CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2021-44627

    Last Modified: 21 Nov 2024

    A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/get_reset_pwd_veirfy_code feature, which allows malicious users to execute arbitrary code on the system via a crafted post request.

    Published: 9 Mar 2022
    9.8
    Critical

    CVE-2021-44626

    Last Modified: 21 Nov 2024

    A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/get_reg_verify_code feature, which allows malicious users to execute arbitrary code on the system via a crafted post request.

    Published: 9 Mar 2022
    9.8
    Critical

    CVE-2021-44625

    Last Modified: 21 Nov 2024

    A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in /cloud_config/cloud_device/info interface, which allows a malicious user to executee arbitrary code on the system via a crafted post request.

    Published: 9 Mar 2022
    3.5
    Low

    CVE-2022-24741

    Last Modified: 22 Apr 2025

    Nextcloud server is an open source, self hosted cloud style services platform. In affected versions an attacker can cause a denial of service by uploading specially crafted files which will cause the server to allocate too much memory / CPU. It is recommended that the Nextcloud Server is upgraded to 21.0.8 , 22.2.4 or 23.0.1. Users unable to upgrade should disable preview generation with the `'enable_previews'` config flag.

    Published: 9 Mar 2022
    7.2
    High

    CVE-2022-24734

    Last Modified: 22 Apr 2025

    MyBB is a free and open source forum software. In affected versions the Admin CP's Settings management module does not validate setting types correctly on insertion and update, making it possible to add settings of supported type `php` with PHP code, executed on on _Change Settings_ pages. This results in a Remote Code Execution (RCE) vulnerability. The vulnerable module requires Admin CP access with the `Can manage settings?` permission. MyBB's Settings module, which allows administrators to add, edit, and delete non-default settings, stores setting data in an options code string ($options_code; mybb_settings.optionscode database column) that identifies the setting type and its options, separated by a new line character (\n). In MyBB 1.2.0, support for setting type php was added, for which the remaining part of the options code is PHP code executed on Change Settings pages (reserved for plugins and internal use). MyBB 1.8.30 resolves this issue. There are no known workarounds.

    Published: 9 Mar 2022
    9.8
    Critical

    CVE-2021-44623

    Last Modified: 21 Nov 2024

    A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 via the /cloud_config/router_post/check_reset_pwd_verify_code interface.

    Published: 9 Mar 2022
    9.8
    Critical

    CVE-2021-44622

    Last Modified: 21 Nov 2024

    A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/check_reg_verify_code function which could let a remove malicious user execute arbitrary code via a crafted post request.

    Published: 9 Mar 2022
    8.1
    High

    CVE-2021-32025

    Last Modified: 22 Aug 2025

    An elevation of privilege vulnerability in the QNX Neutrino Kernel of affected versions of QNX Software Development Platform version(s) 6.4.0 to 7.0, QNX Momentics all 6.3.x versions, QNX OS for Safety versions 1.0.0 to 1.0.2, QNX OS for Safety versions 2.0.0 to 2.0.1, QNX for Medical versions 1.0.0 to 1.1.1, and QNX OS for Medical version 2.0.0 could allow an attacker to potentially access data, modify behavior, or permanently crash the system.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-0618

    Last Modified: 21 Nov 2024

    A program using swift-nio-http2 is vulnerable to a denial of service attack, caused by a network peer sending a specially crafted HTTP/2 frame. This vulnerability is caused by a logical error when parsing a HTTP/2 HEADERS or HTTP/2 PUSH_PROMISE frame where the frame contains padding information without any other data. This logical error caused confusion about the size of the frame, leading to a parsing error. This parsing error immediately crashes the entire process. Sending a HEADERS frame or PUSH_PROMISE frame with HTTP/2 padding information does not require any special permission, so any HTTP/2 connection peer may send such a frame. For clients, this means any server to which they connect may launch this attack. For servers, anyone they allow to connect to them may launch such an attack. The attack is low-effort: it takes very little resources to send an appropriately crafted frame. The impact on availability is high: receiving the frame immediately crashes the server, dropping all in-flight connections and causing the service to need to restart. It is straightforward for an attacker to repeatedly send appropriately crafted frames, so attackers require very few resources to achieve a substantial denial of service. The attack does not have any confidentiality or integrity risks in and of itself: swift-nio-http2 is parsing the frame in memory-safe code, so the crash is safe. However, sudden process crashes can lead to violations of invariants in services, so it is possible that this attack can be used to trigger an error condition that has confidentiality or integrity risks. The risk can be mitigated if untrusted peers can be prevented from communicating with the service. This mitigation is not available to many services. The issue is fixed by rewriting the parsing code to correctly handle the condition. The issue was found by automated fuzzing by oss-fuzz.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-24726

    Last Modified: 23 Apr 2025

    Istio is an open platform to connect, manage, and secure microservices. In affected versions the Istio control plane, istiod, is vulnerable to a request processing error, allowing a malicious attacker that sends a specially crafted message which results in the control plane crashing when the validating webhook for a cluster is exposed publicly. This endpoint is served over TLS port 15017, but does not require any authentication from the attacker. For simple installations, Istiod is typically only reachable from within the cluster, limiting the blast radius. However, for some deployments, especially [external istiod](https://istio.io/latest/docs/setup/install/external-controlplane/) topologies, this port is exposed over the public internet. This issue has been patched in versions 1.13.2, 1.12.5 and 1.11.8. Users are advised to upgrade. Users unable to upgrade should disable access to a validating webhook that is exposed to the public internet or restrict the set of IP addresses that can query it to a set of known, trusted entities.

    Published: 9 Mar 2022
    6.3
    Medium

    CVE-2022-24732

    Last Modified: 23 Apr 2025

    Maddy Mail Server is an open source SMTP compatible email server. Versions of maddy prior to 0.5.4 do not implement password expiry or account expiry checking when authenticating using PAM. Users are advised to upgrade. Users unable to upgrade should manually remove expired accounts via existing filtering mechanisms.

    Published: 9 Mar 2022
    5.4
    Medium

    CVE-2022-22511

    Last Modified: 21 Nov 2024

    Various configuration pages of the device are vulnerable to reflected XSS (Cross-Site Scripting) attacks. An authorized attacker with user privileges may use this to gain access to confidential information on a PC that connects to the WBM after it has been compromised.

    Published: 9 Mar 2022
    3.7
    Low

    CVE-2022-24919

    Last Modified: 3 Nov 2025

    An authenticated user can create a link with reflected Javascript code inside it for graphs’ page and send it to other users. The payload can be executed only with a known CSRF token value of the victim, which is changed periodically and is difficult to predict. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim during social engineering attacks.

    Published: 9 Mar 2022
    3.7
    Low

    CVE-2022-24918

    Last Modified: 3 Nov 2025

    An authenticated user can create a link with reflected Javascript code inside it for items’ page and send it to other users. The payload can be executed only with a known CSRF token value of the victim, which is changed periodically and is difficult to predict. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim during social engineering attacks.

    Published: 9 Mar 2022
    3.7
    Low

    CVE-2022-24917

    Last Modified: 3 Nov 2025

    An authenticated user can create a link with reflected Javascript code inside it for services’ page and send it to other users. The payload can be executed only with a known CSRF token value of the victim, which is changed periodically and is difficult to predict. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim during social engineering attacks.

    Published: 9 Mar 2022
    4.6
    Medium

    CVE-2022-24349

    Last Modified: 3 Nov 2025

    An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim. This attack can be implemented with the help of social engineering and expiration of a number of factors - an attacker should have authorized access to the Zabbix Frontend and allowed network connection between a malicious server and victim’s computer, understand attacked infrastructure, be recognized by the victim as a trustee and use trusted communication channel.

    Published: 9 Mar 2022
    9.8
    Critical

    CVE-2022-22806

    Last Modified: 21 Nov 2024

    A CWE-294: Authentication Bypass by Capture-replay vulnerability exists that could cause an unauthenticated connection to the UPS when a malformed connection is sent. Affected Product: SmartConnect Family: SMT Series (SMT Series ID=1015: UPS 04.5 and prior), SMC Series (SMC Series ID=1018: UPS 04.2 and prior), SMTL Series (SMTL Series ID=1026: UPS 02.9 and prior), SCL Series (SCL Series ID=1029: UPS 02.5 and prior / SCL Series ID=1030: UPS 02.5 and prior / SCL Series ID=1036: UPS 02.5 and prior / SCL Series ID=1037: UPS 03.1 and prior), SMX Series (SMX Series ID=1031: UPS 03.1 and prior)

    Published: 9 Mar 2022
    9.8
    Critical

    CVE-2022-22805

    Last Modified: 21 Nov 2024

    A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists that could cause remote code execution when an improperly handled TLS packet is reassembled. Affected Product: SmartConnect Family: SMT Series (SMT Series ID=1015: UPS 04.5 and prior), SMC Series (SMC Series ID=1018: UPS 04.2 and prior), SMTL Series (SMTL Series ID=1026: UPS 02.9 and prior), SCL Series (SCL Series ID=1029: UPS 02.5 and prior / SCL Series ID=1030: UPS 02.5 and prior / SCL Series ID=1036: UPS 02.5 and prior / SCL Series ID=1037: UPS 03.1 and prior), SMX Series (SMX Series ID=1031: UPS 03.1 and prior)

    Published: 9 Mar 2022
    9.1
    Critical

    CVE-2022-0715

    Last Modified: 29 May 2026

    A CWE-287: Improper Authentication vulnerability exists that could cause an attacker to arbitrarily change the behavior of the UPS when a key is leaked and used to upload malicious firmware. Affected Product: APC Smart-UPS Family: SMT Series (SMT Series ID=18: UPS 09.8 and prior / SMT Series ID=1040: UPS 01.2 and prior / SMT Series ID=1031: UPS 03.1 and prior), SMC Series (SMC Series ID=1005: UPS 14.1 and prior / SMC Series ID=1007: UPS 11.0 and prior / SMC Series ID=1041: UPS 01.1 and prior), SCL Series (SCL Series ID=1030: UPS 02.5 and prior / SCL Series ID=1036: UPS 02.5 and prior), SMX Series (SMX Series ID=20: UPS 10.2 and prior / SMX Series ID=23: UPS 07.0 and prior), SRT Series (SRT Series ID=1010/1019/1025: UPS 08.3 and prior / SRT Series ID=1024: UPS 01.0 and prior / SRT Series ID=1020: UPS 10.4 and prior / SRT Series ID=1021: UPS 12.2 and prior / SRT Series ID=1001/1013: UPS 05.1 and prior / SRT Series ID=1002/1014: UPSa05.2 and prior), APC SmartConnect Family: SMT Series (SMT Series ID=1015: UPS 04.5 and prior), SMC Series (SMC Series ID=1018: UPS 04.2 and prior), SMTL Series (SMTL Series ID=1026: UPS 02.9 and prior), SCL Series (SCL Series ID=1029: UPS 02.5 and prior / SCL Series ID=1030: UPS 02.5 and prior / SCL Series ID=1036: UPS 02.5 and prior / SCL Series ID=1037: UPS 03.1 and prior), SMX Series (SMX Series ID=1031: UPS 03.1 and prior)

    Published: 9 Mar 2022
    9.8
    Critical

    CVE-2022-24995

    Last Modified: 21 Nov 2024

    Tenda AX3 v16.03.12.10_CN was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the time parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2021-46408

    Last Modified: 21 Nov 2024

    Tenda AX12 v22.03.01.21 was discovered to contain a stack buffer overflow in the function sub_422CE4. This vulnerability allows attackers to cause a Denial of Service (DoS) via the strcpy parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25566

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the time parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25560

    Last Modified: 21 Nov 2024

    Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_4327CC. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25561

    Last Modified: 21 Nov 2024

    Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_42DE00. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25557

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a heap overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the urls parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25558

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetProvince. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ProvinceCode parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25556

    Last Modified: 21 Nov 2024

    Tenda AX12 v22.03.01.21 was discovered to contain a stack overflow in the function sub_42E328. This vulnerability allows attackers to cause a Denial of Service (DoS) via the list parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25555

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ntpServer parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25547

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the time parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25554

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the deviceId parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25553

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsPwd parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25551

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsDomain parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25552

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function form_fast_setting_wifi_set. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ssid parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25549

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsEn parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25550

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function saveParentControlInfo. This vulnerability allows attackers to cause a Denial of Service (DoS) via the deviceName parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25548

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the serverName parameter.

    Published: 9 Mar 2022
    7.5
    High

    CVE-2022-25546

    Last Modified: 21 Nov 2024

    Tenda AX1806 v1.0.0.1 was discovered to contain a stack overflow in the function formSetSysToolDDNS. This vulnerability allows attackers to cause a Denial of Service (DoS) via the ddnsUser parameter.

    Published: 9 Mar 2022
    4.7
    Medium

    CVE-2022-25368

    Last Modified: 21 Nov 2024

    Spectre BHB is a variant of Spectre-v2 in which malicious code uses the shared branch history (stored in the CPU BHB) to influence mispredicted branches in the victim's hardware context. Speculation caused by these mispredicted branches can then potentially be used to cause cache allocation, which can then be used to infer information that should be protected.

    Published: 9 Mar 2022
    4.1
    Medium

    CVE-2022-0022

    Last Modified: 21 Nov 2024

    Usage of a weak cryptographic algorithm in Palo Alto Networks PAN-OS software where the password hashes of administrator and local user accounts are not created with a sufficient level of computational effort, which allows for password cracking attacks on accounts in normal (non-FIPS-CC) operational mode. An attacker must have access to the account password hashes to take advantage of this weakness and can acquire those hashes if they are able to gain access to the PAN-OS software configuration. Fixed versions of PAN-OS software use a secure cryptographic algorithm for account password hashes. This issue does not impact Prisma Access firewalls. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.21; All versions of PAN-OS 9.0; PAN-OS 9.1 versions earlier than PAN-OS 9.1.11; PAN-OS 10.0 versions earlier than PAN-OS 10.0.7.

    Published: 9 Mar 2022
    6.1
    Medium

    CVE-2022-24526

    Last Modified: 9 Dec 2025

    Visual Studio Code Spoofing Vulnerability

    Published: 9 Mar 2022
    7
    High

    CVE-2022-24525

    Last Modified: 8 Jul 2025

    Windows Update Stack Elevation of Privilege Vulnerability

    Published: 9 Mar 2022
    6.5
    Medium

    CVE-2022-24522

    Last Modified: 9 Dec 2025

    Skype Extension for Chrome Information Disclosure Vulnerability

    Published: 9 Mar 2022
    7.2
    High

    CVE-2022-24520

    Last Modified: 8 Jul 2025

    Azure Site Recovery Remote Code Execution Vulnerability

    Published: 9 Mar 2022
    6.5
    Medium

    CVE-2022-24519

    Last Modified: 8 Jul 2025

    Azure Site Recovery Elevation of Privilege Vulnerability

    Published: 9 Mar 2022
    6.5
    Medium

    CVE-2022-24518

    Last Modified: 8 Jul 2025

    Azure Site Recovery Elevation of Privilege Vulnerability

    Published: 9 Mar 2022
    7.2
    High

    CVE-2022-24517

    Last Modified: 8 Jul 2025

    Azure Site Recovery Remote Code Execution Vulnerability

    Published: 9 Mar 2022
    6.5
    Medium

    CVE-2022-24515

    Last Modified: 8 Jul 2025

    Azure Site Recovery Elevation of Privilege Vulnerability

    Published: 9 Mar 2022
    5.5
    Medium

    CVE-2022-24511

    Last Modified: 19 May 2026

    Microsoft Office Word Tampering Vulnerability

    Published: 9 Mar 2022
    7.8
    High

    CVE-2022-24510

    Last Modified: 19 May 2026

    Microsoft Office Visio Remote Code Execution Vulnerability

    Published: 9 Mar 2022
    7.8
    High

    CVE-2022-24509

    Last Modified: 19 May 2026

    Microsoft Office Visio Remote Code Execution Vulnerability

    Published: 9 Mar 2022