CVE-2022-22000 to CVE-2022-22999
105 CVEs with public proof-of-concept exploits.
- CVE-2022-220051 PoCMicrosoft SharePoint Server Remote Code Execution Vulnerability
- CVE-2022-220291 PoCWindows Network File System Remote Code Execution Vulnerability
- CVE-2022-220571 PoCUse after free in graphics fence due to a race condition while closing fence file descriptor and destroy graphics timeline simultaneously…
- CVE-2022-220631 PoCMemory corruption in Core
- CVE-2022-220771 PoCMemory corruption in graphics due to use-after-free in graphics dispatcher logic in Snapdragon Mobile
- CVE-2022-221121 PoCDayByDay CRM - Application-Wide Client-Side Template Injection (CSTI)
- CVE-2022-221131 PoCDayByDay CRM - Insufficient Session Expiration after Password Change
- CVE-2022-221141 PoCTeedy - Reflected Cross-Site Scripting (XSS) in the Search Functionality
- CVE-2022-221151 PoCTeedy - Stored Cross-Site Scripting (XSS) in Tag Name
- CVE-2022-221161 PoCDirectus - Stored Cross-Site Scripting (XSS) via SVG File Upload
- CVE-2022-221171 PoCDirectus - Stored Cross-Site Scripting (XSS) in Profile Avatar Image
- CVE-2022-221201 PoCNocoDB - Observable Discrepancy in the password-reset feature
- CVE-2022-221211 PoCNocoDB - CSV Injection in User Management
- CVE-2022-221231 PoCHalo CMS - Stored Cross-Site Scripting (XSS) in Article's Title
- CVE-2022-221241 PoCHalo CMS - Stored Cross-Site Scripting (XSS) in Profile Image
- CVE-2022-221251 PoCHalo CMS - Stored Cross-Site Scripting (XSS) in Article's Tag
- CVE-2022-221371 PoCA memory corruption vulnerability exists in the ioca_mys_rgb_allocate functionality of Accusoft ImageGear 19.10. A specially-crafted…
- CVE-2022-221381 PoCDenial of Service (DoS)
- CVE-2022-221401 PoCAn os command injection vulnerability exists in the confsrv ucloud_add_node functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A…
- CVE-2022-221431 PoCPrototype Pollution
- CVE-2022-221441 PoCA hard-coded password vulnerability exists in the libcommonprod.so prod_change_root_passwd functionality of TCL LinkHub Mesh Wi-Fi…
- CVE-2022-221491 PoCA SQL injection vulnerability exists in the HelpdeskEmailActions.aspx functionality of Lansweeper lansweeper 9.1.20.2. A specially-crafted…
- CVE-2022-221501 PoCA memory corruption vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.1.0.52543. A…
- CVE-2022-222422 PoCsJunos OS: Cross-site Scripting (XSS) vulnerability in J-Web
- CVE-2022-222651 PoCKEVAn improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and…
- CVE-2022-222744 PoCsA Stack-based buffer overflow vulnerability in the SonicOS via HTTP request allows a remote unauthenticated attacker to cause Denial of…
- CVE-2022-222931 PoCadmin/limits.php in Dolibarr 7.0.2 allows HTML injection, as demonstrated by the MAIN_MAX_DECIMALS_TOT parameter.
- CVE-2022-222961 PoCSourcecodester Hospital's Patient Records Management System 1.0 is vulnerable to Insecure Permissions via the id parameter in manage_user…
- CVE-2022-225212 PoCsPrivilege Escalation in Miele Benchmark Programming Tool
- CVE-2022-225369 PoCsKEVSAP NetWeaver Application Server ABAP, SAP NetWeaver Application Server Java, ABAP Platform, SAP Content Server 7.53 and SAP Web…
- CVE-2022-225471 PoCSimple Diagnostics Agent - versions 1.0 (up to version 1.57.), allows an attacker to access information which would otherwise be…
- CVE-2022-225551 PoCDell EMC PowerStore, contains an OS command injection Vulnerability. A locally authenticated attacker could potentially exploit this…
- CVE-2022-225821 PoCA validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed…
- CVE-2022-225871 PoCKEVA memory corruption issue was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, macOS Big Sur…
- CVE-2022-226001 PoCThe issue was addressed with improved permissions logic. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3,…
- CVE-2022-226161 PoCThis issue was addressed with improved checks. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big…
- CVE-2022-226205 PoCsKEVA use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.2.1, iOS 15.3.1 and iPadOS…
- CVE-2022-226291 PoCA buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.3, Safari 15.4, watchOS 8.5,…
- CVE-2022-226391 PoCA logic issue was addressed with improved state management. This issue is fixed in iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3. An…
- CVE-2022-226721 PoCA memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 15.4 and iPadOS 15.4, Security Update…
- CVE-2022-226751 PoCKEVAn out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.5, watchOS 8.6, macOS Big Sur…
- CVE-2022-227001 PoCCyberArk Identity versions up to and including 22.1 in the 'StartAuthentication' resource, exposes the response header 'X-CFY-TX-TM'. In…
- CVE-2022-227011 PoCPartKeepr versions up to v1.4.0, loads attachments using a URL while creating a part and allows the use of the 'file://' URI scheme,…
- CVE-2022-227021 PoCPartKeepr versions up to v1.4.0, in the functionality to upload attachments using a URL when creating a part does not validate that…
- CVE-2022-227062 PoCsKEVArm Mali GPU Kernel Driver allows a non-privileged user to achieve write access to read-only memory pages. This affects Midgard r26p0…
- CVE-2022-227184 PoCsKEVWindows Print Spooler Elevation of Privilege Vulnerability
- CVE-2022-227201 PoCHTTP request smuggling vulnerability in Apache HTTP Server 2.4.52 and earlier
- CVE-2022-227332 PoCsAccess-Token in ElasticJob UI causes password disclosure
- CVE-2022-227341 PoCSimple Quotation <= 1.3.2 - Quote Creation/Edition via CSRF to Stored Cross-Site Scripting
- CVE-2022-227351 PoCSimple Quotation <= 1.3.2 - Subscriber+ SQL injection
- CVE-2022-227371 PoCConstructing audio sinks could have lead to a race condition when playing audio files and closing windows. This could have lead to a…
- CVE-2022-227391 PoCMalicious websites could have tricked users into accepting launching a program to handle an external URL protocol. This vulnerability…
- CVE-2022-227401 PoCCertain network request objects were freed too early when releasing a network request handle. This could have lead to a use-after-free…
- CVE-2022-227481 PoCMalicious websites could have confused Firefox into showing the wrong origin when asking to launch a program and handling an external URL…
- CVE-2022-227531 PoCA Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write access to an…
- CVE-2022-227561 PoCIf a user was convinced to drag and drop an image to their desktop or other folder, the resulting object could have been changed into an…
- CVE-2022-228141 PoCThe System Diagnosis service of MyASUS before 3.1.2.0 allows privilege escalation.
- CVE-2022-228181 PoCThe {% debug %} template tag in Django 2.2 before 2.2.27, 3.2 before 3.2.12, and 4.0 before 4.0.2 does not properly encode the current…
- CVE-2022-228191 PoCNXP LPC55S66JBD64, LPC55S66JBD100, LPC55S66JEV98, LPC55S69JBD64, LPC55S69JBD100, and LPC55S69JEV98 microcontrollers (ROM version 1B) have…
- CVE-2022-228221 PoCaddBinding in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
- CVE-2022-228271 PoCstoreAtts in xmlparse.c in Expat (aka libexpat) before 2.4.3 has an integer overflow.
- CVE-2022-228281 PoCAn insecure direct object reference for the file-download URL in Synametrics SynaMan before 5.0 allows a remote attacker to access…
- CVE-2022-228312 PoCsAn issue was discovered in Servisnet Tessa 0.0.2. An attacker can add a new sysadmin user via a manipulation of the Authorization HTTP…
- CVE-2022-228324 PoCsAn issue was discovered in Servisnet Tessa 0.0.2. Authorization data is available via an unauthenticated /data-service/users/ request.
- CVE-2022-228334 PoCsAn issue was discovered in Servisnet Tessa 0.0.2. An attacker can obtain sensitive information via a /js/app.js request.
- CVE-2022-228341 PoCAn issue was discovered in OverIT Geocall before 8.0. An authenticated user who has the Test Trasformazione XSL functionality enabled can…
- CVE-2022-228351 PoCAn issue was discovered in OverIT Geocall before version 8.0. An authenticated user who has the Test Trasformazione XSL functionality…
- CVE-2022-228362 PoCsCoreFTP Server before 727 allows directory traversal (for file creation) by an authenticated attacker via ../ in an HTTP PUT request.
- CVE-2022-228441 PoCLibTIFF 4.3.0 has an out-of-bounds read in _TIFFmemcpy in tif_unix.c in certain situations involving a custom tag and 0x0200 as the second…
- CVE-2022-228451 PoCQXIP SIPCAPTURE homer-app before 1.4.28 for HOMER 7.x has the same 167f0db2-f83e-4baa-9736-d56064a5b415 JWT secret key across different…
- CVE-2022-228501 PoCA Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System 1.0 via the…
- CVE-2022-228511 PoCA Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System 1.0 via the…
- CVE-2022-228521 PoCA Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodtester Hospital's Patient Records Management System 1.0 via the…
- CVE-2022-228531 PoCA stored cross-site scripting (XSS) vulnerability in Hospital Patient Record Management System v1.0 allows attackers to execute arbitrary…
- CVE-2022-228901 PoCThere is an Assertion 'arguments_type != SCANNER_ARGUMENTS_PRESENT && arguments_type != SCANNER_ARGUMENTS_PRESENT_NO_REG' failed at…
- CVE-2022-228911 PoCJerryscript 3.0.0 was discovered to contain a SEGV vulnerability via ecma_ref_object_inline in /jerry-core/ecma/base/ecma-gc.c.
- CVE-2022-228921 PoCThere is an Assertion 'ecma_is_value_undefined (value) || ecma_is_value_null (value) || ecma_is_value_boolean (value) ||…
- CVE-2022-228931 PoCJerryscript 3.0.0 was discovered to contain a stack overflow via vm_loop.lto_priv.304 in /jerry-core/vm/vm.c.
- CVE-2022-228941 PoCJerryscript 3.0.0 was discovered to contain a stack overflow via ecma_lcache_lookup in /jerry-core/ecma/base/ecma-lcache.c.
- CVE-2022-228951 PoCJerryscript 3.0.0 was discovered to contain a heap-buffer-overflow via ecma_utf8_string_to_number_by_radix in…
- CVE-2022-228973 PoCsA SQL injection vulnerability in the product_all_one_img and image_product parameters of the ApolloTheme AP PageBuilder component through…
- CVE-2022-228991 PoCCore FTP / SFTP Server v2 Build 725 was discovered to allow unauthenticated attackers to cause a Denial of Service (DoS) via a crafted…
- CVE-2022-229011 PoCThere is an Assertion in 'context_p->next_scanner_info_p->type == SCANNER_TYPE_FUNCTION' failed at parser_parse_function_arguments in…
- CVE-2022-229093 PoCsHotelDruid v3.0.3 was discovered to contain a remote code execution (RCE) vulnerability which is exploited via an attacker inserting a…
- CVE-2022-2291613 PoCsO2OA v6.4.7 was discovered to contain a remote code execution (RCE) vulnerability via /x_program_center/jaxrs/invoke.
- CVE-2022-229221 PoCTP-Link TL-WA850RE Wi-Fi Range Extender before v6_200923 was discovered to use highly predictable and easily detectable session keys,…
- CVE-2022-229311 PoCPath traversal in Apache James 3.6.1
- CVE-2022-229321 PoCPath traversal flaws
- CVE-2022-229421 PoCThe vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by…
- CVE-2022-2294789 PoCsKEVIn spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack when the Gateway…
- CVE-2022-229482 PoCsKEVThe vCenter Server contains an information disclosure vulnerability due to improper permission of files. A malicious actor with…
- CVE-2022-2295435 PoCsKEVVMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection. A…
- CVE-2022-229563 PoCsVMware Workspace ONE Access has two authentication bypass vulnerabilities (CVE-2022-22955 & CVE-2022-22956) in the OAuth2 ACS framework. A…
- CVE-2022-229571 PoCVMware Workspace ONE Access, Identity Manager and vRealize Automation contain two remote code execution vulnerabilities (CVE-2022-22957 &…
- CVE-2022-229607 PoCsKEVVMware Workspace ONE Access, Identity Manager and vRealize Automation contain a privilege escalation vulnerability due to improper…
- CVE-2022-2296343 PoCsKEVIn Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user…
- CVE-2022-22965126 PoCsKEVA Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding. The…
- CVE-2022-229682 PoCsIn Spring Framework versions 5.3.0 - 5.3.18, 5.2.0 - 5.2.20, and older unsupported versions, the patterns for disallowedFields on a…
- CVE-2022-229701 PoCIn spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, applications that handle file uploads are vulnerable…
- CVE-2022-229711 PoCIn spring framework versions prior to 5.3.20+ , 5.2.22+ and old unsupported versions, application with a STOMP over WebSocket endpoint is…
- CVE-2022-229729 PoCsVMware Workspace ONE Access, Identity Manager and vRealize Automation contain an authentication bypass vulnerability affecting local…
- CVE-2022-229761 PoCSpring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, and earlier unsupported versions contain an integer overflow…
- CVE-2022-229788 PoCsIn spring security versions prior to 5.4.11+, 5.5.7+ , 5.6.4+ and older unsupported versions, RegexRequestMatcher can easily be…
- CVE-2022-229806 PoCsA Spring Data MongoDB application is vulnerable to SpEL Injection when using @Query or @Aggregation-annotated query methods with SpEL…
- CVE-2022-229848 PoCsCommand Injection