VYPR

CVEs

38,073 total · page 476 of 762

  • CVE-2022-25435CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via the list parameter in the SetStaticRoutecfg function.

  • CVE-2022-25434CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.09

    Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via the firewallen parameter in the SetFirewallCfg function.

  • CVE-2022-25433CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via the urls parameter in the saveparentcontrolinfo function.

  • CVE-2022-25431CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC9 v15.03.2.21 was discovered to contain multiple stack overflows via the NPTR, V12, V10 and V11 parameter in the Formsetqosband function.

  • CVE-2022-25429CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC9 v15.03.2.21 was discovered to contain a buffer overflow via the time parameter in the saveparentcontrolinfo function.

  • CVE-2022-25428CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via the deviceId parameter in the saveparentcontrolinfo function.

  • CVE-2022-25427CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Tenda AC9 v15.03.2.21 was discovered to contain a stack overflow via the schedendtime parameter in the openSchedWifi function.

  • CVE-2022-22642CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.01

    This issue was addressed with improved checks. This issue is fixed in iOS 15.4 and iPadOS 15.4. A user may be able to bypass the Emergency SOS passcode prompt.

  • CVE-2022-22641CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.01

    A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3. An application may be able to gain elevated privileges.

  • CVE-2022-22635CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.01

    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4. An application may be able to gain elevated privileges.

  • CVE-2022-22632CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    A logic issue was addressed with improved state management. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.5, watchOS 8.5, macOS Monterey 12.3. A malicious application may be able to elevate privileges.

  • CVE-2022-22587CriKEVMar 18, 2022
    risk 0.77cvss 9.8epss 0.12

    A memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, macOS Big Sur 11.6.3, macOS Monterey 12.2. A malicious application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report…

  • CVE-2022-22586CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.2. A malicious application may be able to execute arbitrary code with kernel privileges.

  • CVE-2022-0547CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.04

    OpenVPN 2.1 until v2.4.12 and v2.5.6 may enable authentication bypass in external authentication plug-ins when more than one of them makes use of deferred authentication replies, which allows an external user to be granted access with only partially correct credentials.

  • CVE-2020-25197CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.03

    A code injection vulnerability exists in one of the webpages in GE Reason RT430, RT431 & RT434 GNSS clocks in firmware versions prior to version 08A06 that could allow an authenticated remote attacker to execute arbitrary code on the system.

  • CVE-2020-25176CriMar 18, 2022
    risk 0.60cvss 9.1epss 0.06

    Some commands used by the Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x eXchange Layer (IXL) protocol perform various file operations in the file system. Since the parameter pointing to the file name is not checked for reserved characters, it is possible for a remote,…

  • CVE-2022-24637CriMar 18, 2022
    risk 0.68cvss 9.8epss 0.99

    Open Web Analytics (OWA) before 1.7.4 allows an unauthenticated remote attacker to obtain sensitive user information, which can be used to gain admin privileges by leveraging cache hashes. This occurs because files generated with '<?php (instead of the intended "<?php sequence)…

  • CVE-2022-24595CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    Automotive Grade Linux Kooky Koi 11.0.0, 11.0.1, 11.0.2, 11.0.3, 11.0.4, and 11.0.5 is affected by Incorrect Access Control in usr/bin/afb-daemon. To exploit the vulnerability, an attacker should send a well-crafted HTTP (or WebSocket) request to the socket listened by the…

  • CVE-2022-0742CriMar 18, 2022
    risk 0.00cvss 9.1epss 0.05

    Memory leak in icmp6 implementation in Linux Kernel 5.13+ allows a remote attacker to DoS a host by making it go out-of-memory via icmp6 packets of type 130 or 131. We recommend upgrading past commit 2d3916f3189172d5c69d33065c3c21119fe539fc.

  • CVE-2021-45835CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.03

    The Online Admission System 1.0 allows an unauthenticated attacker to upload or transfer files of dangerous types to the application through documents.php, which may be used to execute malicious code or lead to code execution.

  • CVE-2021-45834CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.02

    An attacker can upload or transfer files of dangerous types to the OpenDocMan 1.4.4 portal via add.php using MIME-bypass, which may be automatically processed within the product's environment or lead to arbitrary code execution.

  • CVE-2022-27240CriMar 18, 2022
    risk 0.00cvss 9.8epss 0.02

    scheme/webauthn.c in Glewlwyd SSO server 2.x before 2.6.2 has a buffer overflow associated with a webauthn assertion.

  • CVE-2021-45967CriMar 18, 2022
    risk 0.65cvss 9.8epss 0.21

    An issue was discovered in Pascom Cloud Phone System before 7.20.x. A configuration error between NGINX and a backend Tomcat server leads to a path traversal in the Tomcat server, exposing unintended endpoints.

  • CVE-2021-45966CriMar 18, 2022
    risk 0.64cvss 9.8epss 0.06

    An issue was discovered in Pascom Cloud Phone System before 7.20.x. In the management REST API, /services/apply in exd.pl allows remote attackers to execute arbitrary code via shell metacharacters.

  • CVE-2021-44088CriMar 17, 2022
    risk 0.64cvss 9.8epss 0.03

    An SQL Injection vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows a remote attacker to bypass authentication via unsanitized login parameters.

  • CVE-2021-44087CriMar 17, 2022
    risk 0.64cvss 9.8epss 0.04

    A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows an unauthenticated remote attacker to upload a maliciously crafted PHP via photo upload.

  • CVE-2022-26501CriKEVMar 17, 2022
    risk 0.82cvss 9.8epss 0.04

    Veeam Backup & Replication 10.x and 11.x has Incorrect Access Control (issue 1 of 2).

  • CVE-2021-45040CriMar 17, 2022
    risk 0.64cvss 9.8epss 0.03

    The Spatie media-library-pro library through 1.17.10 and 2.x through 2.1.6 for Laravel allows remote attackers to upload executable files via the uploads route.

  • CVE-2021-44906CriMar 17, 2022
    risk 0.57cvss 9.8epss 0.05

    Minimist <=1.2.5 is vulnerable to Prototype Pollution via file index.js, function setKey() (lines 69-95).

  • CVE-2020-15591CriMar 17, 2022
    risk 0.64cvss 9.8epss 0.04

    fexsrv in F*EX (aka Frams' Fast File EXchange) before fex-20160919_2 allows eval injection (for unauthenticated remote code execution).

  • CVE-2021-44259CriMar 17, 2022
    risk 0.64cvss 9.8epss 0.02

    A vulnerability is in the 'wx.html' page of the WAVLINK AC1200, version WAVLINK-A42W-1.27.6-20180418, which can allow a remote attacker to access this page without any authentication. When an unauthorized user accesses this page directly, it connects to this device as a friend…

  • CVE-2022-0748CriMar 17, 2022
    risk 0.64cvss 9.8epss 0.02

    The package post-loader from 0.0.0 are vulnerable to Arbitrary Code Execution which uses a markdown parser in an unsafe way so that any javascript code inside the markdown input files gets evaluated and executed.

  • CVE-2021-44908CriMar 17, 2022
    risk 0.57cvss 9.8epss 0.02

    SailsJS Sails.js <=1.4.0 is vulnerable to Prototype Pollution via controller/load-action-modules.js, function loadActionModules().

  • CVE-2022-1000CriMar 17, 2022
    risk 0.00cvss 9.8epss 0.02

    Path Traversal in GitHub repository prasathmani/tinyfilemanager prior to 2.4.7.

  • CVE-2022-24074CriMar 17, 2022
    risk 0.64cvss 9.8epss 0.01

    Whale Bridge, a default extension in Whale browser before 3.12.129.18, allowed to receive any SendMessage request from the content script itself that could lead to controlling Whale Bridge if the rendering process compromises.

  • CVE-2022-22273CriMar 17, 2022
    risk 0.64cvss 9.8epss 0.02

    Improper neutralization of Special Elements leading to OS Command Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products and older firmware versions of Secure Mobile Access (SMA) 100 series products, specifically the SRA appliances running all 8.x,…

  • CVE-2022-26293CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.02

    Online Project Time Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the function save_employee at /ptms/classes/Users.php.

  • CVE-2022-23610CriMar 16, 2022
    risk 0.59cvss 9.1epss 0.01

    wire-server provides back end services for Wire, an open source messenger. In versions of wire-server prior to the 2022-01-27 release, it was possible to craft DSA Signatures to bypass SAML SSO and impersonate any Wire user with SAML credentials. In teams with SAML, but without…

  • CVE-2022-23812CriMar 16, 2022
    risk 0.57cvss 9.8epss 0.04

    This affects the package node-ipc from 10.1.1 and before 10.1.3. This package contains malicious code, that targets users with IP located in Russia or Belarus, and overwrites their files with a heart emoji. **Note**: from versions 11.0.0 onwards, instead of having malicious code…

  • CVE-2022-25251CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.02

    When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) may allow an attacker to send certain XML messages to a specific port without proper authentication. Successful exploitation of this vulnerability could allow a…

  • CVE-2022-25247CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.04

    Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) may allow an attacker to send certain commands to a specific port without authentication. Successful exploitation of this vulnerability could allow a remote unauthenticated attacker to obtain full…

  • CVE-2022-25246CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.02

    Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) uses hard-coded credentials for its UltraVNC installation. Successful exploitation of this vulnerability could allow a remote authenticated attacker to take full remote control of the host operating…

  • CVE-2022-0982CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.01

    The telnet_input_char function in opt/src/accel-pppd/cli/telnet.c suffers from a memory corruption vulnerability, whereby user input cmdline_len is copied into a fixed buffer b->buf without any bound checks. If the server connects with a malicious client, crafted client requests…

  • CVE-2021-39737CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.01

    Product: AndroidVersions: Android kernelAndroid ID: A-208229524References: N/A

  • CVE-2021-39723CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.01

    Product: AndroidVersions: Android kernelAndroid ID: A-209014813References: N/A

  • CVE-2021-39720CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.01

    Product: AndroidVersions: Android kernelAndroid ID: A-207433926References: N/A

  • CVE-2021-39710CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.01

    Product: AndroidVersions: Android kernelAndroid ID: A-202160245References: N/A

  • CVE-2021-39708CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.01

    In gatt_process_notification of gatt_cl.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2021-23165CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.04

    A flaw was found in htmldoc before v1.9.12. Heap buffer overflow in pspdf_prepare_outpages(), in ps-pdf.cxx may lead to execute arbitrary code and denial of service.

  • CVE-2021-23158CriMar 16, 2022
    risk 0.64cvss 9.8epss 0.02

    A flaw was found in htmldoc in v1.9.12. Double-free in function pspdf_export(),in ps-pdf.cxx may result in a write-what-where condition, allowing an attacker to execute arbitrary code and denial of service.