Vulnerability index

Browse CVEs

933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Privilege AssignmentCWE-266 × clear
MEDIUM 6.5 CVE-2022-3826 A vulnerability was found in Huaxia ERP. It has been classified as problematic. This affects an unknown part of the file /depotHead/list of the compo… Huaxia Erp No fix yet Fix from $1,6002022-11-02 MEDIUM 5.5 CVE-2022-42825 This issue was addressed by removing additional entitlements. This issue is fixed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, iOS 16.1 and iPadOS 16… Ipados 9.1 / 11.7.1+ Fix from $1,6002022-11-01 HIGH 8.8 CVE-2022-3770 A vulnerability classified as critical was found in Yunjing CMS. This vulnerability affects unknown code of the file /index/user/upload_img.html. The… Yunjing Content Management System No fix yet Fix from $1,9502022-10-31 CRITICAL 9.8 CVE-2022-3771 A vulnerability, which was classified as critical, has been found in easyii CMS. This issue affects the function file of the file helpers/Upload.php … Easyiicms Mitigation only Fix from $2,3002022-10-31 CRITICAL 9.8 CVE-2022-3735 A vulnerability was found in seccome Ehoney. It has been rated as critical. This issue affects some unknown processing of the file /api/public/signup… Ehoney No fix yet Fix from $2,3002022-10-28 HIGH 7.2 CVE-2022-3549 A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0. It has been rated as problematic. This issue affects some unkn… Simple Cold Storage Management System Mitigation only Fix from $1,9502022-10-17 HIGH 8.8 CVE-2022-3496 A vulnerability was found in SourceCodester Human Resource Management System 1.0 and classified as critical. This issue affects some unknown processi… Human Resource Management System Mitigation only Fix from $1,9502022-10-14 CRITICAL 9.8 CVE-2022-3458 A vulnerability has been found in SourceCodester Human Resource Management System 1.0 and classified as critical. Affected by this vulnerability is a… Human Resource Management System Mitigation only Fix from $2,3002022-10-12 HIGH 7.5 CVE-2022-3436 A vulnerability classified as critical was found in SourceCodester Web-Based Student Clearance System 1.0. Affected by this vulnerability is an unkno… Web Based Student Clearance System No fix yet Fix from $1,9502022-10-09 HIGH 8.8 CVE-2022-2637 Incorrect Privilege Assignment vulnerability in Hitachi Hitachi Storage Plug-in for VMware vCenter allows remote authenticated users to cause privile… Storage Plug In Mitigation only Fix from $1,9502022-10-06 MEDIUM 6.7 CVE-2022-20855 A vulnerability in the self-healing functionality of Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst Access Points could allow an… Ios Xe Mitigation only Fix from $1,6002022-09-30 HIGH 7.8 CVE-2020-10728 A flaw was found in automationbroker/apb container in versions up to and including 2.0.4-1. This container grants all users sudoer permissions allowi… Apb after 2.0.4-1 Fix from $1,9502022-08-16 HIGH 7.2 CVE-2022-2626 Incorrect Privilege Assignment in GitHub repository hestiacp/hestiacp prior to 1.6.6. Control Panel 1.6.6+ Fix from $1,9502022-08-05 HIGH 7.6 CVE-2022-1746 The authentication mechanism used by poll workers to administer voting using the tested version of Dominion Voting Systems ImageCast X can expose cry… Imagecast X No fix yet Fix from $1,9502022-06-24 MEDIUM 6.5 CVE-2022-20819 A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain… Identity Services Engine 2.4.0.357 / 2.6.0.156+ Fix from $1,6002022-06-15 HIGH 8.8 CVE-2022-20759EPSS 29% A vulnerability in the web services interface for remote access VPN features of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower … Secure Firewall Threat Defense 6.4.0.15 / 6.6.5.2+ Fix from $1,9502022-05-03 HIGH 7.8 CVE-2022-20681 A vulnerability in the CLI of Cisco IOS XE Software for Cisco Catalyst 9000 Family Switches and Cisco Catalyst 9000 Family Wireless Controllers could… Ios Xe Mitigation only Fix from $1,9502022-04-15 MEDIUM 6.5 CVE-2022-20782 A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain… Identity Services Engine Mitigation only Fix from $1,6002022-04-06 MEDIUM 6.5 CVE-2022-1225 Incorrect Privilege Assignment in GitHub repository phpipam/phpipam prior to 1.4.6. Phpipam 1.4.6+ Fix from $1,6002022-04-04 HIGH 7.8 CVE-2021-40124 A vulnerability in the Network Access Manager (NAM) module of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local… Anyconnect Secure Mobility Client 4.10.03104+ Fix from $1,9502021-11-04 MEDIUM 6.5 CVE-2021-40123 A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with admi… Identity Services Engine after 2.6 Fix from $1,6002021-10-21 HIGH 8.1 CVE-2021-1594 A vulnerability in the REST API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a command injectio… Identity Services Engine 2.6.0+ Fix from $1,9502021-10-06 HIGH 7.8 CVE-2021-20264 An insecure modification flaw in the /etc/passwd file was found in the openjdk-1.8 and openjdk-11 containers. This flaw allows an attacker with acces… Openjdk Mitigation only Fix from $1,9502021-10-06 HIGH 7.8 CVE-2021-1572 A vulnerability in ConfD could allow an authenticated, local attacker to execute arbitrary commands at the level of the account under which ConfD is … Confd after 7.5.2 Fix from $1,9502021-08-04 HIGH 7.0 CVE-2020-1742 An insecure modification vulnerability flaw was found in containers using nmstate/kubernetes-nmstate-handler. An attacker with access to the containe… Openshift Virtualization 2.3.0+ Fix from $1,9502021-06-07 HIGH 7.0 CVE-2020-35514 An insecure modification flaw in the /etc/kubernetes/kubeconfig file was found in OpenShift. This flaw allows an attacker with access to a running co… Openshift 4.7.0+ Fix from $1,9502021-06-02 HIGH 7.8 CVE-2020-10695 An insecure modification flaw in the /etc/passwd file was found in the redhat-sso-7 container. An attacker with access to the container can use this … Single Sign On 7.4.4+ Fix from $1,9502021-05-26 MEDIUM 6.1 CVE-2021-20208 A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credent… Enterprise Linux 6.13+ Fix from $1,6002021-04-19 HIGH 7.0 CVE-2019-19352 An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/presto as shipped in Red Hat Openshift 4. An attac… Openshift Container Platform Mitigation only Fix from $1,9502021-03-24 HIGH 7.0 CVE-2019-19353 An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hive as shipped in Red Hat Openshift 4. An attacke… Openshift Container Platform No fix yet Fix from $1,9502021-03-24