7835 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2022-41852
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2022 2 PoCs

Sin descripción disponible.

CVE-2022-24977
Software Genérico Web
N/A
UNKNOWN
EPSS
28.1%
2022 1 PoC

ImpressCMS before 1.4.2 allows unauthenticated remote code execution via ...../// directory traversal in origName or imageName, leading to unsafe interaction with the CKEditor processImage.php script. The payload may be placed in PHP_SESSION_UPLOAD_PROGRESS when the PHP installation supports upload_progress.

CVE-2022-32394
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.3%
2022 2 PoCs

Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/inmates/view_inmate.php:3

CVE-2022-48334
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_verify_keys total_len+file_name_len integer overflow and resultant buffer overflow.

CVE-2022-28774
SAP Host Agent General
N/A
UNKNOWN
EPSS
0.0%
2022 CWE-863 1 PoC

Under certain conditions, the SAP Host Agent logfile shows information which would otherwise be restricted.

CVE-2022-24618
Software Genérico Windows
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

Heimdal.Wizard.exe installer in Heimdal Premium Security 2.5.395 and earlier has insecure permissions, which allows unprivileged local users to elevate privileges to SYSTEM via the "Browse For Folder" window accessible by triggering a "Repair" on the MSI package located in C:\Windows\Installer.

CVE-2022-2080
Sensei LMS – Online Courses, Quizzes, & Learning Web Windows
N/A
UNKNOWN
EPSS
0.3%
2022 CWE-639 1 PoC

The Sensei LMS WordPress plugin before 4.5.2 does not ensure that the sender of a private message is either the teacher or the original sender, allowing any authenticated user to send messages to arbitrary private conversation via a IDOR attack. Note: Attackers are not able to see responses/messages between the teacher and student

CVE-2022-32868
iOS General
N/A
UNKNOWN
EPSS
0.6%
2022 3 PoCs

A logic issue was addressed with improved state management. This issue is fixed in Safari 16, iOS 16, iOS 15.7 and iPadOS 15.7. A website may be able to track users through Safari web extensions.

CVE-2022-1896
underConstruction Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 1 PoC

The underConstruction WordPress plugin before 1.21 does not sanitise or escape the "Display a custom page using your own HTML" setting before outputting it, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiletred_html capability is disallowed.

CVE-2022-31663
VMware Workspace ONE Access, Identity Manager and vRealize Automation Web
N/A
UNKNOWN
EPSS
1.2%
2022 1 PoC

VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a reflected cross-site scripting (XSS) vulnerability. Due to improper user input sanitization, a malicious actor with some user interaction may be able to inject javascript code in the target user's window.

CVE-2022-26249
Software Genérico General
N/A
UNKNOWN
EPSS
1.2%
2022 1 PoC

Survey King v0.3.0 does not filter data properly when exporting excel files, allowing attackers to execute arbitrary code or access sensitive information via a CSV injection attack.

CVE-2022-32271
Software Genérico General
N/A
UNKNOWN
EPSS
2.7%
2022 1 PoC

In Real Player 20.0.8.310, there is a DCP:// URI Remote Arbitrary Code Execution Vulnerability. This is an internal URL Protocol used by Real Player to reference a file that contains an URL. It is possible to inject script code to arbitrary domains. It is also possible to reference arbitrary local files.

CVE-2022-30981
Software Genérico Web
N/A
UNKNOWN
EPSS
0.7%
2022 1 PoC

An issue was discovered in Gentics CMS before 5.43.1. By uploading a malicious ZIP file, an attacker is able to deserialize arbitrary data and hence can potentially achieve Java code execution.

CVE-2022-25061
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
86.0%
2022 1 PoC

TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_setIp6DefaultRoute.

CVE-2022-1508
Kernel General
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-125 1 PoC

An out-of-bounds read flaw was found in the Linux kernel’s io_uring module in the way a user triggers the io_read() function with some special parameters. This flaw allows a local user to read some memory out of bounds.

CVE-2022-25489
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
5.9%
2022 0 PoCs

Atom CMS v2.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the "A" parameter in /widgets/debug.php.

CVE-2022-24637
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.8%
2022 11 PoCs

Open Web Analytics (OWA) before 1.7.4 allows an unauthenticated remote attacker to obtain sensitive user information, which can be used to gain admin privileges by leveraging cache hashes. This occurs because files generated with '<?php (instead of the intended "<?php sequence) aren't handled by the PHP interpreter.

CVE-2022-2171
Progressive License Web Windows
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-352 1 PoC

The Progressive License WordPress plugin through 1.1.0 is lacking any CSRF check when saving its settings, which could allow attackers to make a logged in admin change them. Furthermore, as the plugin allows arbitrary HTML to be inserted in one of the settings, this could lead to Stored XSS issue which will be triggered in the frontend as well.

CVE-2022-34047
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
59.2%
2022 3 PoCs

An access control issue in Wavlink WN530HG4 M30HG4.V5030.191116 allows attackers to obtain usernames and passwords via view-source:http://IP_ADDRESS/set_safety.shtml?r=52300 and searching for [var syspasswd].

CVE-2022-24235
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

A Cross-Site Request Forgery (CSRF) in the management portal of Snapt Aria v12.8 allows attackers to escalate privileges and execute arbitrary code via unspecified vectors.