Show filters
1,988 Total Results
Displaying 601-610 of 1,988
Sort by:
Attacker Value
Unknown
CVE-2021-40389
Disclosure Date: January 28, 2022 (last updated February 23, 2025)
A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iEdge Server 1.0.2. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2022-23258
Disclosure Date: January 25, 2022 (last updated November 29, 2024)
Microsoft Edge for Android Spoofing Vulnerability
0
Attacker Value
Unknown
CVE-2022-23219
Disclosure Date: January 14, 2022 (last updated February 23, 2025)
The deprecated compatibility function clnt_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its hostname argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution.
0
Attacker Value
Unknown
CVE-2022-22988
Disclosure Date: January 13, 2022 (last updated February 23, 2025)
File and directory permissions have been corrected to prevent unintended users from modifying or accessing resources. It would be more difficult for an authenticated attacker to now traverse through the files and directories. This can only be exploited once an attacker has already found a way to get authenticated access to the device.
0
Attacker Value
Unknown
CVE-2022-21954
Disclosure Date: January 11, 2022 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2022-21931
Disclosure Date: January 11, 2022 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2022-21930
Disclosure Date: January 11, 2022 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2022-21929
Disclosure Date: January 11, 2022 (last updated November 28, 2024)
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2021-36199
Disclosure Date: January 11, 2022 (last updated February 23, 2025)
Running a vulnerability scanner against VideoEdge NVRs can cause some functionality to stop.
0
Attacker Value
Unknown
CVE-2021-43844
Disclosure Date: December 20, 2021 (last updated February 23, 2025)
MSEdgeRedirect is a tool to redirect news, search, widgets, weather, and more to a user's default browser. MSEdgeRedirect versions before 0.5.0.1 are vulnerable to Remote Code Execution via specifically crafted URLs. This vulnerability requires user interaction and the acceptance of a prompt. With how MSEdgeRedirect is coded, parameters are impossible to pass to any launched file. However, there are two possible scenarios in which an attacker can do more than a minor annoyance. In Scenario 1 (confirmed), a user visits an attacker controlled webpage; the user is prompted with, and downloads, an executable payload; the user is prompted with, and accepts, the aforementioned crafted URL prompt; and RCE executes the payload the user previously downloaded, if the download path is successfully guessed. In Scenario 2 (not yet confirmed), a user visits an attacked controlled webpage; the user is prompted with, and accepts, the aforementioned crafted URL prompt; and a payload on a remote, attac…
0