CVE Feed

    Dashboard / CVE

    5.9
    Medium

    CVE-2022-34763

    Last Modified: 21 Nov 2024

    A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists that could cause loading of unauthorized firmware images due to improper verification of the firmware signature. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V2.01 and later), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)

    Published: 13 Jul 2022
    5.9
    Medium

    CVE-2022-34762

    Last Modified: 21 Nov 2024

    A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause unauthorized firmware image loading when unsigned images are added to the firmware image path. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V2.01 and later), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)

    Published: 13 Jul 2022
    7.5
    High

    CVE-2022-34761

    Last Modified: 21 Nov 2024

    A CWE-476: NULL Pointer Dereference vulnerability exists that could cause a denial of service of the webserver when parsing JSON content type. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V2.01 and later), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)

    Published: 13 Jul 2022
    7.5
    High

    CVE-2022-34760

    Last Modified: 21 Nov 2024

    A CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability exists that could cause a denial of service of the webserver due to improper handling of the cookies. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V1.0), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)

    Published: 13 Jul 2022
    7.5
    High

    CVE-2022-34759

    Last Modified: 21 Nov 2024

    A CWE-787: Out-of-bounds Write vulnerability exists that could cause a denial of service of the webserver due to improper parsing of the HTTP Headers. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V1.0), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)

    Published: 13 Jul 2022
    5.1
    Medium

    CVE-2022-34758

    Last Modified: 21 Nov 2024

    A CWE-20: Improper Input Validation vulnerability exists that could cause the device watchdog function to be disabled if the attacker had access to privileged user credentials. Affected Products: Easergy P5 (V01.401.102 and prior)

    Published: 13 Jul 2022
    6.7
    Medium

    CVE-2022-34757

    Last Modified: 21 Nov 2024

    A CWE-327: Use of a Broken or Risky Cryptographic Algorithm vulnerability exists where weak cipher suites can be used for the SSH connection between Easergy Pro software and the device, which may allow an attacker to observe protected communication details. Affected Products: Easergy P5 (V01.401.102 and prior)

    Published: 13 Jul 2022
    8.8
    High

    CVE-2022-34756

    Last Modified: 21 Nov 2024

    A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could result in remote code execution or the crash of HTTPs stack which is used for the device Web HMI. Affected Products: Easergy P5 (V01.401.102 and prior)

    Published: 13 Jul 2022
    6.8
    Medium

    CVE-2022-34754

    Last Modified: 21 Nov 2024

    A CWE-269: Improper Privilege Management vulnerability exists that could allow elevated functionality when guessing credentials. Affected Products: Acti9 PowerTag Link C (A9XELC10-A) (V1.7.5 and prior), Acti9 PowerTag Link C (A9XELC10-B) (V2.12.0 and prior)

    Published: 13 Jul 2022
    8.8
    High

    CVE-2022-34753

    Last Modified: 21 Nov 2024

    A CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause remote root exploit when the command is compromised. Affected Products: SpaceLogic C-Bus Home Controller (5200WHC2), formerly known as C-Bus Wiser Homer Controller MK2 (V1.31.460 and prior)

    Published: 13 Jul 2022
    7.8
    High

    CVE-2022-32117

    Last Modified: 21 Nov 2024

    Jerryscript v2.4.0 was discovered to contain a stack buffer overflow via the function jerryx_print_unhandled_exception in /util/print.c.

    Published: 13 Jul 2022
    6.5
    Medium

    CVE-2022-31145

    Last Modified: 23 Apr 2025

    FlyteAdmin is the control plane for Flyte responsible for managing entities and administering workflow executions. In versions 1.1.30 and prior, authenticated users using an external identity provider can continue to use Access Tokens and ID Tokens even after they expire. Users who use FlyteAdmin as the OAuth2 Authorization Server are unaffected by this issue. A patch is available on the `master` branch of the repository. As a workaround, rotating signing keys immediately will invalidate all open sessions and force all users to attempt to obtain new tokens. Those who use this workaround should continue to rotate keys until FlyteAdmin has been upgraded and hide FlyteAdmin deployment ingress URL from the internet.

    Published: 13 Jul 2022
    6.1
    Medium

    CVE-2022-32308

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in uBlock Origin extension before 1.41.1 allows remote attackers to run arbitrary code via a spoofed 'MessageSender.url' to the browser renderer process.

    Published: 13 Jul 2022
    4.8
    Medium

    CVE-2020-21967

    Last Modified: 21 Nov 2024

    File upload vulnerability in the Catalog feature in Prestashop 1.7.6.7 allows remote attackers to run arbitrary code via the add new file page.

    Published: 13 Jul 2022
    7.5
    High

    CVE-2022-20234

    Last Modified: 21 Nov 2024

    In Car Settings app, the NotificationAccessConfirmationActivity is exported. In NotificationAccessConfirmationActivity, it gets both 'mComponentName' and 'pkgTitle' from user.An unprivileged app can use a malicous mComponentName with a benign pkgTitle (e.g. Settings app) to make users enable notification access permission for the malicious app. That is, users believe they enable the notification access permission for the Settings app, but actually they enable the notification access permission for the malicious app.Once the malicious app gets the notification access permission, it can read all notifications, including users' personal information.Product: AndroidVersions: Android-12LAndroid ID: A-225189301

    Published: 13 Jul 2022
    7.8
    High

    CVE-2022-20212

    Last Modified: 21 Nov 2024

    In wifi.RequestToggleWifiActivity of AndroidManifest.xml, there is a possible EoP due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11Android ID: A-182282630

    Published: 13 Jul 2022
    9.8
    Critical

    CVE-2022-20238

    Last Modified: 21 Nov 2024

    'remap_pfn_range' here may map out of size kernel memory (for example, may map the kernel area), and because the 'vma->vm_page_prot' can also be controlled by userspace, so userspace may map the kernel area to be writable, which is easy to be exploitedProduct: AndroidVersions: Android SoCAndroid ID: A-233154555

    Published: 13 Jul 2022
    7.5
    High

    CVE-2022-20236

    Last Modified: 21 Nov 2024

    A drm driver have oob problem, could cause the system crash or EOPProduct: AndroidVersions: Android SoCAndroid ID: A-233124709

    Published: 13 Jul 2022
    5.5
    Medium

    CVE-2022-20230

    Last Modified: 21 Nov 2024

    In choosePrivateKeyAlias of KeyChain.java, there is a possible access to the user's certificate due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-221859869

    Published: 13 Jul 2022
    9.8
    Critical

    CVE-2022-20229

    Last Modified: 21 Nov 2024

    In bta_hf_client_handle_cind_list_item of bta_hf_client_at.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-224536184

    Published: 13 Jul 2022
    6.5
    Medium

    CVE-2022-20228

    Last Modified: 21 Nov 2024

    In various functions of C2DmaBufAllocator.cpp, there is a possible memory corruption due to a use after free. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-12 Android-12LAndroid ID: A-213850092

    Published: 13 Jul 2022
    5.5
    Medium

    CVE-2022-20227

    Last Modified: 21 Nov 2024

    In USB driver, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-216825460References: Upstream kernel

    Published: 13 Jul 2022
    3.9
    Low

    CVE-2022-20226

    Last Modified: 21 Nov 2024

    In finishDrawingWindow of WindowManagerService.java, there is a possible tapjacking due to improper input validation. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-12 Android-12LAndroid ID: A-213644870

    Published: 13 Jul 2022
    5.5
    Medium

    CVE-2022-20225

    Last Modified: 21 Nov 2024

    In getSubscriptionProperty of SubscriptionController.java, there is a possible read of a sensitive identifier due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-213457638

    Published: 13 Jul 2022
    7.5
    High

    CVE-2022-20224

    Last Modified: 21 Nov 2024

    In AT_SKIP_REST of bta_hf_client_at.cc, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure in the Bluetooth stack with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-220732646

    Published: 13 Jul 2022
    7.8
    High

    CVE-2022-20223

    Last Modified: 21 Nov 2024

    In assertSafeToStartCustomActivity of AppRestrictionsFragment.java, there is a possible way to start a phone call without permissions due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-223578534

    Published: 13 Jul 2022
    9.8
    Critical

    CVE-2022-20222

    Last Modified: 21 Nov 2024

    In read_attr_value of gatt_db.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12LAndroid ID: A-228078096

    Published: 13 Jul 2022
    6.5
    Medium

    CVE-2022-20221

    Last Modified: 21 Nov 2024

    In avrc_ctrl_pars_vendor_cmd of avrc_pars_ct.cc, there is a possible out of bounds read due to improper input validation. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-205571133

    Published: 13 Jul 2022
    7.8
    High

    CVE-2022-20220

    Last Modified: 21 Nov 2024

    In openFile of CallLogProvider.java, there is a possible permission bypass due to a path traversal error. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12LAndroid ID: A-219015884

    Published: 13 Jul 2022
    5.5
    Medium

    CVE-2022-20219

    Last Modified: 21 Nov 2024

    In multiple functions of StorageManagerService.java and UserManagerService.java, there is a possible way to leave user's directories unencrypted due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-224585613

    Published: 13 Jul 2022
    7.8
    High

    CVE-2022-20218

    Last Modified: 21 Nov 2024

    In PermissionController, there is a possible way to get and retain permissions without user's consent due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-12 Android-12LAndroid ID: A-223907044

    Published: 13 Jul 2022
    6.5
    Medium

    CVE-2022-20217

    Last Modified: 21 Nov 2024

    There is a unauthorized broadcast in the SprdContactsProvider. A third-party app could use this issue to delete Fdn contact.Product: AndroidVersions: Android SoCAndroid ID: A-232441378

    Published: 13 Jul 2022
    9.8
    Critical

    CVE-2022-20216

    Last Modified: 21 Nov 2024

    android exported is used to set third-party app access permissions, and the default value of intent-filter is true. com.sprd.firewall has set exported as true.Product: AndroidVersions: Android SoCAndroid ID: A-231911916

    Published: 13 Jul 2022
    7.5
    High

    CVE-2022-22982

    Last Modified: 21 Nov 2024

    The vCenter Server contains a server-side request forgery (SSRF) vulnerability. A malicious actor with network access to 443 on the vCenter Server may exploit this issue by accessing a URL request outside of vCenter Server or accessing an internal service.

    Published: 13 Jul 2022
    7.3
    High

    CVE-2017-20128

    Last Modified: 14 Apr 2025

    A vulnerability has been found in KB Messages PHP Script 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument username/password with the input 'or''=' leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

    Published: 13 Jul 2022
    7.3
    High

    CVE-2017-20127

    Last Modified: 14 Apr 2025

    A vulnerability was found in KB Login Authentication Script 1.1 and classified as critical. Affected by this issue is some unknown functionality. The manipulation of the argument username/password with the input 'or''=' leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

    Published: 13 Jul 2022
    7.3
    High

    CVE-2017-20126

    Last Modified: 14 Apr 2025

    A vulnerability was found in KB Affiliate Referral Script 1.0. It has been classified as critical. This affects an unknown part of the file /index.php. The manipulation of the argument username/password with the input 'or''=' leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 13 Jul 2022
    5.4
    Medium

    CVE-2022-34358

    Last Modified: 21 Nov 2024

    IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 230516.

    Published: 13 Jul 2022
    7.5
    High

    CVE-2022-32096

    Last Modified: 21 Nov 2024

    Rhonabwy before v1.1.5 was discovered to contain a buffer overflow via the component r_jwe_aesgcm_key_unwrap. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted JWE token.

    Published: 13 Jul 2022
    5.4
    Medium

    CVE-2022-32074

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-FS before commit a7842d494889fd5533d13deb3c6a7789768795ae allows attackers to execute arbitrary web scripts or HTML via a crafted SVG file.

    Published: 13 Jul 2022
    9.8
    Critical

    CVE-2022-32073

    Last Modified: 21 Nov 2024

    WolfSSH v1.4.7 was discovered to contain an integer overflow via the function wolfSSH_SFTP_RecvRMDIR.

    Published: 13 Jul 2022
    5.4
    Medium

    CVE-2022-32065

    Last Modified: 21 Nov 2024

    An arbitrary file upload vulnerability in the background management module of RuoYi v4.7.3 and below allows attackers to execute arbitrary code via a crafted HTML file.

    Published: 13 Jul 2022
    —
    Unknown

    CVE-2020-35259

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 13 Jul 2022
    5.4
    Medium

    CVE-2022-32274

    Last Modified: 21 Nov 2024

    The Transition Scheduler add-on 6.5.0 for Atlassian Jira is prone to stored XSS via the project name to the creation function.

    Published: 13 Jul 2022
    —
    Unknown

    CVE-2020-35257

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 13 Jul 2022
    —
    Unknown

    CVE-2021-27294

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 13 Jul 2022
    6.5
    Medium

    CVE-2019-10800

    Last Modified: 21 Nov 2024

    This affects the package codecov before 2.0.16. The vulnerability occurs due to not sanitizing gcov arguments before being being provided to the popen method.

    Published: 13 Jul 2022
    8.3
    High

    CVE-2019-10761

    Last Modified: 21 Nov 2024

    This affects the package vm2 before 3.6.11. It is possible to trigger a RangeError exception from the host rather than the "sandboxed" context by reaching the stack call limit with an infinite recursion. The returned object is then used to reference the mainModule property of the host code running the script allowing it to spawn a child_process and execute arbitrary code.

    Published: 13 Jul 2022
    7.5
    High

    CVE-2022-31781

    Last Modified: 21 Nov 2024

    Apache Tapestry up to version 5.8.1 is vulnerable to Regular Expression Denial of Service (ReDoS) in the way it handles Content Types. Specially crafted Content Types may cause catastrophic backtracking, taking exponential time to complete. Specifically, this is about the regular expression used on the parameter of the org.apache.tapestry5.http.ContentType class. Apache Tapestry 5.8.2 has a fix for this vulnerability. Notice the vulnerability cannot be triggered by web requests in Tapestry code alone. It would only happen if there's some non-Tapestry codepath passing some outside input to the ContentType class constructor.

    Published: 13 Jul 2022
    6.1
    Medium

    CVE-2021-46827

    Last Modified: 21 Nov 2024

    An issue was discovered in Oxygen XML WebHelp before 22.1 build 2021082006 and 23.x before 23.1 build 2021090310. An XSS vulnerability in search terms proposals (in online documentation generated using Oxygen XML WebHelp) allows attackers to execute JavaScript by convincing a user to type specific text in the WebHelp output search field.

    Published: 13 Jul 2022