7835 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2022-29021
Software Genérico General
N/A
UNKNOWN
EPSS
0.6%
2022 1 PoC

A buffer overflow vulnerability exists in the razerkbd driver of OpenRazer up to version v3.3.0 allows attackers to cause a Denial of Service (DoS) and possibly escalate their privileges via a crafted buffer sent to the matrix_custom_frame device.

CVE-2022-23099
Software Genérico Web
N/A
UNKNOWN
EPSS
0.7%
2022 1 PoC

OX App Suite through 7.10.6 allows XSS by forcing block-wise read.

CVE-2022-29078
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.5%
2022 6 PoCs

The ejs (aka Embedded JavaScript templates) package 3.1.6 for Node.js allows server-side template injection in settings[view options][outputFunctionName]. This is parsed as an internal option, and overwrites the outputFunctionName option with an arbitrary OS command (which is executed upon template compilation).

CVE-2022-1396
Donorbox – Free Recurring Donation Form Web Windows
N/A
UNKNOWN
EPSS
2.4%
2022 CWE-79 2 PoCs

The Donorbox WordPress plugin before 7.1.7 does not sanitise and escape its Campaign URL settings before outputting it in an attribute, leading to a Stored Cross-Site Scripting issue even when the unfiltered_html capability is disallowed

CVE-2022-25090
Software Genérico Cloud
N/A
UNKNOWN
EPSS
12.4%
2022 4 PoCs

Printix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure permissions, leading to privilege escalation because of a race condition.

CVE-2022-48331
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

Widevine Trusted Application (TA) 5.0.0 through 5.1.1 has a drm_save_keys feature_name_len integer overflow and resultant buffer overflow.

CVE-2022-4661
Widgets for WooCommerce Products on Elementor Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

The Widgets for WooCommerce Products on Elementor WordPress plugin before 1.0.8 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVE-2022-47583
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

Terminal character injection in Mintty before 3.6.3 allows code execution via unescaped output to the terminal.

CVE-2022-2383
Feed Them Social – for Twitter feed, Youtube and more Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
6.4%
2022 CWE-79 1 PoC

The Feed Them Social WordPress plugin before 3.0.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting

CVE-2022-25371
Apache OFBiz Web
N/A
UNKNOWN
EPSS
1.9%
2022 CWE-22 2 PoCs

Apache OFBiz uses the Birt project plugin (https://eclipse.github.io/birt-website/) to create data visualizations and reports. By leveraging a bug in Birt (https://bugs.eclipse.org/bugs/show_bug.cgi?id=538142) it is possible to perform a remote code execution (RCE) attack in Apache OFBiz, release 18.12.05 and earlier.

CVE-2022-2739
podman General
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-200 1 PoC

The version of podman as released for Red Hat Enterprise Linux 7 Extras via RHSA-2022:2190 advisory included an incorrect version of podman missing the fix for CVE-2020-14370, which was previously fixed via RHSA-2020:5056. This issue could possibly allow an attacker to gain access to sensitive information stored in environment variables.

CVE-2022-34528
Software Genérico General
N/A
UNKNOWN
EPSS
1.0%
2022 1 PoC

D-Link DSL-3782 v1.03 and below was discovered to contain a stack overflow via the function getAttrValue.

CVE-2022-23712
elasticsearch Database
N/A
UNKNOWN
EPSS
3.2%
2022 CWE-754 1 PoC

A Denial of Service flaw was discovered in Elasticsearch. Using this vulnerability, an unauthenticated attacker could forcibly shut down an Elasticsearch node with a specifically formatted network request.

CVE-2022-20128
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2022 1 PoC

Sin descripción disponible.

CVE-2022-38258
Software Genérico General
N/A
UNKNOWN
EPSS
1.4%
2022 1 PoC

A local file inclusion (LFI) vulnerability in D-Link DIR 819 v1.06 allows attackers to cause a Denial of Service (DoS) or access sensitive server information via manipulation of the getpage parameter in a crafted web request.

CVE-2022-26965
Software Genérico Web
N/A
UNKNOWN
EPSS
20.5%
2022 2 PoCs

In Pluck 4.7.16, an admin user can use the theme upload functionality at /admin.php?action=themeinstall to perform remote code execution.

CVE-2022-0428
Content Egg Web Windows
N/A
UNKNOWN
EPSS
0.3%
2022 CWE-79 1 PoC

The Content Egg WordPress plugin before 5.3.0 does not sanitise and escape the page parameter before outputting back in an attribute in the Autoblogging admin dashboard, leading to a Reflected Cross-Site Scripting

CVE-2022-36604
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

An access control issue in Canaan Avalon ASIC Miner 2020.3.30 and below allows unauthenticated attackers to arbitrarily change user passwords via a crafted POST request.

CVE-2022-1062
th23 Social Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 1 PoC

The th23 Social WordPress plugin through 1.2.0 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

CVE-2022-1765
Hot Linked Image Cacher Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-352 1 PoC

The Hot Linked Image Cacher WordPress plugin through 1.16 is vulnerable to CSRF. This can be used to store / cache images from external domains on the server, which could lead to legal risks (due to copyright violations or licensing rules).