9052 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2016-9050
Database Server General
8.2
HIGH
EPSS
0.6%
2016 1 PoC

An exploitable out-of-bounds read vulnerability exists in the client message-parsing functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause an out-of-bounds read resulting in disclosure of memory within the process, the same vulnerability can also be used to trigger a denial of service. An attacker can simply connect to the port and send the packet to trigger this vulnerability.

CVE-2018-3968
Das U-Boot General
8.2
HIGH
EPSS
0.0%
2018 1 PoC

An exploitable vulnerability exists in the verified boot protection of the Das U-Boot from version 2013.07-rc1 to 2014.07-rc2. The affected versions lack proper FIT signature enforcement, which allows an attacker to bypass U-Boot's verified boot and execute an unsigned kernel, embedded in a legacy image format. To trigger this vulnerability, a local attacker needs to be able to supply the image to boot.

CVE-2018-1634
Informix Dynamic Server Enterprise Edition General
8.2
HIGH
EPSS
0.1%
2018 1 PoC

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in infos.DBSERVERNAME. IBM X-Force ID: 144437.

CVE-2018-1630
Informix Dynamic Server Enterprise Edition General
8.2
HIGH
EPSS
0.1%
2018 1 PoC

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in onmode. IBM X-Force ID: 144430.

CVE-2018-1631
Informix Dynamic Server Enterprise Edition General
8.2
HIGH
EPSS
0.1%
2018 1 PoC

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in oninit mongohash. IBM X-Force ID: 144431.

CVE-2018-1636
Informix Dynamic Server Enterprise Edition General
8.2
HIGH
EPSS
0.1%
2018 1 PoC

Stack-based buffer overflow in oninit in IBM Informix Dynamic Server Enterprise Edition 12.1 allows an authenticated user to execute predefined code with root privileges, such as escalating to a root shell. IBM X-Force ID: 144441.

CVE-2018-1635
Informix Dynamic Server Enterprise Edition General
8.2
HIGH
EPSS
0.1%
2018 1 PoC

Stack-based buffer overflow in oninit in IBM Informix Dynamic Server Enterprise Edition 12.1 allows an authenticated user to execute predefined code with root privileges, such as escalating to a root shell. IBM X-Force ID: 144439.

CVE-2018-1632
Informix Dynamic Server Enterprise Edition General
8.2
HIGH
EPSS
0.1%
2018 1 PoC

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in .infxdirs. IBM X-Force ID: 144432.

CVE-2018-1633
Informix Dynamic Server Enterprise Edition General
8.2
HIGH
EPSS
0.1%
2018 1 PoC

IBM Informix Dynamic Server Enterprise Edition 12.1 could allow a local user logged in with database administrator user to gain root privileges through a symbolic link vulnerability in onsrvapd. IBM X-Force ID: 144434.

CVE-2022-3389
ikus060/rdiffweb General
8.2
HIGH
EPSS
0.6%
2022 CWE-22 1 PoC

Path Traversal in GitHub repository ikus060/rdiffweb prior to 2.4.10.

CVE-2022-41966
xstream General
8.2
HIGH
EPSS
2.5%
2022 CWE-120 1 PoC

XStream serializes Java objects to XML and back again. Versions prior to 1.4.20 may allow a remote attacker to terminate the application with a stack overflow error, resulting in a denial of service only via manipulation the processed input stream. The attack uses the hash code implementation for collections and maps to force recursive hash calculation causing a stack overflow. This issue is patched in version 1.4.20 which handles the stack overflow and raises an InputManipulationException instead. A potential workaround for users who only use HashMap or HashSet and whose XML refers these only

CVE-2022-48475
Control de Ciber General
8.2
HIGH
EPSS
0.7%
2022 CWE-400 1 PoC

Buffer Overflow vulnerability in Control de Ciber version 1.650, in the printing function. Sending a modified request by the attacker could cause a Buffer Overflow when the adminitrator tries to accept or delete the print query created by the request.

CVE-2022-0860
cobbler/cobbler General
8.2
HIGH
EPSS
0.7%
2022 CWE-285 1 PoC

Improper Authorization in GitHub repository cobbler/cobbler prior to 3.3.2.

CVE-2022-4807
usememos/memos General
8.2
HIGH
EPSS
0.2%
2022 CWE-284 1 PoC

Improper Access Control in GitHub repository usememos/memos prior to 0.9.1.

CVE-2022-0080
mruby/mruby General
8.2
HIGH
EPSS
0.2%
2022 CWE-122 1 PoC

mruby is vulnerable to Heap-based Buffer Overflow

CVE-2022-25878
protobufjs General
8.2
HIGH
EPSS
0.4%
2022 2 PoCs

The package protobufjs before 6.11.3 are vulnerable to Prototype Pollution which can allow an attacker to add/modify properties of the Object.prototype. This vulnerability can occur in multiple ways: 1. by providing untrusted user input to util.setProperty or to ReflectionObject.setParsedOption functions 2. by parsing/loading .proto files

CVE-2022-1252
gnuboard/gnuboard5 General
8.2
HIGH
EPSS
0.2%
2022 CWE-327 2 PoCs

Use of a Broken or Risky Cryptographic Algorithm in GitHub repository gnuboard/gnuboard5 prior to and including 5.5.5. A vulnerability in gnuboard v5.5.5 and below uses weak encryption algorithms leading to sensitive information exposure. This allows an attacker to derive the email address of any user, including when the 'Let others see my information.' box is ticked off. Or to send emails to any email address, with full control of its contents

CVE-2022-25333
OMAP General
8.2
HIGH
EPSS
0.0%
2022 CWE-347 1 PoC

The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) performs an RSA check implemented in mask ROM when loading a module through the SK_LOAD routine. However, only the module header authenticity is validated. An adversary can re-use any correctly signed header and append a forged payload, to be encrypted using the CEK (obtainable through CVE-2022-25332) in order to obtain arbitrary code execution in secure context. This constitutes a full break of the TEE security architecture.

CVE-2022-25334
OMAP General
8.2
HIGH
EPSS
0.1%
2022 CWE-121 1 PoC

The Texas Instruments OMAP L138 (secure variants) trusted execution environment (TEE) lacks a bounds check on the signature size field in the SK_LOAD module loading routine, present in mask ROM. A module with a sufficiently large signature field causes a stack overflow, affecting secure kernel data pages. This can be leveraged to obtain arbitrary code execution in secure supervisor context by overwriting a SHA256 function pointer in the secure kernel data area when loading a forged, unsigned SK_LOAD module encrypted with the CEK (obtainable through CVE-2022-25332). This constitutes a full brea

CVE-2022-0086
transloadit/uppy General
8.2
HIGH
EPSS
0.3%
2022 CWE-918 1 PoC

uppy is vulnerable to Server-Side Request Forgery (SSRF)