. The affected version of d8s-htm is 0.1.0.

  • CVE-2022-44052CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The d8s-dates for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-timezones package. The affected version of d8s-htm is 0.1.0.

  • CVE-2022-44051CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The d8s-stats for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-math package. The affected version of d8s-htm is 0.1.0.

  • CVE-2022-44050CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The d8s-networking for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-json package. The affected version of d8s-htm is 0.1.0.

  • CVE-2022-44049CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The d8s-python for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-grammars package. The affected version of d8s-htm is 0.1.0.

  • CVE-2022-44048CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The d8s-urls for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-domains package. The affected version of d8s-htm is 0.1.0.

  • CVE-2022-43305CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The d8s-python for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-algorithms package. The affected version of d8s-htm is 0.1.0.

  • CVE-2022-43304CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The d8s-timer for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-uuids package. The affected version of d8s-htm is 0.1.0.

  • CVE-2022-43303CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The d8s-strings for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-uuids package. The affected version of d8s-htm is 0.1.0.

  • CVE-2022-42920CriNov 7, 2022
    risk 0.57cvss 9.8epss 0.03

    Apache Commons BCEL has a number of APIs that would normally only allow changing specific class characteristics. However, due to an out-of-bounds writing issue, these APIs can be used to produce arbitrary bytecode. This could be abused in applications that pass…

  • CVE-2022-37865CriNov 7, 2022
    risk 0.59cvss 9.1epss 0.02

    With Apache Ivy 2.4.0 an optional packaging attribute has been introduced that allows artifacts to be unpacked on the fly if they used pack200 or zip packaging. For artifacts using the "zip", "jar" or "war" packaging Ivy prior to 2.5.1 doesn't verify the target path when…

  • CVE-2022-3481CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.04

    The WooCommerce Dropshipping WordPress plugin before 4.4 does not properly sanitise and escape a parameter before using it in a SQL statement via a REST endpoint available to unauthenticated users, leading to a SQL injection

  • CVE-2022-3463CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The Contact Form Plugin WordPress plugin before 4.3.13 does not validate and escape fields when exporting form entries as CSV, leading to a CSV injection

  • CVE-2022-44797CriNov 7, 2022
    risk 0.57cvss 9.8epss 0.01

    btcd before 0.23.2, as used in Lightning Labs lnd before 0.15.2-beta and other Bitcoin-related products, mishandles witness size checking.

  • CVE-2022-44796CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Object First Ootbi BETA build 1.0.7.712. The authorization service has a flow that allows getting access to the Web UI without knowing credentials. For signing, the JWT token uses a secret key that is generated through a function that doesn't produce…

  • CVE-2022-42905CriNov 7, 2022
    risk 0.59cvss 9.1epss 0.02

    In wolfSSL before 5.5.2, if callback functions are enabled (via the WOLFSSL_CALLBACKS flag), then a malicious TLS 1.3 client or network attacker can trigger a buffer over-read on the heap of 5 bytes. (WOLFSSL_CALLBACKS is only intended for debugging.)

  • CVE-2022-44544CriNov 6, 2022
    risk 0.64cvss 9.8epss 0.01

    Mahara 21.04 before 21.04.7, 21.10 before 21.10.5, 22.04 before 22.04.3, and 22.10 before 22.10.0 potentially allow a PDF export to trigger a remote shell if the site is running on Ubuntu and the flag -dSAFER is not set with Ghostscript.

  • CVE-2022-39344CriNov 4, 2022
    risk 0.64cvss 9.8epss 0.02

    Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS ThreadX. Prior to version 6.1.12, the USB DFU UPLOAD functionality may be utilized to introduce a buffer overflow resulting in overwrite of memory contents. In…

  • CVE-2022-39387CriNov 4, 2022
    risk 0.52cvss 9.1epss 0.01

    XWiki OIDC has various tools to manipulate OpenID Connect protocol in XWiki. Prior to version 1.29.1, even if a wiki has an OpenID provider configured through its xwiki.properties, it is possible to provide a third party provider its details through request parameters. One can…

  • CVE-2022-31691CriNov 4, 2022
    risk 0.64cvss 9.8epss 0.03

    Spring Tools 4 for Eclipse version 4.16.0 and below as well as VSCode extensions such as Spring Boot Tools, Concourse CI Pipeline Editor, Bosh Editor and Cloudfoundry Manifest YML Support version 1.39.0 and below all use Snakeyaml library for YAML editing support. This library…

  • CVE-2022-3023CriNov 4, 2022
    risk 0.57cvss 9.8epss 0.01

    Use of Externally-Controlled Format String in GitHub repository pingcap/tidb prior to 6.4.0, 6.1.3.

  • CVE-2022-38168CriNov 3, 2022
    risk 0.59cvss 9.1epss 0.01

    Broken Access Control in User Authentication in Avaya Scopia Pathfinder 10 and 20 PTS version 8.3.7.0.4 allows remote unauthenticated attackers to bypass the login page, access sensitive information, and reset user passwords via URL modification.

  • CVE-2022-42744CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    CandidATS version 3.0.0 allows an external attacker to perform CRUD operations on the application databases. This is possible because the application does not correctly validate the entriesPerPage parameter against SQLi attacks.

  • CVE-2022-40747CriNov 3, 2022
    risk 0.59cvss 9.1epss 0.01

    "IBM InfoSphere Information Server 11.7 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 236584."

  • CVE-2022-22425CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    "IBM InfoSphere Information Server 11.7 is potentially vulnerable to CSV Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 223598."

  • CVE-2020-22820CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    MKCMS V6.2 has SQL injection via the /ucenter/repass.php name parameter.

  • CVE-2020-22819CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    MKCMS V6.2 has SQL injection via the /ucenter/active.php verify parameter.

  • CVE-2020-22818CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    MKCMS V6.2 has SQL injection via /ucenter/reg.php name parameter.

  • CVE-2022-43109CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.04

    D-Link DIR-823G v1.0.2 was found to contain a command injection vulnerability in the function SetNetworkTomographySettings. This vulnerability allows attackers to execute arbitrary commands via a crafted packet.

  • CVE-2022-43108CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the firewallEn parameter in the formSetFirewallCfg function.

  • CVE-2022-43107CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the time parameter in the setSmartPowerManagement function.

  • CVE-2022-43106CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the schedStartTime parameter in the setSchedWifi function.

  • CVE-2022-43105CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the shareSpeed parameter in the fromSetWifiGusetBasic function.

  • CVE-2022-43104CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the wpapsk_crypto parameter in the fromSetWirelessRepeat function.

  • CVE-2022-43103CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the list parameter in the formSetQosBand function.

  • CVE-2022-43102CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the timeZone parameter in the fromSetSysTime function.

  • CVE-2022-43101CriNov 3, 2022
    risk 0.64cvss 9.8epss 0.01

    Tenda AC23 V16.03.07.45_cn was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName function.

  • CVE-2022-39382CriNov 3, 2022
    risk 0.57cvss 9.8epss 0.02

    Keystone is a headless CMS for Node.js — built with GraphQL and React.`@keystone-6/[email protected] || 3.0.1` users that use `NODE_ENV` to trigger security-sensitive functionality in their production builds are vulnerable to `NODE_ENV` being inlined to `"development"` for user code,…

  • CVE-2022-3575CriNov 2, 2022
    risk 0.64cvss 9.8epss 0.01

    Frauscher Sensortechnik GmbH FDS102 for FAdC R2 and FAdCi R2 v2.8.0 to v2.9.1 are vulnerable to malicious code upload without authentication by using the configuration upload function. This could lead to a complete compromise of the FDS102 device.

  • CVE-2022-39353CriNov 2, 2022
    risk 0.54cvss 9.4epss 0.01

    xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. xmldom parses XML that is not well-formed because it contains multiple top level elements, and adds all root nodes to the `childNodes` collection of the `Document`,…

  • CVE-2022-27586CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.01

    Password recovery vulnerability in SICK SIM1004 Partnumber 1098148 with firmware version <2.0.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This leads to an increase…

  • CVE-2022-27585CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.01

    Password recovery vulnerability in SICK SIM1000 FX Partnumber 1097816 and 1097817 with firmware version <1.6.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This leads…

  • CVE-2022-27584CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.01

    Password recovery vulnerability in SICK SIM2000ST Partnumber 1080579 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This leads to an increase in their privileges on the…

  • CVE-2022-27582CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.01

    Password recovery vulnerability in SICK SIM4000 (PPC) Partnumber 1078787 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. This leads to an increase in their privileges on…

  • CVE-2022-42813CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.01

    A certificate validation issue existed in the handling of WKWebView. This issue was addressed with improved validation. This issue is fixed in tvOS 16.1, iOS 16.1 and iPadOS 16, macOS Ventura 13, watchOS 9.1. Processing a maliciously crafted certificate may lead to arbitrary…

  • CVE-2022-42808CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.02

    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 16.1, iOS 16.1 and iPadOS 16, macOS Ventura 13, watchOS 9.1. A remote user may be able to cause kernel code execution.

  • CVE-2022-32941CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.02

    The issue was addressed with improved bounds checks. This issue is fixed in iOS 15.7.1 and iPadOS 15.7.1, macOS Ventura 13, iOS 16.1 and iPadOS 16, macOS Monterey 12.6.1, macOS Big Sur 11.7.1. A buffer overflow may result in arbitrary code execution.

  • CVE-2022-41552CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.01

    Server-Side Request Forgery (SSRF) vulnerability in Hitachi Infrastructure Analytics Advisor on Linux (Data Center Analytics, Analytics probe components), Hitachi Ops Center Analyzer on Linux (Hitachi Ops Center Analyzer detail view, Hitachi Ops Center Analyzer probe components)…

  • CVE-2022-2572CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.01

    In affected versions of Octopus Server where access is managed by an external authentication provider, it was possible that the API key/keys of a disabled/deleted user were still valid after the access was revoked.

  • CVE-2022-44542CriNov 1, 2022
    risk 0.64cvss 9.8epss 0.01

    lesspipe before 2.06 allows attackers to execute code via Perl Storable (pst) files, because of deserialized object destructor execution via a key/value pair in a hash.