CVE-2022-21000 to CVE-2022-21999
73 CVEs with public proof-of-concept exploits.
- CVE-2022-211221 PoCArbitrary Code Execution
- CVE-2022-211291 PoCVersions of the package nemo-appium before 0.0.9 are vulnerable to Command Injection due to improper input sanitization in the…
- CVE-2022-211441 PoCDenial of Service (DoS)
- CVE-2022-211451 PoCA stored cross-site scripting vulnerability exists in the WebUserActions.aspx functionality of Lansweeper lansweeper 9.1.20.2. A…
- CVE-2022-211471 PoCAn out of bounds read vulnerability exists in the malware scan functionality of ESTsoft Alyac 2.5.7.7. A specially-crafted PE file can…
- CVE-2022-211541 PoCAn integer overflow vulnerability exists in the fltSaveCMP functionality of Leadtools 22. A specially-crafted BMP file can lead to an…
- CVE-2022-211592 PoCsA denial of service vulnerability exists in the parseNormalModeParameters functionality of MZ Automation GmbH libiec61850 1.5.0. A…
- CVE-2022-211641 PoCDenial of Service (DoS)
- CVE-2022-211651 PoCArbitrary Command Injection
- CVE-2022-211692 PoCsPrototype Pollution
- CVE-2022-211781 PoCAn os command injection vulnerability exists in the confsrv ucloud_add_new_node functionality of TCL LinkHub Mesh Wifi MS1G_00_01.00_14. A…
- CVE-2022-211821 PoCA privilege escalation vulnerability exists in the router configuration import functionality of InHand Networks InRouter302 V3.5.4. A…
- CVE-2022-211861 PoCArbitrary Command Injection
- CVE-2022-211892 PoCsPrototype Pollution
- CVE-2022-211902 PoCsPrototype Pollution
- CVE-2022-211922 PoCsAll versions of the package serve-lite are vulnerable to Directory Traversal due to missing input sanitization or other checks and…
- CVE-2022-211951 PoCRegular Expression Denial of Service (ReDoS)
- CVE-2022-212011 PoCA stack-based buffer overflow vulnerability exists in the confers ucloud_add_node_new functionality of TCL LinkHub Mesh Wi-Fi…
- CVE-2022-212101 PoCAn SQL injection vulnerability exists in the AssetActions.aspx functionality of Lansweeper lansweeper 9.1.20.2. A specially-crafted HTTP…
- CVE-2022-212111 PoCDenial of Service (DoS)
- CVE-2022-212133 PoCsPrototype Pollution
- CVE-2022-212221 PoCRegular Expression Denial of Service (ReDoS)
- CVE-2022-212252 PoCsImproper neutralization in the Intel(R) Data Center Manager software before version 4.1 may allow an authenticated user to potentially…
- CVE-2022-212311 PoCPrototype Pollution
- CVE-2022-212341 PoCAn SQL injection vulnerability exists in the EchoAssets.aspx functionality of Lansweeper lansweeper 9.1.20.2. A specially-crafted HTTP…
- CVE-2022-212361 PoCAn information disclosure vulnerability exists due to a web server misconfiguration in the Reolink RLC-410W v3.0.0.136_20121102. A…
- CVE-2022-212381 PoCA cross-site scripting (xss) vulnerability exists in the info.jsp functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted…
- CVE-2022-212411 PoCCross-site scripting vulnerability in CSV+ prior to 0.8.1 allows a remote unauthenticated attacker to inject an arbitrary script or an…
- CVE-2022-213061 PoCVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected…
- CVE-2022-213401 PoCVulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported…
- CVE-2022-213501 PoCVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected…
- CVE-2022-213717 PoCsVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Container). Supported versions that are…
- CVE-2022-213851 PoCA flaw in net_rds_alloc_sgs() in Oracle Linux kernels allows unprivileged local users to crash the machine. CVSS 3.1 Base Score 6.2…
- CVE-2022-213921 PoCVulnerability in the Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Policy Framework). Supported…
- CVE-2022-214453 PoCsKEVVulnerability in the Oracle Application Development Framework (ADF) product of Oracle Fusion Middleware (component: ADF Faces). Supported…
- CVE-2022-2144913 PoCsVulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported…
- CVE-2022-215002 PoCsVulnerability in Oracle E-Business Suite (component: Manage Proxies). The supported version that is affected is 12.2. Easily exploitable…
- CVE-2022-215878 PoCsKEVVulnerability in the Oracle Web Applications Desktop Integrator product of Oracle E-Business Suite (component: Upload). Supported versions…
- CVE-2022-216491 PoCStored XSS via attribute in convos
- CVE-2022-216501 PoCStored XSS via html file upload in convos
- CVE-2022-216581 PoCRace condition in std::fs::remove_dir_all in rustlang
- CVE-2022-216601 PoCMissing authorization in gin-vue-admin
- CVE-2022-2166120 PoCsSQL injection in WordPress
- CVE-2022-216621 PoCStored XSS in WordPress
- CVE-2022-216631 PoCAuthenticated Object Injection in Multisites in WordPress
- CVE-2022-216641 PoCSQL injection in WordPress
- CVE-2022-216681 PoCPipenv's requirements.txt parsing allows malicious index url in comments
- CVE-2022-216802 PoCsCubic catastrophic backtracking (ReDoS) in marked
- CVE-2022-216812 PoCsExponential catastrophic backtracking (ReDoS) in marked
- CVE-2022-216992 PoCsExecution with Unnecessary Privileges in ipython
- CVE-2022-217051 PoCAuthenticated remote code execution in octobercms
- CVE-2022-217111 PoCOut-of-bounds Read lead to application crashes or information leakage in ELF parsing.
- CVE-2022-217281 PoCOut of bounds read in Tensorflow
- CVE-2022-217891 PoCIn audio ipi, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System…
- CVE-2022-217971 PoCArbitrary Code Execution
- CVE-2022-218032 PoCsPrototype Pollution
- CVE-2022-218061 PoCA use-after-free vulnerability exists in the mips_collector appsrv_server functionality of Anker Eufy Homebase 2 2.1.8.5h. A…
- CVE-2022-218091 PoCA file write vulnerability exists in the httpd upload.cgi functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted HTTP…
- CVE-2022-218101 PoCAll versions of the package smartctl are vulnerable to Command Injection via the info method due to improper input sanitization.
- CVE-2022-218202 PoCsNVIDIA DCGM contains a vulnerability in nvhostengine, where a network user can cause detection of error conditions without action, which…
- CVE-2022-218261 PoCPulse Secure version 9.115 and below may be susceptible to client-side http request smuggling, When the application receives a POST…
- CVE-2022-218391 PoCWindows Event Tracing Discretionary Access Control List Denial of Service Vulnerability
- CVE-2022-218771 PoCStorage Spaces Controller Information Disclosure Vulnerability
- CVE-2022-218811 PoCWindows Kernel Elevation of Privilege Vulnerability
- CVE-2022-218828 PoCsKEVWin32k Elevation of Privilege Vulnerability
- CVE-2022-218943 PoCsSecure Boot Security Feature Bypass Vulnerability
- CVE-2022-2190718 PoCsHTTP Protocol Stack Remote Code Execution Vulnerability
- CVE-2022-219481 PoCpaste: XSS on the image upload function
- CVE-2022-219521 PoCSUMA unauthenticated remote DoS via resource exhaustion
- CVE-2022-219701 PoCMicrosoft Edge (Chromium-based) Elevation of Privilege Vulnerability
- CVE-2022-219713 PoCsKEVWindows Runtime Remote Code Execution Vulnerability
- CVE-2022-219741 PoCRoaming Security Rights Management Services Remote Code Execution Vulnerability
- CVE-2022-219994 PoCsKEVWindows Print Spooler Elevation of Privilege Vulnerability