Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2022-36659 | 1 Xhyve Project | 1 Xhyve | 2022-09-12 | N/A | 6.5 MEDIUM |
xhyve commit dfbe09b was discovered to contain a NULL pointer dereference via the component vi_pci_write(). This vulnerability allows attackers to cause a Denial of Service via unspecified vectors. | |||||
CVE-2022-36661 | 1 Xhyve Project | 1 Xhyve | 2022-09-12 | N/A | 6.5 MEDIUM |
xhyve commit dfbe09b was discovered to contain a NULL pointer dereference via the component vi_pci_read(). This vulnerability allows attackers to cause a Denial of Service via unspecified vectors. | |||||
CVE-2022-36660 | 1 Xhyve Project | 1 Xhyve | 2022-09-12 | N/A | 9.8 CRITICAL |
xhyve commit dfbe09b was discovered to contain a stack buffer overflow via the component pci_vtrnd_notify(). | |||||
CVE-2022-23680 | 1 Arubanetworks | 13 Aos-cx, Cx 10000, Cx 4100i and 10 more | 2022-09-12 | N/A | 8.8 HIGH |
AOS-CX lacks Anti-CSRF protections in place for state-changing operations. This can potentially be exploited by an attacker to execute commands in the context of another user in ArubaOS-CX Switches version(s): AOS-CX 10.10.xxxx: 10.10.0002 and below, AOS-CX 10.09.xxxx: 10.09.1020 and below, AOS-CX 10.08.xxxx: 10.08.1060 and below, AOS-CX 10.06.xxxx: 10.06.0200 and below. Aruba has released upgrades for ArubaOS-CX Switch Devices that address this security vulnerability. | |||||
CVE-2020-10464 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/edit-article.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p. | |||||
CVE-2020-10463 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/edit-template.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p. | |||||
CVE-2020-10462 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/edit-field.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p. | |||||
CVE-2020-10470 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/manage-fields.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort. | |||||
CVE-2020-10469 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort. | |||||
CVE-2020-10468 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/edit-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p. | |||||
CVE-2020-10467 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/edit-comment.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p. | |||||
CVE-2020-10466 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/edit-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p. | |||||
CVE-2020-10465 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/edit-category.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p. | |||||
CVE-2020-10474 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/manage-comments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort. | |||||
CVE-2020-10473 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/manage-categories.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort. | |||||
CVE-2020-10472 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/manage-templates.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort. | |||||
CVE-2020-10478 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 6.8 MEDIUM | 8.8 HIGH |
CSRF in admin/manage-settings.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to change the global settings, potentially gaining code execution or causing a denial of service, via a crafted request. | |||||
CVE-2020-10477 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/manage-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort. | |||||
CVE-2020-10476 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/manage-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort. | |||||
CVE-2020-10475 | 1 Chadhaajay | 1 Phpkb | 2022-09-12 | 3.5 LOW | 4.8 MEDIUM |
Reflected XSS in admin/manage-tickets.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort. |