3441 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2022-1207
radareorg/radare2 General
6.6
MEDIUM
EPSS
0.1%
2022 CWE-125 1 PoC

Out-of-bounds read in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability allows attackers to read sensitive information from outside the allocated buffer boundary.

CVE-2022-1796
vim/vim General
6.6
MEDIUM
EPSS
0.1%
2022 CWE-416 1 PoC

Use After Free in GitHub repository vim/vim prior to 8.2.4979.

CVE-2022-1725
vim/vim General
6.6
MEDIUM
EPSS
0.0%
2022 CWE-476 2 PoCs

NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.4959.

CVE-2022-1720
vim/vim General
6.6
MEDIUM
EPSS
0.5%
2022 CWE-126 4 PoCs

Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.

CVE-2022-2874
vim/vim General
6.6
MEDIUM
EPSS
0.0%
2022 CWE-476 1 PoC

NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0224.

CVE-2022-1283
radareorg/radare2 General
6.6
MEDIUM
EPSS
0.3%
2022 CWE-476 1 PoC

NULL Pointer Dereference in r_bin_ne_get_entrypoints function in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability allows attackers to cause a denial of service (application crash).

CVE-2022-1533
bfabiszewski/libmobi General
6.6
MEDIUM
EPSS
0.1%
2022 CWE-126 1 PoC

Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. This vulnerability is capable of arbitrary code execution.

CVE-2022-25785
SiteManager General
6.6
MEDIUM
EPSS
1.1%
2022 CWE-121 1 PoC

Stack-based Buffer Overflow vulnerability in SiteManager allows logged-in or local user to cause arbitrary code execution. This issue affects: Secomea SiteManager all versions prior to 9.7.

CVE-2022-1735
vim/vim General
6.6
MEDIUM
EPSS
0.2%
2022 CWE-120 2 PoCs

Classic Buffer Overflow in GitHub repository vim/vim prior to 8.2.4969.

CVE-2022-1733
vim/vim General
6.6
MEDIUM
EPSS
0.1%
2022 CWE-122 2 PoCs

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968.

CVE-2022-1534
bfabiszewski/libmobi General
6.6
MEDIUM
EPSS
0.1%
2022 CWE-126 1 PoC

Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.

CVE-2022-27822
Samsung Mobile Devices General
6.6
MEDIUM
EPSS
0.0%
2022 CWE-284 1 PoC

Information exposure vulnerability in ril property setting prior to SMR April-2022 Release 1 allows access to EF_RUIMID value without permission.

CVE-2022-36869
com.android.providers.contacts General
6.6
MEDIUM
EPSS
0.1%
2022 CWE-284 1 PoC

Improper access control vulnerability in ContactsDumpActivity of?Contacts Provider prior to version 12.7.59 allows attacker to access the file without permission.

CVE-2022-4721
ikus060/rdiffweb General
6.6
MEDIUM
EPSS
0.3%
2022 CWE-75 1 PoC

Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository ikus060/rdiffweb prior to 2.5.5.

CVE-2022-1296
radareorg/radare2 General
6.6
MEDIUM
EPSS
0.3%
2022 CWE-125 1 PoC

Out-of-bounds read in `r_bin_ne_get_relocs` function in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability may allow attackers to read sensitive information or cause a crash.

CVE-2022-1297
radareorg/radare2 General
6.6
MEDIUM
EPSS
0.3%
2022 CWE-125 1 PoC

Out-of-bounds Read in r_bin_ne_get_entrypoints function in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability may allow attackers to read sensitive information or cause a crash.

CVE-2022-2923
vim/vim General
6.6
MEDIUM
EPSS
0.0%
2022 CWE-476 1 PoC

NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0240.

CVE-2022-1769
vim/vim General
6.6
MEDIUM
EPSS
0.2%
2022 CWE-126 2 PoCs

Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974.

CVE-2022-36875
com.samsung.android.waterplugin General
6.6
MEDIUM
EPSS
0.1%
2022 CWE-284 1 PoC

Improper restriction of broadcasting Intent in SaWebViewRelayActivity of?Waterplugin prior to version 2.2.11.22081151 allows attacker to access the file without permission.