Show filters
662 Total Results
Displaying 261-270 of 662
Sort by:
Attacker Value
Unknown

CVE-2022-44745

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Sensitive information leak through log files. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40107.
Attacker Value
Unknown

CVE-2022-44744

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40107.
Attacker Value
Unknown

CVE-2022-44747

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Local privilege escalation due to improper soft link handling. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40107.
Attacker Value
Unknown

CVE-2022-44733

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 39900.
Attacker Value
Unknown

CVE-2022-44732

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 39900.
Attacker Value
Unknown

CVE-2022-32175

Disclosure Date: October 11, 2022 (last updated February 24, 2025)
In AdGuardHome, versions v0.95 through v0.108.0-b.13 are vulnerable to Cross-Site Request Forgery (CSRF), in the custom filtering rules functionality. An attacker can persuade an authorized user to follow a malicious link, resulting in deleting/modifying the custom filtering rules.
Attacker Value
Unknown

CVE-2022-23006

Disclosure Date: September 27, 2022 (last updated February 24, 2025)
A stack-based buffer overflow vulnerability was found on Western Digital My Cloud Home, My Cloud Home Duo, and SanDisk ibi that could allow an attacker accessing the system locally to read information from /etc/version file. This vulnerability can only be exploited by chaining it with another issue. If an attacker is able to carry out a remote code execution attack, they can gain access to the vulnerable file, due to the presence of insecure functions in code. User interaction is required for exploitation. Exploiting the vulnerability could result in exposure of information, ability to modify files, memory access errors, or system crashes.
Attacker Value
Unknown

CVE-2022-29503

Disclosure Date: September 22, 2022 (last updated February 24, 2025)
A memory corruption vulnerability exists in the libpthread linuxthreads functionality of uClibC 0.9.33.2 and uClibC-ng 1.0.40. Thread allocation can lead to memory corruption. An attacker can create threads to trigger this vulnerability.
Attacker Value
Unknown

CVE-2022-36344

Disclosure Date: August 16, 2022 (last updated February 24, 2025)
An unquoted search path vulnerability exists in 'JustSystems JUST Online Update for J-License' bundled with multiple products for corporate users as in Ichitaro through Pro5 and others. Since the affected product starts another program with an unquoted file path, a malicious file may be executed with the privilege of the Windows service if it is placed in a certain path. Affected products are bundled with the following product series: Office and Office Integrated Software, ATOK, Hanako, JUST PDF, Shuriken, Homepage Builder, JUST School, JUST Smile Class, JUST Smile, JUST Frontier, JUST Jump, and Tri-De DetaProtect.
Attacker Value
Unknown

CVE-2020-14114

Disclosure Date: July 22, 2022 (last updated October 07, 2023)
information leakage vulnerability exists in the Xiaomi SmartHome APP. This vulnerability is caused by illegal calls of some sensitive JS interfaces, which can be exploited by attackers to leak sensitive information.