CVE Feed

    Dashboard / CVE

    6.7
    Medium

    CVE-2021-4210

    Last Modified: 21 Nov 2024

    A potential vulnerability in the SMI callback function used in the NVME driver in some Lenovo Desktop, ThinkStation, and ThinkEdge models may allow an attacker with local access and elevated privileges to execute arbitrary code.

    Published: 22 Apr 2022
    6.7
    Medium

    CVE-2021-3972

    Last Modified: 21 Nov 2024

    A potential vulnerability by a driver used during manufacturing process on some consumer Lenovo Notebook devices' BIOS that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.

    Published: 22 Apr 2022
    6.7
    Medium

    CVE-2021-3971

    Last Modified: 21 Nov 2024

    A potential vulnerability by a driver used during older manufacturing processes on some consumer Lenovo Notebook devices that was mistakenly included in the BIOS image could allow an attacker with elevated privileges to modify firmware protection region by modifying an NVRAM variable.

    Published: 22 Apr 2022
    6.7
    Medium

    CVE-2021-3970

    Last Modified: 21 Nov 2024

    A potential vulnerability in LenovoVariable SMI Handler due to insufficient validation in some Lenovo Notebook models BIOS may allow an attacker with local access and elevated privileges to execute arbitrary code.

    Published: 22 Apr 2022
    6.8
    Medium

    CVE-2021-3898

    Last Modified: 21 Nov 2024

    Versions of Motorola Ready For and Motorola Device Help Android applications prior to 2021-04-08 do not properly verify the server certificate which could lead to the communication channel being accessible by an attacker.

    Published: 22 Apr 2022
    5
    Medium

    CVE-2021-3722

    Last Modified: 21 Nov 2024

    A denial of service vulnerability was reported in Lenovo PCManager prior to version 4.0.40.2175 that could allow configuration files to be written to non-standard locations during installation.

    Published: 22 Apr 2022
    5.5
    Medium

    CVE-2021-3721

    Last Modified: 21 Nov 2024

    A denial of service vulnerability was reported in Lenovo PCManager prior to version 4.0.20.10282 that could allow an attacker with local access to trigger a blue screen error.

    Published: 22 Apr 2022
    9.8
    Critical

    CVE-2022-27341

    Last Modified: 21 Nov 2024

    JFinalCMS v2.0 was discovered to contain a SQL injection vulnerability via the Article Management function.

    Published: 22 Apr 2022
    9.8
    Critical

    CVE-2022-27342

    Last Modified: 21 Nov 2024

    Link-Admin v0.0.1 was discovered to contain a SQL injection vulnerability via DictRest.ResponseResult().

    Published: 22 Apr 2022
    8.8
    High

    CVE-2022-27340

    Last Modified: 21 Nov 2024

    MCMS v5.2.7 contains a Cross-Site Request Forgery (CSRF) via /role/saveOrUpdateRole.do. This vulnerability allows attackers to escalate privileges and modify data.

    Published: 22 Apr 2022
    9.8
    Critical

    CVE-2022-1440

    Last Modified: 21 Nov 2024

    Command Injection vulnerability in [email protected] in GitHub repository yarkeev/git-interface prior to 2.1.2. If both are provided by user input, then the use of a `--upload-pack` command-line argument feature of git is also supported for `git clone`, which would then allow for any operating system command to be spawned by the attacker.

    Published: 22 Apr 2022
    5.4
    Medium

    CVE-2021-38946

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 211240.

    Published: 22 Apr 2022
    4.3
    Medium

    CVE-2021-38905

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow an authenticated user to view report pages that they should not have access to. IBM X-Force ID: 209697.

    Published: 22 Apr 2022
    6.5
    Medium

    CVE-2021-38904

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow a remote attacker to obtain credentials from a user's browser via incorrect autocomplete settings. IBM X-Force ID: 209693.

    Published: 22 Apr 2022
    5.4
    Medium

    CVE-2021-38903

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability to inject malicious script into a Web page which would be executed in a victim's Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim's cookie-based authentication credentials. IBM X-Force ID: 209691.

    Published: 22 Apr 2022
    8.8
    High

    CVE-2021-38886

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 209399.

    Published: 22 Apr 2022
    4.3
    Medium

    CVE-2021-29824

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to priviledge escalation where a lower level user could have read access to to the 'Data Connections' page to which they don't have access. IBM X-Force ID: 204468.

    Published: 22 Apr 2022
    6.5
    Medium

    CVE-2021-20464

    Last Modified: 21 Nov 2024

    IBM Cognos Analytics PowerPlay (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7) could be vulnerable to an XML Bomb attack by a malicious authenticated user. IBM X-Force ID: 196813.

    Published: 22 Apr 2022
    6.1
    Medium

    CVE-2022-1439

    Last Modified: 21 Nov 2024

    Reflected XSS on demo.microweber.org/demo/module/ in GitHub repository microweber/microweber prior to 1.2.15. Execute Arbitrary JavaScript as the attacked user. It's the only payload I found working, you might need to press "tab" but there is probably a paylaod that runs without user interaction.

    Published: 22 Apr 2022
    7.6
    High

    CVE-2021-25745

    Last Modified: 21 Nov 2024

    A security issue was discovered in ingress-nginx where a user that can create or update ingress objects can use the spec.rules[].http.paths[].path field of an Ingress object (in the networking.k8s.io or extensions API group) to obtain the credentials of the ingress-nginx controller. In the default configuration, that credential has access to all secrets in the cluster.

    Published: 22 Apr 2022
    7.6
    High

    CVE-2021-25746

    Last Modified: 21 Nov 2024

    A security issue was discovered in ingress-nginx where a user that can create or update ingress objects can use .metadata.annotations in an Ingress object (in the networking.k8s.io or extensions API group) to obtain the credentials of the ingress-nginx controller. In the default configuration, that credential has access to all secrets in the cluster.

    Published: 22 Apr 2022
    7.5
    High

    CVE-2020-14123

    Last Modified: 21 Nov 2024

    There is a pointer double free vulnerability in Some MIUI Services. When a function is called, the memory pointer is copied to two function modules, and an attacker can cause the pointer to be repeatedly released through malicious operations, resulting in the affected module crashing and affecting normal functionality, and if successfully exploited the vulnerability can cause elevation of privileges.

    Published: 22 Apr 2022
    7.1
    High

    CVE-2021-32927

    Last Modified: 16 Apr 2025

    An attacker may be able to inject client-side JavaScript code on multiple instances within all versions of Uffizio GPS Tracker.

    Published: 22 Apr 2022
    4.3
    Medium

    CVE-2021-32929

    Last Modified: 16 Apr 2025

    All versions of Uffizio GPS Tracker may allow an attacker to perform unintended actions on behalf of a user.

    Published: 22 Apr 2022
    5.3
    Medium

    CVE-2021-36203

    Last Modified: 21 Nov 2024

    The affected product may allow an attacker to identify and forge requests to internal systems by way of a specially crafted request.

    Published: 22 Apr 2022
    7.1
    High

    CVE-2022-1437

    Last Modified: 21 Nov 2024

    Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.

    Published: 22 Apr 2022
    4.8
    Medium

    CVE-2022-28074

    Last Modified: 21 Nov 2024

    Halo-1.5.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via \admin\index.html#/system/tools.

    Published: 22 Apr 2022
    7.5
    High

    CVE-2022-1429

    Last Modified: 21 Nov 2024

    SQL injection in GridHelperService.php in GitHub repository pimcore/pimcore prior to 10.3.6. This vulnerability is capable of steal the data

    Published: 22 Apr 2022
    9.8
    Critical

    CVE-2022-26674

    Last Modified: 21 Nov 2024

    ASUS RT-AX88U has a Format String vulnerability, which allows an unauthenticated remote attacker to write to arbitrary memory address and perform remote arbitrary code execution, arbitrary system operation or disrupt service.

    Published: 22 Apr 2022
    5.4
    Medium

    CVE-2022-26673

    Last Modified: 21 Nov 2024

    ASUS RT-AX88U has insufficient filtering for special characters in the HTTP header parameter. A remote attacker with general user privilege can exploit this vulnerability to inject JavaScript and perform Stored Cross-Site Scripting (XSS) attacks.

    Published: 22 Apr 2022
    7.3
    High

    CVE-2022-26672

    Last Modified: 21 Nov 2024

    ASUS WebStorage has a hardcoded API Token in the APP source code. An unauthenticated remote attacker can use this token to establish connections with the server and carry out login attempts to general user accounts. A successful login to a general user account allows the attacker to access, modify or delete this user account information.

    Published: 22 Apr 2022
    7.5
    High

    CVE-2022-27406

    Last Modified: 5 Jul 2026

    FreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation violation via the function FT_Request_Size.

    Published: 22 Apr 2022
    7.5
    High

    CVE-2022-27405

    Last Modified: 5 Jul 2026

    FreeType commit 53dfdcd8198d2b3201a23c4bad9190519ba918db was discovered to contain a segmentation violation via the function FNT_Size_Request.

    Published: 22 Apr 2022
    7.4
    High

    CVE-2022-24883

    Last Modified: 3 Nov 2025

    FreeRDP is a free implementation of the Remote Desktop Protocol (RDP). Prior to version 2.7.0, server side authentication against a `SAM` file might be successful for invalid credentials if the server has configured an invalid `SAM` file path. FreeRDP based clients are not affected. RDP server implementations using FreeRDP to authenticate against a `SAM` file are affected. Version 2.7.0 contains a fix for this issue. As a workaround, use custom authentication via `HashCallback` and/or ensure the `SAM` database path configured is valid and the application has file handles left.

    Published: 22 Apr 2022
    9.1
    Critical

    CVE-2022-24882

    Last Modified: 3 Nov 2025

    FreeRDP is a free implementation of the Remote Desktop Protocol (RDP). In versions prior to 2.7.0, NT LAN Manager (NTLM) authentication does not properly abort when someone provides and empty password value. This issue affects FreeRDP based RDP Server implementations. RDP clients are not affected. The vulnerability is patched in FreeRDP 2.7.0. There are currently no known workarounds.

    Published: 22 Apr 2022
    6.5
    Medium

    CVE-2022-41861

    Last Modified: 3 Nov 2025

    A flaw was found in freeradius. A malicious RADIUS client or home server can send a malformed abinary attribute which can cause the server to crash.

    Published: 22 Apr 2022
    7.5
    High

    CVE-2022-41860

    Last Modified: 3 Nov 2025

    In freeradius, when an EAP-SIM supplicant sends an unknown SIM option, the server will try to look that option up in the internal dictionaries. This lookup will fail, but the SIM code will not check for that failure. Instead, it will dereference a NULL pointer, and cause the server to crash.

    Published: 22 Apr 2022
    7.5
    High

    CVE-2022-41859

    Last Modified: 3 Nov 2025

    In freeradius, the EAP-PWD function compute_password_element() leaks information about the password which allows an attacker to substantially reduce the size of an offline dictionary attack.

    Published: 22 Apr 2022
    9.8
    Critical

    CVE-2022-27404

    Last Modified: 21 Nov 2024

    FreeType commit 1e2eb65048f75c64b68708efed6ce904c31f3b2f was discovered to contain a heap buffer overflow via the function sfnt_init_face.

    Published: 22 Apr 2022
    7.8
    High

    CVE-2022-29583

    Last Modified: 21 Nov 2024

    service_windows.go in the kardianos service package for Go omits quoting that is sometimes needed for execution of a Windows service executable from the intended directory. NOTE: this finding could not be reproduced by its original reporter or by others.

    Published: 22 Apr 2022
    6.1
    Medium

    CVE-2022-29589

    Last Modified: 21 Nov 2024

    Crypt Server before 3.3.0 allows XSS in the index view. This is related to serial, computername, and username.

    Published: 22 Apr 2022
    6.1
    Medium

    CVE-2022-29577

    Last Modified: 21 Nov 2024

    OWASP AntiSamy before 1.6.7 allows XSS via HTML tag smuggling on STYLE content with crafted input. The output serializer does not properly encode the supposed Cascading Style Sheets (CSS) content. NOTE: this issue exists because of an incomplete fix for CVE-2022-28367.

    Published: 21 Apr 2022
    6.1
    Medium

    CVE-2022-28367

    Last Modified: 21 Nov 2024

    OWASP AntiSamy before 1.6.6 allows XSS via HTML tag smuggling on STYLE content with crafted input. The output serializer does not properly encode the supposed Cascading Style Sheets (CSS) content.

    Published: 21 Apr 2022
    7.5
    High

    CVE-2022-28366

    Last Modified: 21 Nov 2024

    Certain Neko-related HTML parsers allow a denial of service via crafted Processing Instruction (PI) input that causes excessive heap memory consumption. In particular, this issue exists in HtmlUnit-Neko through 2.26, and is fixed in 2.27. This issue also exists in CyberNeko HTML through 1.9.22 (also affecting OWASP AntiSamy before 1.6.6), but 1.9.22 is the last version of CyberNeko HTML. NOTE: this may be related to CVE-2022-24839.

    Published: 21 Apr 2022
    —
    Unknown

    CVE-2022-29280

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-28366. Reason: This candidate is a reservation duplicate of CVE-2022-28366. Notes: All CVE users should reference CVE-2022-28366 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 21 Apr 2022
    8.2
    High

    CVE-2022-26856

    Last Modified: 21 Nov 2024

    Dell EMC Repository Manager version 3.4.0 contains a plain-text password storage vulnerability. A local attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application's database with privileges of the compromised account.

    Published: 21 Apr 2022
    7.5
    High

    CVE-2022-24424

    Last Modified: 21 Nov 2024

    Dell EMC AppSync versions from 3.9 to 4.3 contain a path traversal vulnerability in AppSync server. A remote unauthenticated attacker may potentially exploit this vulnerability to gain unauthorized read access to the files stored on the server filesystem, with the privileges of the running web application.

    Published: 21 Apr 2022
    5.3
    Medium

    CVE-2022-24423

    Last Modified: 21 Nov 2024

    Dell iDRAC8 versions prior to 2.83.83.83 contain a denial of service vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to cause resource exhaustion in the webserver, resulting in a denial of service condition.

    Published: 21 Apr 2022
    5.7
    Medium

    CVE-2022-22558

    Last Modified: 21 Nov 2024

    Dell PowerEdge Server BIOS and Dell Precision Workstation 7910 and 7920 Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A Local High Privileged attacker could potentially exploit this vulnerability leading to arbitrary writes or denial of service.

    Published: 21 Apr 2022
    8.8
    High

    CVE-2022-28006

    Last Modified: 21 Nov 2024

    Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_delete.php.

    Published: 21 Apr 2022