Latest CVE Feed
-
5.5
MEDIUMCVE-2022-42386
This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious fil... Read more
- Published: Jan. 26, 2023
- Modified: Nov. 27, 2024
-
5.5
MEDIUMCVE-2022-43611
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506. User interaction is required to exploit this vulnerability in that the target must visit a malicious page ... Read more
Affected Products : coreldraw- Published: Mar. 29, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-44315
PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the ExpressionAssign function in expression.c when called from ExpressionParseFunctionCall.... Read more
Affected Products : picoc- Published: Nov. 08, 2022
- Modified: May. 01, 2025
-
5.5
MEDIUMCVE-2022-44441
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.... Read more
- Published: Jan. 04, 2023
- Modified: Apr. 10, 2025
-
5.5
MEDIUMCVE-2022-44647
An Out-of-bounds read vulnerability in Trend Micro Apex One and Apex One as a Service could allow a local attacker to disclose sensitive information on affected installations. Please note: an attacker must first obtain the ability to execute low-privil... Read more
- Published: Dec. 12, 2022
- Modified: Apr. 29, 2025
-
5.5
MEDIUMCVE-2022-45468
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.... Read more
- Published: Mar. 21, 2023
- Modified: Jan. 17, 2025
-
5.5
MEDIUMCVE-2022-45473
In drachtio-server 0.8.18, /var/log/drachtio has mode 0777 and drachtio.log has mode 0666.... Read more
Affected Products : drachtio-server- Published: Nov. 18, 2022
- Modified: Apr. 30, 2025
-
5.5
MEDIUMCVE-2022-36149
tifig v0.2.2 was discovered to contain a heap-use-after-free via temInfoEntry().... Read more
Affected Products : tifig- Published: Aug. 16, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-14193
Affected versions of Automation for Jira - Server allowed remote attackers to read and render files as mustache templates in files inside the WEB-INF/classes & <jira-installation>/jira/bin directories via a template injection vulnerability in Jira smart v... Read more
Affected Products : automation_for_jira- Published: Nov. 30, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-47455
In wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.... Read more
- Published: Mar. 10, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-2220
Vulnerability in the PeopleSoft Enterprise SCM eProcurement product of Oracle PeopleSoft (component: Manage Requisition Status). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network ac... Read more
Affected Products : peoplesoft_enterprise_scm_eprocurement- Published: Apr. 22, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-1188
A vulnerability was found in FabulaTech Webcam for Remote Desktop 2.8.42. It has been classified as problematic. Affected is the function 0x222018 in the library ftwebcam.sys of the component IoControlCode Handler. The manipulation leads to denial of serv... Read more
- Published: Mar. 06, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-41181
Due to lack of proper memory management, when a victim opens manipulated Portable Document Format (.pdf, PDFPublishing.dll) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to crash an... Read more
Affected Products : 3d_visual_enterprise_author- Published: Oct. 11, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-38210
Adobe XMP Toolkit versions 2022.06 is affected by a Uncontrolled Resource Consumption vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation... Read more
Affected Products : xmp_toolkit_software_development_kit- Published: Aug. 10, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2020-5017
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 may allow a local user to obtain access to information beyond their intended role and permissions. IBM X-Force ID: 193653.... Read more
- Published: Jan. 08, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2023-38607
The issue was addressed with improved handling of caches. This issue is fixed in macOS Sonoma 14. An app may be able to modify Printer settings.... Read more
Affected Products : macos- Published: Jan. 10, 2024
- Modified: Jun. 03, 2025
-
5.5
MEDIUMCVE-2022-48234
In FM service , there is a possible missing params check. This could lead to local denial of service in FM service .... Read more
- Published: May. 09, 2023
- Modified: Jan. 28, 2025
-
5.5
MEDIUMCVE-2023-38078
Kofax Power PDF U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Kofax Power PDF. User interaction is required to exploit this v... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
5.5
MEDIUMCVE-2023-20997
In multiple locations, there is a possible way to trigger a persistent reboot loop due to improper input validation. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.Product:... Read more
Affected Products : android- Published: Mar. 24, 2023
- Modified: Feb. 25, 2025
-
5.5
MEDIUMCVE-2023-38850
Buffer Overflow vulnerability in Michaelrsweet codedoc v.3.7 allows an attacker to cause a denial of service via the codedoc.c:1742 comppnent.... Read more
Affected Products : codedoc- Published: Aug. 15, 2023
- Modified: Nov. 21, 2024