Show filters
1,825 Total Results
Displaying 71-80 of 1,825
Sort by:
Attacker Value
Unknown

CVE-2022-40771

Disclosure Date: November 23, 2022 (last updated February 24, 2025)
Zoho ManageEngine ServiceDesk Plus versions 13010 and prior are vulnerable to an XML External Entity attack that leads to Information Disclosure.
Attacker Value
Unknown

CVE-2022-43426

Disclosure Date: October 19, 2022 (last updated October 25, 2023)
Jenkins S3 Explorer Plugin 1.0.8 and earlier does not mask the AWS_SECRET_ACCESS_KEY form field, increasing the potential for attackers to observe and capture it.
Attacker Value
Unknown

CVE-2022-38573

Disclosure Date: September 23, 2022 (last updated February 24, 2025)
10-Strike Network Inventory Explorer v9.3 was discovered to contain a buffer overflow via the Add Computers function.
Attacker Value
Unknown

CVE-2022-35403

Disclosure Date: July 12, 2022 (last updated October 07, 2023)
Zoho ManageEngine ServiceDesk Plus before 13008, ServiceDesk Plus MSP before 10606, and SupportCenter Plus before 11022 are affected by an unauthenticated local file disclosure vulnerability via ticket-creation email. (This also affects Asset Explorer before 6977 with authentication.)
Attacker Value
Unknown

CVE-2022-33002

Disclosure Date: June 24, 2022 (last updated October 07, 2023)
The KGExplore package in PyPI v0.1.1 to v0.1.2 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
Attacker Value
Unknown

CVE-2022-24077

Disclosure Date: June 13, 2022 (last updated February 23, 2025)
Naver Cloud Explorer Beta allows the attacker to execute arbitrary code as System privilege via malicious DLL injection.
Attacker Value
Unknown

CVE-2022-27438

Disclosure Date: June 06, 2022 (last updated February 23, 2025)
Caphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are affected by a remote code execution vulnerability via the CustomDetection parameter in the update check function. To exploit this vulnerability, a user must start an affected installation to trigger the update check.
Attacker Value
Unknown

CVE-2022-27412

Disclosure Date: May 09, 2022 (last updated February 23, 2025)
Explore CMS v1.0 was discovered to contain a SQL injection vulnerability via a /page.php?id= request.
Attacker Value
Unknown

CVE-2021-43460

Disclosure Date: April 04, 2022 (last updated February 23, 2025)
An Unquoted Service Path vulnerability exists in System Explorer 7.0.0 via via a specially crafted file in the SystemExplorerHelpService service executable path.
Attacker Value
Unknown

CVE-2022-23256

Disclosure Date: February 09, 2022 (last updated December 21, 2023)
Azure Data Explorer Spoofing Vulnerability