Show filters
690 Total Results
Displaying 241-250 of 690
Sort by:
Attacker Value
Unknown
CVE-2022-26238
Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand Service Manager in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
0
Attacker Value
Unknown
CVE-2022-26236
Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand Remisol Advance Launcher in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
0
Attacker Value
Unknown
CVE-2022-39284
Disclosure Date: October 06, 2022 (last updated February 24, 2025)
CodeIgniter is a PHP full-stack web framework. In versions prior to 4.2.7 setting `$secure` or `$httponly` value to `true` in `Config\Cookie` is not reflected in `set_cookie()` or `Response::setCookie()`. As a result cookie values are erroneously exposed to scripts. It should be noted that this vulnerability does not affect session cookies. Users are advised to upgrade to v4.2.7 or later. Users unable to upgrade are advised to manually construct their cookies either by setting the options in code or by constructing Cookie objects. Examples of each workaround are available in the linked GHSA.
0
Attacker Value
Unknown
CVE-2022-2975
Disclosure Date: October 06, 2022 (last updated February 24, 2025)
A vulnerability related to weak permissions was detected in Avaya Aura Application Enablement Services web application, allowing an administrative user to modify accounts leading to execution of arbitrary code as the root user. This issue affects Application Enablement Services versions 8.0.0.0 through 8.1.3.4 and 10.1.0.0 through 10.1.0.1. Versions prior to 8.0.0.0 are end of manufacturing support and were not evaluated.
0
Attacker Value
Unknown
CVE-2022-26240
Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand Message Buffer in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
0
Attacker Value
Unknown
CVE-2022-26239
Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand License Manager in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows unprivileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
0
Attacker Value
Unknown
CVE-2022-26237
Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand Viewer Service in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
0
Attacker Value
Unknown
CVE-2022-23726
Disclosure Date: September 30, 2022 (last updated February 24, 2025)
PingCentral versions prior to listed versions expose Spring Boot actuator endpoints that with administrative authentication return large amounts of sensitive environmental and application information.
0
Attacker Value
Unknown
CVE-2020-15328
Disclosure Date: September 29, 2022 (last updated February 24, 2025)
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has weak /opt/axess/var/blobstorage/ permissions.
0
Attacker Value
Unknown
CVE-2020-15329
Disclosure Date: September 29, 2022 (last updated February 24, 2025)
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has weak Data.fs permissions.
0