Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2022-4724
Improper Access Control in GitHub repository ikus060/rdiffweb prior to 2.5.5.
Rdiffweb
2.5.5+
MEDIUM 6.5
CVE-2022-44014
An issue was discovered in Simmeth Lieferantenmanager before 5.6. In the design of the API, a user is inherently able to fetch arbitrary SQL tables. …
Lieferantenmanager
5.6+
MEDIUM 5.3
CVE-2022-44565
An improper access validation vulnerability exists in airMAX AC <8.7.11, airFiber 60/LR <2.6.2, airFiber 60 XG/HD <v1.0.0 and airFiber GBE <1.4.1 tha…
Airfiber Gigabeam Firmware
1.0.0 / 1.4.1+
HIGH 8.8
CVE-2022-4689
Improper Access Control in GitHub repository usememos/memos prior to 0.9.0.
Memos
0.9.0+
HIGH 8.8
CVE-2022-4684
Improper Access Control in GitHub repository usememos/memos prior to 0.9.0.
Memos
0.9.0+
MEDIUM 5.3
CVE-2022-23513EPSS 40%
Pi-Hole is a network-wide ad blocking via your own Linux hardware, AdminLTE is a Pi-hole Dashboard for stats and more. In case of an attack, the thre…
Adminlte
after 5.17
HIGH 7.5
CVE-2022-3186
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s m…
Iboot Pdu4 N20 Firmware
1.42.06162022+
MEDIUM 5.8
CVE-2022-38655
BigFix WebUI non-master operators are missing controls that prevent them from being able to modify the relevance of fixlets or to deploy fixlets from…
Bigfix Webui
Mitigation only
CRITICAL 9.8
CVE-2022-38546
A DNS misconfiguration was found in Zyxel NBG7510 firmware versions prior to V1.00(ABZY.3)C0, which could allow an unauthenticated attacker to access…
Nbg7510 Firmware
after 1.00
HIGH 8.8
CVE-2022-44643
A vulnerability in the label-based access control of Grafana Labs Grafana Enterprise Metrics allows an attacker more access than intended. If an acce…
Enterprise Metrics
1.7.1 / 2.3.1+
CRITICAL 9.8
CVE-2022-28173
The web server of some Hikvision wireless bridge products have an access control vulnerability which can be used to obtain the admin permission. The …
Ds 3wf0ac 2nt Firmware
1.0.4 / 1.1.0+
HIGH 8.1
CVE-2022-4567
Improper Access Control in GitHub repository openemr/openemr prior to 7.0.0.2.
Openemr
7.0.0.2+
MEDIUM 6.7
CVE-2022-25627
An authenticated administrator who has physical access to the environment can carry out Remote Command Execution on Management Console in Symantec Id…
Symantec Identity Governance And Administration
Mitigation only
MEDIUM 5.5
CVE-2022-42859
Multiple issues were addressed by removing the vulnerable code. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, watchOS 9.2. An …
Ipados
9.2 / 13.1+
HIGH 8.8
CVE-2022-42861
This issue was addressed with improved checks. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Monterey 12.6.2, macOS Ventura 13.1, iOS 15.7.2…
Ipados
12.6.2 / 15.7.2+
MEDIUM 5.5
CVE-2022-42862
This issue was addressed by removing the vulnerable code. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1. An app may be able to …
Ipados
13.1 / 16.2+
MEDIUM 5.5
CVE-2022-42865
This issue was addressed by enabling hardened runtime. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2, watchOS 9.2. A…
Ipados
9.2 / 13.1+
MEDIUM 5.5
CVE-2022-42853
An access issue was addressed with improved access restrictions. This issue is fixed in macOS Ventura 13.1. An app may be able to modify protected pa…
macOS
13.1+
MEDIUM 6.5
CVE-2022-47407
An issue was discovered in the fp_masterquiz (aka Master-Quiz) extension before 2.2.1, and 3.x before 3.5.1, for TYPO3. An attacker can continue the …
Master Quiz
2.2.1 / 3.5.1+
MEDIUM 5.5
CVE-2022-38355
Daikin SVMPC1 version 2.1.22 and prior and SVMPC2 version 1.2.3 and prior are vulnerable to
attackers with access to the local area network (LAN) t…
Svmpc1
after 2.1.22
HIGH 8.1
CVE-2022-46664
A vulnerability has been identified in Mendix Workflow Commons (All versions < V2.4.0), Mendix Workflow Commons V2.1 (All versions < V2.1.4), Mendix …
Mendix Workflow Commons
2.4.0+
MEDIUM 5.3
CVE-2022-46354
A vulnerability has been identified in SCALANCE X204RNA (HSR) (All versions < V3.2.7), SCALANCE X204RNA (PRP) (All versions < V3.2.7), SCALANCE X204R…
6gk5204 0ba00 2mb2 Firmware
3.2.7+
HIGH 8.1
CVE-2022-45936
A vulnerability has been identified in Mendix Email Connector (All versions < V2.0.0). Affected versions of the module improperly handle access contr…
Mendix Email Connector
2.0.0+
MEDIUM 6.5
CVE-2022-45937
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20)…
Pxc00 E96.a Firmware
2.8.20 / 3.5.5+
MEDIUM 5.5
CVE-2022-41261
SAP Solution Manager (Diagnostic Agent) - version 7.20, allows an authenticated attacker on Windows system to access a file containing sensitive data…
Solution Manager
Mitigation only
MEDIUM 5.5
CVE-2022-39915
Improper access control vulnerability in Calendar prior to versions 11.6.08.0 in Android Q(10), 12.2.11.3000 in Android R(11), 12.3.07.2000 in Androi…
Calendar
11.6.08.0 / 12.2.11.3000+
HIGH 7.5
CVE-2022-44932
An access control issue in Tenda A18 v15.13.07.09 allows unauthenticated attackers to access the Telnet service.
A18 Firmware
No fix yet
HIGH 8.1
CVE-2022-37916
Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. T…
Airwave
after 8.2.15.0
HIGH 8.1
CVE-2022-37917
Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. T…
Airwave
after 8.2.15.0
HIGH 8.1
CVE-2022-37918
Vulnerabilities in the AirWave Management Platform web-based management interface exist which expose some URLs to a lack of proper access controls. T…
Airwave
after 8.2.15.0