CVE Feed

    Dashboard / CVE

    8.1
    High

    CVE-2022-31084

    Last Modified: 22 Apr 2025

    LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 There are cases where LAM instantiates objects from arbitrary classes. An attacker can inject the first constructor argument. This can lead to code execution if non-LAM classes are instantiated that execute code during object creation. This issue has been fixed in version 8.0.

    Published: 27 Jun 2022
    8.8
    High

    CVE-2022-31086

    Last Modified: 23 Apr 2025

    LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 incorrect regular expressions allow to upload PHP scripts to config/templates/pdf. This vulnerability could lead to a Remote Code Execution if the /config/templates/pdf/ directory is accessible for remote users. This is not a default configuration of LAM. This issue has been fixed in version 8.0. There are no known workarounds for this issue.

    Published: 27 Jun 2022
    7.8
    High

    CVE-2022-31087

    Last Modified: 23 Apr 2025

    LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 the tmp directory, which is accessible by /lam/tmp/, allows interpretation of .php (and .php5/.php4/.phpt/etc) files. An attacker capable of writing files under www-data privileges can write a web-shell into this directory, and gain a Code Execution on the host. This issue has been fixed in version 8.0. Users unable to upgrade should disallow executing PHP scripts in (/var/lib/ldap-account-manager/)tmp directory.

    Published: 27 Jun 2022
    5.3
    Medium

    CVE-2022-31088

    Last Modified: 23 Apr 2025

    LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. In versions prior to 8.0 the user name field at login could be used to enumerate LDAP data. This is only the case for LDAP search configuration. This issue has been fixed in version 8.0.

    Published: 27 Jun 2022
    6.5
    Medium

    CVE-2022-33116

    Last Modified: 21 Nov 2024

    An issue in the jmpath variable in /modules/mindmap/index.php of GUnet Open eClass Platform (aka openeclass) v3.12.4 and below allows attackers to read arbitrary files via a directory traversal.

    Published: 27 Jun 2022
    5.8
    Medium

    CVE-2022-31082

    Last Modified: 23 Apr 2025

    GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing. glpi-inventory-plugin is a plugin for GLPI to handle inventory management. In affected versions a SQL injection can be made using package deployment tasks. This issue has been resolved in version 1.0.2. Users are advised to upgrade. Users unable to upgrade should delete the `front/deploypackage.public.php` file if they are not using the `deploy tasks` feature.

    Published: 27 Jun 2022
    5.5
    Medium

    CVE-2021-40942

    Last Modified: 21 Nov 2024

    In GPAC MP4Box v1.1.0, there is a heap-buffer-overflow in the function filter_parse_dyn_args function in filter_core/filter.c:1454, as demonstrated by GPAC. This can cause a denial of service (DOS).

    Published: 27 Jun 2022
    4
    Medium

    CVE-2022-31077

    Last Modified: 23 Apr 2025

    KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to hosts at the Edge. In affected versions a malicious message response from KubeEdge can crash the CSI Driver controller server by triggering a nil-pointer dereference panic. As a consequence, the CSI Driver controller will be in denial of service. This bug has been fixed in Kubeedge 1.11.0, 1.10.1, and 1.9.3. Users should update to these versions to resolve the issue. At the time of writing, no workaround exists.

    Published: 27 Jun 2022
    4.2
    Medium

    CVE-2022-31076

    Last Modified: 22 Apr 2025

    KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to hosts at the Edge. In affected versions a malicious message can crash CloudCore by triggering a nil-pointer dereference in the UDS Server. Since the UDS Server only communicates with the CSI Driver on the cloud side, the attack is limited to the local host network. As such, an attacker would already need to be an authenticated user of the Cloud. Additionally it will be affected only when users turn on the unixsocket switch in the config file cloudcore.yaml. This bug has been fixed in Kubeedge 1.11.0, 1.10.1, and 1.9.3. Users should update to these versions to resolve the issue. Users unable to upgrade should sisable the unixsocket switch of CloudHub in the config file cloudcore.yaml.

    Published: 27 Jun 2022
    6.5
    Medium

    CVE-2022-31064

    Last Modified: 22 Apr 2025

    BigBlueButton is an open source web conferencing system. Users in meetings with private chat enabled are vulnerable to a cross site scripting attack in affected versions. The attack occurs when the attacker (with xss in the name) starts a chat. in the victim's client the JavaScript will be executed. This issue has been addressed in version 2.4.8 and 2.5.0. There are no known workarounds for this issue.

    Published: 27 Jun 2022
    6.5
    Medium

    CVE-2022-31065

    Last Modified: 23 Apr 2025

    BigBlueButton is an open source web conferencing system. In affected versions an attacker can embed malicious JS in their username and have it executed on the victim's client. When a user receives a private chat from the attacker (whose username contains malicious JavaScript), the script gets executed. Additionally when the victim receives a notification that the attacker has left the session. This issue has been patched in version 2.4.8 and 2.5.0. There are no known workarounds for this issue.

    Published: 27 Jun 2022
    6.5
    Medium

    CVE-2022-31057

    Last Modified: 23 Apr 2025

    Shopware is an open source e-commerce software made in Germany. Versions of Shopware 5 prior to version 5.7.12 are subject to an authenticated Stored XSS in Administration. Users are advised to upgrade. There are no known workarounds for this issue.

    Published: 27 Jun 2022
    4.3
    Medium

    CVE-2022-31039

    Last Modified: 23 Apr 2025

    Greenlight is a simple front-end interface for your BigBlueButton server. In affected versions an attacker can view any room's settings even though they are not authorized to do so. Only the room owner and administrator should be able to view a room's settings. This issue has been patched in release version 2.12.6.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2022-28622

    Last Modified: 21 Nov 2024

    A potential security vulnerability has been identified in HPE StoreOnce Software. The SSH server supports weak key exchange algorithms which could lead to remote unauthorized access. HPE has made the following software update to resolve the vulnerability in HPE StoreOnce Software 4.3.2.

    Published: 27 Jun 2022
    6.5
    Medium

    CVE-2022-2221

    Last Modified: 21 Nov 2024

    Information Exposure vulnerability in My Account Settings of Devolutions Remote Desktop Manager before 2022.1.8 allows authenticated users to access credentials of other users. This issue affects: Devolutions Remote Desktop Manager versions prior to 2022.1.8.

    Published: 27 Jun 2022
    3.5
    Low

    CVE-2017-20098

    Last Modified: 15 Apr 2025

    A vulnerability was found in Admin Custom Login Plugin 2.4.5.2. It has been classified as problematic. Affected is an unknown function. The manipulation leads to basic cross site scripting (Persistent). It is possible to launch the attack remotely.

    Published: 27 Jun 2022
    7.3
    High

    CVE-2017-20099

    Last Modified: 15 Apr 2025

    A vulnerability was found in Analytics Stats Counter Statistics Plugin 1.2.2.5 and classified as critical. This issue affects some unknown processing. The manipulation leads to code injection. The attack may be initiated remotely.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2022-28168

    Last Modified: 21 Nov 2024

    In Brocade SANnav before Brocade SANnav v2.2.0.2 and Brocade SANnav2.1.1.8, encoded scp-server passwords are stored using Base64 encoding, which could allow an attacker able to access log files to easily decode the passwords.

    Published: 27 Jun 2022
    6.5
    Medium

    CVE-2022-28167

    Last Modified: 21 Nov 2024

    Brocade SANnav before Brocade SANvav v. 2.2.0.2 and Brocade SANanv v.2.1.1.8 logs the Brocade Fabric OS switch password in plain text in asyncjobscheduler-manager.log

    Published: 27 Jun 2022
    7.5
    High

    CVE-2022-28166

    Last Modified: 21 Nov 2024

    In Brocade SANnav version before SANN2.2.0.2 and Brocade SANNav before 2.1.1.8, the implementation of TLS/SSL Server Supports the Use of Static Key Ciphers (ssl-static-key-ciphers) on ports 443 & 18082.

    Published: 27 Jun 2022
    6.5
    Medium

    CVE-2022-28172

    Last Modified: 21 Nov 2024

    The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to the insufficient input validation, attacker can exploit the vulnerability to XSS attack by sending messages with malicious commands to the affected device.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2022-28171

    Last Modified: 21 Nov 2024

    The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to the insufficient input validation, attacker can exploit the vulnerability to execute restricted commands by sending messages with malicious commands to the affected device.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-40941

    Last Modified: 21 Nov 2024

    In Bento4 1.6.0-638, there is an allocator is out of memory in the function AP4_Array<AP4_TrunAtom::Entry>::EnsureCapacity in Ap4Array.h:172, as demonstrated by GPAC. This can cause a denial of service (DOS).

    Published: 27 Jun 2022
    7.5
    High

    CVE-2022-26477

    Last Modified: 21 Nov 2024

    The Security Team noticed that the termination condition of the for loop in the readExternal method is a controllable variable, which, if tampered with, may lead to CPU exhaustion. As a fix, we added an upper bound and termination condition in the read and write logic. We classify it as a "low-priority but useful improvement". SystemDS is a distributed system and needs to serialize/deserialize data but in many code paths (e.g., on Spark broadcast/shuffle or writing to sequence files) the byte stream is anyway protected by additional CRC fingerprints. In this particular case though, the number of decoders is upper-bounded by twice the number of columns, which means an attacker would need to modify two entries in the byte stream in a consistent manner. By adding these checks robustness was strictly improved with almost zero overhead. These code changes are available in versions higher than 2.2.1.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-33654

    Last Modified: 21 Nov 2024

    When performing the initialization operation of the Split operator, if a dimension in the input shape is 0, it will cause a division by 0 exception.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-33653

    Last Modified: 21 Nov 2024

    When performing the derivation shape operation of the SpaceToBatch operator, if there is a value of 0 in the parameter block_shape element, it will cause a division by 0 exception.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-33650

    Last Modified: 21 Nov 2024

    When performing the inference shape operation of the SparseToDense operator, if the number of inputs is less than three, it will access data outside of bounds of inputs which allocated from heap buffers.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-33651

    Last Modified: 21 Nov 2024

    When performing the analytical operation of the DepthwiseConv2D operator, if the attribute depth_multiplier is 0, it will cause a division by 0 exception.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-33652

    Last Modified: 21 Nov 2024

    When the Reduce operator run operation is executed, if there is a value of 0 in the parameter axis_sizes element, it will cause a division by 0 exception.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-33649

    Last Modified: 21 Nov 2024

    When performing the inference shape operation of the Transpose operator, if the value in the perm element is greater than or equal to the size of the input_shape, it will access data outside of bounds of input_shape which allocated from heap buffers.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-33647

    Last Modified: 21 Nov 2024

    When performing the inference shape operation of the Tile operator, if the input data type is not int or int32, it will access data outside of bounds of heap allocated buffers.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-33648

    Last Modified: 21 Nov 2024

    When performing the inference shape operation of Affine, Concat, MatMul, ArgMinMax, EmbeddingLookup, and Gather operators, if the input shape size is 0, it will access data outside of bounds of shape which allocated from heap buffers.

    Published: 27 Jun 2022
    3.8
    Low

    CVE-2022-2106

    Last Modified: 16 Apr 2025

    Elcomplus SmartICS v2.3.4.0 does not validate the filenames sufficiently, which enables authenticated administrator-level users to perform path traversal attacks and specify arbitrary files.

    Published: 27 Jun 2022
    8.8
    High

    CVE-2022-2140

    Last Modified: 16 Apr 2025

    Elcomplus SmartICS v2.3.4.0 does not neutralize user-controllable input, which allows an authenticated user to inject arbitrary code into specific parameters.

    Published: 27 Jun 2022
    6.8
    Medium

    CVE-2022-2088

    Last Modified: 16 Apr 2025

    An authenticated user with admin privileges may be able to terminate any process on the system running Elcomplus SmartICS v2.3.4.0.

    Published: 27 Jun 2022
    —
    Unknown

    CVE-2013-2216

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 27 Jun 2022
    —
    Unknown

    CVE-2013-2180

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 27 Jun 2022
    —
    Unknown

    CVE-2013-2084

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-2069. Reason: This candidate is a reservation duplicate of CVE-2013-2069. Notes: All CVE users should reference CVE-2013-2069 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 27 Jun 2022
    6.1
    Medium

    CVE-2020-21161

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in Ruckus Wireless ZoneDirector 9.8.3.0.

    Published: 27 Jun 2022
    4.4
    Medium

    CVE-2017-20102

    Last Modified: 15 Apr 2025

    A vulnerability was found in Album Lock 4.0 and classified as critical. Affected by this issue is some unknown functionality of the file /getImage. The manipulation of the argument filePaht leads to path traversal. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

    Published: 27 Jun 2022
    3.5
    Low

    CVE-2017-20101

    Last Modified: 15 Apr 2025

    A vulnerability, which was classified as problematic, was found in ProjectSend r754. This affects an unknown part of the file process.php?do=zip_download. The manipulation of the argument client/file leads to information disclosure. It is possible to initiate the attack remotely.

    Published: 27 Jun 2022
    3.5
    Low

    CVE-2017-20100

    Last Modified: 15 Apr 2025

    A vulnerability was found in Air Transfer 1.0.14/1.2.1. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to basic cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

    Published: 27 Jun 2022
    9.8
    Critical

    CVE-2022-2216

    Last Modified: 21 Nov 2024

    Server-Side Request Forgery (SSRF) in GitHub repository ionicabizau/parse-url prior to 7.0.0.

    Published: 27 Jun 2022
    6.1
    Medium

    CVE-2022-2218

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) - Stored in GitHub repository ionicabizau/parse-url prior to 7.0.0.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-40901

    Last Modified: 21 Nov 2024

    A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in scniro-validator v1.0.1 when validating crafted invalid emails.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-40900

    Last Modified: 21 Nov 2024

    A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in regexfn v1.0.5 when validating crafted invalid emails.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-40899

    Last Modified: 21 Nov 2024

    A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in repo-git-downloader v0.1.1 when downloading crafted invalid git repositories.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-40898

    Last Modified: 21 Nov 2024

    A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in scaffold-helper v1.2.0 when copying crafted invalid files.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-40897

    Last Modified: 21 Nov 2024

    A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in split-html-to-chars v1.0.5 when splitting crafted invalid htmls.

    Published: 27 Jun 2022
    7.5
    High

    CVE-2021-40896

    Last Modified: 21 Nov 2024

    A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in that-value v0.1.3 when validating crafted invalid emails.

    Published: 27 Jun 2022