2639 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2022-25936
servst General
7.5
HIGH
EPSS
1.6%
2022 CWE-22 1 PoC

Versions of the package servst before 2.0.3 are vulnerable to Directory Traversal due to improper sanitization of the filePath variable.

CVE-2022-30333
🔥 KEV Software Genérico Networking
7.5
HIGH
EPSS
92.8%
2022 8 PoCs

RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file. NOTE: WinRAR and Android RAR are unaffected.

CVE-2022-42894
syngo Dynamics Windows
7.5
HIGH
EPSS
0.3%
2022 CWE-918 1 PoC

A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). An unauthenticated Server-Side Request Forgery (SSRF) vulnerability was identified in one of the web services exposed on the syngo Dynamics application that could allow for the leaking of NTLM credentials as well as local service enumeration.

CVE-2022-24836
nokogiri General
7.5
HIGH
EPSS
1.3%
2022 CWE-400 1 PoC

Nokogiri is an open source XML and HTML library for Ruby. Nokogiri `< v1.13.4` contains an inefficient regular expression that is susceptible to excessive backtracking when attempting to detect encoding in HTML documents. Users are advised to upgrade to Nokogiri `>= 1.13.4`. There are no known workarounds for this issue.

CVE-2022-24187
Software Genérico General
7.5
HIGH
EPSS
0.3%
2022 1 PoC

The user_id and device_id on the Ourphoto App version 1.4.1 /device/* end-points both suffer from insecure direct object reference vulnerabilities. Other end-users user_id and device_id values can be enumerated by incrementing or decrementing id numbers. The impact of this vulnerability allows an attacker to discover sensitive information such as end-user email addresses, and their unique frame_token value of all other Ourphoto App end-users.

CVE-2022-46434
Software Genérico General
7.5
HIGH
EPSS
0.4%
2022 2 PoCs

An issue in the firmware update process of TP-Link TL-WA7510N v1 v3.12.6 and earlier allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via uploading a crafted firmware image.

CVE-2022-25352
libnested Web
7.5
HIGH
EPSS
0.5%
2022 2 PoCs

The package libnested before 1.5.2 are vulnerable to Prototype Pollution via the set function in index.js. **Note:** This vulnerability derives from an incomplete fix for [CVE-2020-28283](https://security.snyk.io/vuln/SNYK-JS-LIBNESTED-1054930)

CVE-2022-25940
lite-server Web
7.5
HIGH
EPSS
0.5%
2022 2 PoCs

All versions of package lite-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.

CVE-2022-22138
fast-string-search General
7.5
HIGH
EPSS
0.3%
2022 1 PoC

All versions of package fast-string-search are vulnerable to Denial of Service (DoS) when computations are incorrect for non-string inputs. One can cause the V8 to attempt reading from non-permitted locations and cause a segmentation fault due to the violation.

CVE-2022-25885
muhammara General
7.5
HIGH
EPSS
0.9%
2022 2 PoCs

The package muhammara before 2.6.0; all versions of package hummus are vulnerable to Denial of Service (DoS) when PDFStreamForResponse() is used with invalid data.

CVE-2022-25852
pg-native General
7.5
HIGH
EPSS
0.4%
2022 2 PoCs

All versions of package pg-native; all versions of package libpq are vulnerable to Denial of Service (DoS) when the addons attempt to cast the second argument to an array and fail. This happens for every non-array argument passed. **Note:** pg-native is a mere binding to npm's libpq library, which in turn has the addons and bindings to the actual C libpq library. This means that problems found in pg-native may transitively impact npm's libpq.

CVE-2022-25907
ts-deepmerge General
7.5
HIGH
EPSS
0.2%
2022 1 PoC

The package ts-deepmerge before 2.0.2 are vulnerable to Prototype Pollution due to missing sanitization of the merge function.

CVE-2022-0391
python General
7.5
HIGH
EPSS
1.2%
2022 CWE-74 1 PoC

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVE-2022-22549
PowerScale OneFS General
7.5
HIGH
EPSS
0.4%
2022 CWE-295 1 PoC

Dell PowerScale OneFS, 8.2.x-9.3.x, contains a Improper Certificate Validation. A unauthenticated remote attacker could potentially exploit this vulnerability, leading to a man-in-the-middle capture of administrative credentials.

CVE-2022-30114
Software Genérico Web
7.5
HIGH
EPSS
4.8%
2022 2 PoCs

A heap-based buffer overflow in a network service in Fastweb FASTGate MediaAccess FGA2130FWB, firmware version 18.3.n.0482_FW_230_FGA2130, and DGA4131FWB, firmware version up to 18.3.n.0462_FW_261_DGA4131, allows a remote attacker to reboot the device through a crafted HTTP request, causing DoS.

CVE-2022-35503
Software Genérico DevOps
7.5
HIGH
EPSS
0.2%
2022 2 PoCs

Improper verification of a user input in Open Source MANO v7-v12 allows an authenticated attacker to execute arbitrary code within the LCM module container via a Virtual Network Function (VNF) descriptor. An attacker may be able execute code to change the normal execution of the OSM components, retrieve confidential information, or gain access other parts of a Telco Operator infrastructure other than OSM itself.

CVE-2022-34126
Software Genérico Web
7.5
HIGH
EPSS
1.6%
2022 1 PoC

The Activity plugin before 3.1.1 for GLPI allows reading local files via directory traversal in the front/cra.send.php file parameter.

CVE-2022-23308
Software Genérico General
7.5
HIGH
EPSS
0.1%
2022 1 PoC

valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes.

CVE-2022-21144
libxmljs General
7.5
HIGH
EPSS
0.2%
2022 1 PoC

This affects all versions of package libxmljs. When invoking the libxmljs.parseXml function with a non-buffer argument the V8 code will attempt invoking the .toString method of the argument. If the argument's toString value is not a Function object V8 will crash.