3441 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2022-31594
SAP Adaptive Server Enterprise (ASE) General
N/A
UNKNOWN
EPSS
0.0%
2022 CWE-269 1 PoC

A highly privileged user can exploit SUID-root program to escalate his privileges to root on a local Unix system.

CVE-2022-26306
LibreOffice General
N/A
UNKNOWN
EPSS
0.4%
2022 CWE-326 1 PoC

LibreOffice supports the storage of passwords for web connections in the user’s configuration database. The stored passwords are encrypted with a single master key provided by the user. A flaw in LibreOffice existed where the required initialization vector for encryption was always the same which weakens the security of the encryption making them vulnerable if an attacker has access to the user's configuration data. This issue affects: The Document Foundation LibreOffice 7.2 versions prior to 7.2.7; 7.3 versions prior to 7.3.1.

CVE-2022-37176
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains a vulnerability which allows attackers to remove the Wi-Fi password and force the device into open security mode via a crafted packet sent to goform/setWizard.

CVE-2022-29962
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

The Emerson DeltaV Distributed Control System (DCS) controllers and IO cards through 2022-04-29 misuse passwords. FTP has hardcoded credentials (but may often be disabled in production). This affects S-series, P-series, and CIOC/EIOC nodes. NOTE: this is different from CVE-2014-2350.

CVE-2022-22828
Software Genérico General
N/A
UNKNOWN
EPSS
0.7%
2022 1 PoC

An insecure direct object reference for the file-download URL in Synametrics SynaMan before 5.0 allows a remote attacker to access unshared files via a modified base64-encoded filename string.

CVE-2022-26563
Software Genérico General
N/A
UNKNOWN
EPSS
0.7%
2022 1 PoC

An issue was discovered in Tildeslash Monit before 5.31.0, allows remote attackers to gain escilated privlidges due to improper PAM-authorization.

CVE-2022-39028
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference via 0xff 0xf7 or 0xff 0xf8. In a typical installation, the telnetd application would crash but the telnet service would remain available through inetd. However, if the telnetd application has many crashes within a short time interval, the telnet service would become unavailable after inetd logs a "telnet/tcp server failing (looping), service terminated" error. NOTE: MIT krb5-appl is not supported upstream but is shipped by a few Linux distributions. The affected code was remov

CVE-2022-29614
SAP NetWeaver AS ABAP, AS Java, ABAP Platform and HANA Database General
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-269 3 PoCs

SAP startservice - of SAP NetWeaver Application Server ABAP, Application Server Java, ABAP Platform and HANA Database - versions KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, 7.87, 7.88, KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, SAPHOSTAGENT 7.22, - on Unix systems, s-bit helper program sapuxuserchk, can be abused physically resulting in a privilege escalation of an attacker leading to low impact on confidentiality and integrity, but a profound impact on availability.

CVE-2022-36588
Software Genérico General
N/A
UNKNOWN
EPSS
0.8%
2022 1 PoC

In D-Link DAP1650 v1.04 firmware, the fileaccess.cgi program in the firmware has a buffer overflow vulnerability caused by strncpy.

CVE-2022-29957
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

The Emerson DeltaV Distributed Control System (DCS) through 2022-04-29 mishandles authentication. It utilizes several proprietary protocols for a wide variety of functionality. These protocols include Firmware upgrade (18508/TCP, 18518/TCP); Plug-and-Play (18510/UDP); Hawk services (18507/UDP); Management (18519/TCP); Cold restart (18512/UDP); SIS communications (12345/TCP); and Wireless Gateway Protocol (18515/UDP). None of these protocols have any authentication features, allowing any attacker capable of communicating with the ports in question to invoke (a subset of) desired functionality.

CVE-2022-38794
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
49.0%
2022 1 PoC

Zaver through 2020-12-15 allows directory traversal via the GET /.. substring.

CVE-2022-30067
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a crafted XCF file, the program will allocate for a huge amount of memory, resulting in insufficient memory or program crash.

CVE-2022-36449
Software Genérico General
N/A
UNKNOWN
EPSS
0.9%
2022 5 PoCs

An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operations to gain access to already freed memory, write a limited amount outside of buffer bounds, or to disclose details of memory mappings. This affects Midgard r4p0 through r32p0, Bifrost r0p0 through r38p0 and r39p0 before r38p1, and Valhall r19p0 through r38p0 and r39p0 before r38p1.

CVE-2022-26250
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

Synaman v5.1 and below was discovered to contain weak file permissions which allows authenticated attackers to escalate privileges.

CVE-2022-30600
moodle General
N/A
UNKNOWN
EPSS
6.9%
2022 CWE-682 1 PoC

A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold being bypassed.

CVE-2022-27092
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

Sin descripción disponible.

CVE-2022-27907
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

Sonatype Nexus Repository Manager 3.x before 3.38.0 allows SSRF.

CVE-2022-39188
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

An issue was discovered in include/asm-generic/tlb.h in the Linux kernel before 5.19. Because of a race condition (unmap_mapping_range versus munmap), a device driver can free a page while it still has stale TLB entries. This only occurs in situations with VM_PFNMAP VMAs.

CVE-2022-34049
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
15.5%
2022 1 PoC

An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows unauthenticated attackers to download log files and configuration data.

CVE-2022-22541
SAP BusinessObjects Business Intelligence Platform General
N/A
UNKNOWN
EPSS
0.3%
2022 CWE-213 1 PoC

SAP BusinessObjects Business Intelligence Platform - versions 420, 430, may allow legitimate users to access information they shouldn't see through relational or OLAP connections. The main impact is the disclosure of company data to people that shouldn't or don't need to have access.