Show filters
600 Total Results
Displaying 261-270 of 600
Sort by:
Attacker Value
Unknown

CVE-2021-24823

Disclosure Date: February 28, 2022 (last updated February 23, 2025)
The Support Board WordPress plugin before 3.3.6 does not have any CSRF checks in actions handled by the include/ajax.php file, which could allow attackers to make logged in users do unwanted actions. For example, make an admin delete arbitrary files
Attacker Value
Unknown

CVE-2022-23308

Disclosure Date: February 26, 2022 (last updated February 23, 2025)
valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes.
Attacker Value
Unknown

CVE-2022-24329

Disclosure Date: February 25, 2022 (last updated February 23, 2025)
In JetBrains Kotlin before 1.6.0, it was not possible to lock dependencies for Multiplatform Gradle Projects.
Attacker Value
Unknown

CVE-2022-25636

Disclosure Date: February 24, 2022 (last updated February 23, 2025)
net/netfilter/nf_dup_netdev.c in the Linux kernel 5.4 through 5.6.10 allows local users to gain privileges because of a heap out-of-bounds write. This is related to nf_tables_offload.
Attacker Value
Unknown

CVE-2021-20322

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
A flaw in the processing of received ICMP errors (ICMP fragment needed and ICMP redirect) in the Linux kernel functionality was found to allow the ability to quickly scan open UDP ports. This flaw allows an off-path remote user to effectively bypass the source port UDP randomization. The highest threat from this vulnerability is to confidentiality and possibly integrity, because software that relies on UDP source port randomization are indirectly affected as well.
Attacker Value
Unknown

CVE-2021-3773

Disclosure Date: February 16, 2022 (last updated February 23, 2025)
A flaw in netfilter could allow a network-connected attacker to infer openvpn connection endpoint information for further use in traditional network attacks.
Attacker Value
Unknown

CVE-2021-3752

Disclosure Date: February 16, 2022 (last updated February 23, 2025)
A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket and disconnect simultaneously due to a race condition. This flaw allows a user to crash the system or escalate their privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Attacker Value
Unknown

CVE-2020-6922

Disclosure Date: February 16, 2022 (last updated October 07, 2023)
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
Attacker Value
Unknown

CVE-2020-6921

Disclosure Date: February 16, 2022 (last updated October 07, 2023)
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.
Attacker Value
Unknown

CVE-2020-6920

Disclosure Date: February 16, 2022 (last updated October 07, 2023)
Potential security vulnerabilities including compromise of integrity, and allowed communication with untrusted clients has been identified in HP Support Assistant software.