Show filters
343 Total Results
Displaying 191-200 of 343
Sort by:
Attacker Value
Unknown
CVE-2022-0821
Disclosure Date: March 11, 2022 (last updated February 23, 2025)
Improper Authorization in GitHub repository orchardcms/orchardcore prior to 1.3.0.
0
Attacker Value
Unknown
CVE-2022-0829
Disclosure Date: March 02, 2022 (last updated February 23, 2025)
Improper Authorization in GitHub repository webmin/webmin prior to 1.990.
0
Attacker Value
Unknown
CVE-2022-0587
Disclosure Date: February 15, 2022 (last updated February 23, 2025)
Improper Authorization in Packagist librenms/librenms prior to 22.2.0.
0
Attacker Value
Unknown
CVE-2022-24002
Disclosure Date: February 11, 2022 (last updated February 23, 2025)
Improper Authorization vulnerability in Link Sharing prior to version 12.4.00.3 allows attackers to open protected activity via PreconditionActivity.
0
Attacker Value
Unknown
CVE-2021-42000
Disclosure Date: February 10, 2022 (last updated February 23, 2025)
When a password reset or password change flow with an authentication policy is configured and the adapter in the reset or change policy supports multiple parallel reset flows, an existing user can reset another existing users password.
0
Attacker Value
Unknown
CVE-2022-21196
Disclosure Date: February 03, 2022 (last updated February 23, 2025)
MMP: All versions prior to v1.0.3, PTP C-series: Device versions prior to v2.8.6.1, and PTMP C-series and A5x: Device versions prior to v2.5.4.1 does not perform proper authorization and authentication checks on multiple API routes. An attacker may gain access to these API routes and achieve remote code execution, create a denial-of-service condition, and obtain sensitive information.
0
Attacker Value
Unknown
CVE-2021-44204
Disclosure Date: February 02, 2022 (last updated February 23, 2025)
Local privilege escalation via named pipe due to improper access control checks. The following products are affected: Acronis Cyber Protect 15 (Windows) before build 28035, Acronis Agent (Windows) before build 27147, Acronis Cyber Protect Home Office (Windows) before build 39612, Acronis True Image 2021 (Windows) before build 39287
0
Attacker Value
Unknown
CVE-2021-28506
Disclosure Date: January 11, 2022 (last updated February 23, 2025)
An issue has recently been discovered in Arista EOS where certain gNOI APIs incorrectly skip authorization and authentication which could potentially allow a factory reset of the device.
0
Attacker Value
Unknown
CVE-2021-28500
Disclosure Date: January 11, 2022 (last updated February 23, 2025)
An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and TerminAttr agents could result in unrestricted access to the device for local users with nopassword configuration.
0
Attacker Value
Unknown
CVE-2021-28501
Disclosure Date: January 11, 2022 (last updated February 23, 2025)
An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and TerminAttr agents could result in unrestricted access to the device for local users with nopassword configuration.
0