Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2022-37244 | 1 Altn | 1 Security Gateway For Email Servers | 2022-08-29 | N/A | 5.4 MEDIUM |
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to IFRAME Injectionvia the currentRequest parameter. after login leads to inject malicious tag leads to IFRAME injection. | |||||
CVE-2022-37242 | 1 Altn | 1 Security Gateway For Email Servers | 2022-08-29 | N/A | 9.8 CRITICAL |
MDaemon Technologies SecurityGateway for Email Servers 8.5.2, is vulnerable to HTTP Response splitting via the data parameter. | |||||
CVE-2022-37240 | 1 Altn | 1 Security Gateway For Email Servers | 2022-08-29 | N/A | 9.8 CRITICAL |
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to HTTP Response splitting via the format parameter. | |||||
CVE-2022-1024 | 2022-08-29 | N/A | N/A | ||
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. | |||||
CVE-2022-0644 | 2022-08-29 | N/A | N/A | ||
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. | |||||
CVE-2022-2957 | 1 Simple And Nice Shopping Cart Script Project | 1 Simple And Nice Shopping Cart Script | 2022-08-29 | N/A | 9.8 CRITICAL |
A vulnerability classified as critical was found in SourceCodester Simple and Nice Shopping Cart Script. Affected by this vulnerability is an unknown functionality of the file /mkshop/Men/profile.php. The manipulation of the argument mem_id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-207001 was assigned to this vulnerability. | |||||
CVE-2021-4041 | 1 Redhat | 1 Ansible Runner | 2022-08-29 | N/A | 7.8 HIGH |
A flaw was found in ansible-runner. An improper escaping of the shell command, while calling the ansible_runner.interface.run_command, can lead to parameters getting executed as host's shell command. A developer could unintentionally write code that gets executed in the host rather than the virtual environment. | |||||
CVE-2021-4122 | 1 Cryptsetup Project | 1 Cryptsetup | 2022-08-29 | N/A | 4.3 MEDIUM |
It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device. An attacker with physical access to the medium, such as a flash disk, could use this flaw to force a user into permanently disabling the encryption layer of that medium. | |||||
CVE-2021-4125 | 2 Apache, Redhat | 2 Hive, Openshift | 2022-08-29 | N/A | 8.1 HIGH |
It was found that the original fix for log4j CVE-2021-44228 and CVE-2021-45046 in the OpenShift metering hive containers was incomplete, as not all JndiLookup.class files were removed. This CVE only applies to the OpenShift Metering hive container images, shipped in OpenShift 4.8, 4.7 and 4.6. | |||||
CVE-2022-36511 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function EditApAdvanceInfo. | |||||
CVE-2022-36513 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function edditactionlist. | |||||
CVE-2022-36514 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function WanModeSetMultiWan. | |||||
CVE-2022-36515 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function addactionlist. | |||||
CVE-2022-36517 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function debug_wlan_advance. | |||||
CVE-2022-36516 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function ap_version_check. | |||||
CVE-2022-36518 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function EditWlanMacList. | |||||
CVE-2022-36519 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function AddWlanMacList. | |||||
CVE-2022-37066 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function UpdateDDNS. | |||||
CVE-2022-36520 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function DEleteusergroup. | |||||
CVE-2022-37067 | 1 H3c | 2 Gr-1200w, Gr-1200w Firmware | 2022-08-29 | N/A | 9.8 CRITICAL |
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function UpdateWanParamsMulti. |