CVE Feed

    Dashboard / CVE

    9.1
    Critical

    CVE-2022-25017

    Last Modified: 21 Nov 2024

    Hitron CHITA 7.2.2.0.3b6-CD devices contain a command injection vulnerability via the Device/DDNS ddnsUsername field.

    Published: 1 Apr 2022
    8.2
    High

    CVE-2021-35117

    Last Modified: 21 Nov 2024

    An Out of Bounds read may potentially occur while processing an IBSS beacon, in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music

    Published: 1 Apr 2022
    8.4
    High

    CVE-2021-35115

    Last Modified: 21 Nov 2024

    Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon Mobile

    Published: 1 Apr 2022
    8.1
    High

    CVE-2021-35110

    Last Modified: 21 Nov 2024

    Possible buffer overflow to improper validation of hash segment of file while allocating memory in Snapdragon Connectivity, Snapdragon Mobile

    Published: 1 Apr 2022
    7.8
    High

    CVE-2021-35106

    Last Modified: 21 Nov 2024

    Possible out of bound read due to improper length calculation of WMI message. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 1 Apr 2022
    8.4
    High

    CVE-2021-35105

    Last Modified: 21 Nov 2024

    Possible out of bounds access due to improper input validation during graphics profiling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 1 Apr 2022
    7.8
    High

    CVE-2021-35103

    Last Modified: 21 Nov 2024

    Possible out of bound write due to improper validation of number of timer values received from firmware while syncing timers in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 1 Apr 2022
    8.4
    High

    CVE-2021-35089

    Last Modified: 21 Nov 2024

    Possible buffer overflow due to lack of input IB amount validation while processing the user command in Snapdragon Auto

    Published: 1 Apr 2022
    8.2
    High

    CVE-2021-35088

    Last Modified: 21 Nov 2024

    Possible out of bound read due to improper validation of IE length during SSID IE parse when channel is DFS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 1 Apr 2022
    7.8
    High

    CVE-2021-30333

    Last Modified: 21 Nov 2024

    Improper validation of buffer size input to the EFS file can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

    Published: 1 Apr 2022
    7.5
    High

    CVE-2021-30332

    Last Modified: 21 Nov 2024

    Possible assertion due to improper validation of OTA configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 1 Apr 2022
    5.5
    Medium

    CVE-2021-30331

    Last Modified: 21 Nov 2024

    Possible buffer overflow due to improper data validation of external commands sent via DIAG interface in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

    Published: 1 Apr 2022
    7.5
    High

    CVE-2021-30329

    Last Modified: 21 Nov 2024

    Possible assertion due to improper validation of TCI configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 1 Apr 2022
    7.5
    High

    CVE-2021-30328

    Last Modified: 21 Nov 2024

    Possible assertion due to improper validation of invalid NR CSI-IM resource configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

    Published: 1 Apr 2022
    7.8
    High

    CVE-2021-1950

    Last Modified: 21 Nov 2024

    Improper cleaning of secure memory between authenticated users can lead to face authentication bypass in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking

    Published: 1 Apr 2022
    9.3
    Critical

    CVE-2021-1942

    Last Modified: 21 Nov 2024

    Improper handling of permissions of a shared memory region can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

    Published: 1 Apr 2022
    5.5
    Medium

    CVE-2022-1204

    Last Modified: 21 Nov 2024

    A use-after-free flaw was found in the Linux kernel’s Amateur Radio AX.25 protocol functionality in the way a user connects with the protocol. This flaw allows a local user to crash the system.

    Published: 1 Apr 2022
    7.5
    High

    CVE-2020-25691

    Last Modified: 21 Nov 2024

    A flaw was found in darkhttpd. Invalid error handling allows remote attackers to cause denial-of-service by accessing a file with a large modification date. The highest threat from this vulnerability is to system availability.

    Published: 1 Apr 2022
    9.8
    Critical

    CVE-2022-26562

    Last Modified: 21 Nov 2024

    An issue in provider/libserver/ECKrbAuth.cpp of Kopano Core <= v11.0.2.51 contains an issue which allows attackers to authenticate even if the user account or password is expired. It also exists in the predecessor Zarafa Collaboration Platform (ZCP) in provider/libserver/ECPamAuth.cpp of Zarafa >= 6.30 (introduced between 6.30.0 RC1e and 6.30.8 final).

    Published: 1 Apr 2022
    8.8
    High

    CVE-2021-33657

    Last Modified: 21 Nov 2024

    There is a heap overflow problem in video/SDL_pixels.c in SDL (Simple DirectMedia Layer) 2.x to 2.0.18 versions. By crafting a malicious .BMP file, an attacker can cause the application using this library to crash, denial of service or Code execution.

    Published: 1 Apr 2022
    4.7
    Medium

    CVE-2022-1205

    Last Modified: 21 Nov 2024

    A NULL pointer dereference flaw was found in the Linux kernel’s Amateur Radio AX.25 protocol functionality in the way a user connects with the protocol. This flaw allows a local user to crash the system.

    Published: 1 Apr 2022
    10
    Critical

    CVE-2022-24803

    Last Modified: 22 Apr 2025

    Asciidoctor-include-ext is Asciidoctor’s standard include processor reimplemented as an extension. Versions prior to 0.4.0, when used to render user-supplied input in AsciiDoc markup, may allow an attacker to execute arbitrary system commands on the host operating system. This attack is possible even when `allow-uri-read` is disabled! The problem has been patched in the referenced commits.

    Published: 31 Mar 2022
    8.1
    High

    CVE-2022-24802

    Last Modified: 23 Apr 2025

    deepmerge-ts is a typescript library providing functionality to deep merging of javascript objects. deepmerge-ts is vulnerable to Prototype Pollution via file deepmerge.ts, function defaultMergeRecords(). This issue has been patched in version 4.0.2. There are no known workarounds for this issue.

    Published: 31 Mar 2022
    7.5
    High

    CVE-2022-24798

    Last Modified: 23 Apr 2025

    Internet Routing Registry daemon version 4 is an IRR database server, processing IRR objects in the RPSL format. IRRd did not always filter password hashes in query responses relating to `mntner` objects and database exports. This may have allowed adversaries to retrieve some of these hashes, perform a brute-force search for the clear-text passphrase, and use these to make unauthorised changes to affected IRR objects. This issue only affected instances that process password hashes, which means it is limited to IRRd instances that serve authoritative databases. IRRd instances operating solely as mirrors of other IRR databases are not affected. This has been fixed in IRRd 4.2.3 and the main branch. Versions in the 4.1.x series never were affected. Users of the 4.2.x series are strongly recommended to upgrade. There are no known workarounds for this issue.

    Published: 31 Mar 2022
    8.1
    High

    CVE-2022-24791

    Last Modified: 23 Apr 2025

    Wasmtime is a standalone JIT-style runtime for WebAssembly, using Cranelift. There is a use after free vulnerability in Wasmtime when both running Wasm that uses externrefs and enabling epoch interruption in Wasmtime. If you are not explicitly enabling epoch interruption (it is disabled by default) then you are not affected. If you are explicitly disabling the Wasm reference types proposal (it is enabled by default) then you are also not affected. The use after free is caused by Cranelift failing to emit stack maps when there are safepoints inside cold blocks. Cold blocks occur when epoch interruption is enabled. Cold blocks are emitted at the end of compiled functions, and change the order blocks are emitted versus defined. This reordering accidentally caused Cranelift to skip emitting some stack maps because it expected to emit the stack maps in block definition order, rather than block emission order. When Wasmtime would eventually collect garbage, it would fail to find live references on the stack because of the missing stack maps, think that they were unreferenced garbage, and therefore reclaim them. Then after the collection ended, the Wasm code could use the reclaimed-too-early references, which is a use after free. Patches have been released in versions 0.34.2 and 0.35.2, which fix the vulnerability. All Wasmtime users are recommended to upgrade to these patched versions. If upgrading is not an option for you at this time, you can avoid the vulnerability by either: disabling the Wasm reference types proposal, config.wasm_reference_types(false); or by disabling epoch interruption if you were previously enabling it. config.epoch_interruption(false).

    Published: 31 Mar 2022
    7.5
    High

    CVE-2022-24794

    Last Modified: 23 Apr 2025

    Express OpenID Connect is an Express JS middleware implementing sign on for Express web apps using OpenID Connect. Users of the `requiresAuth` middleware, either directly or through the default `authRequired` option, are vulnerable to an Open Redirect when the middleware is applied to a catch all route. If all routes under `example.com` are protected with the `requiresAuth` middleware, a visit to `http://example.com//google.com` will be redirected to `google.com` after login because the original url reported by the Express framework is not properly sanitized. This vulnerability affects versions prior to 2.7.2. Users are advised to upgrade. There are no known workarounds.

    Published: 31 Mar 2022
    10
    Critical

    CVE-2022-24796

    Last Modified: 23 Apr 2025

    RaspberryMatic is a free and open-source operating system for running a cloud-free smart-home using the homematicIP / HomeMatic hardware line of IoT devices. A Remote Code Execution (RCE) vulnerability in the file upload facility of the WebUI interface of RaspberryMatic exists. Missing input validation/sanitization in the file upload mechanism allows remote, unauthenticated attackers with network access to the WebUI interface to achieve arbitrary operating system command execution via shell metacharacters in the HTTP query string. Injected commands are executed as root, thus leading to a full compromise of the underlying system and all its components. Versions after `2.31.25.20180428` and prior to `3.63.8.20220330` are affected. Users are advised to update to version `3.63.8.20220330` or newer. There are currently no known workarounds to mitigate the security impact and users are advised to update to the latest version available.

    Published: 31 Mar 2022
    6.5
    Medium

    CVE-2022-24797

    Last Modified: 23 Apr 2025

    Pomerium is an identity-aware access proxy. In distributed service mode, Pomerium's Authenticate service exposes pprof debug and prometheus metrics handlers to untrusted traffic. This can leak potentially sensitive environmental information or lead to limited denial of service conditions. This issue is patched in version v0.17.1 Workarounds: Block access to `/debug` and `/metrics` paths on the authenticate service. This can be done with any L7 proxy, including Pomerium's own proxy service.

    Published: 31 Mar 2022
    7.5
    High

    CVE-2022-24758

    Last Modified: 23 Apr 2025

    The Jupyter notebook is a web-based notebook environment for interactive computing. Prior to version 6.4.9, unauthorized actors can access sensitive information from server logs. Anytime a 5xx error is triggered, the auth cookie and other header values are recorded in Jupyter server logs by default. Considering these logs do not require root access, an attacker can monitor these logs, steal sensitive auth/cookie information, and gain access to the Jupyter server. Jupyter notebook version 6.4.x contains a patch for this issue. There are currently no known workarounds.

    Published: 31 Mar 2022
    6.5
    Medium

    CVE-2022-27966

    Last Modified: 21 Nov 2024

    Xshell v7.0.0099 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.

    Published: 31 Mar 2022
    6.5
    Medium

    CVE-2022-27964

    Last Modified: 21 Nov 2024

    Xmanager v7.0.0096 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.

    Published: 31 Mar 2022
    6.5
    Medium

    CVE-2022-27965

    Last Modified: 21 Nov 2024

    Xlpd v7.0.0094 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.

    Published: 31 Mar 2022
    6.5
    Medium

    CVE-2022-27963

    Last Modified: 21 Nov 2024

    Xftp 7.0.0088p and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.

    Published: 31 Mar 2022
    7.8
    High

    CVE-2022-27052

    Last Modified: 21 Nov 2024

    FreeFtpd version 1.0.13 and below contains an unquoted service path vulnerability which allows local users to launch processes with elevated privileges.

    Published: 31 Mar 2022
    2
    Low

    CVE-2022-27049

    Last Modified: 21 Nov 2024

    Raidrive before v2021.12.35 allows attackers to arbitrarily move log files by pre-creating a mountpoint and log files before Raidrive is installed.

    Published: 31 Mar 2022
    7.8
    High

    CVE-2022-27050

    Last Modified: 21 Nov 2024

    BitComet Service for Windows before version 1.8.6 contains an unquoted service path vulnerability which allows attackers to escalate privileges to the system level.

    Published: 31 Mar 2022
    —
    Unknown

    CVE-2021-46439

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation sho

    Published: 31 Mar 2022
    9.8
    Critical

    CVE-2021-43722

    Last Modified: 21 Nov 2024

    D-Link DIR-645 1.03 A1 is vulnerable to Buffer Overflow. The hnap_main function in the cgibin handler uses sprintf to format the soapaction header onto the stack and has no limit on the size.

    Published: 31 Mar 2022
    9.1
    Critical

    CVE-2022-26546

    Last Modified: 21 Nov 2024

    Hospital Management System v1.0 was discovered to lack an authorization component, allowing attackers to access sensitive information and obtain the admin password.

    Published: 31 Mar 2022
    6.1
    Medium

    CVE-2021-43707

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability exists in Maccms v10 via link_Name parameter.

    Published: 31 Mar 2022
    9.8
    Critical

    CVE-2021-43479

    Last Modified: 21 Nov 2024

    A Remote Code Execution (RCE) vulnerability exists in The-Secretary 2.5 via install.php.

    Published: 31 Mar 2022
    5.4
    Medium

    CVE-2021-43478

    Last Modified: 21 Nov 2024

    A vulnerability exists in Hoosk 1.8.0 in /install/index.php, due to a failure to check if config.php already exists in the root directory, which could let a malicious user reinstall the website.

    Published: 31 Mar 2022
    9.8
    Critical

    CVE-2021-43484

    Last Modified: 21 Nov 2024

    A Remote Code Execution (RCE) vulnerability exists in Simple Client Management System 1.0 in create.php due to the failure to validate the extension of the file being sent in a request.

    Published: 31 Mar 2022
    7.5
    High

    CVE-2021-37517

    Last Modified: 21 Nov 2024

    An Access Control vulnerability exists in Dolibarr ERP/CRM 13.0.2, fixed version is 14.0.0,in the forgot-password function becuase the application allows email addresses as usernames, which can cause a Denial of Service.

    Published: 31 Mar 2022
    4.8
    Medium

    CVE-2021-42946

    Last Modified: 21 Nov 2024

    A Cross Site Scripting (XSS) vulnerability exists in htmly.2.8.1 via the Copyright field in the /admin/config page.

    Published: 31 Mar 2022
    4.8
    Medium

    CVE-2021-42868

    Last Modified: 21 Nov 2024

    A Cross Site Scripting (XSS) vulnerability exists in Chikista Patient Management Software 2.0.2 in the first_name parameter in (1) patient/insert, (2) patient_report, (3) appointment_report, (4) visit_report, and (5) bill_detail_report pages. .

    Published: 31 Mar 2022
    4.8
    Medium

    CVE-2021-42867

    Last Modified: 21 Nov 2024

    A Cross Site Scripting (XSS) vulnerability exists in DanPros htmly 2.8.1 via the Description field in (1) admin/config, and (2) index.php pages.

    Published: 31 Mar 2022
    4.8
    Medium

    CVE-2021-42866

    Last Modified: 21 Nov 2024

    A Cross Site Scripting vulnerabilty exists in Pixelimity 1.0 via the Site Description field in pixelimity/admin/setting.php

    Published: 31 Mar 2022
    4.8
    Medium

    CVE-2021-42869

    Last Modified: 21 Nov 2024

    A Cross Site Scripting (XSS) vulnerability exists in Chikista Patient Management Software 2.0.2 via the last_name parameter in the (1) patient/insert, (2) patient_report, (3) /appointment_report, (4) visit_report, and (5) /bill_detail_report pages.

    Published: 31 Mar 2022
    8.8
    High

    CVE-2021-36625

    Last Modified: 21 Nov 2024

    An SQL Injection vulnerability exists in Dolibarr ERP/CRM 13.0.2 (fixed version is 14.0.0) via a POST request to the country_id parameter in an UPDATE statement.

    Published: 31 Mar 2022