Show filters
636 Total Results
Displaying 141-150 of 636
Sort by:
Attacker Value
Unknown

CVE-2022-42893

Disclosure Date: November 17, 2022 (last updated February 24, 2025)
A vulnerability has been identified in syngo Dynamics (All versions < VA40G HF01). syngo Dynamics application server hosts a web service using an operation with improper write access control that could allow to write data in any folder accessible to the account assigned to the website’s application pool.
Attacker Value
Unknown

CVE-2022-34314

Disclosure Date: November 14, 2022 (last updated February 24, 2025)
IBM CICS TX 11.1 could disclose sensitive information to a local user due to insecure permission settings. IBM X-Force ID: 229450.
Attacker Value
Unknown

CVE-2022-45193

Disclosure Date: November 12, 2022 (last updated February 24, 2025)
CBRN-Analysis before 22 has weak file permissions under Public Profile, leading to disclosure of file contents or privilege escalation.
Attacker Value
Unknown

CVE-2022-44746

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40107.
Attacker Value
Unknown

CVE-2022-44733

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 39900.
Attacker Value
Unknown

CVE-2022-44732

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 39900.
Attacker Value
Unknown

CVE-2022-2188

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Privilege escalation vulnerability in DXL Broker for Windows prior to 6.0.0.280 allows local users to gain elevated privileges by exploiting weak directory controls in the logs directory. This can lead to a denial-of-service attack on the DXL Broker.
Attacker Value
Unknown

CVE-2022-3258

Disclosure Date: November 03, 2022 (last updated February 24, 2025)
Incorrect Permission Assignment for Critical Resource vulnerability in HYPR Workforce Access on Windows allows Authentication Abuse.
Attacker Value
Unknown

CVE-2022-36122

Disclosure Date: October 21, 2022 (last updated February 24, 2025)
The Automox Agent before 40 on Windows incorrectly sets permissions on key files.
Attacker Value
Unknown

CVE-2022-22248

Disclosure Date: October 12, 2022 (last updated February 24, 2025)
An Incorrect Permission Assignment vulnerability in shell processing of Juniper Networks Junos OS Evolved allows a low-privileged local user to modify the contents of a configuration file which could cause another user to execute arbitrary commands within the context of the follow-on user's session. If the follow-on user is a high-privileged administrator, the attacker could leverage this vulnerability to take complete control of the target system. While this issue is triggered by a user, other than the attacker, accessing the Junos shell, an attacker simply requires Junos CLI access to exploit this vulnerability. This issue affects Juniper Networks Junos OS Evolved: 20.4-EVO versions prior to 20.4R3-S1-EVO; All versions of 21.1-EVO; 21.2-EVO versions prior to 21.2R3-EVO; 21.3-EVO versions prior to 21.3R2-EVO. This issue does not affect Juniper Networks Junos OS Evolved versions prior to 19.2R1-EVO.