3441 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2022-20005
Android General
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

In validateApkInstallLocked of PackageInstallerSession.java, there is a way to force a mismatch between running code and a parsed APK . This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-219044664

CVE-2022-34298
Software Genérico General
N/A
UNKNOWN
EPSS
45.1%
2022 1 PoC

The NT auth module in OpenAM before 14.6.6 allows a "replace Samba username attack."

CVE-2022-26236
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

The default privileges for the running service Normand Remisol Advance Launcher in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.

CVE-2022-29597
Software Genérico General
N/A
UNKNOWN
EPSS
6.1%
2022 1 PoC

Solutions Atlantic Regulatory Reporting System (RRS) v500 is vulnerable to Local File Inclusion (LFI). Any authenticated user has the ability to reference internal system files within requests made to the RRSWeb/maint/ShowDocument/ShowDocument.aspx page. The server will successfully respond with the file contents of the internal system file requested. This ability could allow for adversaries to extract sensitive data and/or files from the underlying file system, gain knowledge about the internal workings of the system, or access source code of the application.

CVE-2022-27043
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
25.5%
2022 0 PoCs

Yearning versions 2.3.1 and 2.3.2 Interstellar GA and 2.3.4 - 2.3.6 Neptune is vulnerable to Directory Traversal.

CVE-2022-48251
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

The AES instructions on the ARMv8 platform do not have an algorithm that is "intrinsically resistant" to side-channel attacks. NOTE: the vendor reportedly offers the position "while power side channel attacks ... are possible, they are not directly caused by or related to the Arm architecture."

CVE-2022-24255
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

Extensis Portfolio v4.0 was discovered to contain hardcoded credentials which allows attackers to gain administrator privileges.

CVE-2022-1924
GStreamer General
N/A
UNKNOWN
EPSS
0.0%
2022 CWE-122 1 PoC

DOS / potential heap overwrite in mkv demuxing using lzo decompression. Integer overflow in matroskademux element in lzo decompression function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the underlying OS capabilities, it could be just a segfault or a heap overwrite. If the libc uses mmap for large chunks, and the OS supports mmap, then it is just a segfault (because the realloc before the integer overflow will use mremap to reduce the size of the chunk, and it will start to write to unmapped memory). However, if using a

CVE-2022-20124
Android General
N/A
UNKNOWN
EPSS
0.0%
2022 2 PoCs

In deletePackageX of DeletePackageHelper.java, there is a possible way for a Guest user to reset pre-loaded applications for other users due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L Android-13Android ID: A-170646036

CVE-2022-37151
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

There is an unauthorized access vulnerability in Online Diagnostic Lab Management System 1.0.

CVE-2022-32854
iOS General
N/A
UNKNOWN
EPSS
0.1%
2022 4 PoCs

This issue was addressed with improved checks. This issue is fixed in iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An app may be able to bypass Privacy preferences.

CVE-2022-0500
kernel General
N/A
UNKNOWN
EPSS
0.0%
2022 CWE-119 7 PoCs

A flaw was found in unrestricted eBPF usage by the BPF_BTF_LOAD, leading to a possible out-of-bounds memory write in the Linux kernel’s BPF subsystem due to the way a user loads BTF. This flaw allows a local user to crash or escalate their privileges on the system.

CVE-2022-35909
Software Genérico General
N/A
UNKNOWN
EPSS
0.8%
2022 2 PoCs

In Jellyfin before 10.8, the /users endpoint has incorrect access control for admin functionality.

CVE-2022-31651
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

In SoX 14.4.2, there is an assertion failure in rate_init in rate.c in libsox.a.

CVE-2022-20229
Android General
N/A
UNKNOWN
EPSS
12.5%
2022 1 PoC

In bta_hf_client_handle_cind_list_item of bta_hf_client_at.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-224536184

CVE-2022-33710
Galaxy Store General
N/A
UNKNOWN
EPSS
0.0%
2022 CWE-20 1 PoC

Improper input validation vulnerability in BillingPackageInsraller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities as Galaxy Store privilege.

CVE-2022-36447
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

An inflation issue was discovered in Chia Network CAT1 Standard 1.0.0. Previously minted tokens minted on the Chia blockchain using the CAT1 standard can be inflated to an arbitrary extent by any holder of any amount of the token. The total amount of the token can be increased as high as the malicious actor pleases. This is true for every CAT1 on the Chia blockchain regardless of issuance rules. This attack is auditable on chain, so maliciously altered coins can potentially be marked by off-chain observers as malicious.

CVE-2022-24442
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2022 2 PoCs

JetBrains YouTrack before 2021.4.40426 was vulnerable to SSTI (Server-Side Template Injection) via FreeMarker templates.

CVE-2022-24252
Software Genérico General
N/A
UNKNOWN
EPSS
2.2%
2022 1 PoC

An unrestricted file upload vulnerability in the FileTransferServlet component of Extensis Portfolio v4.0 allows remote attackers to execute arbitrary code via a crafted file.

CVE-2022-36271
Software Genérico General
N/A
UNKNOWN
EPSS
1.6%
2022 1 PoC

Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking. iertutil.dll is missing so an attacker can use a malicious dll with same name and can get admin privileges.