7835 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2022-3847
Showing URL in QR Code Web Windows
N/A
UNKNOWN
EPSS
0.1%
2022 2 PoCs

The Showing URL in QR Code WordPress plugin through 0.0.1 does not have CSRF check when updating its settings, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin or editor add Stored XSS payloads via a CSRF attack

CVE-2022-2046
Directorist – WordPress Business Directory Plugin with Classified Ads Listings Web Windows
N/A
UNKNOWN
EPSS
0.3%
2022 CWE-434 1 PoC

The Directorist WordPress plugin before 7.2.3 allows administrators to download other plugins from the same vendor directly to the site, but does not check the URL domain it gets the zip files from. This could allow administrators to run code on the server, which is a problem in multisite configurations.

CVE-2022-22836
Software Genérico Web
N/A
UNKNOWN
EPSS
3.1%
2022 1 PoC

CoreFTP Server before 727 allows directory traversal (for file creation) by an authenticated attacker via ../ in an HTTP PUT request.

CVE-2022-27445
Software Genérico Database
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

MariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/sql_window.cc.

CVE-2022-29659
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.4%
2022 3 PoCs

Responsive Online Blog v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at single.php.

CVE-2022-1424
Ask me Web Windows
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-352 1 PoC

The Ask me WordPress theme before 6.8.2 does not perform CSRF checks for any of its AJAX actions, allowing an attacker to trick logged in users to perform various actions on their behalf on the site.

CVE-2022-29322
Software Genérico General
N/A
UNKNOWN
EPSS
3.5%
2022 1 PoC

D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the IPADDR and nvmacaddr parameters in /goform/form2Dhcpip.

CVE-2022-39196
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

Blackboard Learn 1.10.1 allows remote authenticated users to read unintended files by entering student credentials and then directly visiting a certain webapps/bbcms/execute/ URL. Note: The vendor disputes this stating this cannot be reproduced.

CVE-2022-39959
Software Genérico General
N/A
UNKNOWN
EPSS
0.5%
2022 1 PoC

Panini Everest Engine 2.0.4 allows unprivileged users to create a file named Everest.exe in the %PROGRAMDATA%\Panini folder. This leads to privilege escalation because a service, running as SYSTEM, uses the unquoted path of %PROGRAMDATA%\Panini\Everest Engine\EverestEngine.exe and therefore a Trojan horse %PROGRAMDATA%\Panini\Everest.exe may be executed instead of the intended vendor-supplied EverestEngine.exe file.

CVE-2022-0193
Complianz – GDPR/CCPA Cookie Consent Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 2 PoCs

The Complianz WordPress plugin before 6.0.0 does not escape the s parameter before outputting it back in an attribute in an admin page, leading to a Reflected Cross-Site Scripting

CVE-2022-26563
Software Genérico General
N/A
UNKNOWN
EPSS
0.7%
2022 1 PoC

An issue was discovered in Tildeslash Monit before 5.31.0, allows remote attackers to gain escilated privlidges due to improper PAM-authorization.

CVE-2022-2831
Blender General
N/A
UNKNOWN
EPSS
0.8%
2022 CWE-190 1 PoC

A flaw was found in Blender 3.3.0. An interger overflow in source/blender/blendthumb/src/blendthumb_extract.cc may lead to program crash or memory corruption.

CVE-2022-1028
WordPress Security – Firewall, Malware Scanner, Secure Login and Backup Web Networking Windows
N/A
UNKNOWN
EPSS
0.4%
2022 CWE-79 1 PoC

The WordPress Security Firewall, Malware Scanner, Secure Login and Backup plugin before 4.2.1 does not sanitise and escape some of its settings, leading to malicious users with administrator privileges to store malicious Javascript code leading to Cross-Site Scripting attacks when unfiltered_html is disallowed (for example in multisite setup)

CVE-2022-39807
SAP 3D Visual Enterprise Author General
N/A
UNKNOWN
EPSS
0.0%
2022 CWE-119 2 PoCs

Due to lack of proper memory management, when a victim opens manipulated SolidWorks Drawing (.sldasm, CoreCadTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to crash and becomes temporarily unavailable to the user until restart of the application.

CVE-2022-33917
Software Genérico General
N/A
UNKNOWN
EPSS
0.7%
2022 2 PoCs

An issue was discovered in the Arm Mali GPU Kernel Driver (Valhall r29p0 through r38p0). A non-privileged user can make improper GPU processing operations to gain access to already freed memory.

CVE-2022-21826
Pulse Connect Secure VPN Server Web Networking
N/A
UNKNOWN
EPSS
5.9%
2022 CWE-444 1 PoC

Pulse Secure version 9.115 and below may be susceptible to client-side http request smuggling, When the application receives a POST request, it ignores the request's Content-Length header and leaves the POST body on the TCP/TLS socket. This body ends up prefixing the next HTTP request sent down that connection, this means when someone loads website attacker may be able to make browser issue a POST to the application, enabling XSS.

CVE-2022-26481
Software Genérico General
N/A
UNKNOWN
EPSS
3.4%
2022 1 PoC

An issue was discovered in Poly Studio before 3.7.0. Command Injection can occur via the CN field of a Create Certificate Signing Request (CSR) action.

CVE-2022-28384
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 8 PoCs

An issue was discovered in certain Verbatim drives through 2022-03-31. Due to an insecure design, they allow an offline brute-force attack for determining the correct passcode, and thus gaining unauthorized access to the stored encrypted data. This affects Keypad Secure USB 3.2 Gen 1 Drive Part Number #49428 and Store 'n' Go Secure Portable HDD GD25LK01-3637-C VER4.0.

CVE-2022-38846
Software Genérico Web
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

EspoCRM version 7.1.8 is vulnerable to Missing Secure Flag allowing the browser to send plain text cookies over an insecure channel (HTTP). An attacker may capture the cookie from the insecure channel using MITM attack.

CVE-2022-32387
Software Genérico General
N/A
UNKNOWN
EPSS
1.0%
2022 1 PoC

In Kentico before 13.0.66, attackers can achieve Denial of Service via a crafted request to the GetResource handler.