Search Results (80564 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-36563 1 Rubyinstaller 1 Rubyinstaller2 2024-11-21 8.8 High
Incorrect access control in the install directory (C:\RailsInstaller) of Rubyinstaller2 v3.1.2 and below allows authenticated attackers to execute arbitrary code via overwriting binaries located in the directory.
CVE-2022-36562 1 Rubyinstaller 1 Rubyinstaller2 2024-11-21 8.8 High
Incorrect access control in the install directory (C:\Ruby31-x64) of Rubyinstaller2 v3.1.2 and below allows authenticated attackers to execute arbitrary code via overwriting binaries located in the directory.
CVE-2022-36552 1 Tendacn 2 Ac6, Ac6 Firmware 2024-11-21 7.5 High
Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains an issue in the component /cgi-bin/DownloadFlash which allows attackers to steal all data such as source code and system files via a crafted GET request.
CVE-2022-36539 1 Eigen\&wijzer Ouderapp Project 1 Eigen\&wijzer Ouderapp 2024-11-21 7.5 High
WeDayCare B.V Ouderapp before v1.1.22 allows attackers to alter the ID value within intercepted calls to gain access to data of other parents and children.
CVE-2022-36534 2 Linux, Syncovery 2 Linux Kernel, Syncovery 2024-11-21 8.8 High
Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below was discovered to contain multiple remote code execution (RCE) vulnerabilities via the Job_ExecuteBefore and Job_ExecuteAfter parameters at post_profilesettings.php.
CVE-2022-36532 1 Bolt 1 Bolt Cms 2024-11-21 8.8 High
Bolt CMS contains a vulnerability in version 5.1.12 and below that allows an authenticated user with the ROLE_EDITOR privileges to upload and rename a malicious file to achieve remote code execution.
CVE-2022-36529 1 Kensite Cms Project 1 Kensite Cms 2024-11-21 8.8 High
Kensite CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities via the name and oldname parameters at /framework/mod/db/DBMapper.xml.
CVE-2022-36526 1 Dlink 2 Go-rt-ac750, Go-rt-ac750 Firmware 2024-11-21 7.5 High
D-Link GO-RT-AC750 GORTAC750_revA_v101b03 & GO-RT-AC750_revB_FWv200b02 is vulnerable to Authentication Bypass via function phpcgi_main in cgibin.
CVE-2022-36524 1 Dlink 2 Go-rt-ac750, Go-rt-ac750 Firmware 2024-11-21 7.5 High
D-Link GO-RT-AC750 GORTAC750_revA_v101b03 & GO-RT-AC750_revB_FWv200b02 is vulnerable to Static Default Credentials via /etc/init0.d/S80telnetd.sh.
CVE-2022-36521 1 Cskefu 1 Cskefu 2024-11-21 7.5 High
Insecure permissions in cskefu v7.0.1 allows unauthenticated attackers to arbitrarily add administrator accounts.
CVE-2022-36507 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function AddWlanMacList.
CVE-2022-36506 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function SetMacAccessMode.
CVE-2022-36505 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function EDitusergroup.
CVE-2022-36503 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function UpdateMacClone.
CVE-2022-36502 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function UpdateWanParams.
CVE-2022-36501 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function UpdateSnat.
CVE-2022-36500 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function EditWlanMacList.
CVE-2022-36499 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function DEleteusergroup.
CVE-2022-36498 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function Asp_SetTimingtimeWifiAndLed.
CVE-2022-36497 1 H3c 2 Magic Nx18 Plus, Magic Nx18 Plus Firmware 2024-11-21 7.8 High
H3C Magic NX18 Plus NX18PV100R003 was discovered to contain a stack overflow via the function Edit_BasicSSID_5G.