3441 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2022-32241
SAP 3D Visual Enterprise Viewer General
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-20 1 PoC

When a user opens manipulated Portable Document Format (.pdf, PDFView.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the application crashes and becomes temporarily unavailable to the user until restart of the application.

CVE-2022-33885
utodesk® AutoCAD®, Advance Steel and Civil 3D® General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

A maliciously crafted X_B, CATIA, and PDF file when parsed through Autodesk AutoCAD 2023 and 2022 can be used to write beyond the allocated buffer. This vulnerability can lead to arbitrary code execution.

CVE-2022-34556
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

PicoC v3.2.2 was discovered to contain a NULL pointer dereference at variable.c.

CVE-2022-34295
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

totd before 1.5.3 does not properly randomize mesg IDs.

CVE-2022-41196
SAP 3D Visual Enterprise Viewer General
N/A
UNKNOWN
EPSS
1.8%
2022 CWE-119 2 PoCs

Due to lack of proper memory management, when a victim opens a manipulated VRML Worlds (.wrl, vrml.x3d) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, it is possible that a Remote Code Execution can be triggered when payload forces a stack-based overflow or a re-use of dangling pointer which refers to overwritten space in memory.

CVE-2022-26281
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

BigAnt Server v5.6.06 was discovered to contain an incorrect access control issue.

CVE-2022-35206
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

Null pointer dereference vulnerability in Binutils readelf 2.38.50 via function read_and_display_attr_value in file dwarf.c.

CVE-2022-29582
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2022 5 PoCs

In the Linux kernel before 5.17.3, fs/io_uring.c has a use-after-free due to a race condition in io_uring timeouts. This can be triggered by a local user who has no access to any user namespace; however, the race condition perhaps can only be exploited infrequently.

CVE-2022-29775
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
63.9%
2022 0 PoCs

iSpyConnect iSpy v7.2.2.0 allows attackers to bypass authentication via a crafted URL.

CVE-2022-24954
Software Genérico General
N/A
UNKNOWN
EPSS
0.9%
2022 1 PoC

Foxit PDF Reader before 11.2.1 and Foxit PDF Editor before 11.2.1 have a Stack-Based Buffer Overflow related to XFA, for the 'subform colSpan="-2"' and 'draw colSpan="1"' substrings.

CVE-2022-22700
CyberArk Identity General
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

CyberArk Identity versions up to and including 22.1 in the 'StartAuthentication' resource, exposes the response header 'X-CFY-TX-TM'. In certain configurations, that response header contains different, predictable value ranges which can be used to determine whether a user exists in the tenant.

CVE-2022-26744
iOS and iPadOS General
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 15.5 and iPadOS 15.5. An application may be able to execute arbitrary code with kernel privileges.

CVE-2022-43677
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

In free5GC 3.2.1, a malformed NGAP message can crash the AMF and NGAP decoders via an index-out-of-range panic in aper.GetBitString.

CVE-2022-48554
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.

CVE-2022-32092
Software Genérico General
N/A
UNKNOWN
EPSS
22.5%
2022 1 PoC

D-Link DIR-645 v1.03 was discovered to contain a command injection vulnerability via the QUERY_STRING parameter at __ajax_explorer.sgi.

CVE-2022-27223
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.

CVE-2022-41192
SAP 3D Visual Enterprise Viewer General
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-119 2 PoCs

Due to lack of proper memory management, when a victim opens manipulated Jupiter Tesselation (.jt, JTReader.x3d) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, it is possible for the application to crash and becomes temporarily unavailable to the user until restart of the application.

CVE-2022-22819
Software Genérico General
N/A
UNKNOWN
EPSS
0.8%
2022 1 PoC

NXP LPC55S66JBD64, LPC55S66JBD100, LPC55S66JEV98, LPC55S69JBD64, LPC55S69JBD100, and LPC55S69JEV98 microcontrollers (ROM version 1B) have a buffer overflow in parsing SB2 updates before the signature is verified. This can allow an attacker to achieve non-persistent code execution via a crafted unsigned update.

CVE-2022-23377
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

Archeevo below 5.0 is affected by local file inclusion through file=~/web.config to allow an attacker to retrieve local files.

CVE-2022-22531
SAP S/4HANA General
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

The F0743 Create Single Payment application of SAP S/4HANA - versions 100, 101, 102, 103, 104, 105, 106, does not check uploaded or downloaded files. This allows an attacker with basic user rights to run arbitrary script code, resulting in sensitive information being disclosed or modified.