Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 447 448 449 450 451 452 453 454 455 456 [457] 458 459 460 461 462 463 464 465 466 467 ... Result(s) : 43333

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
9.8 2022-12-23 CVE-2022-45719 cve IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the gotoUrl parameter in the formPortalAuth function.
9.8 2022-12-23 CVE-2022-45720 cve IP-COM M50 V15.11.0.33(10768) was discovered to contain multiple buffer overflows via the ip, mac, and remark parameters in the formIPMacBindModify function.
9.8 2022-12-23 CVE-2022-45721 cve IP-COM M50 V15.11.0.33(10768) was discovered to contain a buffer overflow via the picName parameter in the formDelWewifiPic function.
9.8 2022-12-23 CVE-2022-47945 cve ThinkPHP Framework before 6.0.14 allows local file inclusion via the lang parameter when the language pack feature is enabled (lang_switch_on=true). An unauthenticated and remot...
9.1 2022-12-23 CVE-2022-28228 cve Out-of-bounds read was discovered in YDB server. An attacker could construct a query with insert statement that would allow him to read sensitive information from other memory l...
9.8 2022-12-23 CVE-2022-23547 cve PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. This iss...
9.8 2022-12-23 CVE-2022-44567 cve A command injection vulnerability exists in Rocket.Chat-Desktop
9.9 2022-12-23 CVE-2022-46641 cve D-Link DIR-846 A1_FW100A43 was discovered to contain a command injection vulnerability via the lan(0)_dhcps_staticlist parameter in the SetIpMacBindSettings function.
9.9 2022-12-23 CVE-2022-46642 cve D-Link DIR-846 A1_FW100A43 was discovered to contain a command injection vulnerability via the auto_upgrade_hour parameter in the SetAutoUpgradeInfo function.
9.8 2022-12-23 CVE-2022-47939 cve An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. fs/ksmbd/smb2pdu.c has a use-after-free and OOPS for SMB2_TREE_DISCONNECT.
9.8 2022-12-23 CVE-2022-4686 cve Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.0.
9.6 2022-12-23 CVE-2021-32692 cve Activity Watch is a free and open-source automated time tracker. Versions prior to 0.11.0 allow an attacker to execute arbitrary commands on any macOS machine with ActivityWatch...
9.1 2022-12-23 CVE-2022-47931 cve IO FinNet tss-lib before 2.0.0 allows a collision of hash values.
9.8 2022-12-22 CVE-2022-46493 cve Default version of nbnbk was discovered to contain an arbitrary file upload vulnerability via the component /api/User/download_img.
9.8 2022-12-22 CVE-2022-46170 cve CodeIgniter is a PHP full-stack web framework. When an application uses (1) multiple session cookies (e.g., one for user pages and one for admin pages) and (2) a session handle...
9.8 2022-12-22 CVE-2021-4127 cve An out of date graphics library (Angle) likely contained vulnerabilities that could potentially be exploited. This vulnerability affects Thunderbird < 78.9 and Firefox ESR < 78.9.
9.8 2022-12-22 CVE-2021-4129 cve Mozilla developers and community members Julian Hector, Randell Jesup, Gabriele Svelto, Tyson Smith, Christian Holler, and Masayuki Nakano reported memory safety bugs present in...
10 2022-12-22 CVE-2021-4140 cve It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < ...
9.8 2022-12-22 CVE-2022-1887 cve The search term could have been specified externally to trigger SQL injection. This vulnerability affects Firefox for iOS < 101.
9.6 2022-12-22 CVE-2022-22759 cve If a document created a sandboxed iframe without allow-scripts, and subsequently appended an element to the iframe's document that e.g. had a JavaScript event handler - the...
Page(s) : 1 ... 447 448 449 450 451 452 453 454 455 456 [457] 458 459 460 461 462 463 464 465 466 467 ... Result(s) : 43333