Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 612 613 614 615 616 617 618 619 620 621 [622] 623 624 625 626 627 628 629 630 631 632 ... Result(s) : 43431

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
9.8 2022-04-01 CVE-2022-24066 cve The package simple-git before 3.5.0 are vulnerable to Command Injection due to an incomplete fix of [CVE-2022-24433](https://security.snyk.io/vuln/SNYK-JS-SIMPLEGIT-2421199) whi...
9.8 2022-04-01 CVE-2022-24440 cve The package cocoapods-downloader before 1.6.0, from 1.6.2 and before 1.6.3 are vulnerable to Command Injection via git argument injection. When calling the Pod::Downloader.prepr...
9.8 2022-04-01 CVE-2022-21223 cve The package cocoapods-downloader before 1.6.2 are vulnerable to Command Injection via hg argument injection. When calling the download function (when using hg), the url (and/or ...
9.8 2022-04-01 CVE-2022-27534 cve Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had a bug in a data parsing module that potentially...
9.8 2022-04-01 CVE-2022-27177 cve A Python format string issue leading to information disclosure and potentially remote code execution in ConsoleMe for all versions prior to 1.2.2
9.1 2022-04-01 CVE-2022-25158 cve Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U(C) CPU all versions, Mitsubishi Electric MELSEC iQ-F series FX5UJ CPU all...
9.1 2022-04-01 CVE-2022-25157 cve Use of Password Hash Instead of Password for Authentication vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U(C) CPU all versions, Mitsubishi Electric MELSEC iQ-F ser...
9.8 2022-04-01 CVE-2022-22965 cve A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding. The specific exploit requires the application to ...
9.8 2022-04-01 CVE-2022-22963 cve In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to provide a specially crafted SpEL as ...
10 2022-04-01 CVE-2022-22570 cve A buffer overflow vulnerability found in the UniFi Door Access Reader Lite’s (UA Lite) firmware (Version 3.8.28.24 and earlier) allows a malicious actor who has gained access to...
9.8 2022-04-01 CVE-2021-32976 cve Five buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to initiate a denial-of-service at...
9.8 2022-04-01 CVE-2021-32953 cve An attacker could utilize SQL commands to create a new user MDT AutoSave versions prior to v6.02.06 and update the user’s permissions, granting the attacker the ability to login.
9.8 2022-04-01 CVE-2021-32974 cve Improper input validation in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may allow a remote attacker to execute commands.
9.8 2022-04-01 CVE-2021-23247 cve A command injection vulerability found in quick game engine allows arbitrary remote code in quick app. Allows remote attacke0rs to gain arbitrary code execution in quick game en...
9.8 2022-04-01 CVE-2021-26623 cve A remote code execution vulnerability due to incomplete check for 'xheader_decode_path_record' function's parameter length value in the ark library. Remote attack...
9.8 2022-04-01 CVE-2021-32933 cve An attacker could leverage an API to pass along a malicious file that could then manipulate the process creation command line in MDT AutoSave versions prior to v6.02.06 and run ...
9.8 2022-04-01 CVE-2021-27497 cve Philips Vue PACS versions 12.2.x.x and prior does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
9.8 2022-03-31 CVE-2022-24791 cve Wasmtime is a standalone JIT-style runtime for WebAssembly, using Cranelift. There is a use after free vulnerability in Wasmtime when both running Wasm that uses externrefs and ...
9.8 2022-03-31 CVE-2021-43722 cve D-Link DIR-645 1.03 A1 is vulnerable to Buffer Overflow. The hnap_main function in the cgibin handler uses sprintf to format the soapaction header onto the stack and has no limi...
9.8 2022-03-31 CVE-2021-43479 cve A Remote Code Execution (RCE) vulnerability exists in The-Secretary 2.5 via install.php.
Page(s) : 1 ... 612 613 614 615 616 617 618 619 620 621 [622] 623 624 625 626 627 628 629 630 631 632 ... Result(s) : 43431