Show filters
231 Total Results
Displaying 131-140 of 231
Sort by:
Attacker Value
Unknown
CVE-2022-28758
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Zoom On-Premise Meeting Connector MMR before version 4.8.20220815.130 contains an improper access control vulnerability. As a result, a malicious actor could obtain the audio and video feed of a meeting they were not authorized to join and cause other meeting disruptions.
0
Attacker Value
Unknown
CVE-2022-28759
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Zoom On-Premise Meeting Connector MMR before version 4.8.20220815.130 contains an improper access control vulnerability. As a result, a malicious actor could obtain the audio and video feed of a meeting they were not authorized to join and cause other meeting disruptions.
0
Attacker Value
Unknown
CVE-2022-28760
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
Zoom On-Premise Meeting Connector MMR before version 4.8.20220815.130 contains an improper access control vulnerability. As a result, a malicious actor could obtain the audio and video feed of a meeting they were not authorized to join and cause other meeting disruptions.
0
Attacker Value
Unknown
CVE-2022-2804
Disclosure Date: August 12, 2022 (last updated February 24, 2025)
A vulnerability was found in SourceCodester Zoo Management System. It has been classified as critical. Affected is an unknown function of the file /pages/apply_vacancy.php. The manipulation of the argument filename leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-206250 is the identifier assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2022-2803
Disclosure Date: August 12, 2022 (last updated February 24, 2025)
A vulnerability was found in SourceCodester Zoo Management System and classified as critical. This issue affects some unknown processing of the file /pages/animals.php. The manipulation of the argument class_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-206249 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2022-28755
Disclosure Date: August 09, 2022 (last updated February 24, 2025)
The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.11.0 are susceptible to a URL parsing vulnerability. If a malicious Zoom meeting URL is opened, the malicious link may direct the user to connect to an arbitrary network address, leading to additional attacks including the potential for remote code execution through launching executables from arbitrary paths.
0
Attacker Value
Unknown
CVE-2021-40150
Disclosure Date: July 17, 2022 (last updated February 24, 2025)
The web server of the E1 Zoom camera through 3.0.0.716 discloses its configuration via the /conf/ directory that is mapped to a publicly accessible path. In this way an attacker can download the entire NGINX/FastCGI configurations by querying the /conf/nginx.conf or /conf/fastcgi.conf URI.
0
Attacker Value
Unknown
CVE-2021-40149
Disclosure Date: July 17, 2022 (last updated February 24, 2025)
The web server of the E1 Zoom camera through 3.0.0.716 discloses its SSL private key via the root web server directory. In this way an attacker can download the entire key via the /self.key URI.
0
Attacker Value
Unknown
CVE-2022-33075
Disclosure Date: July 05, 2022 (last updated February 24, 2025)
A stored cross-site scripting (XSS) vulnerability in the Add Classification function of Zoo Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2022-31897
Disclosure Date: June 29, 2022 (last updated February 24, 2025)
SourceCodester Zoo Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via public_html/register_visitor?msg=.
0