Show filters
1,988 Total Results
Displaying 601-610 of 1,988
Sort by:
Attacker Value
Unknown

CVE-2021-40389

Disclosure Date: January 28, 2022 (last updated February 23, 2025)
A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iEdge Server 1.0.2. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.
Attacker Value
Unknown

CVE-2022-23258

Disclosure Date: January 25, 2022 (last updated November 29, 2024)
Microsoft Edge for Android Spoofing Vulnerability
0
Attacker Value
Unknown

CVE-2022-23219

Disclosure Date: January 14, 2022 (last updated February 23, 2025)
The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution.
Attacker Value
Unknown

CVE-2022-22988

Disclosure Date: January 13, 2022 (last updated February 23, 2025)
File and directory permissions have been corrected to prevent unintended users from modifying or accessing resources. It would be more difficult for an authenticated attacker to now traverse through the files and directories. This can only be exploited once an attacker has already found a way to get authenticated access to the device. 
Attacker Value
Unknown

CVE-2022-21954

Disclosure Date: January 11, 2022 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown

CVE-2022-21931

Disclosure Date: January 11, 2022 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
0
Attacker Value
Unknown

CVE-2022-21930

Disclosure Date: January 11, 2022 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
0
Attacker Value
Unknown

CVE-2022-21929

Disclosure Date: January 11, 2022 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
0
Attacker Value
Unknown

CVE-2021-36199

Disclosure Date: January 11, 2022 (last updated February 23, 2025)
Running a vulnerability scanner against VideoEdge NVRs can cause some functionality to stop.
Attacker Value
Unknown

CVE-2021-43844

Disclosure Date: December 20, 2021 (last updated February 23, 2025)
MSEdgeRedirect is a tool to redirect news, search, widgets, weather, and more to a user's default browser. MSEdgeRedirect versions before 0.5.0.1 are vulnerable to Remote Code Execution via specifically crafted URLs. This vulnerability requires user interaction and the acceptance of a prompt. With how MSEdgeRedirect is coded, parameters are impossible to pass to any launched file. However, there are two possible scenarios in which an attacker can do more than a minor annoyance. In Scenario 1 (confirmed), a user visits an attacker controlled webpage; the user is prompted with, and downloads, an executable payload; the user is prompted with, and accepts, the aforementioned crafted URL prompt; and RCE executes the payload the user previously downloaded, if the download path is successfully guessed. In Scenario 2 (not yet confirmed), a user visits an attacked controlled webpage; the user is prompted with, and accepts, the aforementioned crafted URL prompt; and a payload on a remote, attac…
0