CVE-2022-27000 to CVE-2022-27999
125 CVEs with public proof-of-concept exploits.
- CVE-2022-270031 PoCTotolink routers s X5000R V9.1.0u.6118_B20201102 and A7000R V9.1.0u.6115_B20201022 were discovered to contain a command injection…
- CVE-2022-270071 PoCnginx njs 0.7.2 is affected suffers from Use-after-free in njs_function_frame_alloc() when it try to invoke from a restored frame saved…
- CVE-2022-270081 PoCnginx njs 0.7.2 is vulnerable to Buffer Overflow. Type confused in Array.prototype.concat() when a slow array appended element is fast…
- CVE-2022-270161 PoCThere is a stack overflow vulnerability in the SetStaticRouteCfg() function in the httpd service of Tenda AC9 15.03.2.21_cn.
- CVE-2022-270221 PoCThere is a stack overflow vulnerability in the SetSysTimeCfg() function in the httpd service of Tenda AC9 V15.03.2.21_cn. The attacker can…
- CVE-2022-270411 PoCDue to lack of protection, parameter student_id in OpenSIS Classic 8.0 /modules/eligibility/Student.php can be used to inject SQL queries…
- CVE-2022-270431 PoCYearning versions 2.3.1 and 2.3.2 Interstellar GA and 2.3.4 - 2.3.6 Neptune is vulnerable to Directory Traversal.
- CVE-2022-270441 PoClibsixel 1.8.6 is affected by Buffer Overflow in libsixel/src/quant.c:876.
- CVE-2022-270461 PoClibsixel 1.8.6 suffers from a Heap Use After Free vulnerability in in libsixel/src/dither.c:388.
- CVE-2022-270612 PoCsAeroCMS v0.0.1 was discovered to contain an arbitrary file upload vulnerability via the Post Image function under the Admin panel. This…
- CVE-2022-270622 PoCsAeroCMS v0.0.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability via add_post.php. This vulnerability allows…
- CVE-2022-270632 PoCsAeroCMS v0.0.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability via view_all_comments.php. This vulnerability…
- CVE-2022-270642 PoCsMusical World v1 was discovered to contain an arbitrary file upload vulnerability via uploaded_songs.php. This vulnerability allows…
- CVE-2022-270831 PoCTenda M3 1.10 V1.0.0.12(4856) was discovered to contain a command injection vulnerability via the component /cgi-bin/uploadAccessCodePic.
- CVE-2022-270941 PoCSony PlayMemories Home v6.0 contains an unquoted service path which allows attackers to escalate privileges to the system level.
- CVE-2022-270951 PoCBattlEye v0.9 contains an unquoted service path which allows attackers to escalate privileges to the system level.
- CVE-2022-271141 PoCThere is a vulnerability in htmldoc 1.9.16. In image_load_jpeg function image.cxx when it calls malloc,'img->width' and 'img->height' they…
- CVE-2022-271341 PoCEOSIO batdappboomx v327c04cf has an Access-control vulnerability in the `transfer` function of the smart contract which allows remote…
- CVE-2022-271352 PoCsxpdf 4.03 has heap buffer overflow in the function readXRefTable located in XRef.cc. An attacker can exploit this bug to cause a Denial of…
- CVE-2022-271391 PoCAn arbitrary file upload vulnerability in the file upload module of Ghost v4.39.0 allows attackers to execute arbitrary code via a crafted…
- CVE-2022-271451 PoCGPAC mp4box 1.1.0-DEV-rev1727-g8be34973d-master has a stack-overflow vulnerability in function gf_isom_get_sample_for_movie_time of mp4box.
- CVE-2022-271461 PoCGPAC mp4box 1.1.0-DEV-rev1759-geb2d1e6dd-has a heap-buffer-overflow vulnerability in function gf_isom_apple_enum_tag.
- CVE-2022-271471 PoCGPAC mp4box 1.1.0-DEV-rev1727-g8be34973d-master has a use-after-free vulnerability in function gf_node_get_attribute_by_tag.
- CVE-2022-271481 PoCGPAC mp4box 1.1.0-DEV-rev1663-g881c6a94a-master is vulnerable to Integer Overflow.
- CVE-2022-271691 PoCAn information disclosure vulnerability exists in the OAS Engine SecureBrowseFile functionality of Open Automation Software OAS Platform…
- CVE-2022-271721 PoCA hard-coded password vulnerability exists in the console infactory functionality of InHand Networks InRouter302 V3.5.37. A…
- CVE-2022-271781 PoCA denial of service vulnerability exists in the confctl_set_wan_cfg functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A…
- CVE-2022-271851 PoCA denial of service vulnerability exists in the confctl_set_master_wlan functionality of TCL LinkHub Mesh Wifi MS1G_00_01.00_14. A…
- CVE-2022-272265 PoCsA CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16 allows a threat actor to create a crontab entry in the router…
- CVE-2022-272282 PoCsIn the vote (aka "Polls, Votes") module before 21.0.100 of Bitrix Site Manager, a remote unauthenticated attacker can execute arbitrary…
- CVE-2022-272491 PoCAn unrestricted file upload vulnerability in IdeaRE RefTree before 2021.09.17 allows remote authenticated users to execute arbitrary code…
- CVE-2022-272545 PoCsThe remote keyless system on Honda Civic 2018 vehicles sends the same RF signal for each door-open request, which allows for a replay…
- CVE-2022-272552 PoCsIn Realtek eCos RSDK 1.5.7p1 and MSDK 4.9.4p1, the SIP ALG function that rewrites SDP data has a stack-based buffer overflow. This allows…
- CVE-2022-272561 PoCA PHP Local File inclusion vulnerability in the Redbasic theme for Hubzilla before version 7.2 allows remote attackers to include…
- CVE-2022-272601 PoCAn arbitrary file upload vulnerability in the file upload component of ButterCMS v1.2.8 allows attackers to execute arbitrary code via a…
- CVE-2022-272611 PoCAn arbitrary file write vulnerability in Express-FileUpload v1.3.1 allows attackers to upload multiple files with the same name, causing…
- CVE-2022-272631 PoCAn arbitrary file upload vulnerability in the file upload module of Strapi v4.1.5 allows attackers to execute arbitrary code via a crafted…
- CVE-2022-272681 PoCInHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE)…
- CVE-2022-272691 PoCInHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE)…
- CVE-2022-272701 PoCInHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE)…
- CVE-2022-272711 PoCInHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE)…
- CVE-2022-272721 PoCInHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE)…
- CVE-2022-272731 PoCInHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE)…
- CVE-2022-272741 PoCInHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE)…
- CVE-2022-272751 PoCInHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE)…
- CVE-2022-272761 PoCInHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE)…
- CVE-2022-272991 PoCHospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the component room.php.
- CVE-2022-273041 PoCStudent Grading System v1.0 was discovered to contain a SQL injection vulnerability via the user parameter.
- CVE-2022-273082 PoCsA stored cross-site scripting (XSS) vulnerability in PHProjekt PhpSimplyGest v1.3.0 allows attackers to execute arbitrary web scripts or…
- CVE-2022-273301 PoCA cross-site scripting (XSS) vulnerability in /public/admin/index.php?add_product of E-Commerce Website v1.0 allows attackers to execute…
- CVE-2022-273372 PoCsA logic error in the Hints::Hints function of Poppler v22.03.0 allows attackers to cause a Denial of Service (DoS) via a crafted PDF file.
- CVE-2022-273462 PoCsEcommece-Website v1.1.0 was discovered to contain an arbitrary file upload vulnerability via /admin/index.php?slides. This vulnerability…
- CVE-2022-273482 PoCsSocial Codia SMS v1 was discovered to contain a stored cross-site scripting (XSS) vulnerability via add_post.php. This vulnerability…
- CVE-2022-273493 PoCsSocial Codia SMS v1 was discovered to contain an arbitrary file upload vulnerability via addteacher.php. This vulnerability allows…
- CVE-2022-273513 PoCsZoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacancy. This…
- CVE-2022-273522 PoCsSimple House Rental System v1 was discovered to contain an arbitrary file upload vulnerability via /app/register.php. This vulnerability…
- CVE-2022-273572 PoCsEcommerce-Website v1 was discovered to contain an arbitrary file upload vulnerability via /customer_register.php. This vulnerability…
- CVE-2022-273651 PoCCscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component dance_Dance.php_del.
- CVE-2022-273732 PoCsShanghai Feixun Data Communication Technology Co., Ltd router fir302b A2 was discovered to contain a remote command execution (RCE)…
- CVE-2022-273741 PoCTenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub_42E328 at…
- CVE-2022-273751 PoCTenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub_422168 at…
- CVE-2022-273781 PoCAn issue in the component Create_tmp_table::finalize of MariaDB Server v10.7 and below was discovered to allow attackers to cause a Denial…
- CVE-2022-273821 PoCMariaDB Server v10.7 and below was discovered to contain a segmentation fault via the component…
- CVE-2022-273851 PoCAn issue in the component Used_tables_and_const_cache::used_tables_and_const_cache_join of MariaDB Server v10.7 and below was discovered…
- CVE-2022-273861 PoCMariaDB Server v10.7 and below was discovered to contain a segmentation fault via the component sql/sql_class.cc.
- CVE-2022-273871 PoCMariaDB Server v10.7 and below was discovered to contain a global buffer overflow in the component decimal_bin_size, which is exploited…
- CVE-2022-274061 PoCFreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation violation via the function…
- CVE-2022-274111 PoCTOTOLINK N600R v5.3c.5507_B20171031 was discovered to contain a command injection vulnerability via the QUERY_STRING parameter in the…
- CVE-2022-274122 PoCsExplore CMS v1.0 was discovered to contain a SQL injection vulnerability via a /page.php?id= request.
- CVE-2022-274131 PoCHospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the adminname parameter in admin.php.
- CVE-2022-274311 PoCWuzhicms v4.1.0 was discovered to contain a SQL injection vulnerability via the groupid parameter at /coreframe/app/member/admin/group.php.
- CVE-2022-274321 PoCA Cross-Site Request Forgery (CSRF) in Pluck CMS v4.7.15 allows attackers to change the password of any given user by exploiting this…
- CVE-2022-274341 PoCUNIT4 TETA Mobile Edition (ME) before 29.5.HF17 was discovered to contain a SQL injection vulnerability via the ProfileName parameter in…
- CVE-2022-274352 PoCsAn unrestricted file upload at /public/admin/index.php?add_product of Ecommerce-Website v1.1.0 allows attackers to upload a webshell via…
- CVE-2022-274361 PoCA cross-site scripting (XSS) vulnerability in /public/admin/index.php?add_user at Ecommerce-Website v1.1.0 allows attackers to execute…
- CVE-2022-274383 PoCsCaphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are…
- CVE-2022-274441 PoCMariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_subselect.cc.
- CVE-2022-274451 PoCMariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/sql_window.cc.
- CVE-2022-274461 PoCMariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_cmpfunc.h.
- CVE-2022-274471 PoCMariaDB Server v10.9 and below was discovered to contain a use-after-free via the component Binary_string::free_buffer() at…
- CVE-2022-274481 PoCThere is an Assertion failure in MariaDB Server v10.9 and below via 'node->pcur->rel_pos == BTR_PCUR_ON' at /row/row0mysql.cc.
- CVE-2022-274491 PoCMariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_func.cc:148.
- CVE-2022-274511 PoCMariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/field_conv.cc.
- CVE-2022-274521 PoCMariaDB Server v10.9 and below was discovered to contain a segmentation fault via the component sql/item_cmpfunc.cc.
- CVE-2022-274551 PoCMariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component my_wildcmp_8bit_impl at…
- CVE-2022-274561 PoCMariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component VDec::VDec at /sql/sql_type.cc.
- CVE-2022-274571 PoCMariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component my_mb_wc_latin1 at /strings/ctype-latin1.c.
- CVE-2022-274681 PoCMonstaftp v2.10.3 was discovered to contain an arbitrary file upload which allows attackers to execute arbitrary code via a crafted file…
- CVE-2022-274691 PoCMonstaftp v2.10.3 was discovered to allow attackers to execute Server-Side Request Forgery (SSRF).
- CVE-2022-274741 PoCSuiteCRM v7.11.23 was discovered to allow remote code execution via a crafted payload injected into the FirstName text field.
- CVE-2022-275021 PoCRealVNC VNC Server 6.9.0 through 5.1.0 for Windows allows local privilege escalation because an installer repair operation executes %TEMP%…
- CVE-2022-275111 PoCCorruption of the system by a remote, unauthenticated user potentially leading to the reset of the administrator password
- CVE-2022-275121 PoCTemporary disruption of the ADM license service
- CVE-2022-275181 PoCKEVUnauthenticated remote arbitrary code execution
- CVE-2022-275931 PoCKEVDeadBolt Ransomware
- CVE-2022-276071 PoCBento4 1.6.0-639 has a heap-based buffer over-read in the AP4_HvccAtom class, a different issue than CVE-2018-14531.
- CVE-2022-276301 PoCAn information disclosure vulnerability exists in the confctl_get_master_wlan functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A…
- CVE-2022-276311 PoCA memory corruption vulnerability exists in the httpd unescape functionality of DD-WRT Revision 32270 - Revision 48599. A…
- CVE-2022-276331 PoCAn information disclosure vulnerability exists in the confctl_get_guest_wlan functionality of TCL LinkHub Mesh Wifi MS1G_00_01.00_14. A…
- CVE-2022-276601 PoCA denial of service vulnerability exists in the confctl_set_guest_wlan functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A…
- CVE-2022-276651 PoCReflected XSS (via AngularJS sandbox escape expressions) exists in Progress Ipswitch WS_FTP Server 8.6.0. This can lead to execution of…
- CVE-2022-276664 PoCsA heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local…
- CVE-2022-276682 PoCsDepending on the configuration of the route permission table in file 'saprouttab', it is possible for an unauthenticated attacker to…
- CVE-2022-277721 PoCspring-boot versions prior to version v2.2.11.RELEASE was vulnerable to temporary directory hijacking. This vulnerability impacted the…
- CVE-2022-277821 PoClibcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited…
- CVE-2022-278041 PoCAn os command injection vulnerability exists in the web interface util_set_abode_code functionality of Abode Systems, Inc. iota All-In-One…
- CVE-2022-278491 PoCWordPress Simple Ajax Chat plugin <= 20220115 - Sensitive Information Disclosure vulnerability
- CVE-2022-278811 PoCengine.c in slaacd in OpenBSD 6.9 and 7.0 before 2022-02-21 has a buffer overflow triggerable by an IPv6 router advertisement with more…
- CVE-2022-278821 PoCslaacd in OpenBSD 6.9 and 7.0 before 2022-03-22 has an integer signedness error and resultant heap-based buffer overflow triggerable by a…
- CVE-2022-279241 PoCKEVZimbra Collaboration (aka ZCS) 8.8.15 and 9.0 allows an unauthenticated attacker to inject arbitrary memcache commands into a targeted…
- CVE-2022-2792514 PoCsKEVZimbra Collaboration (aka ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. An…
- CVE-2022-279261 PoCKEVA reflected cross-site scripting (XSS) vulnerability in the /public/launchNewWindow.jsp component of Zimbra Collaboration (aka ZCS) 9.0…
- CVE-2022-279273 PoCsA SQL injection vulnerability exists in Microfinance Management System 1.0 when MySQL is being used as the application database. An…
- CVE-2022-279381 PoCstb_image.h (aka the stb image loader) 2.19, as used in libsixel and other products, has a reachable assertion in…
- CVE-2022-279391 PoCtcprewrite in Tcpreplay 4.4.1 has a reachable assertion in get_layer4_v6 in common/get.c.
- CVE-2022-279401 PoCtcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_ipv6_next in common/get.c.
- CVE-2022-279411 PoCtcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_l2len_protocol in common/get.c.
- CVE-2022-279421 PoCtcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parse_mpls in common/get.c.
- CVE-2022-279461 PoCNETGEAR R8500 1.0.2.158 devices allow remote authenticated users to execute arbitrary commands (such as telnetd) via shell metacharacters…
- CVE-2022-279521 PoCAn arbitrary file upload vulnerability in the file upload module of PayloadCMS v0.15.0 allows attackers to execute arbitrary code via a…
- CVE-2022-279581 PoCInsecure permissions configured in the userid parameter at /user/getuserprofile of FEBS-Security v1.0 allows attackers to access and…
- CVE-2022-279842 PoCsCuppaCMS v1.0 was discovered to contain a SQL injection vulnerability via the menu_filter parameter at…
- CVE-2022-279852 PoCsCuppaCMS v1.0 was discovered to contain a SQL injection vulnerability via /administrator/alerts/alertLightbox.php.
- CVE-2022-279911 PoCOnline Banking System in PHP v1 was discovered to contain multiple SQL injection vulnerabilities at /staff_login.php via the Staff ID and…
- CVE-2022-279922 PoCsZoo Management System v1.0 was discovered to contain a SQL injection vulnerability at /public_html/animals via the class_id parameter.