CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2022-23165

    Last Modified: 21 Nov 2024

    Sysaid – Sysaid 14.2.0 Reflected Cross-Site Scripting (XSS) - The parameter "helpPageName" used by the page "/help/treecontent.jsp" suffers from a Reflected Cross-Site Scripting vulnerability. For an attacker to exploit this Cross-Site Scripting vulnerability, it's necessary for the affected product to expose the Offline Help Pages. An attacker may gain access to sensitive information or execute client-side code in the browser session of the victim user. Furthermore, an attacker would require the victim to open a malicious link. An attacker may exploit this vulnerability in order to perform phishing attacks. The attacker can receive sensitive data like server details, usernames, workstations, etc. He can also perform actions such as uploading files, deleting calls from the system

    Published: 12 May 2022
    6.8
    Medium

    CVE-2022-22798

    Last Modified: 21 Nov 2024

    Sysaid – Pro Plus Edition, SysAid Help Desk Broken Access Control v20.4.74 b10, v22.1.20 b62, v22.1.30 b49 - An attacker needs to log in as a guest after that the system redirects him to the service portal or EndUserPortal.JSP, then he needs to change the path in the URL to /ConcurrentLogin%2ejsp after that he will receive an error message with a login button, by clicking on it, he will connect to the system dashboard. The attacker can receive sensitive data like server details, usernames, workstations, etc. He can also perform actions such as uploading files, deleting calls from the system.

    Published: 12 May 2022
    4.6
    Medium

    CVE-2022-22797

    Last Modified: 21 Nov 2024

    Sysaid – sysaid Open Redirect - An Attacker can change the redirect link at the parameter "redirectURL" from"GET" request from the url location: /CommunitySSORedirect.jsp?redirectURL=https://google.com. Unvalidated redirects and forwards are possible when a web application accepts untrusted input that could cause the web application to redirect the request to a URL contained within untrusted input. By modifying untrusted URL input to a malicious site, an attacker may successfully launch a phishing scam and steal user credentials.

    Published: 12 May 2022
    7
    High

    CVE-2022-22796

    Last Modified: 21 Nov 2024

    Sysaid – Sysaid System Takeover - An attacker can bypass the authentication process by accessing to: /wmiwizard.jsp, Then to: /ConcurrentLogin.jsp, then click on the login button, and it will redirect you to /home.jsp without any authentication.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-23139

    Last Modified: 21 Nov 2024

    ZTE's ZXMP M721 product has a permission and access control vulnerability. Since the folder permission viewed by sftp is 666, which is inconsistent with the actual permission. It’s easy for?users to?ignore the modification?of?the file permission configuration, so that low-authority accounts could actually obtain higher operating permissions on key files.

    Published: 12 May 2022
    7.8
    High

    CVE-2022-23742

    Last Modified: 2 Jun 2026

    Check Point Endpoint Security Client for Windows versions earlier than E86.40 copy files for forensics reports from a directory with low privileges. An attacker can replace those files with malicious or linked content, such as exploiting CVE-2020-0896 on unpatched systems or using symbolic links.

    Published: 12 May 2022
    7.5
    High

    CVE-2021-27500

    Last Modified: 16 Apr 2025

    A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may result in a denial-of-service condition.

    Published: 12 May 2022
    7.5
    High

    CVE-2021-27498

    Last Modified: 16 Apr 2025

    A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may result in a denial-of-service condition.

    Published: 12 May 2022
    7.5
    High

    CVE-2021-27482

    Last Modified: 16 Apr 2025

    A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may allow the attacker to read arbitrary data.

    Published: 12 May 2022
    8.2
    High

    CVE-2021-27478

    Last Modified: 16 Apr 2025

    A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may cause a denial-of-service condition.

    Published: 12 May 2022
    6.1
    Medium

    CVE-2022-28818

    Last Modified: 21 Nov 2024

    ColdFusion versions CF2021U3 (and earlier) and CF2018U13 are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.

    Published: 12 May 2022
    7.8
    High

    CVE-2022-28819

    Last Modified: 23 Apr 2025

    Adobe Character Animator versions 4.4.2 (and earlier) and 22.3 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious SVG file.

    Published: 12 May 2022
    6.1
    Medium

    CVE-2021-22531

    Last Modified: 21 Nov 2024

    A bug exist in the input parameter of Access Manager that allows supply of invalid character to trigger cross-site scripting vulnerability. This affects NetIQ Access Manager 4.5 and 5.0

    Published: 12 May 2022
    7.5
    High

    CVE-2022-29369

    Last Modified: 21 Nov 2024

    Nginx NJS v0.7.2 was discovered to contain a segmentation violation via njs_lvlhsh_bucket_find at njs_lvlhsh.c.

    Published: 12 May 2022
    7.1
    High

    CVE-2022-29368

    Last Modified: 21 Nov 2024

    Moddable commit before 135aa9a4a6a9b49b60aa730ebc3bcc6247d75c45 was discovered to contain an out-of-bounds read via the function fxUint8Getter at /moddable/xs/sources/xsDataView.c.

    Published: 12 May 2022
    4.4
    Medium

    CVE-2021-26363

    Last Modified: 21 Nov 2024

    A malicious or compromised UApp or ABL could potentially change the value that the ASP uses for its reserved DRAM, to one outside of the fenced area, potentially leading to data exposure.

    Published: 12 May 2022
    7.8
    High

    CVE-2021-26386

    Last Modified: 21 Nov 2024

    A malicious or compromised UApp or ABL may be used by an attacker to issue a malformed system call to the Stage 2 Bootloader potentially leading to corrupt memory and code execution.

    Published: 12 May 2022
    7.8
    High

    CVE-2021-26317

    Last Modified: 21 Nov 2024

    Failure to verify the protocol in SMM may allow an attacker to control the protocol and modify SPI flash resulting in a potential arbitrary code execution.

    Published: 12 May 2022
    4.4
    Medium

    CVE-2021-26368

    Last Modified: 21 Nov 2024

    Insufficient check of the process type in Trusted OS (TOS) may allow an attacker with privileges to enable a lesser privileged process to unmap memory owned by a higher privileged process resulting in a denial of service.

    Published: 12 May 2022
    5.5
    Medium

    CVE-2021-26361

    Last Modified: 21 Nov 2024

    A malicious or compromised User Application (UApp) or AGESA Boot Loader (ABL) could be used by an attacker to exfiltrate arbitrary memory from the ASP stage 2 bootloader potentially leading to information disclosure.

    Published: 12 May 2022
    7.1
    High

    CVE-2021-26362

    Last Modified: 21 Nov 2024

    A malicious or compromised UApp or ABL may be used by an attacker to issue a malformed system call which results in mapping sensitive System Management Network (SMN) registers leading to a loss of integrity and availability.

    Published: 12 May 2022
    5.5
    Medium

    CVE-2021-26351

    Last Modified: 21 Nov 2024

    Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA (Direct Memory Access) read/write from/to invalid DRAM address that could result in denial of service.

    Published: 12 May 2022
    9.8
    Critical

    CVE-2022-29363

    Last Modified: 21 Nov 2024

    Phpok v6.1 was discovered to contain a deserialization vulnerability via the update_f() function in login_control.php. This vulnerability allows attackers to getshell via writing arbitrary files.

    Published: 12 May 2022
    7.1
    High

    CVE-2021-26366

    Last Modified: 21 Nov 2024

    An attacker, who gained elevated privileges via some other vulnerability, may be able to read data from Boot ROM resulting in a loss of system integrity.

    Published: 12 May 2022
    7.8
    High

    CVE-2021-26369

    Last Modified: 21 Nov 2024

    A malicious or compromised UApp or ABL may be used by an attacker to send a malformed system call to the bootloader, resulting in out-of-bounds memory accesses.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-27172

    Last Modified: 15 Apr 2025

    A hard-coded password vulnerability exists in the console infactory functionality of InHand Networks InRouter302 V3.5.37. A specially-crafted network request can lead to privileged operation execution. An attacker can send a sequence of requests to trigger this vulnerability.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-26782

    Last Modified: 15 Apr 2025

    Multiple improper input validation vulnerabilities exists in the libnvram.so nvram_import functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted file can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.An improper input validation vulnerability exists in the `httpd`'s `user_define_set_item` function. Controlling the `user_define_timeout` nvram variable can lead to remote code execution.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-26781

    Last Modified: 15 Apr 2025

    Multiple improper input validation vulnerabilities exists in the libnvram.so nvram_import functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted file can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.An improper input validation vulnerability exists in the `httpd`'s `user_define_print` function. Controlling the `user_define_timeout` nvram variable can lead to remote code execution.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-26780

    Last Modified: 15 Apr 2025

    Multiple improper input validation vulnerabilities exists in the libnvram.so nvram_import functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted file can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.An improper input validation vulnerability exists in the `httpd`'s `user_define_init` function. Controlling the `user_define_timeout` nvram variable can lead to remote code execution.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-26518

    Last Modified: 15 Apr 2025

    An OS command injection vulnerability exists in the console infactory_net functionality of InHand Networks InRouter302 V3.5.37. A specially-crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.

    Published: 12 May 2022
    6.5
    Medium

    CVE-2022-26510

    Last Modified: 15 Apr 2025

    A firmware update vulnerability exists in the iburn firmware checks functionality of InHand Networks InRouter302 V3.5.37. A specially-crafted HTTP request can lead to firmware update. An attacker can send a sequence of requests to trigger this vulnerability.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-26420

    Last Modified: 15 Apr 2025

    An OS command injection vulnerability exists in the console infactory_port functionality of InHand Networks InRouter302 V3.5.37. A specially-crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-26085

    Last Modified: 15 Apr 2025

    An OS command injection vulnerability exists in the httpd wlscan_ASP functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-26075

    Last Modified: 15 Apr 2025

    An OS command injection vulnerability exists in the console infactory_wlan functionality of InHand Networks InRouter302 V3.5.37. A specially-crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-26042

    Last Modified: 15 Apr 2025

    An OS command injection vulnerability exists in the daretools binary functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger this vulnerability.

    Published: 12 May 2022
    6.5
    Medium

    CVE-2022-26020

    Last Modified: 15 Apr 2025

    An information disclosure vulnerability exists in the router configuration export functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted network request can lead to increased privileges. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 12 May 2022
    7.2
    High

    CVE-2022-26007

    Last Modified: 15 Apr 2025

    An OS command injection vulnerability exists in the console factory functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted network request can lead to command execution. An attacker can send a sequence of requests to trigger this vulnerability.

    Published: 12 May 2022
    7.2
    High

    CVE-2022-26002

    Last Modified: 15 Apr 2025

    A stack-based buffer overflow vulnerability exists in the console factory functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted network request can lead to remote code execution. An attacker can send a sequence of malicious packets to trigger this vulnerability.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-25995

    Last Modified: 15 Apr 2025

    A command execution vulnerability exists in the console inhand functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger this vulnerability.

    Published: 12 May 2022
    6.1
    Medium

    CVE-2022-25172

    Last Modified: 15 Apr 2025

    An information disclosure vulnerability exists in the web interface session cookie functionality of InHand Networks InRouter302 V3.5.4. The session cookie misses the HttpOnly flag, making it accessible via JavaScript and thus allowing an attacker, able to perform an XSS attack, to steal the session cookie.

    Published: 12 May 2022
    6.7
    Medium

    CVE-2022-24910

    Last Modified: 15 Apr 2025

    A buffer overflow vulnerability exists in the httpd parse_ping_result API functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted file can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.

    Published: 12 May 2022
    8.1
    High

    CVE-2022-21809

    Last Modified: 15 Apr 2025

    A file write vulnerability exists in the httpd upload.cgi functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted HTTP request can lead to arbitrary file upload. An attacker can upload a malicious file to trigger this vulnerability.

    Published: 12 May 2022
    6.1
    Medium

    CVE-2022-21238

    Last Modified: 15 Apr 2025

    A cross-site scripting (xss) vulnerability exists in the info.jsp functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 12 May 2022
    8.8
    High

    CVE-2022-21182

    Last Modified: 15 Apr 2025

    A privilege escalation vulnerability exists in the router configuration import functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted HTTP request can lead to increased privileges. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 12 May 2022
    5.5
    Medium

    CVE-2022-21147

    Last Modified: 15 Apr 2025

    An out of bounds read vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.7.7. A specially-crafted PE file can trigger this vulnerability to cause denial of service and termination of malware scan. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 12 May 2022
    7.8
    High

    CVE-2021-40399

    Last Modified: 15 Apr 2025

    An exploitable use-after-free vulnerability exists in WPS Spreadsheets ( ET ) as part of WPS Office, version 11.2.0.10351. A specially-crafted XLS file can cause a use-after-free condition, resulting in remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

    Published: 12 May 2022
    5.5
    Medium

    CVE-2021-0155

    Last Modified: 5 May 2025

    Unchecked return value in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.

    Published: 12 May 2022
    7.8
    High

    CVE-2021-0188

    Last Modified: 5 May 2025

    Return of pointer value outside of expected range in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

    Published: 12 May 2022
    7.8
    High

    CVE-2021-0159

    Last Modified: 5 May 2025

    Improper input validation in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

    Published: 12 May 2022
    6.7
    Medium

    CVE-2021-33103

    Last Modified: 5 May 2025

    Unintended intermediary in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

    Published: 12 May 2022