CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2021-46834

    Last Modified: 28 May 2025

    A permission bypass vulnerability in Huawei cross device task management could allow an attacker to access certain resource in the attacked devices. Affected product versions include:JAD-AL50 versions 102.0.0.225(C00E220R3P4).

    Published: 20 Sept 2022
    6.5
    Medium

    CVE-2022-33735

    Last Modified: 28 May 2025

    There is a password verification vulnerability in WS7200-10 11.0.2.13. Attackers on the LAN may use brute force cracking to obtain passwords, which may cause sensitive system information to be disclosed.

    Published: 20 Sept 2022
    6.1
    Medium

    CVE-2020-36602

    Last Modified: 28 May 2025

    There is an out-of-bounds read and write vulnerability in some headset products. An unauthenticated attacker gets the device physically and crafts malformed message with specific parameter and sends the message to the affected products. Due to insufficient validation of message, which may be exploited to cause out-of-bounds read and write.

    Published: 20 Sept 2022
    9.8
    Critical

    CVE-2022-40009

    Last Modified: 28 May 2025

    SWFTools commit 772e55a was discovered to contain a heap-use-after-free via the function grow_unicode at /lib/ttf.c.

    Published: 20 Sept 2022
    9.8
    Critical

    CVE-2022-40008

    Last Modified: 28 May 2025

    SWFTools commit 772e55a was discovered to contain a heap-buffer overflow via the function readU8 at /lib/ttf.c.

    Published: 20 Sept 2022
    7.1
    High

    CVE-2022-30579

    Last Modified: 28 May 2025

    The Web Player component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace and TIBCO Spotfire Server contains a difficult to exploit vulnerability that allows a low privileged attacker with network access to execute blind Server Side Request Forgery (SSRF) on the affected system. Affected releases are TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace: version 12.0.0 and TIBCO Spotfire Server: version 12.0.0.

    Published: 20 Sept 2022
    7.5
    High

    CVE-2022-38955

    Last Modified: 28 May 2025

    An exploitable firmware modification vulnerability was discovered on the Netgear WPN824EXT WiFi Range Extender. An attacker can conduct a MITM attack to modify the user-uploaded firmware image and bypass the CRC check. A successful attack can either introduce a backdoor to the device or make the device DoS. This affects Firmware Version: 1.1.1_1.1.9.

    Published: 20 Sept 2022
    5.3
    Medium

    CVE-2022-38956

    Last Modified: 28 May 2025

    An exploitable firmware downgrade vulnerability was discovered on the Netgear WPN824EXT WiFi Range Extender. An attacker can conduct a MITM attack to replace the user-uploaded firmware image with an original old firmware image. This affects Firmware 1.1.1_1.1.9 and earlier.

    Published: 20 Sept 2022
    8.8
    High

    CVE-2022-37205

    Last Modified: 28 May 2025

    JFinal CMS 5.1.0 is affected by: SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

    Published: 20 Sept 2022
    9.8
    Critical

    CVE-2022-37265

    Last Modified: 28 May 2025

    Prototype pollution vulnerability in stealjs steal 2.2.4 via the alias variable in babel.js.

    Published: 20 Sept 2022
    8.2
    High

    CVE-2022-40262

    Last Modified: 27 May 2025

    A potential attacker can execute an arbitrary code at the time of the PEI phase and influence the subsequent boot stages. This can lead to the mitigations bypassing, physical memory contents disclosure, discovery of any secrets from any Virtual Machines (VMs) and bypassing memory isolation and confidential computing boundaries. Additionally, an attacker can build a payload which can be injected into the SMRAM memory. This issue affects: Module name: S3Resume2Pei SHA256: 7bb29f05534a8a1e010443213451425098faebd45948a4642db969b19d0253fc Module GUID: 89E549B0-7CFE-449D-9BA3-10D8B2312D71

    Published: 20 Sept 2022
    8.2
    High

    CVE-2022-40261

    Last Modified: 28 May 2025

    An attacker can exploit this vulnerability to elevate privileges from ring 0 to ring -2, execute arbitrary code in System Management Mode - an environment more privileged than operating system (OS) and completely isolated from it. Running arbitrary code in SMM additionally bypasses SMM-based SPI flash protections against modifications, which can help an attacker to install a firmware backdoor/implant into BIOS. Such a malicious firmware code in BIOS could persist across operating system re-installs. Additionally, this vulnerability potentially could be used by malicious actors to bypass security mechanisms provided by UEFI firmware (for example, Secure Boot and some types of memory isolation for hypervisors). This issue affects: Module name: OverClockSmiHandler SHA256: a204699576e1a48ce915d9d9423380c8e4c197003baf9d17e6504f0265f3039c Module GUID: 4698C2BD-A903-410E-AD1F-5EEF3A1AE422

    Published: 20 Sept 2022
    8.8
    High

    CVE-2022-40250

    Last Modified: 28 May 2025

    An attacker can exploit this vulnerability to elevate privileges from ring 0 to ring -2, execute arbitrary code in System Management Mode - an environment more privileged than operating system (OS) and completely isolated from it. Running arbitrary code in SMM additionally bypasses SMM-based SPI flash protections against modifications, which can help an attacker to install a firmware backdoor/implant into BIOS. Such a malicious firmware code in BIOS could persist across operating system re-installs. Additionally, this vulnerability potentially could be used by malicious actors to bypass security mechanisms provided by UEFI firmware (for example, Secure Boot and some types of memory isolation for hypervisors). This issue affects: Module name: SmmSmbiosElog SHA256: 3a8acb4f9bddccb19ec3b22b22ad97963711550f76b27b606461cd5073a93b59 Module GUID: 8e61fd6b-7a8b-404f-b83f-aa90a47cabdf This issue affects: AMI Aptio 5.x. This issue affects: AMI Aptio 5.x.

    Published: 20 Sept 2022
    7.2
    High

    CVE-2022-40246

    Last Modified: 28 May 2025

    A potential attacker can write one byte by arbitrary address at the time of the PEI phase (only during S3 resume boot mode) and influence the subsequent boot stages. This can lead to the mitigations bypassing, physical memory contents disclosure, discovery of any secrets from any Virtual Machines (VMs) and bypassing memory isolation and confidential computing boundaries. Additionally, an attacker can build a payload which can be injected into the SMRAM memory. This issue affects: Module name: SbPei SHA256: d827182e5f9b7a9ff0b9d3e232f7cfac43b5237e2681e11f005be627a49283a9 Module GUID: c1fbd624-27ea-40d1-aa48-94c3dc5c7e0d

    Published: 20 Sept 2022
    —
    Unknown

    CVE-2022-2154

    Last Modified: 13 Feb 2025

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-34345. Reason: This candidate is a reservation duplicate of CVE-2022-34345. Notes: All CVE users should reference CVE-2022-34345 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 20 Sept 2022
    8.2
    High

    CVE-2022-26873

    Last Modified: 27 May 2025

    A potential attacker can execute an arbitrary code at the time of the PEI phase and influence the subsequent boot stages. This can lead to the mitigations bypassing, physical memory contents disclosure, discovery of any secrets from any Virtual Machines (VMs) and bypassing memory isolation and confidential computing boundaries. Additionally, an attacker can build a payload which can be injected into the SMRAM memory. This issue affects: Module name: PlatformInitAdvancedPreMem SHA256: 644044fdb8daea30a7820e0f5f88dbf5cd460af72fbf70418e9d2e47efed8d9b Module GUID: EEEE611D-F78F-4FB9-B868-55907F169280 This issue affects: AMI Aptio 5.x.

    Published: 20 Sept 2022
    7.5
    High

    CVE-2022-37259

    Last Modified: 28 May 2025

    A Regular Expression Denial of Service (ReDoS) flaw was found in stealjs steal 2.2.4 via the string variable in babel.js.

    Published: 20 Sept 2022
    7.5
    High

    CVE-2022-39974

    Last Modified: 28 May 2025

    WASM3 v0.5.0 was discovered to contain a segmentation fault via the component op_Select_i32_srs in wasm3/source/m3_exec.h.

    Published: 20 Sept 2022
    7.5
    High

    CVE-2016-20015

    Last Modified: 29 May 2025

    In the ebuild package through smokeping-2.7.3-r1 for SmokePing on Gentoo, the initscript allows the smokeping user to gain ownership of any file, allowing for the smokeping user to gain root privileges. There is a race condition involving /var/lib/smokeping and chown.

    Published: 20 Sept 2022
    9.8
    Critical

    CVE-2017-20148

    Last Modified: 29 May 2025

    In the ebuild package through logcheck-1.3.23.ebuild for Logcheck on Gentoo, it is possible to achieve root privilege escalation from the logcheck user because of insecure recursive chown calls.

    Published: 20 Sept 2022
    9.8
    Critical

    CVE-2022-41138

    Last Modified: 29 May 2025

    In Zutty before 0.13, DECRQSS in text written to the terminal can achieve arbitrary code execution.

    Published: 20 Sept 2022
    6.5
    Medium

    CVE-2017-20147

    Last Modified: 29 May 2025

    In the ebuild package through smokeping-2.7.3-r1 for SmokePing on Gentoo, the initscript uses a PID file that is writable by the smokeping user. By writing arbitrary PIDs to that file, the smokeping user can cause a denial of service to arbitrary PIDs when the service is stopped.

    Published: 20 Sept 2022
    9.8
    Critical

    CVE-2022-37204

    Last Modified: 27 May 2025

    Final CMS 5.1.0 is vulnerable to SQL Injection.

    Published: 20 Sept 2022
    9.8
    Critical

    CVE-2022-38916

    Last Modified: 27 May 2025

    A file upload vulnerability exists in the storage feature of pagekit 1.0.18, which allows an attacker to upload malicious files

    Published: 20 Sept 2022
    8.8
    High

    CVE-2022-35196

    Last Modified: 29 May 2025

    TestLink v1.9.20 was discovered to contain a Cross-Site Request Forgery (CSRF) via /lib/plan/planView.php.

    Published: 20 Sept 2022
    5.4
    Medium

    CVE-2022-32167

    Last Modified: 29 May 2025

    Cloudreve versions v1.0.0 through v3.5.3 are vulnerable to Stored Cross-Site Scripting (XSS), via the file upload functionality. A low privileged user will be able to share a file with an admin user, which could lead to privilege escalation.

    Published: 20 Sept 2022
    7.9
    High

    CVE-2021-33081

    Last Modified: 5 Feb 2025

    Protection mechanism failure in firmware for some Intel(R) SSD DC Products may allow a privileged user to potentially enable information disclosure via local access.

    Published: 20 Sept 2022
    5.3
    Medium

    CVE-2021-33076

    Last Modified: 5 Feb 2025

    Improper authentication in firmware for some Intel(R) SSD DC Products may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

    Published: 20 Sept 2022
    4.1
    Medium

    CVE-2021-33079

    Last Modified: 5 Feb 2025

    Protection mechanism failure in firmware for some Intel(R) SSD DC Products may allow a privileged user to potentially enable information disclosure via local access.

    Published: 20 Sept 2022
    8.8
    High

    CVE-2022-40955

    Last Modified: 29 May 2025

    In versions of Apache InLong prior to 1.3.0, an attacker with sufficient privileges to specify MySQL JDBC connection URL parameters and to write arbitrary data to the MySQL database, could cause this data to be deserialized by Apache InLong, potentially leading to Remote Code Execution on the Apache InLong server. Users are advised to upgrade to Apache InLong 1.3.0 or newer.

    Published: 20 Sept 2022
    6.1
    Medium

    CVE-2022-3245

    Last Modified: 27 May 2025

    HTML injection attack is closely related to Cross-site Scripting (XSS). HTML injection uses HTML to deface the page. XSS, as the name implies, injects JavaScript into the page. Both attacks exploit insufficient validation of user input.

    Published: 20 Sept 2022
    9.4
    Critical

    CVE-2022-2177

    Last Modified: 20 May 2026

    Kayrasoft product before version 2 has an unauthenticated SQL Injection vulnerability. This is fixed in version 2.

    Published: 20 Sept 2022
    5.4
    Medium

    CVE-2022-3005

    Last Modified: 27 May 2025

    Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.

    Published: 20 Sept 2022
    6.1
    Medium

    CVE-2022-3242

    Last Modified: 29 May 2025

    Code Injection in GitHub repository microweber/microweber prior to 1.3.2.

    Published: 20 Sept 2022
    7.5
    High

    CVE-2022-3079

    Last Modified: 29 May 2025

    Festo control block CPX-CEC-C1 and CPX-CMXX in multiple versions allow unauthenticated, remote access to critical webpage functions which may cause a denial of service.

    Published: 20 Sept 2022
    5.4
    Medium

    CVE-2022-3004

    Last Modified: 27 May 2025

    Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.

    Published: 20 Sept 2022
    5.4
    Medium

    CVE-2022-3000

    Last Modified: 29 May 2025

    Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.

    Published: 20 Sept 2022
    5.4
    Medium

    CVE-2022-2924

    Last Modified: 29 May 2025

    Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.3.

    Published: 20 Sept 2022
    5.9
    Medium

    CVE-2022-34746

    Last Modified: 29 May 2025

    An insufficient entropy vulnerability caused by the improper use of randomness sources with low entropy for RSA key pair generation was found in Zyxel GS1900 series firmware versions prior to V2.70. This vulnerability could allow an unauthenticated attacker to retrieve a private key by factoring the RSA modulus N in the certificate of the web administration interface.

    Published: 20 Sept 2022
    8.8
    High

    CVE-2023-40474

    Last Modified: 17 Mar 2026

    GStreamer MXF File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of MXF video files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-21660.

    Published: 20 Sept 2022
    2.4
    Low

    CVE-2022-32872

    Last Modified: 7 Jan 2026

    A logic issue was addressed with improved restrictions. This issue is fixed in iOS 16, iOS 15.7 and iPadOS 15.7. A person with physical access to an iOS device may be able to access photos from the lock screen.

    Published: 20 Sept 2022
    8.8
    High

    CVE-2022-40962

    Last Modified: 15 Apr 2025

    Mozilla developers Nika Layzell, Timothy Nikkel, Sebastian Hengst, Andreas Pehrson, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 104 and Firefox ESR 102.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 102.3, Thunderbird < 102.3, and Firefox < 105.

    Published: 20 Sept 2022
    6.5
    Medium

    CVE-2022-40960

    Last Modified: 15 Apr 2025

    Concurrent use of the URL parser with non-UTF-8 data was not thread-safe. This could lead to a use-after-free causing a potentially exploitable crash. This vulnerability affects Firefox ESR < 102.3, Thunderbird < 102.3, and Firefox < 105.

    Published: 20 Sept 2022
    6.5
    Medium

    CVE-2022-40959

    Last Modified: 15 Apr 2025

    During iframe navigation, certain pages did not have their FeaturePolicy fully initialized leading to a bypass that leaked device permissions into untrusted subdocuments. This vulnerability affects Firefox ESR < 102.3, Thunderbird < 102.3, and Firefox < 105.

    Published: 20 Sept 2022
    7.6
    High

    CVE-2022-36062

    Last Modified: 28 Jan 2026

    Grafana is an open-source platform for monitoring and observability. In versions prior to 8.5.13, 9.0.9, and 9.1.6, Grafana is subject to Improper Preservation of Permissions resulting in privilege escalation on some folders where Admin is the only used permission. The vulnerability impacts Grafana instances where RBAC was disabled and enabled afterwards, as the migrations which are translating legacy folder permissions to RBAC permissions do not account for the scenario where the only user permission in the folder is Admin, as a result RBAC adds permissions for Editors and Viewers which allow them to edit and view folders accordingly. This issue has been patched in versions 8.5.13, 9.0.9, and 9.1.6. A workaround when the impacted folder/dashboard is known is to remove the additional permissions manually.

    Published: 20 Sept 2022
    6.5
    Medium

    CVE-2022-40958

    Last Modified: 15 Apr 2025

    By injecting a cookie with certain special characters, an attacker on a shared subdomain which is not a secure context could set and thus overwrite cookies from a secure context, leading to session fixation and other attacks. This vulnerability affects Firefox ESR < 102.3, Thunderbird < 102.3, and Firefox < 105.

    Published: 20 Sept 2022
    5.5
    Medium

    CVE-2022-32854

    Last Modified: 21 Nov 2024

    This issue was addressed with improved checks. This issue is fixed in iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to bypass Privacy preferences.

    Published: 20 Sept 2022
    5.5
    Medium

    CVE-2022-32883

    Last Modified: 29 May 2025

    A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to read sensitive location information.

    Published: 20 Sept 2022
    4.3
    Medium

    CVE-2022-32795

    Last Modified: 21 Nov 2024

    This issue was addressed with improved checks. This issue is fixed in iOS 16, iOS 15.7 and iPadOS 15.7. Visiting a malicious website may lead to address bar spoofing.

    Published: 20 Sept 2022
    5.5
    Medium

    CVE-2022-32864

    Last Modified: 21 Nov 2024

    The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to disclose kernel memory.

    Published: 20 Sept 2022