| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-43421 | Cri | 0.60 | 9.8 | 0.43 | Apr 7, 2022 | A File Upload vulnerability exists in Studio-42 elFinder 2.0.4 to 2.1.59 via connector.minimal.php, which allows a remote malicious user to upload arbitrary files and execute PHP code. | ||
| CVE-2022-27022 | Cri | 0.64 | 9.8 | 0.02 | Apr 7, 2022 | There is a stack overflow vulnerability in the SetSysTimeCfg() function in the httpd service of Tenda AC9 V15.03.2.21_cn. The attacker can obtain a stable root shell through a constructed payload. | ||
| CVE-2022-27016 | Cri | 0.64 | 9.8 | 0.02 | Apr 7, 2022 | There is a stack overflow vulnerability in the SetStaticRouteCfg() function in the httpd service of Tenda AC9 15.03.2.21_cn. | ||
| CVE-2021-46419 | Cri | 0.68 | 9.1 | 0.71 | Apr 7, 2022 | An unauthorized file deletion vulnerability in Telesquare TLR-2855KS6 via DELETE method can allow deletion of system files and scripts. | ||
| CVE-2022-23900 | Cri | 0.64 | 9.8 | 0.04 | Apr 7, 2022 | A command injection vulnerability in the API of the Wavlink WL-WN531P3 router, version M31G3.V5030.201204, allows an attacker to achieve unauthorized remote code execution via a malicious POST request through /cgi-bin/adm.cgi. | ||
| CVE-2022-27818 | Cri | 0.52 | 9.1 | 0.02 | Apr 7, 2022 | SWHKD 1.1.5 unsafely uses the /tmp/swhkd.sock pathname. There can be an information leak or denial of service. | ||
| CVE-2020-22253 | Cri | 0.64 | 9.8 | 0.01 | Apr 6, 2022 | Xiongmai Technology Co devices AHB7008T-MH-V2, AHB7804R-ELS, AHB7804R-MH-V2, AHB7808R-MS-V2, AHB7808R-MS, AHB7808T-MS-V2, AHB7804R-LMS, and HI3518E_50H10L_S39 were all discovered to have port 9530 open which allows unauthenticated attackers to make arbitrary Telnet connections… | ||
| CVE-2022-26613 | Cri | 0.64 | 9.8 | 0.01 | Apr 6, 2022 | PHP-CMS v1.0 was discovered to contain a SQL injection vulnerability via the category parameter in categorymenu.php. | ||
| CVE-2022-20755 | Cri | 0.59 | 9.0 | 0.03 | Apr 6, 2022 | Multiple vulnerabilities in the API and web-based management interfaces of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker with read/write privileges to the application to write files or execute… | ||
| CVE-2022-20754 | Cri | 0.59 | 9.0 | 0.03 | Apr 6, 2022 | Multiple vulnerabilities in the API and web-based management interfaces of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker with read/write privileges to the application to write files or execute… | ||
| CVE-2022-24786 | Cri | 0.00 | 9.8 | 0.02 | Apr 6, 2022 | PJSIP is a free and open source multimedia communication library written in C. PJSIP versions 2.12 and prior do not parse incoming RTCP feedback RPSI (Reference Picture Selection Indication) packet, but any app that directly uses pjmedia_rtcp_fb_parse_rpsi() will be affected. A… | ||
| CVE-2022-1253 | Cri | 0.00 | 9.8 | 0.02 | Apr 6, 2022 | Heap-based Buffer Overflow in GitHub repository strukturag/libde265 prior to and including 1.0.8. The fix is established in commit 8e89fe0e175d2870c39486fdd09250b230ec10b8 but does not yet belong to an official release. | ||
| CVE-2021-26114 | Cri | 0.64 | 9.8 | 0.02 | Apr 6, 2022 | Multiple improper neutralization of special elements used in an SQL command vulnerabilities in FortiWAN before 4.5.9 may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests. | ||
| CVE-2022-23441 | Cri | 0.59 | 9.1 | 0.01 | Apr 6, 2022 | A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow an unauthenticated attacker on the network to disguise as and forge messages from other collectors. | ||
| CVE-2022-28468 | Cri | 0.64 | 9.8 | 0.02 | Apr 5, 2022 | Payroll Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter. | ||
| CVE-2022-28467 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Online Student Admission v1.0 was discovered to contain a SQL injection vulnerability via the txtapplicationID parameter. | ||
| CVE-2022-28116 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Online Banking System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter. | ||
| CVE-2022-28115 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Online Sports Complex Booking v1.0 was discovered to contain a SQL injection vulnerability via the id parameter. | ||
| CVE-2022-27304 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via the user parameter. | ||
| CVE-2022-27124 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Insurance Management System 1.0 was discovered to contain a SQL injection vulnerability via the username parameter. | ||
| CVE-2022-27123 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Employee Performance Evaluation v1.0 was discovered to contain a SQL injection vulnerability via the email parameter. | ||
| CVE-2022-26628 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Matrimony v1.0 was discovered to contain a SQL injection vulnerability via the Password parameter. | ||
| CVE-2022-28219 | Cri | 0.74 | 9.8 | 0.97 | Apr 5, 2022 | Cewolf in Zoho ManageEngine ADAudit Plus before 7060 is vulnerable to an unauthenticated XXE attack that leads to Remote Code Execution. | ||
| CVE-2022-26635 | Cri | 0.65 | 9.8 | 0.21 | Apr 5, 2022 | PHP-Memcached v2.2.0 and below contains an improper NULL termination which allows attackers to execute CLRF injection. Note: Third parties have disputed this as not affecting PHP-Memcached directly. | ||
| CVE-2021-41752 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Stack overflow vulnerability in Jerryscript before commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct 20, 2021 due to an unbounded recursive call to the new opt() function. | ||
| CVE-2021-41751 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Buffer overflow vulnerability in file ecma-builtin-array-prototype.c:909 in function ecma_builtin_array_prototype_object_slice in Jerryscript before commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct 20, 2021. | ||
| CVE-2021-30080 | Cri | 0.57 | 9.8 | 0.01 | Apr 5, 2022 | An issue was discovered in the route lookup process in beego before 1.12.11 that allows attackers to bypass access control. | ||
| CVE-2021-28428 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | File upload vulnerability in HorizontCMS before 1.0.0-beta.3 via uploading a .htaccess and *.hello files using the Media Files upload functionality. The original file upload vulnerability (CVE-2020-27387) was remediated by restricting the PHP extensions; however, we confirmed… | ||
| CVE-2020-19229 | Cri | 0.64 | 9.8 | 0.01 | Apr 5, 2022 | Jeesite 1.2.7 uses the apache shiro version 1.2.3 affected by CVE-2016-4437. Because of this version of the java deserialization vulnerability, an attacker could exploit the vulnerability to execute arbitrary commands via the rememberMe parameter. | ||
| CVE-2022-1212 | Cri | 0.00 | 9.8 | 0.02 | Apr 5, 2022 | Use-After-Free in str_escape in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited. | ||
| CVE-2021-33207 | Cri | 0.64 | 9.8 | 0.02 | Apr 5, 2022 | The HTTP client in MashZone NextGen through 10.7 GA deserializes untrusted data when it gets an HTTP response with a 570 status code. | ||
| CVE-2022-24231 | Cri | 0.64 | 9.8 | 0.02 | Apr 5, 2022 | Simple Student Information System v1.0 was discovered to contain a SQL injection vulnerability via add/Student. | ||
| CVE-2022-26585 | Cri | 0.64 | 9.8 | 0.05 | Apr 5, 2022 | Mingsoft MCMS v5.2.7 was discovered to contain a SQL injection vulnerability via /cms/content/list. | ||
| CVE-2022-0790 | Cri | 0.62 | 9.6 | 0.01 | Apr 5, 2022 | Use after free in Cast UI in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially perform a sandbox escape via a crafted HTML page. | ||
| CVE-2022-0466 | Cri | 0.62 | 9.6 | 0.01 | Apr 5, 2022 | Inappropriate implementation in Extensions Platform in Google Chrome prior to 98.0.4758.80 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted HTML page. | ||
| CVE-2022-0452 | Cri | 0.62 | 9.6 | 0.01 | Apr 5, 2022 | Use after free in Safe Browsing in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. | ||
| CVE-2022-1162 | Cri | 0.61 | 9.1 | 0.76 | Apr 4, 2022 | A hardcoded password was set for accounts registered using an OmniAuth provider (e.g. OAuth, LDAP, SAML) in GitLab CE/EE versions 14.7 prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 allowing attackers to potentially take over accounts | ||
| CVE-2021-32986 | Cri | 0.64 | 9.8 | 0.01 | Apr 4, 2022 | After Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 is unlocked by an authorized user, the unlocked state does not timeout. If the programming software is interrupted, the PLC remains unlocked. All subsequent programming connections are allowed… | ||
| CVE-2021-32984 | Cri | 0.64 | 9.8 | 0.01 | Apr 4, 2022 | All programming connections receive the same unlocked privileges, which can result in a privilege escalation. During the time Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 is unlocked by an authorized user, an attacker can connect to the PLC… | ||
| CVE-2021-32980 | Cri | 0.64 | 9.8 | 0.01 | Apr 4, 2022 | Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 does not protect against additional software programming connections. An attacker can connect to the PLC while an existing connection is already active. | ||
| CVE-2022-25569 | Cri | 0.64 | 9.8 | 0.01 | Apr 4, 2022 | Bettini Srl GAMS Product Line v4.3.0 was discovered to re-use static SSH keys across installations, allowing unauthenticated attackers to login as root users via extracting a key from the software. | ||
| CVE-2022-0990 | Cri | 0.00 | 9.1 | 0.01 | Apr 4, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18. | ||
| CVE-2022-1165 | Cri | 0.52 | 9.1 | 0.02 | Apr 4, 2022 | The Blackhole for Bad Bots WordPress plugin before 3.3.2 uses headers such as CF-CONNECTING-IP, CLIENT-IP etc to determine the IP address of requests hitting the blackhole URL, which allows them to be spoofed. This could result in blocking arbitrary IP addresses, such as… | ||
| CVE-2022-0939 | Cri | 0.00 | 9.9 | 0.01 | Apr 4, 2022 | Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18. | ||
| CVE-2022-26530 | Cri | 0.00 | 9.1 | 0.02 | Apr 3, 2022 | swaylock before 1.6 allows attackers to trigger a crash and achieve unlocked access to a Wayland compositor. | ||
| CVE-2021-30064 | Cri | 0.64 | 9.8 | 0.01 | Apr 3, 2022 | On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, an SSH login can succeed with hardcoded default credentials (if the device is in the uncommissioned state). | ||
| CVE-2022-28381 | Cri | 0.72 | 9.8 | 0.70 | Apr 3, 2022 | Mediaserver.exe in ALLMediaServer 1.6 has a stack-based buffer overflow that allows remote attackers to execute arbitrary code via a long string to TCP port 888, a related issue to CVE-2017-17932. | ||
| CVE-2022-28368 | Cri | 0.66 | 9.8 | 0.82 | Apr 3, 2022 | Dompdf 1.2.1 allows remote code execution via a .php file in the src:url field of an @font-face Cascading Style Sheets (CSS) statement (within an HTML input file). | ||
| CVE-2022-27534 | Cri | 0.64 | 9.8 | 0.03 | Apr 1, 2022 | Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had a bug in a data parsing module that potentially allowed an attacker to execute arbitrary code. The fix was delivered automatically. Credits: Georgy… | ||
| CVE-2022-27177 | Cri | 0.57 | 9.8 | 0.02 | Apr 1, 2022 | A Python format string issue leading to information disclosure and potentially remote code execution in ConsoleMe for all versions prior to 1.2.2 |
- risk 0.60cvss 9.8epss 0.43
A File Upload vulnerability exists in Studio-42 elFinder 2.0.4 to 2.1.59 via connector.minimal.php, which allows a remote malicious user to upload arbitrary files and execute PHP code.
- risk 0.64cvss 9.8epss 0.02
There is a stack overflow vulnerability in the SetSysTimeCfg() function in the httpd service of Tenda AC9 V15.03.2.21_cn. The attacker can obtain a stable root shell through a constructed payload.
- risk 0.64cvss 9.8epss 0.02
There is a stack overflow vulnerability in the SetStaticRouteCfg() function in the httpd service of Tenda AC9 15.03.2.21_cn.
- risk 0.68cvss 9.1epss 0.71
An unauthorized file deletion vulnerability in Telesquare TLR-2855KS6 via DELETE method can allow deletion of system files and scripts.
- risk 0.64cvss 9.8epss 0.04
A command injection vulnerability in the API of the Wavlink WL-WN531P3 router, version M31G3.V5030.201204, allows an attacker to achieve unauthorized remote code execution via a malicious POST request through /cgi-bin/adm.cgi.
- risk 0.52cvss 9.1epss 0.02
SWHKD 1.1.5 unsafely uses the /tmp/swhkd.sock pathname. There can be an information leak or denial of service.
- risk 0.64cvss 9.8epss 0.01
Xiongmai Technology Co devices AHB7008T-MH-V2, AHB7804R-ELS, AHB7804R-MH-V2, AHB7808R-MS-V2, AHB7808R-MS, AHB7808T-MS-V2, AHB7804R-LMS, and HI3518E_50H10L_S39 were all discovered to have port 9530 open which allows unauthenticated attackers to make arbitrary Telnet connections…
- risk 0.64cvss 9.8epss 0.01
PHP-CMS v1.0 was discovered to contain a SQL injection vulnerability via the category parameter in categorymenu.php.
- risk 0.59cvss 9.0epss 0.03
Multiple vulnerabilities in the API and web-based management interfaces of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker with read/write privileges to the application to write files or execute…
- risk 0.59cvss 9.0epss 0.03
Multiple vulnerabilities in the API and web-based management interfaces of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker with read/write privileges to the application to write files or execute…
- risk 0.00cvss 9.8epss 0.02
PJSIP is a free and open source multimedia communication library written in C. PJSIP versions 2.12 and prior do not parse incoming RTCP feedback RPSI (Reference Picture Selection Indication) packet, but any app that directly uses pjmedia_rtcp_fb_parse_rpsi() will be affected. A…
- risk 0.00cvss 9.8epss 0.02
Heap-based Buffer Overflow in GitHub repository strukturag/libde265 prior to and including 1.0.8. The fix is established in commit 8e89fe0e175d2870c39486fdd09250b230ec10b8 but does not yet belong to an official release.
- risk 0.64cvss 9.8epss 0.02
Multiple improper neutralization of special elements used in an SQL command vulnerabilities in FortiWAN before 4.5.9 may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests.
- risk 0.59cvss 9.1epss 0.01
A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow an unauthenticated attacker on the network to disguise as and forge messages from other collectors.
- risk 0.64cvss 9.8epss 0.02
Payroll Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter.
- risk 0.64cvss 9.8epss 0.01
Online Student Admission v1.0 was discovered to contain a SQL injection vulnerability via the txtapplicationID parameter.
- risk 0.64cvss 9.8epss 0.01
Online Banking System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter.
- risk 0.64cvss 9.8epss 0.01
Online Sports Complex Booking v1.0 was discovered to contain a SQL injection vulnerability via the id parameter.
- risk 0.64cvss 9.8epss 0.01
Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via the user parameter.
- risk 0.64cvss 9.8epss 0.01
Insurance Management System 1.0 was discovered to contain a SQL injection vulnerability via the username parameter.
- risk 0.64cvss 9.8epss 0.01
Employee Performance Evaluation v1.0 was discovered to contain a SQL injection vulnerability via the email parameter.
- risk 0.64cvss 9.8epss 0.01
Matrimony v1.0 was discovered to contain a SQL injection vulnerability via the Password parameter.
- risk 0.74cvss 9.8epss 0.97
Cewolf in Zoho ManageEngine ADAudit Plus before 7060 is vulnerable to an unauthenticated XXE attack that leads to Remote Code Execution.
- risk 0.65cvss 9.8epss 0.21
PHP-Memcached v2.2.0 and below contains an improper NULL termination which allows attackers to execute CLRF injection. Note: Third parties have disputed this as not affecting PHP-Memcached directly.
- risk 0.64cvss 9.8epss 0.01
Stack overflow vulnerability in Jerryscript before commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct 20, 2021 due to an unbounded recursive call to the new opt() function.
- risk 0.64cvss 9.8epss 0.01
Buffer overflow vulnerability in file ecma-builtin-array-prototype.c:909 in function ecma_builtin_array_prototype_object_slice in Jerryscript before commit e1ce7dd7271288be8c0c8136eea9107df73a8ce2 on Oct 20, 2021.
- risk 0.57cvss 9.8epss 0.01
An issue was discovered in the route lookup process in beego before 1.12.11 that allows attackers to bypass access control.
- risk 0.64cvss 9.8epss 0.01
File upload vulnerability in HorizontCMS before 1.0.0-beta.3 via uploading a .htaccess and *.hello files using the Media Files upload functionality. The original file upload vulnerability (CVE-2020-27387) was remediated by restricting the PHP extensions; however, we confirmed…
- risk 0.64cvss 9.8epss 0.01
Jeesite 1.2.7 uses the apache shiro version 1.2.3 affected by CVE-2016-4437. Because of this version of the java deserialization vulnerability, an attacker could exploit the vulnerability to execute arbitrary commands via the rememberMe parameter.
- risk 0.00cvss 9.8epss 0.02
Use-After-Free in str_escape in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited.
- risk 0.64cvss 9.8epss 0.02
The HTTP client in MashZone NextGen through 10.7 GA deserializes untrusted data when it gets an HTTP response with a 570 status code.
- risk 0.64cvss 9.8epss 0.02
Simple Student Information System v1.0 was discovered to contain a SQL injection vulnerability via add/Student.
- risk 0.64cvss 9.8epss 0.05
Mingsoft MCMS v5.2.7 was discovered to contain a SQL injection vulnerability via /cms/content/list.
- risk 0.62cvss 9.6epss 0.01
Use after free in Cast UI in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially perform a sandbox escape via a crafted HTML page.
- risk 0.62cvss 9.6epss 0.01
Inappropriate implementation in Extensions Platform in Google Chrome prior to 98.0.4758.80 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted HTML page.
- risk 0.62cvss 9.6epss 0.01
Use after free in Safe Browsing in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
- risk 0.61cvss 9.1epss 0.76
A hardcoded password was set for accounts registered using an OmniAuth provider (e.g. OAuth, LDAP, SAML) in GitLab CE/EE versions 14.7 prior to 14.7.7, 14.8 prior to 14.8.5, and 14.9 prior to 14.9.2 allowing attackers to potentially take over accounts
- risk 0.64cvss 9.8epss 0.01
After Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 is unlocked by an authorized user, the unlocked state does not timeout. If the programming software is interrupted, the PLC remains unlocked. All subsequent programming connections are allowed…
- risk 0.64cvss 9.8epss 0.01
All programming connections receive the same unlocked privileges, which can result in a privilege escalation. During the time Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 is unlocked by an authorized user, an attacker can connect to the PLC…
- risk 0.64cvss 9.8epss 0.01
Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 does not protect against additional software programming connections. An attacker can connect to the PLC while an existing connection is already active.
- risk 0.64cvss 9.8epss 0.01
Bettini Srl GAMS Product Line v4.3.0 was discovered to re-use static SSH keys across installations, allowing unauthenticated attackers to login as root users via extracting a key from the software.
- risk 0.00cvss 9.1epss 0.01
Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18.
- risk 0.52cvss 9.1epss 0.02
The Blackhole for Bad Bots WordPress plugin before 3.3.2 uses headers such as CF-CONNECTING-IP, CLIENT-IP etc to determine the IP address of requests hitting the blackhole URL, which allows them to be spoofed. This could result in blocking arbitrary IP addresses, such as…
- risk 0.00cvss 9.9epss 0.01
Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18.
- risk 0.00cvss 9.1epss 0.02
swaylock before 1.6 allows attackers to trigger a crash and achieve unlocked access to a Wayland compositor.
- risk 0.64cvss 9.8epss 0.01
On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, an SSH login can succeed with hardcoded default credentials (if the device is in the uncommissioned state).
- risk 0.72cvss 9.8epss 0.70
Mediaserver.exe in ALLMediaServer 1.6 has a stack-based buffer overflow that allows remote attackers to execute arbitrary code via a long string to TCP port 888, a related issue to CVE-2017-17932.
- risk 0.66cvss 9.8epss 0.82
Dompdf 1.2.1 allows remote code execution via a .php file in the src:url field of an @font-face Cascading Style Sheets (CSS) statement (within an HTML input file).
- risk 0.64cvss 9.8epss 0.03
Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had a bug in a data parsing module that potentially allowed an attacker to execute arbitrary code. The fix was delivered automatically. Credits: Georgy…
- risk 0.57cvss 9.8epss 0.02
A Python format string issue leading to information disclosure and potentially remote code execution in ConsoleMe for all versions prior to 1.2.2