CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2022-22579

    Last Modified: 21 Nov 2024

    An information disclosure issue was addressed with improved state management. This issue is fixed in iOS 15.3 and iPadOS 15.3, tvOS 15.3, Security Update 2022-001 Catalina, macOS Monterey 12.2, macOS Big Sur 11.6.3. Processing a maliciously crafted STL file may lead to unexpected application termination or arbitrary code execution.

    Published: 18 Mar 2022
    7.8
    High

    CVE-2021-30771

    Last Modified: 21 Nov 2024

    An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.4, iOS 14.6 and iPadOS 14.6, watchOS 7.5, tvOS 14.6. Processing a maliciously crafted font file may lead to arbitrary code execution.

    Published: 18 Mar 2022
    6.5
    Medium

    CVE-2020-15388

    Last Modified: 21 Nov 2024

    A vulnerability in the Brocade Fabric OS before Brocade Fabric OS v9.0.1a, v8.2.3, v8.2.0_CBN4, and v7.4.2h could allow an authenticated CLI user to abuse the history command to write arbitrary content to files.

    Published: 18 Mar 2022
    6.5
    Medium

    CVE-2021-27789

    Last Modified: 21 Nov 2024

    The Web application of Brocade Fabric OS before versions Brocade Fabric OS v9.0.1a and v8.2.3a contains debug statements that expose sensitive information to the program's standard output device. An attacker who has compromised the FOS system may utilize this weakness to capture sensitive information, such as user credentials.

    Published: 18 Mar 2022
    7.8
    High

    CVE-2022-24091

    Last Modified: 21 Nov 2024

    Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious font file.

    Published: 18 Mar 2022
    7.8
    High

    CVE-2022-24092

    Last Modified: 21 Nov 2024

    Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious font file.

    Published: 18 Mar 2022
    7.5
    High

    CVE-2021-4031

    Last Modified: 21 Nov 2024

    Syltek application before its 10.22.00 version, does not correctly check that a product ID has a valid payment associated to it. This could allow an attacker to forge a request and bypass the payment system by marking items as payed without any verification.

    Published: 18 Mar 2022
    7.8
    High

    CVE-2022-27243

    Last Modified: 21 Nov 2024

    An issue was discovered in MISP before 2.4.156. app/View/Users/terms.ctp allows Local File Inclusion via the custom terms file setting.

    Published: 18 Mar 2022
    4.8
    Medium

    CVE-2022-27244

    Last Modified: 21 Nov 2024

    An issue was discovered in MISP before 2.4.156. A malicious site administrator could store an XSS payload in the custom auth name. This would be executed each time the administrator modifies a user.

    Published: 18 Mar 2022
    8.8
    High

    CVE-2022-27245

    Last Modified: 21 Nov 2024

    An issue was discovered in MISP before 2.4.156. app/Model/Server.php does not restrict generateServerSettings to the CLI. This could lead to SSRF.

    Published: 18 Mar 2022
    6.1
    Medium

    CVE-2022-27246

    Last Modified: 21 Nov 2024

    An issue was discovered in MISP before 2.4.156. An SVG org logo (which may contain JavaScript) is not forbidden by default.

    Published: 18 Mar 2022
    4.9
    Medium

    CVE-2021-39046

    Last Modified: 21 Nov 2024

    IBM Business Automation Workflow 18.0, 19.0, 20.0, and 21.0 and IBM Business Process Manager 8.5 and 8.6 stores user credentials in plain clear text which can be read by a lprivileged user. IBM X-Force ID: 214346.

    Published: 18 Mar 2022
    6.5
    Medium

    CVE-2021-29899

    Last Modified: 21 Nov 2024

    IBM Engineering Requirements Quality Assistant prior to 3.1.3 could allow an authenticated user to cause a denial of service. IBM X-Force ID: 207413.

    Published: 18 Mar 2022
    9.8
    Critical

    CVE-2022-24595

    Last Modified: 21 Nov 2024

    Automotive Grade Linux Kooky Koi 11.0.0, 11.0.1, 11.0.2, 11.0.3, 11.0.4, and 11.0.5 is affected by Incorrect Access Control in usr/bin/afb-daemon. To exploit the vulnerability, an attacker should send a well-crafted HTTP (or WebSocket) request to the socket listened by the afb-daemon process. No credentials nor user interactions are required.

    Published: 18 Mar 2022
    5.5
    Medium

    CVE-2021-22571

    Last Modified: 21 Apr 2025

    A local attacker could read files from some other users' SA360 reports stored in the /tmp folder during staging process before the files are loaded in BigQuery. We recommend upgrading to version 1.0.3 or above.

    Published: 18 Mar 2022
    9.8
    Critical

    CVE-2021-45834

    Last Modified: 21 Nov 2024

    An attacker can upload or transfer files of dangerous types to the OpenDocMan 1.4.4 portal via add.php using MIME-bypass, which may be automatically processed within the product's environment or lead to arbitrary code execution.

    Published: 18 Mar 2022
    9.8
    Critical

    CVE-2021-45835

    Last Modified: 21 Nov 2024

    The Online Admission System 1.0 allows an unauthenticated attacker to upload or transfer files of dangerous types to the application through documents.php, which may be used to execute malicious code or lead to code execution.

    Published: 18 Mar 2022
    7.8
    High

    CVE-2022-24655

    Last Modified: 21 Nov 2024

    A stack overflow vulnerability exists in the upnpd service in Netgear EX6100v1 201.0.2.28, CAX80 2.1.2.6, and DC112A 1.0.0.62, which may lead to the execution of arbitrary code without authentication.

    Published: 18 Mar 2022
    7.2
    High

    CVE-2022-26965

    Last Modified: 21 Nov 2024

    In Pluck 4.7.16, an admin user can use the theme upload functionality at /admin.php?action=themeinstall to perform remote code execution.

    Published: 18 Mar 2022
    9.8
    Critical

    CVE-2022-27240

    Last Modified: 21 Nov 2024

    scheme/webauthn.c in Glewlwyd SSO server 2.x before 2.6.2 has a buffer overflow associated with a webauthn assertion.

    Published: 18 Mar 2022
    9.8
    Critical

    CVE-2021-45967

    Last Modified: 21 Nov 2024

    An issue was discovered in Pascom Cloud Phone System before 7.20.x. A configuration error between NGINX and a backend Tomcat server leads to a path traversal in the Tomcat server, exposing unintended endpoints.

    Published: 18 Mar 2022
    9.8
    Critical

    CVE-2021-45966

    Last Modified: 21 Nov 2024

    An issue was discovered in Pascom Cloud Phone System before 7.20.x. In the management REST API, /services/apply in exd.pl allows remote attackers to execute arbitrary code via shell metacharacters.

    Published: 18 Mar 2022
    7.5
    High

    CVE-2021-45968

    Last Modified: 21 Nov 2024

    An issue was discovered in xmppserver jar in the XMPP Server component of the JIve platform, as used in Pascom Cloud Phone System before 7.20.x (and in other products). An endpoint in the backend Tomcat server of the Pascom allows SSRF, a related issue to CVE-2019-18394.

    Published: 18 Mar 2022
    5.5
    Medium

    CVE-2021-45868

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.

    Published: 18 Mar 2022
    7.5
    High

    CVE-2022-22643

    Last Modified: 21 Nov 2024

    This issue was addressed with improved checks. This issue is fixed in iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3. A user may send audio and video in a FaceTime call without knowing that they have done so.

    Published: 18 Mar 2022
    9.8
    Critical

    CVE-2022-24637

    Last Modified: 21 Nov 2024

    Open Web Analytics (OWA) before 1.7.4 allows an unauthenticated remote attacker to obtain sensitive user information, which can be used to gain admin privileges by leveraging cache hashes. This occurs because files generated with '<?php (instead of the intended "<?php sequence) aren't handled by the PHP interpreter.

    Published: 18 Mar 2022
    7.5
    High

    CVE-2022-24771

    Last Modified: 23 Apr 2025

    Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.3.0, RSA PKCS#1 v1.5 signature verification code is lenient in checking the digest algorithm structure. This can allow a crafted structure that steals padding bytes and uses unchecked portion of the PKCS#1 encoded message to forge a signature when a low public exponent is being used. The issue has been addressed in `node-forge` version 1.3.0. There are currently no known workarounds.

    Published: 18 Mar 2022
    5.3
    Medium

    CVE-2022-24773

    Last Modified: 23 Apr 2025

    Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.3.0, RSA PKCS#1 v1.5 signature verification code does not properly check `DigestInfo` for a proper ASN.1 structure. This can lead to successful verification with signatures that contain invalid structures but a valid digest. The issue has been addressed in `node-forge` version 1.3.0. There are currently no known workarounds.

    Published: 18 Mar 2022
    7.5
    High

    CVE-2022-24772

    Last Modified: 23 Apr 2025

    Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.3.0, RSA PKCS#1 v1.5 signature verification code does not check for tailing garbage bytes after decoding a `DigestInfo` ASN.1 structure. This can allow padding bytes to be removed and garbage data added to forge a signature when a low public exponent is being used. The issue has been addressed in `node-forge` version 1.3.0. There are currently no known workarounds.

    Published: 18 Mar 2022
    3.3
    Low

    CVE-2022-0758

    Last Modified: 21 Nov 2024

    Rapid7 Nexpose versions 6.6.129 and earlier suffer from a reflected cross site scripting vulnerability, within the shared scan configuration component of the tool. With this vulnerability an attacker could pass literal values as the test credentials, providing the opportunity for a potential XSS attack. This issue is fixed in Rapid7 Nexpose version 6.6.130.

    Published: 17 Mar 2022
    5.5
    Medium

    CVE-2022-0757

    Last Modified: 21 Nov 2024

    Rapid7 Nexpose versions 6.6.93 and earlier are susceptible to an SQL Injection vulnerability, whereby valid search operators are not defined. This lack of validation can allow a logged-in, authenticated attacker to manipulate the "ANY" and "OR" operators in the SearchCriteria and inject SQL code. This issue was fixed in Rapid7 Nexpose version 6.6.129.

    Published: 17 Mar 2022
    4
    Medium

    CVE-2022-0237

    Last Modified: 21 Nov 2024

    Rapid7 Insight Agent versions 3.1.2.38 and earlier suffer from a privilege escalation vulnerability, whereby an attacker can hijack the flow of execution due to an unquoted argument to the runas.exe command used by the ir_agent.exe component, resulting in elevated rights and persistent access to the machine. This issue was fixed in Rapid7 Insight Agent version 3.1.3.80.

    Published: 17 Mar 2022
    9.8
    Critical

    CVE-2021-44087

    Last Modified: 21 Nov 2024

    A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows an unauthenticated remote attacker to upload a maliciously crafted PHP via photo upload.

    Published: 17 Mar 2022
    4.3
    Medium

    CVE-2021-43961

    Last Modified: 21 Nov 2024

    Sonatype Nexus Repository Manager 3.36.0 allows HTML Injection.

    Published: 17 Mar 2022
    9.8
    Critical

    CVE-2021-44088

    Last Modified: 21 Nov 2024

    An SQL Injection vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows a remote attacker to bypass authentication via unsanitized login parameters.

    Published: 17 Mar 2022
    5.9
    Medium

    CVE-2022-24302

    Last Modified: 16 Dec 2025

    In Paramiko before 2.10.1, a race condition (between creation and chmod) in the write_private_key_file function could allow unauthorized information disclosure.

    Published: 17 Mar 2022
    8.8
    High

    CVE-2022-26500

    Last Modified: 3 Nov 2025

    Improper limitation of path names in Veeam Backup & Replication 9.5U3, 9.5U4,10.x, and 11.x allows remote authenticated users access to internal API functions that allows attackers to upload and execute arbitrary code.

    Published: 17 Mar 2022
    8.8
    High

    CVE-2022-26504

    Last Modified: 21 Nov 2024

    Improper authentication in Veeam Backup & Replication 9.5U3, 9.5U4,10.x and 11.x component used for Microsoft System Center Virtual Machine Manager (SCVMM) allows attackers execute arbitrary code via Veeam.Backup.PSManager.exe

    Published: 17 Mar 2022
    0
    Low

    CVE-2021-44907

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 17 Mar 2022
    7.5
    High

    CVE-2021-46107

    Last Modified: 21 Nov 2024

    Ligeo Archives Ligeo Basics as of 02_01-2022 is vulnerable to Server Side Request Forgery (SSRF) which allows an attacker to read any documents via the download features.

    Published: 17 Mar 2022
    8.8
    High

    CVE-2022-24770

    Last Modified: 23 Apr 2025

    `gradio` is an open source framework for building interactive machine learning models and demos. Prior to version 2.8.11, `gradio` suffers from Improper Neutralization of Formula Elements in a CSV File. The `gradio` library has a flagging functionality which saves input/output data into a CSV file on the developer's computer. This can allow a user to save arbitrary text into the CSV file, such as commands. If a program like MS Excel opens such a file, then it automatically runs these commands, which could lead to arbitrary commands running on the user's computer. The problem has been patched as of `2.8.11`, which escapes the saved csv with single quotes. As a workaround, avoid opening csv files generated by `gradio` with Excel or similar spreadsheet programs.

    Published: 17 Mar 2022
    7.5
    High

    CVE-2022-21822

    Last Modified: 21 Nov 2024

    NVIDIA FLARE contains a vulnerability in the admin interface, where an un-authorized attacker can cause Allocation of Resources Without Limits or Throttling, which may lead to cause system unavailable.

    Published: 17 Mar 2022
    9.8
    Critical

    CVE-2022-26501

    Last Modified: 3 Nov 2025

    Veeam Backup & Replication 10.x and 11.x has Incorrect Access Control (issue 1 of 2).

    Published: 17 Mar 2022
    9.8
    Critical

    CVE-2021-45040

    Last Modified: 21 Nov 2024

    The Spatie media-library-pro library through 1.17.10 and 2.x through 2.1.6 for Laravel allows remote attackers to upload executable files via the uploads route.

    Published: 17 Mar 2022
    7.8
    High

    CVE-2022-26511

    Last Modified: 21 Nov 2024

    WPS Presentation 11.8.0.5745 insecurely load d3dx9_41.dll when opening .pps files('current directory type' DLL loading).

    Published: 17 Mar 2022
    7.8
    High

    CVE-2022-26081

    Last Modified: 21 Nov 2024

    The installer of WPS Office Version 10.8.0.5745 insecurely load shcore.dll, allowing an attacker to execute arbitrary code with the privilege of the user invoking the installer.

    Published: 17 Mar 2022
    7.8
    High

    CVE-2022-25969

    Last Modified: 21 Nov 2024

    The installer of WPS Office Version 10.8.0.6186 insecurely load VERSION.DLL (or some other DLLs), allowing an attacker to execute arbitrary code with the privilege of the user invoking the installer.

    Published: 17 Mar 2022
    7.8
    High

    CVE-2022-25949

    Last Modified: 21 Nov 2024

    The kernel mode driver kwatch3 of KINGSOFT Internet Security 9 Plus Version 2010.06.23.247 fails to properly handle crafted inputs, leading to stack-based buffer overflow.

    Published: 17 Mar 2022
    8.1
    High

    CVE-2022-24759

    Last Modified: 23 Apr 2025

    `@chainsafe/libp2p-noise` contains TypeScript implementation of noise protocol, an encryption protocol used in libp2p. `@chainsafe/libp2p-noise` before 4.1.2 and 5.0.3 does not correctly validate signatures during the handshake process. This may allow a man-in-the-middle to pose as other peers and get those peers banned. Users should upgrade to version 4.1.2 or 5.0.3 to receive a patch. There are currently no known workarounds.

    Published: 17 Mar 2022
    8.1
    High

    CVE-2022-25364

    Last Modified: 21 Nov 2024

    In Gradle Enterprise before 2021.4.2, the default built-in build cache configuration allowed anonymous write access. If this was not manually changed, a malicious actor with network access to the build cache could potentially populate it with manipulated entries that execute malicious code as part of a build. As of 2021.4.2, the built-in build cache is inaccessible-by-default, requiring explicit configuration of its access-control settings before it can be used. (Remote build cache nodes are unaffected as they are inaccessible-by-default.)

    Published: 17 Mar 2022