Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Total 210374 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-36659 1 Xhyve Project 1 Xhyve 2022-09-12 N/A 6.5 MEDIUM
xhyve commit dfbe09b was discovered to contain a NULL pointer dereference via the component vi_pci_write(). This vulnerability allows attackers to cause a Denial of Service via unspecified vectors.
CVE-2022-36661 1 Xhyve Project 1 Xhyve 2022-09-12 N/A 6.5 MEDIUM
xhyve commit dfbe09b was discovered to contain a NULL pointer dereference via the component vi_pci_read(). This vulnerability allows attackers to cause a Denial of Service via unspecified vectors.
CVE-2022-36660 1 Xhyve Project 1 Xhyve 2022-09-12 N/A 9.8 CRITICAL
xhyve commit dfbe09b was discovered to contain a stack buffer overflow via the component pci_vtrnd_notify().
CVE-2022-23680 1 Arubanetworks 13 Aos-cx, Cx 10000, Cx 4100i and 10 more 2022-09-12 N/A 8.8 HIGH
AOS-CX lacks Anti-CSRF protections in place for state-changing operations. This can potentially be exploited by an attacker to execute commands in the context of another user in ArubaOS-CX Switches version(s): AOS-CX 10.10.xxxx: 10.10.0002 and below, AOS-CX 10.09.xxxx: 10.09.1020 and below, AOS-CX 10.08.xxxx: 10.08.1060 and below, AOS-CX 10.06.xxxx: 10.06.0200 and below. Aruba has released upgrades for ArubaOS-CX Switch Devices that address this security vulnerability.
CVE-2020-10464 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/edit-article.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
CVE-2020-10463 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/edit-template.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
CVE-2020-10462 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/edit-field.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
CVE-2020-10470 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/manage-fields.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
CVE-2020-10469 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
CVE-2020-10468 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/edit-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
CVE-2020-10467 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/edit-comment.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
CVE-2020-10466 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/edit-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
CVE-2020-10465 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/edit-category.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter p.
CVE-2020-10474 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/manage-comments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
CVE-2020-10473 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/manage-categories.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
CVE-2020-10472 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/manage-templates.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
CVE-2020-10478 1 Chadhaajay 1 Phpkb 2022-09-12 6.8 MEDIUM 8.8 HIGH
CSRF in admin/manage-settings.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to change the global settings, potentially gaining code execution or causing a denial of service, via a crafted request.
CVE-2020-10477 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/manage-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
CVE-2020-10476 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/manage-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.
CVE-2020-10475 1 Chadhaajay 1 Phpkb 2022-09-12 3.5 LOW 4.8 MEDIUM
Reflected XSS in admin/manage-tickets.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to inject arbitrary web script or HTML via the GET parameter sort.