CVE-2022-35000 to CVE-2022-35999
183 CVEs with public proof-of-concept exploits.
- CVE-2022-350141 PoCAdvancecomp v2.3 contains a segmentation fault.
- CVE-2022-350152 PoCsAdvancecomp v2.3 was discovered to contain a heap buffer overflow via le_uint32_read at /lib/endianrw.h.
- CVE-2022-350162 PoCsAdvancecomp v2.3 was discovered to contain a heap buffer overflow.
- CVE-2022-350171 PoCAdvancecomp v2.3 was discovered to contain a heap buffer overflow.
- CVE-2022-350181 PoCAdvancecomp v2.3 was discovered to contain a segmentation fault.
- CVE-2022-350191 PoCAdvancecomp v2.3 was discovered to contain a segmentation fault.
- CVE-2022-350202 PoCsAdvancecomp v2.3 was discovered to contain a heap buffer overflow via the component __interceptor_memcpy at…
- CVE-2022-350211 PoCOTFCC commit 617837b was discovered to contain a global buffer overflow via /release-x64/otfccdump+0x718693.
- CVE-2022-350221 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x6badae.
- CVE-2022-350231 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /lib/x86_64-linux-gnu/libc.so.6+0xbb384.
- CVE-2022-350241 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /multiarch/memmove-vec-unaligned-erms.S.
- CVE-2022-350251 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x5266a8.
- CVE-2022-350261 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x4fbc0b.
- CVE-2022-350271 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x4fe9a7.
- CVE-2022-350281 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x4fbbb6.
- CVE-2022-350291 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x6babea.
- CVE-2022-350301 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x4fe954.
- CVE-2022-350311 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x703969.
- CVE-2022-350321 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x6b6a8f.
- CVE-2022-350341 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e7e3d.
- CVE-2022-350351 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b559f.
- CVE-2022-350361 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e1fc8.
- CVE-2022-350371 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6adb1e.
- CVE-2022-350381 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b064d.
- CVE-2022-350391 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e20a0.
- CVE-2022-350401 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b5567.
- CVE-2022-350411 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b558f.
- CVE-2022-350421 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x4adb11.
- CVE-2022-350431 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6c08a6.
- CVE-2022-350441 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x617087.
- CVE-2022-350451 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b0d63.
- CVE-2022-350461 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b0466.
- CVE-2022-350471 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b05aa.
- CVE-2022-350481 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b0b2c.
- CVE-2022-350491 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b03b5.
- CVE-2022-350501 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b04de.
- CVE-2022-350511 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b55af.
- CVE-2022-350521 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b84b1.
- CVE-2022-350531 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x61731f.
- CVE-2022-350541 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6171b2.
- CVE-2022-350551 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6c0473.
- CVE-2022-350561 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b0478.
- CVE-2022-350581 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b05ce.
- CVE-2022-350591 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6c0414.
- CVE-2022-350602 PoCsOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6c0a32.
- CVE-2022-350612 PoCsOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e412a.
- CVE-2022-350621 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6c0bc3.
- CVE-2022-350631 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e41a8.
- CVE-2022-350641 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x4adcdb in __asan_memset.
- CVE-2022-350651 PoCOTFCC commit 617837b was discovered to contain a segmentation violation via /release-x64/otfccdump+0x65f724.
- CVE-2022-350661 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e41b8.
- CVE-2022-350671 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e41b0.
- CVE-2022-350681 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6e420d.
- CVE-2022-350691 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x6b544e.
- CVE-2022-350701 PoCOTFCC commit 617837b was discovered to contain a heap buffer overflow via /release-x64/otfccdump+0x65fc97.
- CVE-2022-350801 PoCSWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_load at /lib/png.c.
- CVE-2022-350811 PoCSWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_read_header at /src/png2swf.c.
- CVE-2022-350851 PoCSWFTools commit 772e55a2 was discovered to contain a memory leak via /lib/mem.c.
- CVE-2022-350861 PoCSWFTools commit 772e55a2 was discovered to contain a segmentation violation via /multiarch/memmove-vec-unaligned-erms.S.
- CVE-2022-350871 PoCSWFTools commit 772e55a2 was discovered to contain a segmentation violation via MovieAddFrame at /src/gif2swf.c.
- CVE-2022-350881 PoCSWFTools commit 772e55a2 was discovered to contain a heap buffer-overflow via getGifDelayTime at…
- CVE-2022-350891 PoCSWFTools commit 772e55a2 was discovered to contain a heap-buffer-overflow via getTransparentColor at…
- CVE-2022-350901 PoCSWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via __asan_memcpy at /asan/asan_interceptors_memintrinsics.cpp:.
- CVE-2022-350911 PoCSWFTools commit 772e55a2 was discovered to contain a floating point exception (FPE) via DCTStream::readMCURow() at /xpdf/Stream.cc.ow()
- CVE-2022-350921 PoCSWFTools commit 772e55a2 was discovered to contain a segmentation violation via convert_gfxline at /gfxpoly/convert.c.
- CVE-2022-350931 PoCSWFTools commit 772e55a2 was discovered to contain a global buffer overflow via DCTStream::transformDataUnit at /xpdf/Stream.cc.
- CVE-2022-350941 PoCSWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via DCTStream::readHuffSym(DCTHuffTable*) at /xpdf/Stream.cc.
- CVE-2022-350951 PoCSWFTools commit 772e55a2 was discovered to contain a segmentation violation via InfoOutputDev::type3D1 at /pdf/InfoOutputDev.cc.
- CVE-2022-350961 PoCSWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via draw_stroke at /gfxpoly/stroke.c.
- CVE-2022-350971 PoCSWFTools commit 772e55a2 was discovered to contain a segmentation violation via FoFiTrueType::writeTTF at /xpdf/FoFiTrueType.cc.
- CVE-2022-350981 PoCSWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via GfxICCBasedColorSpace::getDefaultColor(GfxColor*) at…
- CVE-2022-350991 PoCSWFTools commit 772e55a2 was discovered to contain a stack overflow via ImageStream::getPixel(unsigned char*) at /xpdf/Stream.cc.
- CVE-2022-351071 PoCSWFTools commit 772e55a2 was discovered to contain a stack overflow via vfprintf at /stdio-common/vfprintf.c.
- CVE-2022-351081 PoCSWFTools commit 772e55a2 was discovered to contain a segmentation violation via DCTStream::getChar() at /xpdf/Stream.cc.
- CVE-2022-351091 PoCSWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via draw_stroke at /gfxpoly/stroke.c.
- CVE-2022-351101 PoCSWFTools commit 772e55a2 was discovered to contain a memory leak via /lib/mem.c.
- CVE-2022-351111 PoCSWFTools commit 772e55a2 was discovered to contain a stack overflow via __sanitizer::StackDepotNode::hash(__sanitizer::StackTrace const&)…
- CVE-2022-351221 PoCAn access control issue in Ecowitt GW1100 Series Weather Stations <=GW1100B_v2.1.5 allows unauthenticated attackers to access sensitive…
- CVE-2022-351311 PoCJoplin v2.8.8 allows attackers to execute arbitrary commands via a crafted payload injected into the Node titles.
- CVE-2022-351321 PoCUsermin through 1.850 allows a remote authenticated user to execute OS commands via command injection in a filename for the GPG module.
- CVE-2022-351341 PoCBoodskap IoT Platform v4.4.9-02 contains a cross-site scripting (XSS) vulnerability.
- CVE-2022-351351 PoCBoodskap IoT Platform v4.4.9-02 allows attackers to escalate privileges via a crafted request sent to /api/user/upsert/<uuid>.
- CVE-2022-351361 PoCBoodskap IoT Platform v4.4.9-02 allows attackers to make unauthenticated API requests.
- CVE-2022-351371 PoCDGIOT Lightweight industrial IoT v4.5.4 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities.
- CVE-2022-351471 PoCDoraCMS v2.18 and earlier allows attackers to bypass login authentication via a crafted HTTP request.
- CVE-2022-351501 PoCBaijicms v4 was discovered to contain an arbitrary file upload vulnerability.
- CVE-2022-351512 PoCskkFileView v4.1.0 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities via the urls and currentUrl parameters at…
- CVE-2022-351541 PoCShopro Mall System v1.3.8 was discovered to contain a SQL injection vulnerability via the value parameter.
- CVE-2022-351552 PoCsBus Pass Management System v1.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the searchdata parameter.
- CVE-2022-351562 PoCsBus Pass Management System 1.0 was discovered to contain a SQL Injection vulnerability via the searchdata parameter at…
- CVE-2022-351641 PoCLibreDWG v0.12.4.4608 & commit f2dea29 was discovered to contain a heap use-after-free via bit_copy_chain.
- CVE-2022-351651 PoCAn issue in AP4_SgpdAtom::AP4_SgpdAtom() of Bento4-1.6.0-639 allows attackers to cause a Denial of Service (DoS) via a crafted mp4 input.
- CVE-2022-351661 PoClibjpeg commit 842c7ba was discovered to contain an infinite loop via the component JPEG::ReadInternal.
- CVE-2022-351731 PoCAn issue was discovered in Nginx NJS v0.7.5. The JUMP offset for a break instruction was not set to a correct offset during code…
- CVE-2022-351741 PoCA stored cross-site scripting (XSS) vulnerability in Kirby's Starterkit v3.7.0.2 allows attackers to execute arbitrary web scripts or HTML…
- CVE-2022-351931 PoCTestLink v1.9.20 was discovered to contain a SQL injection vulnerability via /lib/execute/execNavigator.php.
- CVE-2022-351941 PoCTestLink v1.9.20 was discovered to contain a stored cross-site scripting (XSS) vulnerability via /lib/inventory/inventoryView.php.
- CVE-2022-351951 PoCTestLink 1.9.20 Raijin was discovered to contain a broken access control vulnerability at /lib/attachments/attachmentdownload.php
- CVE-2022-351961 PoCTestLink v1.9.20 was discovered to contain a Cross-Site Request Forgery (CSRF) via /lib/plan/planView.php.
- CVE-2022-352041 PoCVitejs Vite before v2.9.13 was discovered to allow attackers to perform a directory traversal via a crafted URL to the victim's service.
- CVE-2022-352061 PoCNull pointer dereference vulnerability in Binutils readelf 2.38.50 via function read_and_display_attr_value in file dwarf.c.
- CVE-2022-352131 PoCEcommerce-CodeIgniter-Bootstrap before commit 56465f was discovered to contain a cross-site scripting (XSS) vulnerability via the function…
- CVE-2022-352441 PoCA format string injection vulnerability exists in the XCMD getVarHA functionality of abode systems, inc. iota All-In-One Security Kit 6.9X…
- CVE-2022-352611 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352621 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352631 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352641 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352651 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352661 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352671 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352681 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352691 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352701 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352711 PoCA denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted…
- CVE-2022-352952 PoCsIn SAP Host Agent (SAPOSCOL) - version 7.22, an attacker may use files created by saposcol to escalate privileges for themselves.
- CVE-2022-354011 PoCAn authentication bypass vulnerability exists in the get_IFTTTTtoken.cgi functionality of Asus RT-AX82U 3.0.0.4.386_49674-ge182230. A…
- CVE-2022-354055 PoCsKEVZoho ManageEngine Password Manager Pro before 12101 and PAM360 before 5510 are vulnerable to unauthenticated remote code execution. (This…
- CVE-2022-354115 PoCsrpc.py through 0.6.0 allows Remote Code Execution because an unpickle occurs when the "serializer: pickle" HTTP header is sent. In other…
- CVE-2022-354131 PoCWAPPLES through 6.0 has a hardcoded systemi account. A threat actor could use this account to access the system configuration and…
- CVE-2022-354141 PoCsoftmmu/physmem.c in QEMU through 7.0.0 can perform an uninitialized read on the translate_fail path, leading to an io_readx or io_writex…
- CVE-2022-354162 PoCsH3C SSL VPN through 2022-07-10 allows wnm/login/login.json svpnlang cookie XSS.
- CVE-2022-354932 PoCsA Cross-site scripting (XSS) vulnerability in json search parse and the json response in wrteam.in, eShop - Multipurpose Ecommerce Store…
- CVE-2022-355001 PoCAmasty Blog 2.10.3 is vulnerable to Cross Site Scripting (XSS) via leave comment functionality.
- CVE-2022-355011 PoCStored Cross-site Scripting (XSS) exists in the Amasty Blog Pro 2.10.3 and 2.10.4 plugin for Magento 2 because of the duplicate post…
- CVE-2022-355051 PoCA segmentation fault in TripleCross v0.1.0 occurs when sending a control command from the client to the server. This occurs because there…
- CVE-2022-355061 PoCTripleCross v0.1.0 was discovered to contain a stack overflow which occurs because there is no limit to the length of program parameters.
- CVE-2022-355071 PoCA response-header CRLF injection vulnerability in the Proxmox Virtual Environment (PVE) and Proxmox Mail Gateway (PMG) web interface…
- CVE-2022-355134 PoCsThe Blink1Control2 application <= 2.2.7 uses weak password encryption and an insecure method of storage.
- CVE-2022-355161 PoCDedeCMS v5.7.93 - v5.7.96 was discovered to contain a remote code execution vulnerability in login.php.
- CVE-2022-355171 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters: web_pskValue, wl_Method, wlan_ssid,…
- CVE-2022-355181 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 nas.cgi has no filtering on parameters: User1Passwd and User1, which leads to command…
- CVE-2022-355191 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameter add_mac, which leads to command injection…
- CVE-2022-355201 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 api.cgi has no filtering on parameter ufconf, and this is a hidden parameter which…
- CVE-2022-355211 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameters: remoteManagementEnabled,…
- CVE-2022-355221 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters: ppp_username, ppp_passwd, rwan_gateway,…
- CVE-2022-355231 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 firewall.cgi has no filtering on parameter del_mac and parameter flag, which leads to…
- CVE-2022-355241 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameters: wlan_signal, web_pskValue, sel_EncrypTyp,…
- CVE-2022-355251 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 adm.cgi has no filtering on parameter led_switch, which leads to command injection in…
- CVE-2022-355261 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 login.cgi has no filtering on parameter key, which leads to command injection in page…
- CVE-2022-355331 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 qos.cgi has no filtering on parameters: cli_list and cli_num, which leads to command…
- CVE-2022-355341 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter hiddenSSID32g and SSID2G2, which leads to…
- CVE-2022-355351 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameter macAddr, which leads to command injection…
- CVE-2022-355361 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 qos.cgi has no filtering on parameters: qos_bandwith and qos_dat, which leads to…
- CVE-2022-355371 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameters: mac_5g and Newname, which leads to…
- CVE-2022-355381 PoCWAVLINK WN572HP3, WN533A8, WN530H4, WN535G3, WN531P3 wireless.cgi has no filtering on parameters: delete_list, delete_al_mac,…
- CVE-2022-355832 PoCswkhtmlTOpdf 0.12.6 is vulnerable to SSRF which allows an attacker to get initial access into the target's system by injecting iframe tag…
- CVE-2022-355851 PoCA stored cross-site scripting (XSS) issue in the ForkCMS version 5.9.3 allows remote attackers to inject JavaScript via the "start_date"…
- CVE-2022-355871 PoCA cross-site scripting (XSS) issue in the Fork version 5.9.3 allows remote attackers to inject JavaScript via the "publish_on_date"…
- CVE-2022-355891 PoCA cross-site scripting (XSS) issue in the Fork version 5.9.3 allows remote attackers to inject JavaScript via the "publish_on_time"…
- CVE-2022-355901 PoCA cross-site scripting (XSS) issue in the ForkCMS version 5.9.3 allows remote attackers to inject JavaScript via the "end_date" Parameter
- CVE-2022-356111 PoCA Cross-Site Request Forgery (CSRF) in MQTTRoute v3.3 and below allows attackers to create and remove dashboards.
- CVE-2022-356121 PoCA cross-site scripting (XSS) vulnerability in MQTTRoute v3.3 and below allows attackers to execute arbitrary web scripts or HTML via a…
- CVE-2022-356211 PoCAccess control vulnerability in Evoh NFT EvohClaimable contract with sha256 hash code…
- CVE-2022-356241 PoCIn Nordic nRF5 SDK for Mesh 5.0, a heap overflow vulnerability can be triggered by sending a series of segmented packets with SegO > SegN
- CVE-2022-356491 PoCThe vulnerability was found in Moodle, occurs due to improper input validation when parsing PostScript code. An omitted execution…
- CVE-2022-356501 PoCThe vulnerability was found in Moodle, occurs due to input validation error when importing lesson questions. This insufficient path checks…
- CVE-2022-356531 PoCA reflected XSS issue was identified in the LTI module of Moodle. The vulnerability exists due to insufficient sanitization of…
- CVE-2022-357373 PoCsSQLite 1.0.12 through 3.39.x before 3.39.2 sometimes allows an array-bounds overflow if billions of bytes are used in a string argument to…
- CVE-2022-357391 PoCPRTG Network Monitor through 22.2.77.2204 does not prevent custom input for a device’s icon, which can be modified to insert arbitrary…
- CVE-2022-358411 PoCWindows Enterprise App Management Service Remote Code Execution Vulnerability
- CVE-2022-358691 PoCThis vulnerability allows remote attackers to bypass authentication on affected installations of Inductive Automation Ignition 8.1.15…
- CVE-2022-358741 PoCFour format string injection vulnerabilities exist in the XCMD testWifiAP functionality of Abode Systems, Inc. iota All-In-One Security…
- CVE-2022-358751 PoCFour format string injection vulnerabilities exist in the XCMD testWifiAP functionality of Abode Systems, Inc. iota All-In-One Security…
- CVE-2022-358761 PoCFour format string injection vulnerabilities exist in the XCMD testWifiAP functionality of Abode Systems, Inc. iota All-In-One Security…
- CVE-2022-358771 PoCFour format string injection vulnerabilities exist in the XCMD testWifiAP functionality of Abode Systems, Inc. iota All-In-One Security…
- CVE-2022-358781 PoCFour format string injection vulnerabilities exist in the UPnP logging functionality of Abode Systems, Inc. iota All-In-One Security Kit…
- CVE-2022-358791 PoCFour format string injection vulnerabilities exist in the UPnP logging functionality of Abode Systems, Inc. iota All-In-One Security Kit…
- CVE-2022-358801 PoCFour format string injection vulnerabilities exist in the UPnP logging functionality of Abode Systems, Inc. iota All-In-One Security Kit…
- CVE-2022-358811 PoCFour format string injection vulnerabilities exist in the UPnP logging functionality of Abode Systems, Inc. iota All-In-One Security Kit…
- CVE-2022-358841 PoCFour format string injection vulnerabilities exist in the web interface /action/wirelessConnect functionality of Abode Systems, Inc. iota…
- CVE-2022-358851 PoCFour format string injection vulnerabilities exist in the web interface /action/wirelessConnect functionality of Abode Systems, Inc. iota…
- CVE-2022-358861 PoCFour format string injection vulnerabilities exist in the web interface /action/wirelessConnect functionality of Abode Systems, Inc. iota…
- CVE-2022-358871 PoCFour format string injection vulnerabilities exist in the web interface /action/wirelessConnect functionality of Abode Systems, Inc. iota…
- CVE-2022-358901 PoCAn issue was discovered in Inductive Automation Ignition before 7.9.20 and 8.x before 8.1.17. Designer and Vision Client Session IDs are…
- CVE-2022-358993 PoCsThere is an unquoted service path in ASUSTeK Aura Ready Game SDK service (GameSDK.exe) 1.0.0.4. This might allow a local user to escalate…
- CVE-2022-359101 PoCIn Jellyfin before 10.8, stored XSS allows theft of an admin access token.
- CVE-2022-359111 PoCOn Patlite NH-FB series devices through 1.46, remote attackers can cause a denial of service by omitting the query string. NOTE: the…
- CVE-2022-3591418 PoCsKEV/vendor/htmlawed/htmlawed/htmLawedTest.php in the htmlawed module for GLPI through 10.0.2 allows PHP code injection.
- CVE-2022-359191 PoCAuthenticated requests for server update admin API allows path traversal in minio
- CVE-2022-359231 PoCInefficient Regular Expression Complexity in v8n
- CVE-2022-359251 PoCMissing rate limit in Authentication in bookwyrm
- CVE-2022-359531 PoCURL Redirection to Untrusted Site ('Open Redirect') in bookwyrm
- CVE-2022-359781 PoCLua sandbox escape from mod in Minetest