Latest CVE Feed
-
5.5
MEDIUMCVE-2022-35090
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via __asan_memcpy at /asan/asan_interceptors_memintrinsics.cpp:.... Read more
Affected Products : swftools- EPSS Score: %0.04
- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2022-35089
SWFTools commit 772e55a2 was discovered to contain a heap-buffer-overflow via getTransparentColor at /home/bupt/Desktop/swftools/src/gif2swf.... Read more
Affected Products : swftools- EPSS Score: %0.03
- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2022-35088
SWFTools commit 772e55a2 was discovered to contain a heap buffer-overflow via getGifDelayTime at /home/bupt/Desktop/swftools/src/src/gif2swf.c.... Read more
Affected Products : swftools- EPSS Score: %0.03
- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2022-35087
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via MovieAddFrame at /src/gif2swf.c.... Read more
Affected Products : swftools- EPSS Score: %0.03
- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2022-35086
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via /multiarch/memmove-vec-unaligned-erms.S.... Read more
Affected Products : swftools- EPSS Score: %0.03
- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
6.5
MEDIUMCVE-2022-33735
There is a password verification vulnerability in WS7200-10 11.0.2.13. Attackers on the LAN may use brute force cracking to obtain passwords, which may cause sensitive system information to be disclosed.... Read more
- EPSS Score: %0.07
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
6.5
MEDIUMCVE-2022-32880
This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.5. An app may be able to access user-sensitive data.... Read more
Affected Products : macos- EPSS Score: %0.24
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
7.8
HIGHCVE-2022-32802
A logic issue was addressed with improved checks. This issue is fixed in iOS 15.6 and iPadOS 15.6, tvOS 15.6, macOS Monterey 12.5. Processing a maliciously crafted file may lead to arbitrary code execution.... Read more
- EPSS Score: %0.11
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
9.8
CRITICALCVE-2022-32788
A buffer overflow was addressed with improved bounds checking. This issue is fixed in watchOS 8.7, tvOS 15.6, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. A remote user may be able to cause kernel code execution.... Read more
- EPSS Score: %0.73
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
8.4
HIGHCVE-2022-30579
The Web Player component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace and TIBCO Spotfire Server contains a difficult to exploit vulnerability that allows a low privileged attacker with network access to execute blind Serv... Read more
- EPSS Score: %0.15
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
7.5
HIGHCVE-2022-2906
An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.... Read more
Affected Products : bind- EPSS Score: %0.24
- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
8.2
HIGHCVE-2022-2881
The underlying bug might cause read past end of the buffer and either read memory it should not read, or crash the process.... Read more
Affected Products : bind- EPSS Score: %0.38
- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
8.8
HIGHCVE-2022-28640
A potential local adjacent arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability was discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has ... Read more
Affected Products : integrated_lights-out_5_firmware proliant_bl460c_gen10_server_blade proliant_dl580_gen10_server proliant_dl560_gen10_server proliant_dl380_gen10_server proliant_dl360_gen10_server proliant_dl180_gen10_server proliant_dl160_gen10_server proliant_ml350_gen10_server proliant_ml110_gen10_server +67 more products- EPSS Score: %0.39
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
8.8
HIGHCVE-2022-26696
This issue was addressed with improved environment sanitization. This issue is fixed in macOS Monterey 12.4. A sandboxed process may be able to circumvent sandbox restrictions.... Read more
Affected Products : macos- EPSS Score: %0.17
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
8.8
HIGHCVE-2022-23696
Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit these vulnerabilities ... Read more
Affected Products : clearpass_policy_manager- EPSS Score: %0.35
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
8.8
HIGHCVE-2022-23693
Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit these vulnerabilities ... Read more
Affected Products : clearpass_policy_manager- EPSS Score: %0.35
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
8.8
HIGHCVE-2022-23692
Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit these vulnerabilities ... Read more
Affected Products : clearpass_policy_manager- EPSS Score: %0.35
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
4.3
MEDIUMCVE-2021-46835
There is a traffic hijacking vulnerability in WS7200-10 11.0.2.13. Successful exploitation of this vulnerability can cause packets to be hijacked by attackers.... Read more
- EPSS Score: %0.04
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2021-46834
A permission bypass vulnerability in Huawei cross device task management could allow an attacker to access certain resource in the attacked devices. Affected product versions include:JAD-AL50 versions 102.0.0.225(C00E220R3P4).... Read more
- EPSS Score: %0.01
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
6.1
MEDIUMCVE-2020-36602
There is an out-of-bounds read and write vulnerability in some headset products. An unauthenticated attacker gets the device physically and crafts malformed message with specific parameter and sends the message to the affected products. Due to insufficien... Read more
Affected Products : 576up005_hota-cm-h-shark-bd_firmware 577hota-cm-h-shark-bd_firmware 581up-hota-cm-h-shark-bd_firmware 586-hota-cm-h-shark-bd_firmware 588-hota-cm-h-shark-bd_firmware 606-hota-cm-h-shark-bd_firmware bi-acc-report_firmware cm-h-shark-bd_firmware 576up005_hota-cm-h-shark-bd 577hota-cm-h-shark-bd +6 more products- EPSS Score: %0.05
- Published: Sep. 20, 2022
- Modified: May. 28, 2025