Show filters
700 Total Results
Displaying 251-260 of 700
Sort by:
Attacker Value
Unknown

CVE-2022-26238

Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand Service Manager in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
Attacker Value
Unknown

CVE-2022-26236

Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand Remisol Advance Launcher in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
Attacker Value
Unknown

CVE-2022-39284

Disclosure Date: October 06, 2022 (last updated February 24, 2025)
CodeIgniter is a PHP full-stack web framework. In versions prior to 4.2.7 setting `$secure` or `$httponly` value to `true` in `Config\Cookie` is not reflected in `set_cookie()` or `Response::setCookie()`. As a result cookie values are erroneously exposed to scripts. It should be noted that this vulnerability does not affect session cookies. Users are advised to upgrade to v4.2.7 or later. Users unable to upgrade are advised to manually construct their cookies either by setting the options in code or by constructing Cookie objects. Examples of each workaround are available in the linked GHSA.
Attacker Value
Unknown

CVE-2022-2975

Disclosure Date: October 06, 2022 (last updated February 24, 2025)
A vulnerability related to weak permissions was detected in Avaya Aura Application Enablement Services web application, allowing an administrative user to modify accounts leading to execution of arbitrary code as the root user. This issue affects Application Enablement Services versions 8.0.0.0 through 8.1.3.4 and 10.1.0.0 through 10.1.0.1. Versions prior to 8.0.0.0 are end of manufacturing support and were not evaluated.
Attacker Value
Unknown

CVE-2022-26240

Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand Message Buffer in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
Attacker Value
Unknown

CVE-2022-26239

Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand License Manager in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows unprivileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
Attacker Value
Unknown

CVE-2022-26237

Disclosure Date: October 06, 2022 (last updated February 24, 2025)
The default privileges for the running service Normand Viewer Service in Beckman Coulter Remisol Advance v2.0.12.1 and prior allows non-privileged users to overwrite and manipulate executables and libraries. This allows attackers to access sensitive data.
Attacker Value
Unknown

CVE-2022-23726

Disclosure Date: September 30, 2022 (last updated February 24, 2025)
PingCentral versions prior to listed versions expose Spring Boot actuator endpoints that with administrative authentication return large amounts of sensitive environmental and application information.
Attacker Value
Unknown

CVE-2020-15328

Disclosure Date: September 29, 2022 (last updated February 24, 2025)
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has weak /opt/axess/var/blobstorage/ permissions.
Attacker Value
Unknown

CVE-2020-15329

Disclosure Date: September 29, 2022 (last updated February 24, 2025)
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has weak Data.fs permissions.