Show filters
219 Total Results
Displaying 51-60 of 219
Sort by:
Attacker Value
Unknown
CVE-2022-29780
Disclosure Date: June 02, 2022 (last updated October 07, 2023)
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_array_prototype_sort at src/njs_array.c.
0
Attacker Value
Unknown
CVE-2022-29779
Disclosure Date: June 02, 2022 (last updated October 07, 2023)
Nginx NJS v0.7.2 was discovered to contain a segmentation violation in the function njs_value_own_enumerate at src/njs_value.c.
0
Attacker Value
Unknown
CVE-2022-30767
Disclosure Date: May 16, 2022 (last updated February 23, 2025)
nfs_lookup_reply in net/nfs.c in Das U-Boot through 2022.04 (and through 2022.07-rc2) has an unbounded memcpy with a failed length check, leading to a buffer overflow. NOTE: this issue exists because of an incorrect fix for CVE-2019-14196.
0
Attacker Value
Unknown
CVE-2021-27421
Disclosure Date: May 03, 2022 (last updated February 23, 2025)
NXP MCUXpresso SDK versions prior to 2.8.2 are vulnerable to integer overflow in SDK_Malloc function, which could allow to access memory locations outside the bounds of a specified array, leading to unexpected behavior such segmentation fault when assigning a particular block of memory from the heap via malloc.
0
Attacker Value
Unknown
CVE-2021-22680
Disclosure Date: May 03, 2022 (last updated February 23, 2025)
NXP MQX Versions 5.1 and prior are vulnerable to integer overflow in mem_alloc, _lwmem_alloc and _partition functions. This unverified memory assignment can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash or a remote code injection/execution.
0
Attacker Value
Unknown
CVE-2022-23822
Disclosure Date: April 26, 2022 (last updated February 23, 2025)
In this physical attack, an attacker may potentially exploit the Zynq-7000 SoC First Stage Boot Loader (FSBL) by bypassing authentication and loading a malicious image onto the device. This in turn may further allow the attacker to perform additional attacks such as such as using the device as a decryption oracle. An anticipated mitigation via a 2022.1 patch will resolve the issue.
0
Attacker Value
Unknown
CVE-2022-28379
Disclosure Date: April 03, 2022 (last updated February 23, 2025)
jc21.com Nginx Proxy Manager before 2.9.17 allows XSS during item deletion.
0
Attacker Value
Unknown
CVE-2022-26268
Disclosure Date: March 28, 2022 (last updated February 23, 2025)
Xiaohuanxiong v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /app/controller/Books.php.
0
Attacker Value
Unknown
CVE-2022-22819
Disclosure Date: March 23, 2022 (last updated February 23, 2025)
NXP LPC55S66JBD64, LPC55S66JBD100, LPC55S66JEV98, LPC55S69JBD64, LPC55S69JBD100, and LPC55S69JEV98 microcontrollers (ROM version 1B) have a buffer overflow in parsing SB2 updates before the signature is verified. This can allow an attacker to achieve non-persistent code execution via a crafted unsigned update.
0
Attacker Value
Unknown
CVE-2021-43737
Disclosure Date: March 23, 2022 (last updated February 23, 2025)
An issus was discovered in xiaohuanxiong CMS 5.0.17. There is a CSRF vulnerability that can modify administrator account's password.
0