Low

    CVE-2022-29301

    Last Modified: 14 Jun 2022

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-20660. Reason: This candidate is a reservation duplicate of CVE-2021-20660. Notes: All CVE users should reference CVE-2021-20660 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:Ahmed Alroky
    Published:22 Jun 2022
    Low

    CVE-2022-29299

    Last Modified: 14 Jun 2022

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-20660. Reason: This candidate is a reservation duplicate of CVE-2021-20660. Notes: All CVE users should reference CVE-2021-20660 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:Ahmed Alroky
    Published:22 Jun 2022
    7.5
    High

    CVE-2022-29298

    Last Modified: 3 Jun 2022

    SolarView Compact ver.6.00 allows attackers to access sensitive files via directory traversal.

    Source:Ahmed Alroky
    Published:12 May 2022
    6.1
    Medium

    CVE-2022-29296

    Last Modified: 14 Jun 2022

    A reflected cross-site scripting (XSS) vulnerability in the login portal of Avantune Genialcloud ProJ - 10 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

    Source:Andrea Intilangelo
    Published:6 Jun 2022
    8.8
    High

    CVE-2022-29221

    Last Modified: 23 Apr 2025

    Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. Prior to versions 3.1.45 and 4.1.1, template authors could inject php code by choosing a malicious {block} name or {include} file name. Sites that cannot fully trust template authors should upgrade to versions 3.1.45 or 4.1.1 to receive a patch for this issue. There are currently no known workarounds.

    Published:24 May 2022
    6.6
    Medium

    CVE-2022-29170

    Last Modified: 23 Apr 2025

    Grafana is an open-source platform for monitoring and observability. In Grafana Enterprise, the Request security feature allows list allows to configure Grafana in a way so that the instance doesn’t call or only calls specific hosts. The vulnerability present starting with version 7.4.0-beta1 and prior to versions 7.5.16 and 8.5.3 allows someone to bypass these security configurations if a malicious datasource (running on an allowed host) returns an HTTP redirect to a forbidden host. The vulnerability only impacts Grafana Enterprise when the Request security allow list is used and there is a possibility to add a custom datasource to Grafana which returns HTTP redirects. In this scenario, Grafana would blindly follow the redirects and potentially give secure information to the clients. Grafana Cloud is not impacted by this vulnerability. Versions 7.5.16 and 8.5.3 contain a patch for this issue. There are currently no known workarounds.

    Published:20 May 2022
    7.4
    High

    CVE-2022-29154

    Last Modified: 21 Nov 2024

    An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the directories of connecting peers. The server chooses which files/directories are sent to the client. However, the rsync client performs insufficient validation of file names. A malicious rsync server (or Man-in-The-Middle attacker) can overwrite arbitrary files in the rsync client target directory and subdirectories (for example, overwrite the .ssh/authorized_keys file).

    Published:2 Aug 2022
    7.5
    High

    CVE-2022-29117

    Last Modified: 27 May 2026

    .NET and Visual Studio Denial of Service Vulnerability

    Published:10 May 2022
    9.8
    Critical

    CVE-2022-29078

    Last Modified: 21 Nov 2024

    The ejs (aka Embedded JavaScript templates) package 3.1.6 for Node.js allows server-side template injection in settings[view options][outputFunctionName]. This is parsed as an internal option, and overwrites the outputFunctionName option with an arbitrary OS command (which is executed upon template compilation).

    Published:25 Apr 2022
    7.8
    High

    CVE-2022-29072

    Last Modified: 9 Jun 2025

    7-Zip through 21.07 on Windows allows privilege escalation and command execution when a file with the .7z extension is dragged to the Help>Contents area. This is caused by misconfiguration of 7z.dll and a heap overflow. The command runs in a child process under the 7zFM.exe process. NOTE: multiple third parties have reported that no privilege escalation can occur

    Published:15 Apr 2022
    9.8
    Critical

    CVE-2022-29063

    Last Modified: 21 Nov 2024

    The Solr plugin of Apache OFBiz is configured by default to automatically make a RMI request on localhost, port 1099. In version 18.12.05 and earlier, by hosting a malicious RMI server on localhost, an attacker may exploit this behavior, at server start-up or on a server restart, in order to run arbitrary code. Upgrade to at least 18.12.06 or apply patches at https://issues.apache.org/jira/browse/OFBIZ-12646.

    Published:2 Sept 2022
    3.5
    Low

    CVE-2022-29056

    Last Modified: 21 Nov 2024

    A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiMail version 6.4.0, version 6.2.0 through 6.2.4 and before 6.0.9 allows a remote unauthenticated attacker to partially exhaust CPU and memory via sending numerous HTTP requests to the login form.

    Published:9 Mar 2023
    9.8
    Critical

    CVE-2022-29009

    Last Modified: 21 Nov 2024

    Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Cyber Cafe Management System Project v1.0 allows attackers to bypass authentication.

    Published:11 May 2022
    6.5
    Medium

    CVE-2022-29008

    Last Modified: 21 Nov 2024

    An insecure direct object reference (IDOR) vulnerability in the viewid parameter of Bus Pass Management System v1.0 allows attackers to access sensitive information.

    Published:11 May 2022
    9.8
    Critical

    CVE-2022-29007

    Last Modified: 21 Nov 2024

    Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Dairy Farm Shop Management System v1.0 allows attackers to bypass authentication.

    Published:11 May 2022
    9.8
    Critical

    CVE-2022-29006

    Last Modified: 21 Nov 2024

    Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Directory Management System v1.0 allows attackers to bypass authentication.

    Published:11 May 2022
    6.1
    Medium

    CVE-2022-29005

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities in the component /obcs/user/profile.php of Online Birth Certificate System v1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fname or lname parameters.

    Published:23 May 2022
    6.1
    Medium

    CVE-2022-29004

    Last Modified: 21 Nov 2024

    Diary Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Name parameter in search-result.php.

    Published:23 May 2022
    7.5
    High

    CVE-2022-28986

    Last Modified: 21 Nov 2024

    LMS Doctor Simple 2 Factor Authentication Plugin For Moodle Affected: 2021072900 has an Insecure direct object references (IDOR) vulnerability, which allows remote attackers to update sensitive records such as email, password and phone number of other user accounts.

    Published:10 May 2022
    8.8
    High

    CVE-2022-28944

    Last Modified: 21 Nov 2024

    Certain EMCO Software products are affected by: CWE-494: Download of Code Without Integrity Check. This affects MSI Package Builder for Windows 9.1.4 and Remote Installer for Windows 6.0.13 and Ping Monitor for Windows 8.0.18 and Remote Shutdown for Windows 7.2.2 and WakeOnLan 2.0.8 and Network Inventory for Windows 5.8.22 and Network Software Scanner for Windows 2.0.8 and UnLock IT for Windows 6.1.1. The impact is: execute arbitrary code (remote). The component is: Updater. The attack vector is: To exploit this vulnerability, a user must trigger an update of an affected installation of EMCO Software. ¶¶ Multiple products from EMCO Software are affected by a remote code execution vulnerability during the update process.

    Published:23 May 2022
    Unknown

    CVE-2022-28943

    https://github.com/zhefox/CVE-2022-28943

    9.8
    Critical

    CVE-2022-28906

    Last Modified: 21 Nov 2024

    TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the langtype parameter in /setting/setLanguageCfg.

    Published:10 May 2022
    7.8
    High

    CVE-2022-28672

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.2.1.53537. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Doc objects. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-16640.

    Published:18 Jul 2022
    6.5
    Medium

    CVE-2022-28601

    Last Modified: 21 Nov 2024

    A Two-Factor Authentication (2FA) bypass vulnerability in "Simple 2FA Plugin for Moodle" by LMS Doctor allows remote attackers to overwrite the phone number used for confirmation via the profile.php file. Therefore, allowing them to bypass the phone verification mechanism.

    Published:10 May 2022
    6.1
    Medium

    CVE-2022-28598

    Last Modified: 5 Apr 2023

    Frappe ERPNext 12.29.0 is vulnerable to XSS where the software does not neutralize or incorrectly neutralize user-controllable input before it is placed in output that is used as a web page that is served to other users.

    Source:Patrick Dean Ramos / Nathu Nandwani / Junnair Manla
    Published:22 Aug 2022
    7.2
    High

    CVE-2022-28590

    Last Modified: 21 Nov 2024

    A Remote Code Execution (RCE) vulnerability exists in Pixelimity 1.0 via admin/admin-ajax.php?action=install_theme.

    Published:3 May 2022
    6.1
    Medium

    CVE-2022-28508

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in browser_search_plugin.php in MantisBT before 2.25.2. Unescaped output of the return parameter allows an attacker to inject code into a hidden input field.

    Published:4 May 2022
    6.1
    Medium

    CVE-2022-28454

    Last Modified: 21 Nov 2024

    Limbas 4.3.36.1319 is vulnerable to Cross Site Scripting (XSS).

    Published:28 Apr 2022
    9.8
    Critical

    CVE-2022-28452

    Last Modified: 21 Nov 2024

    Red Planet Laundry Management System 1.0 is vulnerable to SQL Injection.

    Published:29 Apr 2022
    9.8
    Critical

    CVE-2022-28381

    Last Modified: 21 Nov 2024

    Mediaserver.exe in ALLMediaServer 1.6 has a stack-based buffer overflow that allows remote attackers to execute arbitrary code via a long string to TCP port 888, a related issue to CVE-2017-17932.

    Published:3 Apr 2022
    9.8
    Critical

    CVE-2022-28368

    Last Modified: 6 Apr 2023

    Dompdf 1.2.1 allows remote code execution via a .php file in the src:url field of an @font-face Cascading Style Sheets (CSS) statement (within an HTML input file).

    Source:Ravindu Wickramasinghe
    Published:3 Apr 2022
    6.1
    Medium

    CVE-2022-28367

    Last Modified: 21 Nov 2024

    OWASP AntiSamy before 1.6.6 allows XSS via HTML tag smuggling on STYLE content with crafted input. The output serializer does not properly encode the supposed Cascading Style Sheets (CSS) content.

    Published:21 Apr 2022
    9.8
    Critical

    CVE-2022-28346

    Last Modified: 13 Feb 2025

    An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods are subject to SQL injection in column aliases via a crafted dictionary (with dictionary expansion) as the passed **kwargs.

    Published:11 Apr 2022
    6.5
    Medium

    CVE-2022-28282

    Last Modified: 15 Apr 2025

    By using a link with <code>rel="localization"</code> a use-after-free could have been triggered by destroying an object during JavaScript execution and then referencing the object through a freed pointer, leading to a potential exploitable crash. This vulnerability affects Thunderbird < 91.8, Firefox < 99, and Firefox ESR < 91.8.

    Published:5 Apr 2022
    8.8
    High

    CVE-2022-28281

    Last Modified: 15 Apr 2025

    If a compromised content process sent an unexpected number of WebAuthN Extensions in a Register command to the parent process, an out of bounds write would have occurred leading to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 91.8, Firefox < 99, and Firefox ESR < 91.8.

    Published:5 Apr 2022
    9.8
    Critical

    CVE-2022-28219

    Last Modified: 21 Nov 2024

    Cewolf in Zoho ManageEngine ADAudit Plus before 7060 is vulnerable to an unauthenticated XXE attack that leads to Remote Code Execution.

    Published:5 Apr 2022
    8.1
    High

    CVE-2022-28213

    Last Modified: 11 May 2022

    When a user access SOAP Web services in SAP BusinessObjects Business Intelligence Platform - version 420, 430, it does not sufficiently validate the XML document accepted from an untrusted source, which might result in arbitrary files retrieval from the server and in successful exploits of DoS.

    Source:West Shepherd
    Published:12 Apr 2022
    7.5
    High

    CVE-2022-28171

    Last Modified: 19 Jul 2023

    The web module in some Hikvision Hybrid SAN/Cluster Storage products have the following security vulnerability. Due to the insufficient input validation, attacker can exploit the vulnerability to execute restricted commands by sending messages with malicious commands to the affected device.

    Source:Thurein Soe
    Published:27 Jun 2022
    9.8
    Critical

    CVE-2022-28118

    Last Modified: 21 Nov 2024

    SiteServer CMS v7.x allows attackers to execute arbitrary code via a crafted plug-in.

    Published:3 May 2022
    4.9
    Medium

    CVE-2022-28117

    Last Modified: 11 May 2022

    A Server-Side Request Forgery (SSRF) in feed_parser class of Navigate CMS v2.9.4 allows remote attackers to force the application to make arbitrary requests via injection of arbitrary URLs into the feed parameter.

    Source:cheshireca7
    Published:28 Apr 2022
    7.2
    High

    CVE-2022-28113

    Last Modified: 21 Nov 2024

    An issue in upload.csp of FANTEC GmbH MWiD25-DS Firmware v2.000.030 allows attackers to write files and reset the user passwords without having a valid session cookie.

    Published:15 Apr 2022
    8.8
    High

    CVE-2022-28108

    Last Modified: 21 Nov 2024

    Selenium Server (Grid) before 4 allows CSRF because it permits non-JSON content types such as application/x-www-form-urlencoded, multipart/form-data, and text/plain.

    Published:19 Apr 2022
    8.8
    High

    CVE-2022-28099

    Last Modified: 21 Nov 2024

    Poultry Farm Management System v1.0 was discovered to contain a SQL injection vulnerability via the Item parameter at /farm/store.php.

    Published:4 May 2022
    8.8
    High

    CVE-2022-28080

    Last Modified: 12 May 2022

    Royal Event Management System v1.0 was discovered to contain a SQL injection vulnerability via the todate parameter.

    Source:Eren Gozaydin
    Published:5 May 2022
    8.8
    High

    CVE-2022-28079

    Last Modified: 12 May 2022

    College Management System v1.0 was discovered to contain a SQL injection vulnerability via the course_code parameter.

    Source:Eren Gozaydin
    Published:5 May 2022
    6.1
    Medium

    CVE-2022-28078

    Last Modified: 21 Nov 2024

    Home Owners Collection Management v1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in the Admin panel via the $_GET['page'] parameter.

    Published:11 May 2022
    6.1
    Medium

    CVE-2022-28077

    Last Modified: 21 Nov 2024

    Home Owners Collection Management v1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in the Admin panel via the $_GET['s'] parameter.

    Published:11 May 2022
    Unknown

    CVE-2022-27997

    https://github.com/Cyb3rEnthusiast/CVE-2023-27997

    9.8
    Critical

    CVE-2022-27927

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability exists in Microfinance Management System 1.0 when MySQL is being used as the application database. An attacker can issue SQL commands to the MySQL database through the vulnerable course_code and/or customer_number parameter.

    Published:19 Apr 2022
    7.2
    High

    CVE-2022-27925

    Last Modified: 31 Oct 2025

    Zimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. An authenticated user with administrator rights has the ability to upload arbitrary files to the system, leading to directory traversal.

    Published:20 Apr 2022