Show filters
159 Total Results
Displaying 41-50 of 159
Sort by:
Attacker Value
Unknown

CVE-2021-3942

Disclosure Date: December 12, 2022 (last updated October 08, 2023)
Certain HP Print products and Digital Sending products may be vulnerable to potential remote code execution and buffer overflow with use of Link-Local Multicast Name Resolution or LLMNR.
Attacker Value
Unknown

CVE-2022-40977

Disclosure Date: November 24, 2022 (last updated November 09, 2023)
A path traversal vulnerability was discovered in Pilz PASvisu Server before 1.12.0. An unauthenticated remote attacker could use a zipped, malicious configuration file to trigger arbitrary file writes ('zip-slip'). File writes do not affect confidentiality or availability.
Attacker Value
Unknown

CVE-2022-28722

Disclosure Date: September 26, 2022 (last updated October 08, 2023)
Certain HP Print Products are potentially vulnerable to Buffer Overflow.
Attacker Value
Unknown

CVE-2022-28721

Disclosure Date: September 26, 2022 (last updated October 08, 2023)
Certain HP Print Products are potentially vulnerable to Remote Code Execution.
Attacker Value
Unknown

CVE-2022-37395

Disclosure Date: September 20, 2022 (last updated October 08, 2023)
A Huawei device has an input verification vulnerability. Successful exploitation of this vulnerability may lead to DoS attacks.Affected product versions include:CV81-WDM FW versions 01.70.49.29.46.
Attacker Value
Unknown

CVE-2022-2758

Disclosure Date: August 16, 2022 (last updated November 29, 2024)
Passwords are not adequately encrypted during the communication process between all versions of LS Industrial Systems (LSIS) Co. Ltd LS Electric XG5000 software prior to V4.0 and LS Electric PLCs: all versions of XGK-CPUU/H/A/S/E prior to V3.50, all versions of XGI-CPUU/UD/H/S/E prior to V3.20, all versions of XGR-CPUH prior to V1.80, all versions of XGB-XBMS prior to V3.00, all versions of XGB-XBCH prior to V1.90, and all versions of XGB-XECH prior to V1.30. This would allow an attacker to identify and decrypt the password of the affected PLCs by sniffing the PLC’s communication traffic.
Attacker Value
Unknown

CVE-2022-35923

Disclosure Date: August 02, 2022 (last updated October 08, 2023)
v8n is a javascript validation library. Versions of v8n prior to 1.5.1 were found to have an inefficient regular expression complexity in the `lowercase()` and `uppercase()` regex which could lead to a denial of service attack. In testing of the `lowercase()` function a payload of 'a' + 'a'.repeat(i) + 'A' with 32 leading characters took 29443 ms to execute. The same issue happens with uppercase(). Users are advised to upgrade. There are no known workarounds for this issue.
Attacker Value
Unknown

CVE-2020-21406

Disclosure Date: July 20, 2022 (last updated October 07, 2023)
An issue was discovered in RK Smart TV Box MAX and V88 SmartTV box that allows attackers to cause a denial of service via the switchNextDisplayInterface service.
Attacker Value
Unknown

CVE-2022-29798

Disclosure Date: June 13, 2022 (last updated October 07, 2023)
There is a denial of service vulnerability in CV81-WDM FW versions 01.70.49.29.46. Successful exploitation could cause denial of service.
Attacker Value
Unknown

CVE-2022-29797

Disclosure Date: June 13, 2022 (last updated February 23, 2025)
There is a buffer overflow vulnerability in CV81-WDM FW 01.70.49.29.46. Successful exploitation of this vulnerability may lead to privilege escalation.