3441 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2022-26702
watchOS General
N/A
UNKNOWN
EPSS
0.6%
2022 1 PoC

A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 8.6, tvOS 15.5, iOS 15.5 and iPadOS 15.5. An application may be able to execute arbitrary code with kernel privileges.

CVE-2022-32564
Software Genérico General
N/A
UNKNOWN
EPSS
0.6%
2022 2 PoCs

An issue was discovered in Couchbase Server before 7.0.4. In couchbase-cli, server-eshell leaks the Cluster Manager cookie.

CVE-2022-31205
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

In Omron CS series, CJ series, and CP series PLCs through 2022-05-18, the password for access to the Web UI is stored in memory area D1449...D1452 and can be read out using the Omron FINS protocol without any further authentication.

CVE-2022-30275
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

The Motorola MOSCAD Toolbox software through 2022-05-02 relies on a cleartext password. It utilizes an MDLC driver to communicate with MOSCAD/ACE RTUs for engineering purposes. Access to these communications is protected by a password stored in cleartext in the wmdlcdrv.ini driver configuration file. In addition, this password is used for access control to MOSCAD/STS projects protected with the Legacy Password feature. In this case, an insecure CRC of the password is present in the project file: this CRC is validated against the password in the driver configuration file.

CVE-2022-30787
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

An integer underflow in fuse_lib_readdir enables arbitrary memory read operations in NTFS-3G through 2021.8.22 when using libfuse-lite.

CVE-2022-23825
AMD Processors General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

Aliases in the branch predictor may cause some AMD processors to predict the wrong branch type potentially leading to information disclosure.

CVE-2022-26953
Software Genérico General
N/A
UNKNOWN
EPSS
0.7%
2022 1 PoC

Digi Passport Firmware through 1.5.1,1 is affected by a buffer overflow. An attacker can supply a string in the page parameter for reboot.asp endpoint, allowing him to force an overflow when the string is concatenated to the HTML body.

CVE-2022-2122
GStreamer General
N/A
UNKNOWN
EPSS
0.0%
2022 CWE-122 1 PoC

DOS / potential heap overwrite in qtdemux using zlib decompression. Integer overflow in qtdemux element in qtdemux_inflate function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the underlying OS capabilities, it could be just a segfault or a heap overwrite.

CVE-2022-36173
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

FreshService macOS Agent < 4.4.0 and FreshServce Linux Agent < 3.4.0 are vulnerable to TLS Man-in-The-Middle via the FreshAgent client and scheduled update service.

CVE-2022-2639
kernel General
N/A
UNKNOWN
EPSS
1.0%
2022 CWE-192 5 PoCs

An integer coercion error was found in the openvswitch kernel module. Given a sufficiently large number of actions, while copying and reserving memory for a new action of a new flow, the reserve_sfa_size() function does not return -EMSGSIZE as expected, potentially leading to an out-of-bounds write access. This flaw allows a local user to crash or potentially escalate their privileges on the system.

CVE-2022-37035
Software Genérico General
N/A
UNKNOWN
EPSS
2.6%
2022 1 PoC

An issue was discovered in bgpd in FRRouting (FRR) 8.3. In bgp_notify_send_with_data() and bgp_process_packet() in bgp_packet.c, there is a possible use-after-free due to a race condition. This could lead to Remote Code Execution or Information Disclosure by sending crafted BGP packets. User interaction is not needed for exploitation.

CVE-2022-31662
VMware Workspace ONE Access, Access Connector, Identity Manager, vIDM Connector and vRealize Automation General
N/A
UNKNOWN
EPSS
1.7%
2022 1 PoC

VMware Workspace ONE Access, Identity Manager, Connectors and vRealize Automation contain a path traversal vulnerability. A malicious actor with network access may be able to access arbitrary files.

CVE-2022-24611
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

Denial of Service (DoS) in the Z-Wave S0 NonceGet protocol specification in Silicon Labs Z-Wave 500 series allows local attackers to block S0/S2 protected Z-Wave network via crafted S0 NonceGet Z-Wave packages, utilizing included but absent NodeIDs.

CVE-2022-38222
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

There is a use-after-free issue in JBIG2Stream::close() located in JBIG2Stream.cc in Xpdf 4.04. It can be triggered by sending a crafted PDF file to (for example) the pdfimages binary. It allows an attacker to cause Denial of Service or possibly have unspecified other impact.

CVE-2022-3650
Ceph General
N/A
UNKNOWN
EPSS
0.0%
2022 CWE-842 1 PoC

A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information.

CVE-2022-33996
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2022 2 PoCs

Incorrect permission management in Devolutions Server before 2022.2 allows a new user with a preexisting username to inherit the permissions of that previous user.

CVE-2022-29958
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

JTEKT TOYOPUC PLCs through 2022-04-29 do not ensure data integrity. They utilize the unauthenticated CMPLink/TCP protocol for engineering purposes, including downloading projects and control logic to the PLC. Control logic is downloaded to the PLC on a block-by-block basis with a given memory address and a blob of machine code. The logic that is downloaded to the PLC is not cryptographically authenticated, allowing an attacker to execute arbitrary machine code on the PLC's CPU module in the context of the runtime. In the case of the PC10G-CPU, and likely for other CPU modules of the TOYOPUC fa

CVE-2022-25359
Software Genérico General
N/A
UNKNOWN
EPSS
27.6%
2022 1 PoC

On ICL ScadaFlex II SCADA Controller SC-1 and SC-2 1.03.07 devices, unauthenticated remote attackers can overwrite, delete, or create files.

CVE-2022-3218
WiFi Mouse (Mouse Server) General
N/A
UNKNOWN
EPSS
84.6%
2022 CWE-603 3 PoCs

Due to a reliance on client-side authentication, the WiFi Mouse (Mouse Server) from Necta LLC's authentication mechanism is trivially bypassed, which can result in remote code execution.