Latest CVE Feed
-
7.2
HIGHCVE-2022-37881
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the und... Read more
Affected Products : clearpass_policy_manager- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
7.2
HIGHCVE-2022-37880
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the und... Read more
Affected Products : clearpass_policy_manager- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
7.2
HIGHCVE-2022-37879
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the und... Read more
Affected Products : clearpass_policy_manager- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
7.2
HIGHCVE-2022-37878
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote authenticated users to run arbitrary commands on the underlying host. A successful exploit could allow an attacker to execute arbitrary commands as root on the und... Read more
Affected Products : clearpass_policy_manager- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
7.5
HIGHCVE-2022-37395
A Huawei device has an input verification vulnerability. Successful exploitation of this vulnerability may lead to DoS attacks.Affected product versions include:CV81-WDM FW versions 01.70.49.29.46.... Read more
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2022-35090
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via __asan_memcpy at /asan/asan_interceptors_memintrinsics.cpp:.... Read more
Affected Products : swftools- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2022-35089
SWFTools commit 772e55a2 was discovered to contain a heap-buffer-overflow via getTransparentColor at /home/bupt/Desktop/swftools/src/gif2swf.... Read more
Affected Products : swftools- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2022-35088
SWFTools commit 772e55a2 was discovered to contain a heap buffer-overflow via getGifDelayTime at /home/bupt/Desktop/swftools/src/src/gif2swf.c.... Read more
Affected Products : swftools- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2022-35087
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via MovieAddFrame at /src/gif2swf.c.... Read more
Affected Products : swftools- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
5.5
MEDIUMCVE-2022-35086
SWFTools commit 772e55a2 was discovered to contain a segmentation violation via /multiarch/memmove-vec-unaligned-erms.S.... Read more
Affected Products : swftools- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
6.5
MEDIUMCVE-2022-33735
There is a password verification vulnerability in WS7200-10 11.0.2.13. Attackers on the LAN may use brute force cracking to obtain passwords, which may cause sensitive system information to be disclosed.... Read more
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
6.5
MEDIUMCVE-2022-32880
This issue was addressed by enabling hardened runtime. This issue is fixed in macOS Monterey 12.5. An app may be able to access user-sensitive data.... Read more
Affected Products : macos- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
7.8
HIGHCVE-2022-32802
A logic issue was addressed with improved checks. This issue is fixed in iOS 15.6 and iPadOS 15.6, tvOS 15.6, macOS Monterey 12.5. Processing a maliciously crafted file may lead to arbitrary code execution.... Read more
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
9.8
CRITICALCVE-2022-32788
A buffer overflow was addressed with improved bounds checking. This issue is fixed in watchOS 8.7, tvOS 15.6, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. A remote user may be able to cause kernel code execution.... Read more
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
8.4
HIGHCVE-2022-30579
The Web Player component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace and TIBCO Spotfire Server contains a difficult to exploit vulnerability that allows a low privileged attacker with network access to execute blind Serv... Read more
- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
7.5
HIGHCVE-2022-2906
An attacker can leverage this flaw to gradually erode available memory to the point where named crashes for lack of resources. Upon restart the attacker would have to begin again, but nevertheless there is the potential to deny service.... Read more
Affected Products : bind- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
8.2
HIGHCVE-2022-2881
The underlying bug might cause read past end of the buffer and either read memory it should not read, or crash the process.... Read more
Affected Products : bind- Published: Sep. 21, 2022
- Modified: May. 28, 2025
-
8.8
HIGHCVE-2022-28640
A potential local adjacent arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability was discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has ... Read more
Affected Products : integrated_lights-out_5_firmware proliant_bl460c_gen10_server_blade proliant_dl580_gen10_server proliant_dl560_gen10_server proliant_dl380_gen10_server proliant_dl360_gen10_server proliant_dl180_gen10_server proliant_dl160_gen10_server proliant_ml350_gen10_server proliant_ml110_gen10_server +67 more products- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
8.8
HIGHCVE-2022-26696
This issue was addressed with improved environment sanitization. This issue is fixed in macOS Monterey 12.4. A sandboxed process may be able to circumvent sandbox restrictions.... Read more
Affected Products : macos- Published: Sep. 20, 2022
- Modified: May. 28, 2025
-
8.8
HIGHCVE-2022-23696
Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit these vulnerabilities ... Read more
Affected Products : clearpass_policy_manager- Published: Sep. 20, 2022
- Modified: May. 28, 2025