Latest CVE Feed
-
5.5
MEDIUMCVE-2022-41178
Due to lack of proper memory management, when a victim opens manipulated Iges Part and Assembly (.igs, .iges, CoreCadTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to... Read more
Affected Products : 3d_visual_enterprise_author- Published: Oct. 11, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-41169
Due to lack of proper memory management, when a victim opens manipulated CATIA5 Part (.catpart, CatiaTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to crash and becom... Read more
Affected Products : 3d_visual_enterprise_author- Published: Oct. 11, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-41183
Due to lack of proper memory management, when a victim opens manipulated Windows Cursor File (.cur, ico.x3d) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to crash and becomes tempo... Read more
Affected Products : 3d_visual_enterprise_author- Published: Oct. 11, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-41279
A vulnerability has been identified in JT2Go (All versions < V14.1.0.6), Teamcenter Visualization V13.2 (All versions < V13.2.0.12), Teamcenter Visualization V13.3 (All versions < V13.3.0.8), Teamcenter Visualization V14.0 (All versions < V14.0.0.4), Team... Read more
- Published: Dec. 13, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-41174
Due to lack of proper memory management, when a victim opens manipulated Right Hemisphere Material (.rhm, rh.x3d) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to crash and becomes ... Read more
Affected Products : 3d_visual_enterprise_author- Published: Oct. 11, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUM- Published: Nov. 09, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-41182
Due to lack of proper memory management, when a victim opens manipulated Parasolid Part and Assembly (.x_b, CoreCadTranslator.exe) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to c... Read more
Affected Products : 3d_visual_enterprise_author- Published: Oct. 11, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-41074
Windows Graphics Component Information Disclosure Vulnerability... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 +13 more products- Published: Dec. 13, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-41055
Windows Human Interface Device Information Disclosure Vulnerability... Read more
Affected Products : windows_10 windows_server_2019 windows_10_1809 windows_10_20h2 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 windows_11_22h2 windows_11 +2 more products- Published: Nov. 09, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-41176
Due to lack of proper memory management, when a victim opens manipulated Enhanced Metafile (.emf, emf.x3d) file received from untrusted sources in SAP 3D Visual Enterprise Author - version 9, it is possible for the application to crash and becomes tempora... Read more
Affected Products : 3d_visual_enterprise_author- Published: Oct. 11, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-40974
Incomplete cleanup in the Intel(R) IPP Cryptography software before version 2021.6 may allow a privileged user to potentially enable information disclosure via local access.... Read more
Affected Products : integrated_performance_primitives_cryptography- Published: May. 10, 2023
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-40755
JasPer 3.0.6 allows denial of service via a reachable assertion in the function inttobits in libjasper/base/jas_image.c.... Read more
Affected Products : jasper- Published: Sep. 16, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-40745
IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain sensitive information due to weaker than expected security. IBM X-Force ID: 236452.... Read more
Affected Products : aspera_faspex- Published: Apr. 19, 2024
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-40768
drivers/scsi/stex.c in the Linux kernel through 5.19.9 allows local users to obtain sensitive information from kernel memory because stex_queuecommand_lck lacks a memset for the PASSTHRU_CMD case.... Read more
- Published: Sep. 18, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2022-40476
A null pointer dereference issue was discovered in fs/io_uring.c in the Linux kernel before 5.15.62. A local user could use this flaw to crash the system or potentially cause a denial of service.... Read more
Affected Products : linux_kernel- Published: Sep. 14, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2024-54547
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.7.2, macOS Sequoia 15.2, macOS Ventura 13.7.2. An app may be able to access protected user data.... Read more
Affected Products : macos- Published: Jan. 27, 2025
- Modified: Apr. 04, 2025
- Vuln Type: Information Disclosure
-
5.5
MEDIUMCVE-2024-54559
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.2. An app may be able to access sensitive user data.... Read more
Affected Products : macos- Published: Mar. 17, 2025
- Modified: Mar. 24, 2025
- Vuln Type: Authorization
-
5.5
MEDIUMCVE-2022-3969
A vulnerability was found in OpenKM up to 6.3.11 and classified as problematic. Affected by this issue is the function getFileExtension of the file src/main/java/com/openkm/util/FileUtils.java. The manipulation leads to insecure temporary file. Upgrading ... Read more
Affected Products : openkm- Published: Nov. 13, 2022
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2024-54539
This issue was addressed through improved state management. This issue is fixed in macOS Sonoma 14.7.2, macOS Sequoia 15.2, macOS Ventura 13.7.2. An app may be able to capture keyboard events from the lock screen.... Read more
Affected Products : macos- Published: Jan. 27, 2025
- Modified: Mar. 24, 2025
- Vuln Type: Misconfiguration
-
5.5
MEDIUMCVE-2022-3917
Improper access control of bootloader function was discovered in Motorola Mobility Motorola e20 prior to version RONS31.267-38-8 allows attacker with local access to read partition or RAM data.... Read more
- Published: Dec. 14, 2022
- Modified: Nov. 21, 2024