Show filters
68 Total Results
Displaying 21-30 of 68
Sort by:
Attacker Value
Unknown

CVE-2022-34110

Disclosure Date: September 12, 2022 (last updated October 08, 2023)
An issue in Micro-Star International MSI Feature Navigator v1.0.1808.0901 allows attackers to download arbitrary files regardless of file type or size.
Attacker Value
Unknown

CVE-2022-34109

Disclosure Date: September 12, 2022 (last updated October 08, 2023)
An issue in Micro-Star International MSI Feature Navigator v1.0.1808.0901 allows attackers to write arbitrary files to the directory \PromoPhoto\, regardless of file type or size.
Attacker Value
Unknown

CVE-2022-34108

Disclosure Date: September 12, 2022 (last updated October 08, 2023)
An issue in the Feature Navigator of Micro-Star International MSI Feature Nagivator v1.0.1808.0901 allows attackers to cause a Denial of Service (DoS) via a crafted image or video file.
Attacker Value
Unknown

CVE-2021-42645

Disclosure Date: May 10, 2022 (last updated October 07, 2023)
CMSimple_XH 1.7.4 is affected by a remote code execution (RCE) vulnerability. To exploit this vulnerability, an attacker must use the "File" parameter to upload a PHP payload to get a reverse shell from the vulnerable host.
Attacker Value
Unknown

CVE-2021-43741

Disclosure Date: April 13, 2022 (last updated October 07, 2023)
CMSimple 5.4 is vulnerable to Directory Traversal. The vulnerability exists when a user changes the file name to malicious file on config.php leading to remote code execution.
Attacker Value
Unknown

CVE-2021-43742

Disclosure Date: April 13, 2022 (last updated October 07, 2023)
CMSimple 5.4 is vulnerable to Cross Site Scripting (XSS) via the file upload feature.
Attacker Value
Unknown

CVE-2021-44903

Disclosure Date: February 04, 2022 (last updated October 07, 2023)
Micro-Star International (MSI) Center Pro <= 2.0.16.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the atidgllk.sys, atillk64.sys, MODAPI.sys, NTIOLib.sys, NTIOLib_X64.sys, WinRing0.sys, WinRing0x64.sys drivers components. All the vulnerabilities are triggered by sending specific IOCTL requests.
Attacker Value
Unknown

CVE-2021-44901

Disclosure Date: February 04, 2022 (last updated October 07, 2023)
Micro-Star International (MSI) Dragon Center <= 2.0.116.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the atidgllk.sys, atillk64.sys, MODAPI.sys, NTIOLib.sys, NTIOLib_X64.sys, WinRing0.sys, WinRing0x64.sys drivers components. All the vulnerabilities are triggered by sending specific IOCTL requests.
Attacker Value
Unknown

CVE-2021-44900

Disclosure Date: February 04, 2022 (last updated October 07, 2023)
Micro-Star International (MSI) App Player <= 4.280.1.6309 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the NTIOLib_X64.sys and BstkDrv_msi2.sys drivers components. All the vulnerabilities are triggered by sending specific IOCTL requests.
Attacker Value
Unknown

CVE-2021-44899

Disclosure Date: February 04, 2022 (last updated October 07, 2023)
Micro-Star International (MSI) Center <= 1.0.31.0 is vulnerable to multiple Privilege Escalation vulnerabilities in the atidgllk.sys, atillk64.sys, MODAPI.sys, NTIOLib.sys, NTIOLib_X64.sys, WinRing0.sys, WinRing0x64.sys drivers components. All the vulnerabilities are triggered by sending specific IOCTL requests.