CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2022-25304

    Last Modified: 21 Nov 2024

    All versions of package opcua; all versions of package asyncua are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks - per single session or in total for all concurrent sessions. An attacker can exploit this vulnerability by sending an unlimited number of huge chunks (e.g. 2GB each) without sending the Final closing chunk.

    Published: 23 Aug 2022
    7.5
    High

    CVE-2022-25302

    Last Modified: 21 Nov 2024

    All versions of package asneg/opcuastack are vulnerable to Denial of Service (DoS) due to a missing handler for failed casting when unvalidated data is forwarded to boost::get function in OpcUaNodeIdBase.h. Exploiting this vulnerability is possible when sending a specifically crafted OPC UA message with a special encoded NodeId.

    Published: 23 Aug 2022
    5.4
    Medium

    CVE-2022-2829

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.

    Published: 23 Aug 2022
    9.8
    Critical

    CVE-2022-35733

    Last Modified: 21 Nov 2024

    Missing authentication for critical function vulnerability in UNIMO Technology digital video recorders (UDR-JA1004/JA1008/JA1016 firmware versions v1.0.20.13 and earlier, and UDR-JA1016 firmware versions v2.0.20.13 and earlier) allows a remote unauthenticated attacker to execute an arbitrary OS command by sending a specially crafted request to the affected device web interface.

    Published: 23 Aug 2022
    6.5
    Medium

    CVE-2020-35992

    Last Modified: 21 Nov 2024

    Fiserv Prologue through 2020-12-16 does not properly protect the database password. If an attacker were to gain access to the configuration file (specifically, the LogPassword attribute within appconfig.ini), they would be able to decrypt the password stored within the configuration file. This would yield cleartext credentials for the database (to gain access to financial records of customers stored within the database), and in some cases would allow remote login to the database.

    Published: 23 Aug 2022
    9.8
    Critical

    CVE-2022-34919

    Last Modified: 21 Nov 2024

    The file upload wizard in Zengenti Contensis Classic before 15.2.1.79 does not correctly check that a user has authenticated. By uploading a crafted aspx file, it is possible to execute arbitrary commands.

    Published: 23 Aug 2022
    6.1
    Medium

    CVE-2019-25075

    Last Modified: 21 Nov 2024

    HTML injection combined with path traversal in the Email service in Gravitee API Management before 1.25.3 allows anonymous users to read arbitrary files via a /management/users/register request.

    Published: 23 Aug 2022
    9.8
    Critical

    CVE-2021-42232

    Last Modified: 21 Nov 2024

    TP-Link Archer A7 Archer A7(US)_V5_210519 is affected by a command injection vulnerability in /usr/bin/tddp. The vulnerability is caused by the program taking part of the received data packet as part of the command. This will cause an attacker to execute arbitrary commands on the router.

    Published: 23 Aug 2022
    7.5
    High

    CVE-2022-33916

    Last Modified: 21 Nov 2024

    OPC UA .NET Standard Reference Server 1.04.368 allows a remote attacker to cause the application to access sensitive information.

    Published: 23 Aug 2022
    6.5
    Medium

    CVE-2022-38663

    Last Modified: 21 Nov 2024

    Jenkins Git Plugin 4.11.4 and earlier does not properly mask (i.e., replace with asterisks) credentials in the build log provided by the Git Username and Password (`gitUsernamePassword`) credentials binding.

    Published: 23 Aug 2022
    7.8
    High

    CVE-2020-35511

    Last Modified: 21 Nov 2024

    A global buffer overflow was discovered in pngcheck function in pngcheck-2.4.0(5 patches applied) via a crafted png file.

    Published: 23 Aug 2022
    7
    High

    CVE-2022-2961

    Last Modified: 21 Nov 2024

    A use-after-free flaw was found in the Linux kernel’s PLP Rose functionality in the way a user triggers a race condition by calling bind while simultaneously triggering the rose_bind() function. This flaw allows a local user to crash or potentially escalate their privileges on the system.

    Published: 23 Aug 2022
    7.5
    High

    CVE-2022-38476

    Last Modified: 15 Apr 2025

    A data race could occur in the <code>PK11_ChangePW</code> function, potentially leading to a use-after-free vulnerability. In Firefox, this lock protected the data when a user changed their master password. This vulnerability affects Firefox ESR < 102.2 and Thunderbird < 102.2.

    Published: 23 Aug 2022
    8.8
    High

    CVE-2022-38478

    Last Modified: 15 Apr 2025

    Members the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 103, Firefox ESR 102.1, and Firefox ESR 91.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 102.2, Thunderbird < 91.13, Firefox ESR < 91.13, Firefox ESR < 102.2, and Firefox < 104.

    Published: 23 Aug 2022
    7.8
    High

    CVE-2022-31676

    Last Modified: 21 Nov 2024

    VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.

    Published: 23 Aug 2022
    7.8
    High

    CVE-2022-2946

    Last Modified: 21 Nov 2024

    Use After Free in GitHub repository vim/vim prior to 9.0.0246.

    Published: 23 Aug 2022
    7.8
    High

    CVE-2022-2962

    Last Modified: 23 Apr 2025

    A DMA reentrancy issue was found in the Tulip device emulation in QEMU. When Tulip reads or writes to the rx/tx descriptor or copies the rx/tx frame, it doesn't check whether the destination address is its own MMIO address. This can cause the device to trigger MMIO handlers multiple times, possibly leading to a stack or heap overflow. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition.

    Published: 23 Aug 2022
    7.8
    High

    CVE-2022-3103

    Last Modified: 21 May 2025

    off-by-one in io_uring module.

    Published: 23 Aug 2022
    6.5
    Medium

    CVE-2022-38472

    Last Modified: 15 Apr 2025

    An attacker could have abused XSLT error handling to associate attacker-controlled content with another origin which was displayed in the address bar. This could have been used to fool the user into submitting data intended for the spoofed origin. This vulnerability affects Thunderbird < 102.2, Thunderbird < 91.13, Firefox ESR < 91.13, Firefox ESR < 102.2, and Firefox < 104.

    Published: 23 Aug 2022
    8.8
    High

    CVE-2022-38473

    Last Modified: 15 Apr 2025

    A cross-origin iframe referencing an XSLT document would inherit the parent domain's permissions (such as microphone or camera access). This vulnerability affects Thunderbird < 102.2, Thunderbird < 91.13, Firefox ESR < 91.13, Firefox ESR < 102.2, and Firefox < 104.

    Published: 23 Aug 2022
    8.8
    High

    CVE-2022-38477

    Last Modified: 15 Apr 2025

    Mozilla developer Nika Layzell and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 103 and Firefox ESR 102.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 102.2, Thunderbird < 102.2, and Firefox < 104.

    Published: 23 Aug 2022
    6.5
    Medium

    CVE-2022-35191

    Last Modified: 21 Nov 2024

    D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to cause a Denial of Service (DoS) via a crafted HTTP connection request.

    Published: 22 Aug 2022
    4.9
    Medium

    CVE-2021-29891

    Last Modified: 21 Nov 2024

    IBM OPENBMC OP910 and OP940 could allow a privileged user to upload an improper site identity certificate that may cause it to lose network services. IBM X-Force ID: 207221.

    Published: 22 Aug 2022
    9.8
    Critical

    CVE-2022-38667

    Last Modified: 21 Nov 2024

    HTTP applications (servers) based on Crow through 1.0+4 may allow a Use-After-Free and code execution when HTTP pipelining is used. The HTTP parser supports HTTP pipelining, but the asynchronous Connection layer is unaware of HTTP pipelining. Specifically, the Connection layer is unaware that it has begun processing a later request before it has finished processing an earlier request.

    Published: 22 Aug 2022
    7.5
    High

    CVE-2022-38668

    Last Modified: 21 Nov 2024

    HTTP applications (servers) based on Crow through 1.0+4 may reveal potentially sensitive uninitialized data from stack memory when fulfilling a request for a static file smaller than 16 KB.

    Published: 22 Aug 2022
    7.8
    High

    CVE-2022-38171

    Last Modified: 21 Nov 2024

    Xpdf prior to version 4.04 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIG2Stream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary code. This is similar to the vulnerability described by CVE-2021-30860 (Apple CoreGraphics).

    Published: 22 Aug 2022
    8.8
    High

    CVE-2022-34652

    Last Modified: 15 Apr 2025

    A sql injection vulnerability exists in the ObjectYPT functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability.This vulnerability exists in the Live Schedules plugin, allowing an attacker to inject SQL by manipulating the description parameter.

    Published: 22 Aug 2022
    8.8
    High

    CVE-2022-33149

    Last Modified: 15 Apr 2025

    A sql injection vulnerability exists in the ObjectYPT functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability.This vulnerability exists in the CloneSite plugin, allowing an attacker to inject SQL by manipulating the url parameter.

    Published: 22 Aug 2022
    8.8
    High

    CVE-2022-33148

    Last Modified: 15 Apr 2025

    A sql injection vulnerability exists in the ObjectYPT functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability.This vulnerability exists in the Live Schedules plugin, allowing an attacker to inject SQL by manipulating the title parameter.

    Published: 22 Aug 2022
    8.8
    High

    CVE-2022-33147

    Last Modified: 15 Apr 2025

    A sql injection vulnerability exists in the ObjectYPT functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability.This vulnerability exists in the aVideoEncoder functionality which can be used to add new videos, allowing an attacker to inject SQL by manipulating the videoDownloadedLink or duration parameter.

    Published: 22 Aug 2022
    7.5
    High

    CVE-2022-32778

    Last Modified: 15 Apr 2025

    An information disclosure vulnerability exists in the cookie functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. The session cookie and the pass cookie miss the HttpOnly flag, making them accessible via JavaScript. The session cookie also misses the secure flag, which allows the session cookie to be leaked over non-HTTPS connections. This could allow an attacker to steal the session cookie via crafted HTTP requests.This vulnerability is for the pass cookie, which contains the hashed password and can be leaked via JavaScript.

    Published: 22 Aug 2022
    7.5
    High

    CVE-2022-32777

    Last Modified: 15 Apr 2025

    An information disclosure vulnerability exists in the cookie functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. The session cookie and the pass cookie miss the HttpOnly flag, making them accessible via JavaScript. The session cookie also misses the secure flag, which allows the session cookie to be leaked over non-HTTPS connections. This could allow an attacker to steal the session cookie via crafted HTTP requests.This vulnerabilty is for the session cookie which can be leaked via JavaScript.

    Published: 22 Aug 2022
    6.1
    Medium

    CVE-2022-32772

    Last Modified: 15 Apr 2025

    A cross-site scripting (xss) vulnerability exists in the footer alerts functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can get an authenticated user to send a crafted HTTP request to trigger this vulnerability.This vulnerability arrises from the "msg" parameter which is inserted into the document with insufficient sanitization.

    Published: 22 Aug 2022
    6.1
    Medium

    CVE-2022-32771

    Last Modified: 15 Apr 2025

    A cross-site scripting (xss) vulnerability exists in the footer alerts functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can get an authenticated user to send a crafted HTTP request to trigger this vulnerability.This vulnerability arrises from the "success" parameter which is inserted into the document with insufficient sanitization.

    Published: 22 Aug 2022
    6.1
    Medium

    CVE-2022-32770

    Last Modified: 15 Apr 2025

    A cross-site scripting (xss) vulnerability exists in the footer alerts functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can get an authenticated user to send a crafted HTTP request to trigger this vulnerability.This vulnerability arrises from the "toast" parameter which is inserted into the document with insufficient sanitization.

    Published: 22 Aug 2022
    5
    Medium

    CVE-2022-32769

    Last Modified: 15 Apr 2025

    Multiple authentication bypass vulnerabilities exist in the objects id handling functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request by an authenticated user can lead to unauthorized access and takeover of resources. An attacker can send an HTTP request to trigger this vulnerability.This vulnerability exists in the Playlists plugin, allowing an attacker to bypass authentication by guessing a sequential ID, allowing them to take over the another user's playlists.

    Published: 22 Aug 2022
    4.2
    Medium

    CVE-2022-32768

    Last Modified: 15 Apr 2025

    Multiple authentication bypass vulnerabilities exist in the objects id handling functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request by an authenticated user can lead to unauthorized access and takeover of resources. An attacker can send an HTTP request to trigger this vulnerability.This vulnerability exists in the Live Schedules plugin, allowing an attacker to bypass authentication by guessing a sequential ID, allowing them to take over the another user's streams.

    Published: 22 Aug 2022
    6.5
    Medium

    CVE-2022-32761

    Last Modified: 15 Apr 2025

    An information disclosure vulnerability exists in the aVideoEncoderReceiveImage functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary file read. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    8.8
    High

    CVE-2022-32572

    Last Modified: 15 Apr 2025

    An os command injection vulnerability exists in the aVideoEncoder wget functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    8.8
    High

    CVE-2022-32282

    Last Modified: 15 Apr 2025

    An improper password check exists in the login functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. An attacker that owns a users' password hash will be able to use it to directly login into the account, leading to increased privileges.

    Published: 22 Aug 2022
    6.1
    Medium

    CVE-2022-30690

    Last Modified: 15 Apr 2025

    A cross-site scripting (xss) vulnerability exists in the image403 functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can get an authenticated user to send a crafted HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    8.8
    High

    CVE-2022-30605

    Last Modified: 15 Apr 2025

    A privilege escalation vulnerability exists in the session id functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to increased privileges. An attacker can get an authenticated user to send a crafted HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    9.9
    Critical

    CVE-2022-30547

    Last Modified: 15 Apr 2025

    A directory traversal vulnerability exists in the unzipDirectory functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    8.8
    High

    CVE-2022-30534

    Last Modified: 15 Apr 2025

    An OS command injection vulnerability exists in the aVideoEncoder chunkfile functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    8.8
    High

    CVE-2022-29468

    Last Modified: 15 Apr 2025

    A cross-site request forgery (CSRF) vulnerability exists in WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to increased privileges. An attacker can get an authenticated user to send a crafted HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    9
    Critical

    CVE-2022-28712

    Last Modified: 15 Apr 2025

    A cross-site scripting (xss) vulnerability exists in the videoAddNew functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can get an authenticated user to send a crafted HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    6.5
    Medium

    CVE-2022-28710

    Last Modified: 15 Apr 2025

    An information disclosure vulnerability exists in the chunkFile functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary file read. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    9.6
    Critical

    CVE-2022-26842

    Last Modified: 15 Apr 2025

    A reflected cross-site scripting (xss) vulnerability exists in the charts tab selection functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can get an authenticated user to send a crafted HTTP request to trigger this vulnerability.

    Published: 22 Aug 2022
    7.3
    High

    CVE-2022-2842

    Last Modified: 14 Apr 2025

    A vulnerability classified as critical has been found in SourceCodester Gym Management System. This affects an unknown part of the file login.php. The manipulation of the argument user_email leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-206451.

    Published: 22 Aug 2022
    5.9
    Medium

    CVE-2022-1930

    Last Modified: 21 Nov 2024

    An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the eth-account PyPI package, when an attacker is able to supply arbitrary input to the encode_structured_data method

    Published: 22 Aug 2022