CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2022-42762

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42763

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42764

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42765

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    3.3
    Low

    CVE-2022-42767

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    4.3
    Medium

    CVE-2022-42768

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    4.7
    Medium

    CVE-2022-42771

    Last Modified: 23 Apr 2025

    In wlan driver, there is a race condition, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42772

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42773

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42774

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42775

    Last Modified: 23 Apr 2025

    In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-42776

    Last Modified: 23 Apr 2025

    In UscAIEngine service, there is a missing permission check. This could lead to set up UscAIEngine service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-42777

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-42778

    Last Modified: 23 Apr 2025

    In windows manager service, there is a missing permission check. This could lead to set up windows manager service with no additional execution privileges needed.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42779

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42781

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39090

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39091

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39093

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39094

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39095

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39096

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39097

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39100

    Last Modified: 24 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39102

    Last Modified: 24 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-39106

    Last Modified: 24 Apr 2025

    In sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-39131

    Last Modified: 24 Apr 2025

    In camera driver, there is a possible memory corruption due to improper locking. This could lead to local denial of service in kernel.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-39132

    Last Modified: 24 Apr 2025

    In camera driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

    Published: 6 Dec 2022
    4.7
    Medium

    CVE-2022-39134

    Last Modified: 24 Apr 2025

    In audio driver, there is a use after free due to a race condition. This could lead to local denial of service in kernel.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42782

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing permission check, This could lead to local information disclosure.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-41325

    Last Modified: 23 Apr 2025

    An integer overflow in the VNC module in VideoLAN VLC Media Player through 3.0.17.4 allows attackers, by tricking a user into opening a crafted playlist or connecting to a rogue VNC server, to crash VLC or execute code under some conditions.

    Published: 6 Dec 2022
    7.5
    High

    CVE-2022-44030

    Last Modified: 23 Apr 2025

    Redmine 5.x before 5.0.4 allows downloading of file attachments of any Issue or any Wiki page due to insufficient permission checks. Depending on the configuration, this may require login as a registered user.

    Published: 6 Dec 2022
    8.8
    High

    CVE-2022-44289

    Last Modified: 23 Apr 2025

    Thinkphp 5.1.41 and 5.0.24 has a code logic error which causes file upload getshell.

    Published: 6 Dec 2022
    9.8
    Critical

    CVE-2022-46383

    Last Modified: 23 Apr 2025

    RackN Digital Rebar through 4.6.14, 4.7 through 4.7.22, 4.8 through 4.8.5, 4.9 through 4.9.12, and 4.10 through 4.10.8 has exposed a privileged token via a public API endpoint (Incorrect Access Control). The token can be used to escalate privileges within the Digital Rebar system and grant full administrative access.

    Published: 6 Dec 2022
    —
    Unknown

    CVE-2022-46665

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 6 Dec 2022
    —
    Unknown

    CVE-2022-46671

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 6 Dec 2022
    —
    Unknown

    CVE-2022-46672

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 6 Dec 2022
    —
    Unknown

    CVE-2022-46673

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 6 Dec 2022
    —
    Unknown

    CVE-2022-46681

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes: none.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2023-32360

    Last Modified: 13 Feb 2025

    An authentication issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An unauthenticated user may be able to access recently printed documents.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39098

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39099

    Last Modified: 23 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    7.8
    High

    CVE-2022-39101

    Last Modified: 24 Apr 2025

    In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-39130

    Last Modified: 24 Apr 2025

    In face detect driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kernel.

    Published: 6 Dec 2022
    4.7
    Medium

    CVE-2022-40603

    Last Modified: 23 Apr 2025

    A cross-site scripting (XSS) vulnerability in the CGI program of Zyxel ZyWALL/USG series firmware versions 4.30 through 4.72, VPN series firmware versions 4.30 through 5.31, USG FLEX series firmware versions 4.50 through 5.31, and ATP series firmware versions 4.32 through 5.31, which could allow an attacker to trick a user into visiting a crafted URL with the XSS payload. Then, the attacker could gain access to some browser-based information if the malicious script is executed on the victim’s browser.

    Published: 6 Dec 2022
    7.1
    High

    CVE-2022-41902

    Last Modified: 23 Apr 2025

    TensorFlow is an open source platform for machine learning. The function MakeGrapplerFunctionItem takes arguments that determine the sizes of inputs and outputs. If the inputs given are greater than or equal to the sizes of the outputs, an out-of-bounds memory read or a crash is triggered. We have patched the issue in GitHub commit a65411a1d69edfb16b25907ffb8f73556ce36bb7. The fix will be included in TensorFlow 2.11.0. We will also cherrypick this commit on TensorFlow 2.8.4, 2.9.3, and 2.10.1.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42766

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing permission check, This could lead to local information disclosure.

    Published: 6 Dec 2022
    3.3
    Low

    CVE-2022-42769

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    5.5
    Medium

    CVE-2022-42780

    Last Modified: 23 Apr 2025

    In wlan driver, there is a possible missing bounds check, This could lead to local denial of service in wlan services.

    Published: 6 Dec 2022
    9.1
    Critical

    CVE-2022-44900

    Last Modified: 23 Apr 2025

    A directory traversal vulnerability in the SevenZipFile.extractall() function of the python library py7zr v0.20.0 and earlier allows attackers to write arbitrary files via extracting a crafted 7z file.

    Published: 6 Dec 2022