Show filters
796 Total Results
Displaying 71-80 of 796
Sort by:
Attacker Value
Unknown

CVE-2018-25040

Disclosure Date: June 17, 2022 (last updated February 23, 2025)
A vulnerability was found in uTorrent Web. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component HTTP RPC Server. The manipulation leads to privilege escalation. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component.
Attacker Value
Unknown

CVE-2022-20819

Disclosure Date: June 15, 2022 (last updated February 23, 2025)
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain sensitive information from an affected device. This vulnerability exists because administrative privilege levels for sensitive data are not properly enforced. An attacker with read-only privileges for the web-based management interface on an affected device could exploit this vulnerability by browsing to a page that contains sensitive data. A successful exploit could allow the attacker to collect sensitive information about the system configuration.
Attacker Value
Unknown

CVE-2017-20049

Disclosure Date: June 15, 2022 (last updated February 23, 2025)
A vulnerability, was found in legacy Axis devices such as P3225 and M3005. This affects an unknown part of the component CGI Script. The manipulation leads to improper privilege management. It is possible to initiate the attack remotely.
Attacker Value
Unknown

CVE-2022-31594

Disclosure Date: June 14, 2022 (last updated February 23, 2025)
A highly privileged user can exploit SUID-root program to escalate his privileges to root on a local Unix system.
Attacker Value
Unknown

CVE-2022-29614

Disclosure Date: June 14, 2022 (last updated February 23, 2025)
SAP startservice - of SAP NetWeaver Application Server ABAP, Application Server Java, ABAP Platform and HANA Database - versions KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, 7.87, 7.88, KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, SAPHOSTAGENT 7.22, - on Unix systems, s-bit helper program sapuxuserchk, can be abused physically resulting in a privilege escalation of an attacker leading to low impact on confidentiality and integrity, but a profound impact on availability.
Attacker Value
Unknown

CVE-2022-26057

Disclosure Date: June 14, 2022 (last updated February 23, 2025)
Vulnerabilities in the Mint WorkBench allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Mint WorkBench installer file allows a low-privileged user to run a "repair" operation on the product
Attacker Value
Unknown

CVE-2022-24077

Disclosure Date: June 13, 2022 (last updated February 23, 2025)
Naver Cloud Explorer Beta allows the attacker to execute arbitrary code as System privilege via malicious DLL injection.
Attacker Value
Unknown

CVE-2022-1654

Disclosure Date: June 13, 2022 (last updated February 23, 2025)
Jupiter Theme <= 6.10.1 and JupiterX Core Plugin <= 2.0.7 allow any authenticated attacker, including a subscriber or customer-level attacker, to gain administrative privileges via the "abb_uninstall_template" (both) and "jupiterx_core_cp_uninstall_template" (JupiterX Core Only) AJAX actions
Attacker Value
Unknown

CVE-2022-2063

Disclosure Date: June 13, 2022 (last updated February 23, 2025)
Improper Privilege Management in GitHub repository nocodb/nocodb prior to 0.91.7+.
Attacker Value
Unknown

CVE-2017-20038

Disclosure Date: June 11, 2022 (last updated February 23, 2025)
A vulnerability was found in SICUNET Access Controller 0.32-05z and classified as critical. Affected by this issue is some unknown functionality of the file card_scan_decoder.php. The manipulation of the argument No/door leads to privilege escalation. The attack may be launched remotely.