Show filters
809 Total Results
Displaying 321-330 of 809
Sort by:
Attacker Value
Unknown
CVE-2021-43463
Disclosure Date: April 04, 2022 (last updated February 23, 2025)
An Unquoted Service Path vulnerability exists in Ext2Fsd v0.68 via a specially crafted file in the Ext2Srv Service executable service path.
0
Attacker Value
Unknown
CVE-2022-22996
Disclosure Date: March 30, 2022 (last updated February 23, 2025)
The G-RAID 4/8 Software Utility setups for Windows were affected by a DLL hijacking vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the system user.
0
Attacker Value
Unknown
CVE-2022-26520
Disclosure Date: March 10, 2022 (last updated November 08, 2023)
In pgjdbc before 42.3.3, an attacker (who controls the jdbc URL or properties) can call java.util.logging.FileHandler to write to arbitrary files through the loggerFile and loggerLevel connection properties. An example situation is that an attacker could create an executable JSP file under a Tomcat web root. NOTE: the vendor's position is that there is no pgjdbc vulnerability; instead, it is a vulnerability for any application to use the pgjdbc driver with untrusted connection properties
0
Attacker Value
Unknown
CVE-2022-23773
Disclosure Date: February 11, 2022 (last updated February 23, 2025)
cmd/go in Go before 1.16.14 and 1.17.x before 1.17.7 can misinterpret branch names that falsely appear to be version tags. This can lead to incorrect access control if an actor is supposed to be able to create branches but not tags.
0
Attacker Value
Unknown
CVE-2022-23772
Disclosure Date: February 11, 2022 (last updated February 23, 2025)
Rat.SetString in math/big in Go before 1.16.14 and 1.17.x before 1.17.7 has an overflow that can lead to Uncontrolled Memory Consumption.
0
Attacker Value
Unknown
CVE-2021-33115
Disclosure Date: February 09, 2022 (last updated February 23, 2025)
Improper input validation for some Intel(R) PROSet/Wireless WiFi in UEFI may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
0
Attacker Value
Unknown
CVE-2022-21815
Disclosure Date: February 07, 2022 (last updated February 23, 2025)
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for private IOCTLs where a NULL pointer dereference in the kernel, created within user mode code, may lead to a denial of service in the form of a system crash.
0
Attacker Value
Unknown
CVE-2022-21814
Disclosure Date: February 07, 2022 (last updated February 23, 2025)
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver package, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
0
Attacker Value
Unknown
CVE-2022-21813
Disclosure Date: February 07, 2022 (last updated February 23, 2025)
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel driver, where improper handling of insufficient permissions or privileges may allow an unprivileged local user limited write access to protected memory, which can lead to denial of service.
0
Attacker Value
Unknown
CVE-2022-21724
Disclosure Date: February 02, 2022 (last updated February 23, 2025)
pgjdbc is the offical PostgreSQL JDBC Driver. A security hole was found in the jdbc driver for postgresql database while doing security research. The system using the postgresql library will be attacked when attacker control the jdbc url or properties. pgjdbc instantiates plugin instances based on class names provided via `authenticationPluginClassName`, `sslhostnameverifier`, `socketFactory`, `sslfactory`, `sslpasswordcallback` connection properties. However, the driver did not verify if the class implements the expected interface before instantiating the class. This can lead to code execution loaded via arbitrary classes. Users using plugins are advised to upgrade. There are no known workarounds for this issue.
0