Show filters
662 Total Results
Displaying 291-300 of 662
Sort by:
Attacker Value
Unknown

CVE-2022-28078

Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Home Owners Collection Management v1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in the Admin panel via the $_GET['page'] parameter.
Attacker Value
Unknown

CVE-2022-28077

Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Home Owners Collection Management v1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability in the Admin panel via the $_GET['s'] parameter.
Attacker Value
Unknown

CVE-2022-25989

Disclosure Date: May 05, 2022 (last updated February 23, 2025)
An authentication bypass vulnerability exists in the libxm_av.so getpeermac() functionality of Anker Eufy Homebase 2 2.1.8.5h. A specially-crafted DHCP packet can lead to authentication bypass. An attacker can DHCP poison to trigger this vulnerability.
Attacker Value
Unknown

CVE-2022-26073

Disclosure Date: May 05, 2022 (last updated February 23, 2025)
A denial of service vulnerability exists in the libxm_av.so DemuxCmdInBuffer functionality of Anker Eufy Homebase 2 2.1.8.5h. A specially-crafted set of network packets can lead to a device reboot. An attacker can send packets to trigger this vulnerability.
Attacker Value
Unknown

CVE-2022-28417

Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Home Owners Collection Management System v1.0 was discovered to contain a SQL injection vulnerability via /hocms/classes/Master.php?f=delete_phase.
Attacker Value
Unknown

CVE-2022-28416

Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Home Owners Collection Management System v1.0 was discovered to contain a SQL injection vulnerability via /hocms/classes/Master.php?f=delete_phase.
Attacker Value
Unknown

CVE-2022-28415

Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Home Owners Collection Management System v1.0 was discovered to contain a SQL injection vulnerability via /hocms/classes/Master.php?f=delete_collection.
Attacker Value
Unknown

CVE-2022-28414

Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Home Owners Collection Management System v1.0 was discovered to contain a SQL injection vulnerability via /hocms/classes/Master.php?f=delete_member.
Attacker Value
Unknown

CVE-2022-26423

Disclosure Date: April 12, 2022 (last updated February 24, 2025)
Aethon TUG Home Base Server versions prior to version 24 are affected by un unauthenticated attacker who can freely access hashed user credentials.
Attacker Value
Unknown

CVE-2022-1059

Disclosure Date: April 12, 2022 (last updated February 24, 2025)
Aethon TUG Home Base Server versions prior to version 24 are affected by un unauthenticated attacker who can freely access hashed user credentials.