Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.3
CVE-2022-33931
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI. An attacker with no access to Alert Classificatio…
Wyse Management Suite
3.8.0+
MEDIUM 5.3
CVE-2022-33924
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability with which an attacker with no access to create rules co…
Wyse Management Suite
3.8.0+
MEDIUM 6.5
CVE-2022-33925
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI. An remote authenticated attacker could potentiall…
Wyse Management Suite
3.8.0+
MEDIUM 6.5
CVE-2022-33926
Dell Wyse Management Suite 3.6.1 and below contains an improper access control vulnerability. A remote malicious user could exploit this vulnerabilit…
Wyse Management Suite
3.8.0+
HIGH 7.5
CVE-2021-46304
A vulnerability has been identified in CP-8000 MASTER MODULE WITH I/O -25/+70°C (All versions), CP-8000 MASTER MODULE WITH I/O -40/+70°C (All version…
Cp 8021 Master Module Firmware
Mitigation only
MEDIUM 6.5
CVE-2022-2702
A vulnerability was found in SourceCodester Company Website CMS and classified as critical. Affected by this issue is some unknown functionality of t…
Company Website\/cms
No fix yet
CRITICAL 9.8
CVE-2022-26346
A denial of service vulnerability exists in the ucloud_del_node functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted network…
Linkhub Mesh Wifi Ac1200
No fix yet
CRITICAL 9.8
CVE-2022-27178
A denial of service vulnerability exists in the confctl_set_wan_cfg functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted net…
Linkhub Mesh Wifi Ac1200
No fix yet
HIGH 7.5
CVE-2022-27185
A denial of service vulnerability exists in the confctl_set_master_wlan functionality of TCL LinkHub Mesh Wifi MS1G_00_01.00_14. A specially-crafted …
Linkhub Mesh Wifi Ac1200
No fix yet
HIGH 7.5
CVE-2022-27660
A denial of service vulnerability exists in the confctl_set_guest_wlan functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. A specially-crafted …
Linkhub Mesh Wifi Ac1200
No fix yet
MEDIUM 6.5
CVE-2021-28511
This advisory documents the impact of an internally found vulnerability in Arista EOS for security ACL bypass. The impact of this vulnerability is th…
Eos
after 4.27.3
HIGH 7.1
CVE-2022-33731
Improper access control vulnerability in DesktopSystemUI prior to SMR Aug-2022 Release 1 allows attackers to enable and disable arbitrary components.
Android
Mitigation only
HIGH 8.8
CVE-2022-2631
Improper Access Control in GitHub repository tooljet/tooljet prior to v1.19.0.
Tooljet
1.19.0+
MEDIUM 5.4
CVE-2022-26308
Pandora FMS v7.0NG.760 and below allows an improper access control in Configuration (Credential store) where a user with the role of Operator (Write)…
Pandora Fms
after 7.0_ng_760
CRITICAL 9.8
CVE-2022-2578
A vulnerability, which was classified as critical, has been found in SourceCodester Garage Management System 1.0. This issue affects some unknown pro…
Garage Management System
No fix yet
HIGH 7.5
CVE-2016-4427
In zulip before 1.3.12, deactivated users could access messages if SSO was enabled.
Zulip
1.3.12+
HIGH 7.5
CVE-2021-38417
VISAM VBASE version 11.6.0.6 is vulnerable to improper access control via the web-remote endpoint, which may allow an unauthenticated user viewing ac…
Vbase Web Remote
Mitigation only
HIGH 7.8
CVE-2022-2225
By using warp-cli subcommands (disable-ethernet, disable-wifi), it was possible for a user without admin privileges to bypass configured Zero Trust s…
Warp
2022.5.227.0 / 2022.5.341.0+
MEDIUM 6.4
CVE-2022-21586
Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infrastructure). The supported versio…
Banking Trade Finance
Patch available
HIGH 8.1
CVE-2022-32212EPSS 6%
A OS Command Injection vulnerability exists in Node.js versions <14.20.0, <16.20.0, <18.5.0 due to an insufficient IsAllowedHost check that can easil…
Node.js
1.0 / 14.20.1+
HIGH 8.8
CVE-2022-1025
All unpatched versions of Argo CD starting with v1.0.0 are vulnerable to an improper access control bug, allowing a malicious user to potentially esc…
Argo Cd
after 2.3.1
HIGH 7.5
CVE-2022-31257
A vulnerability has been identified in Mendix Applications using Mendix 7 (All versions < V7.23.31), Mendix Applications using Mendix 8 (All versions…
Mendix
7.32.31 / 8.18.18+
HIGH 8.8
CVE-2022-20859
A vulnerability in the Disaster Recovery framework of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager IM &…
Unified Communications Manager
14su2 / 14.0su2+
MEDIUM 5.3
CVE-2022-34894
In JetBrains Hub before 2022.2.14799, insufficient access control allowed the hijacking of untrusted services
Hub
2022.2.14799+
MEDIUM 5.3
CVE-2020-9754
NAVER Whale browser mobile app before 1.10.6.2 allows the attacker to bypass its browser unlock function via incognito mode.
Whale
1.10.6.2+
CRITICAL 9.1
CVE-2022-2103
An attacker with weak credentials could access the TCP port via an open FTP port, allowing an attacker to read sensitive files and write to remotely …
Sepcos Control And Protection Relay Firmware
1.23.21 / 1.24.8+
CRITICAL 9.1
CVE-2022-1521
LRM does not implement authentication or authorization by default. A malicious actor can inject, replay, modify, and/or intercept sensitive data.
Local Run Manager
after 3.1
HIGH 7.8
CVE-2017-20066
A vulnerability has been found in Adminer Login 1.4.4 and classified as problematic. This vulnerability affects unknown code. The manipulation leads …
Adminer Login
No fix yet
HIGH 8.1
CVE-2022-27511EPSS 12%
Corruption of the system by a remote, unauthenticated user. The impact of this can include the reset of the administrator password at the next device…
Application Delivery Management
13.0-85.19 / 13.1-21.53+
MEDIUM 5.4
CVE-2022-28612
Improper Access Control vulnerability leading to multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabi…
Custom Popup Builder
after 1.3.1