Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 5.2

    MEDIUM
    CVE-2022-21799

    Cross-site scripting vulnerability in ELECOM LAN router WRC-300FEBK-R firmware v1.13 and earlier allows an attacker on the adjacent network to inject an arbitrary script via unspecified vectors.... Read more

    • Published: Feb. 08, 2022
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2022-21798

    The affected product is vulnerable due to cleartext transmission of credentials seen in the CIMPLICITY network, which can be easily spoofed and used to log in to make operational changes to the system.... Read more

    Affected Products : cimplicity proficy_cimplicitiy
    • Published: Feb. 25, 2022
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2022-21797

    The package joblib from 0 and before 1.2.0 are vulnerable to Arbitrary Code Execution via the pre_dispatch flag in Parallel() class due to the eval() statement.... Read more

    Affected Products : fedora debian_linux joblib
    • Published: Sep. 26, 2022
    • Modified: Nov. 21, 2024
  • 9.3

    CRITICAL
    CVE-2022-21796

    A memory corruption vulnerability exists in the netserver parse_command_list functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to an out-of-bounds write. An attacker can send an HTTP request to trigger this v... Read more

    Affected Products : rlc-410w_firmware rlc-410w
    • Published: Jan. 28, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21792

    In camera isp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07085410; Issue ... Read more

    Affected Products : android mt6833 mt6853 mt6853t mt6873 mt6875 mt6877 mt6883 mt6885 mt6889 +1 more products
    • Published: Aug. 01, 2022
    • Modified: Nov. 21, 2024
  • 4.4

    MEDIUM
    CVE-2022-21791

    In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06478059; Issue ID... Read more

    • Published: Aug. 01, 2022
    • Modified: Nov. 21, 2024
  • 4.4

    MEDIUM
    CVE-2022-21790

    In camera isp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06479306; Issue ID... Read more

    Affected Products : android mt6833 mt6853 mt6873 mt6877 mt6893
    • Published: Aug. 01, 2022
    • Modified: Nov. 21, 2024
  • 6.4

    MEDIUM
    CVE-2022-21789

    In audio ipi, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06478101; Issue ID: ALPS0... Read more

    Affected Products : android mt6779 mt6781 mt6785 mt6853 mt6853t mt6873 mt6875 mt6877 mt6879 +11 more products
    • Published: Aug. 01, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21788

    In scp, there is a possible undefined behavior due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06988728; Issue ID: AL... Read more

    Affected Products : android mt6879 mt6895 mt6983
    • Published: Aug. 01, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21787

    In audio DSP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06558844; Issue I... Read more

    Affected Products : android mt6833 mt6853 mt6873 mt6877 mt6879 mt6885 mt6893 mt6895 mt8791 +3 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21786

    In audio DSP, there is a possible memory corruption due to improper casting. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06558822; Issue ID: ALPS0... Read more

    Affected Products : android mt6833 mt6853 mt6873 mt6877 mt6879 mt6885 mt6893 mt6895 mt8791 +3 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21785

    In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06807363; Issue... Read more

    Affected Products : android mt6877 mt8675 mt8791 mt8797 mt6983 mt8667 mt8766 mt8768 mt8786 +12 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21784

    In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06704526; Issue... Read more

    Affected Products : android mt6779 mt6781 mt6833 mt6853 mt6873 mt6877 mt6879 mt6883 mt6885 +23 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21783

    In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06704526; Issue... Read more

    Affected Products : android mt6779 mt6781 mt6833 mt6853 mt6873 mt6877 mt6879 mt6883 mt6885 +23 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21782

    In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06704526; Issue... Read more

    Affected Products : android mt6779 mt6781 mt6833 mt6853 mt6873 mt6877 mt6879 mt6883 mt6885 +23 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21781

    In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06704526; Issue... Read more

    Affected Products : android mt6779 mt6781 mt6833 mt6853 mt6873 mt6877 mt6879 mt6883 mt6885 +23 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21780

    In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06704526; Issue... Read more

    Affected Products : android mt6779 mt6781 mt6833 mt6853 mt6873 mt6877 mt6879 mt6883 mt6885 +23 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 6.7

    MEDIUM
    CVE-2022-21779

    In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06704526; Issue... Read more

    Affected Products : android mt6779 mt6781 mt6833 mt6853 mt6873 mt6877 mt6879 mt6883 mt6885 +23 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2022-21777

    In Autoboot, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06713894;... Read more

    Affected Products : android mt6779 mt6785 mt6833 mt6853 mt6873 mt6875 mt6877 mt6879 mt6885 +32 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
  • 6.4

    MEDIUM
    CVE-2022-21776

    In MDP, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06545450; Issue ID: ALPS06545450.... Read more

    Affected Products : android mt6779 mt6781 mt6785 mt6789 mt6833 mt6853 mt6873 mt6877 mt6879 +34 more products
    • Published: Jul. 06, 2022
    • Modified: Nov. 21, 2024
Showing 20 of 294858 Results