Show filters
492 Total Results
Displaying 151-160 of 492
Sort by:
Attacker Value
Unknown

CVE-2022-26859

Disclosure Date: August 04, 2022 (last updated February 24, 2025)
Dell BIOS contains a race condition vulnerability. A local attacker could exploit this vulnerability by sending malicious input via SMI in order to bypass security checks during SMM.
Attacker Value
Unknown

CVE-2022-26858

Disclosure Date: August 04, 2022 (last updated February 24, 2025)
Dell BIOS versions contain an Improper Authentication vulnerability. A locally authenticated malicious user could potentially exploit this vulnerability by sending malicious input to an SMI in order to bypass security controls.
Attacker Value
Unknown

CVE-2022-32985

Disclosure Date: July 17, 2022 (last updated February 24, 2025)
libnx_apl.so on Nexans FTTO GigaSwitch before 6.02N and 7.x before 7.02 implements a Backdoor Account for SSH logins on port 50200 or 50201.
Attacker Value
Unknown

CVE-2022-29083

Disclosure Date: July 13, 2022 (last updated February 24, 2025)
Prior Dell BIOS versions contain an Improper Authentication vulnerability. An unauthenticated attacker with physical access to the system could potentially exploit this vulnerability by bypassing drive security mechanisms in order to gain access to the system.
Attacker Value
Unknown

CVE-2022-28620

Disclosure Date: June 24, 2022 (last updated October 07, 2023)
A remote authentication bypass vulnerability was discovered in HPE Cray Legacy Shasta System Solutions; HPE Slingshot; and HPE Cray EX supercomputers versions: Prior to node controller firmware associated with HPE Cray EX liquid cooled blades, and all versions of chassis controller firmware associated with HPE Cray EX liquid cooled cabinets prior to 1.6.27/1.5.33/1.4.27; All Slingshot versions prior to 1.7.2; All versions of node controller firmware associated with HPE Cray EX liquid cooled blades, and all versions of chassis controller firmware associated with HPE Cray EX liquid cooled cabinets prior to 1.6.27/1.5.33/1.4.27. HPE has provided a software update to resolve this vulnerability in HPE Cray Legacy Shasta System Solutions, HPE Slingshot, and HPE Cray EX Supercomputers.
Attacker Value
Unknown

CVE-2022-26863

Disclosure Date: June 21, 2022 (last updated February 24, 2025)
Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerability by sending malicious input to an SMI in order to bypass security controls in SMM.
Attacker Value
Unknown

CVE-2022-26864

Disclosure Date: June 21, 2022 (last updated February 24, 2025)
Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerability by sending malicious input to an SMI in order to bypass security controls in SMM.
Attacker Value
Unknown

CVE-2022-26862

Disclosure Date: June 21, 2022 (last updated February 23, 2025)
Prior Dell BIOS versions contain an Input Validation vulnerability. A locally authenticated malicious user could potentially exploit this vulnerability by sending malicious input to an SMI in order to bypass security controls in SMM.
Attacker Value
Unknown

CVE-2022-21806

Disclosure Date: June 15, 2022 (last updated February 23, 2025)
A use-after-free vulnerability exists in the mips_collector appsrv_server functionality of Anker Eufy Homebase 2 2.1.8.5h. A specially-crafted set of network packets can lead to remote code execution. The device is exposed to attacks from the network.
Attacker Value
Unknown

CVE-2022-1998

Disclosure Date: June 09, 2022 (last updated February 23, 2025)
A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call to fail in copy_event_to_user(). A local user could use this flaw to crash the system or potentially escalate their privileges on the system.