Show filters
440 Total Results
Displaying 231-240 of 440
Sort by:
Attacker Value
Unknown
CVE-2022-38700
Disclosure Date: September 06, 2022 (last updated February 24, 2025)
OpenHarmony-v3.1.1 and prior versions have a permission bypass vulnerability. LAN attackers can bypass permission control and get control of camera service.
0
Attacker Value
Unknown
CVE-2022-36449
Disclosure Date: September 01, 2022 (last updated February 24, 2025)
An issue was discovered in the Arm Mali GPU Kernel Driver. A non-privileged user can make improper GPU processing operations to gain access to already freed memory, write a limited amount outside of buffer bounds, or to disclose details of memory mappings. This affects Midgard r4p0 through r32p0, Bifrost r0p0 through r38p0 and r39p0 before r38p1, and Valhall r19p0 through r38p0 and r39p0 before r38p1.
0
Attacker Value
Unknown
CVE-2022-33917
Disclosure Date: August 02, 2022 (last updated October 08, 2023)
An issue was discovered in the Arm Mali GPU Kernel Driver (Valhall r29p0 through r38p0). A non-privileged user can make improper GPU processing operations to gain access to already freed memory.
0
Attacker Value
Unknown
CVE-2022-34950
Disclosure Date: August 02, 2022 (last updated February 24, 2025)
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at editproduct.php.
0
Attacker Value
Unknown
CVE-2022-34949
Disclosure Date: August 02, 2022 (last updated February 24, 2025)
Pharmacy Management System v1.0 was discovered to contain multiple SQL injection vulnerabilities via the email or password parameter at login.php.
0
Attacker Value
Unknown
CVE-2022-34948
Disclosure Date: August 02, 2022 (last updated February 24, 2025)
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at editbrand.php.
0
Attacker Value
Unknown
CVE-2022-34947
Disclosure Date: August 02, 2022 (last updated February 24, 2025)
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at editcategory.php.
0
Attacker Value
Unknown
CVE-2022-34946
Disclosure Date: August 02, 2022 (last updated February 24, 2025)
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the startDate parameter at getexpproduct.php.
0
Attacker Value
Unknown
CVE-2022-34945
Disclosure Date: August 02, 2022 (last updated February 24, 2025)
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the startDate parameter at getproductreport.php.
0
Attacker Value
Unknown
CVE-2022-35409
Disclosure Date: July 15, 2022 (last updated February 24, 2025)
An issue was discovered in Mbed TLS before 2.28.1 and 3.x before 3.2.0. In some configurations, an unauthenticated attacker can send an invalid ClientHello message to a DTLS server that causes a heap-based buffer over-read of up to 255 bytes. This can cause a server crash or possibly information disclosure based on error responses. Affected configurations have MBEDTLS_SSL_DTLS_CLIENT_PORT_REUSE enabled and MBEDTLS_SSL_IN_CONTENT_LEN less than a threshold that depends on the configuration: 258 bytes if using mbedtls_ssl_cookie_check, and possibly up to 571 bytes with a custom cookie check function.
0