AES Crypt security bypass | CVE-2022-35928
NAME AES Crypt security bypass Platforms Affected:AES Crypt AES Crypt 3.0.11Risk Level:8.4Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION AES Crypt could allow a local...
NAME AES Crypt security bypass Platforms Affected:AES Crypt AES Crypt 3.0.11Risk Level:8.4Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION AES Crypt could allow a local...
NAME Digi ConnectPort X2D code execution Platforms Affected:Digi ConnectPort X2D GatewayRisk Level:10Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Digi ConnectPort X2D could allow a...
NAME Ecwid Ecommerce Shopping Cart plugin for WordPress cross-site request forgery Platforms Affected:WordPress Ecwid Ecommerce Shopping Cart plugin for WordPress...
Daily Vulnerability Trends (sourced from VulnMon) CVE NAMECVE DescriptionCVE-2022-20841 No description provided CVE-2022-30699NLnet Labs Unbound, up to and including version...
NAME Quest KACE Systems Management Appliance (SMA) security bypass Platforms Affected:Quest KACE Systems Management Appliance 12.0Risk Level:9.8Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION Quest...
NAME Node.js ctv-appletv3-router module code execution Platforms Affected:Node.js ctv-appletv3-routerRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js ctv-appletv3-router module could allow a remote attacker...
NAME VMware Workspace ONE Access, Identity Manager and vRealize Automation code execution Platforms Affected:VMware vRealize Automation 7.6 VMware Workspace ONE...
NAME D-Link DIR820LA1 devices buffer overflow Platforms Affected:D-Link DIR820LA1 FW106B02Risk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION D-Link DIR820LA1 devices are vulnerable to a...
NAME Node.js chawla-init-3 module code execution Platforms Affected:Node.js chawla-init-3Risk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js chawla-init-3 module could allow a remote attacker...
NAME Node.js @employee-experience/common module code execution Platforms Affected:Node.js @employee-experience/commonRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js @employee-experience/common module could allow a remote attacker...
NAME Mealie cross-site scripting Platforms Affected:Mealie Mealie 0.5.5Risk Level:7.2Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION Mealie is vulnerable to cross-site scripting, caused by improper...
NAME BookWyrm brute force Platforms Affected:BookWyrm BookWyrm 0.4.4Risk Level:9.4Exploitability:UnprovenConsequences:Gain Access DESCRIPTION BookWyrm is vulnerable to a brute force attack, caused...
NAME Node.js video-live-config module code execution Platforms Affected:Node.js video-live-configRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js video-live-config module could allow a remote attacker...
NAME Node.js ctv-tachyon-wrapper module code execution Platforms Affected:Node.js ctv-tachyon-wrapperRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js ctv-tachyon-wrapper module could allow a remote attacker...
NAME VMware Workspace ONE Access, Identity Manager and vRealize Automation code execution Platforms Affected:VMware vRealize Automation 7.6 VMware Workspace ONE...
NAME NextAuth.js security bypass Platforms Affected:NextAuth.js NextAuth.js 4.10.2 NextAuth.js NextAuth.js 3.29.9Risk Level:9.1Exploitability:UnprovenConsequences:Bypass Security DESCRIPTION NextAuth.js could allow a remote attacker...
NAME Node.js lwc-playground module code execution Platforms Affected:Node.js lwc-playgroundRisk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Node.js lwc-playground module could allow a remote attacker...
NAME VMware Workspace ONE Access, Identity Manager and vRealize Automation privilege escalation Platforms Affected:VMware vRealize Automation 7.6 VMware Workspace ONE...
NAME Quest KACE Systems Management Appliance (SMA) code execution Platforms Affected:Quest KACE Systems Management Appliance 12.0Risk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Quest...
NAME OMICard EDM code execution Platforms Affected:Peisheng Information OMICard EDM 5.8 Peisheng Information OMICard EDM 5.9 Peisheng Information OMICard EDM...
NAME D-Link DIR810LA1 devices command execution Platforms Affected:D-Link DIR810LA1 FW102B22Risk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION D-Link DIR810LA1 devices could allow a remote...
NAME VMware Workspace ONE Access, Identity Manager and vRealize Automation security bypass Platforms Affected:VMware vRealize Automation 7.6 VMware Workspace ONE...
NAME OMICard EDM SQL injection Platforms Affected:Peisheng Information OMICard EDM 5.8 Peisheng Information OMICard EDM 5.9 Peisheng Information OMICard EDM...
Daily Vulnerability Trends (sourced from VulnMon) CVE NAMECVE DescriptionCVE-2022-33891The Apache Spark UI offers the possibility to enable ACLs via the...