Show filters
219 Total Results
Displaying 71-80 of 219
Sort by:
Attacker Value
Unknown
CVE-2022-27538
Disclosure Date: February 01, 2023 (last updated October 08, 2023)
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential vulnerability.
0
Attacker Value
Unknown
CVE-2021-3439
Disclosure Date: February 01, 2023 (last updated October 08, 2023)
HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these potential vulnerabilities.
0
Attacker Value
Unknown
CVE-2023-0440
Disclosure Date: January 23, 2023 (last updated October 08, 2023)
Observable Discrepancy in GitHub repository healthchecks/healthchecks prior to v2.6.
0
Attacker Value
Unknown
CVE-2022-46471
Disclosure Date: January 13, 2023 (last updated February 24, 2025)
Online Health Care System v1.0 was discovered to contain a SQL injection vulnerability via the consulting_id parameter at /healthcare/Admin/consulting_detail.php.
0
Attacker Value
Unknown
CVE-2015-10032
Disclosure Date: January 09, 2023 (last updated February 24, 2025)
A vulnerability was found in HealthMateWeb. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file createaccount.php. The manipulation of the argument username/password/first_name/last_name/company/phone leads to cross site scripting. The attack can be launched remotely. The patch is named 472776c25b1046ecaf962c46fed7c713c72c28e3. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217663.
0
Attacker Value
Unknown
CVE-2022-2887
Disclosure Date: September 16, 2022 (last updated February 24, 2025)
The WP Server Health Stats WordPress plugin before 1.7.0 does not escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.
0
Attacker Value
Unknown
CVE-2021-3914
Disclosure Date: August 25, 2022 (last updated February 24, 2025)
It was found that the smallrye health metrics UI component did not properly sanitize some user inputs. An attacker could use this flaw to conduct cross-site scripting attacks.
0
Attacker Value
Unknown
CVE-2022-35218
Disclosure Date: July 29, 2022 (last updated February 24, 2025)
The NHI card’s web service component has a heap-based buffer overflow vulnerability due to insufficient validation for packet origin parameter length. A LAN attacker with general user privilege can exploit this vulnerability to disrupt service.
0
Attacker Value
Unknown
CVE-2022-35217
Disclosure Date: July 29, 2022 (last updated February 24, 2025)
The NHI card’s web service component has a stack-based buffer overflow vulnerability due to insufficient validation for network packet header length. A local area network attacker with general user privilege can exploit this vulnerability to execute arbitrary code, manipulate system command or disrupt service.
0
Attacker Value
Unknown
CVE-2022-35219
Disclosure Date: July 29, 2022 (last updated February 24, 2025)
The NHI card’s web service component has a stack-based buffer overflow vulnerability due to insufficient validation for network packet key parameter. A LAN attacker with general user privilege can exploit this vulnerability to disrupt service.
0