Export limit exceeded: 399421 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Export limit exceeded: 101347 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (101347 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-36603 1 Innosilicon 2 T3t\+, T3t\+ Firmware 2024-11-21 8.8 High
InnoSilicon T3T+ t2t+_soc_20190911_151433.swu was discovered to contain a remote code execution (RCE) vulnerability in the checkUrl function.
CVE-2022-36602 1 Innosilicon 2 A10, A10 Firmware 2024-11-21 8.8 High
InnoSilicon A10 a10_20200924_120556 was discovered to contain a remote code execution (RCE) vulnerability in the setPlatformAPI function.
CVE-2022-36582 1 Garage Management System Project 1 Garage Management System 2024-11-21 7.2 High
An arbitrary file upload vulnerability in the component /php_action/createProduct.php of Garage Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.
CVE-2022-36581 1 Online Ordering System Project 1 Online Ordering System 2024-11-21 7.5 High
Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via the user_email parameter at /admin/login.php.
CVE-2022-36580 1 Online Ordering System Project 1 Online Ordering System 2024-11-21 7.2 High
An arbitrary file upload vulnerability in the component /admin/products/controller.php?action=add of Online Ordering System v2.3.2 allows attackers to execute arbitrary code via a crafted PHP file.
CVE-2022-36579 1 Wellcms 1 Wellcms 2024-11-21 8.8 High
Wellcms 2.2.0 is vulnerable to Cross Site Request Forgery (CSRF).
CVE-2022-36577 1 Jizhicms 1 Jizhicms 2024-11-21 8.8 High
An issue was discovered in jizhicms v2.3.1. There is a CSRF vulnerability that can add a admin.
CVE-2022-36571 1 Tenda 2 Ac9, Ac9 Firmware 2024-11-21 7.2 High
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the mask parameter at /goform/WanParameterSetting.
CVE-2022-36570 1 Tenda 2 Ac9, Ac9 Firmware 2024-11-21 7.2 High
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the time parameter at /goform/SetLEDCfg.
CVE-2022-36569 1 Tenda 2 Ac9, Ac9 Firmware 2024-11-21 8.8 High
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the deviceList parameter at /goform/setMacFilterCfg.
CVE-2022-36568 1 Tenda 2 Ac9, Ac9 Firmware 2024-11-21 8.8 High
Tenda AC9 V15.03.05.19 was discovered to contain a stack overflow via the list parameter at /goform/setPptpUserList.
CVE-2022-36565 1 Wampserver 1 Wampserver 2024-11-21 8.8 High
Incorrect access control in the install directory (C:\Wamp64) of Wamp v3.2.6 and below allows authenticated attackers to execute arbitrary code via overwriting binaries located in the directory.
CVE-2022-36564 2 Microsoft, Strawberryperl 2 Windows, Strawberryperl 2024-11-21 8.8 High
Incorrect access control in the install directory (C:\Strawberry) of StrawberryPerl v5.32.1.1 and below allows authenticated attackers to execute arbitrary code via overwriting binaries located in the directory.
CVE-2022-36563 1 Rubyinstaller 1 Rubyinstaller2 2024-11-21 8.8 High
Incorrect access control in the install directory (C:\RailsInstaller) of Rubyinstaller2 v3.1.2 and below allows authenticated attackers to execute arbitrary code via overwriting binaries located in the directory.
CVE-2022-36562 1 Rubyinstaller 1 Rubyinstaller2 2024-11-21 8.8 High
Incorrect access control in the install directory (C:\Ruby31-x64) of Rubyinstaller2 v3.1.2 and below allows authenticated attackers to execute arbitrary code via overwriting binaries located in the directory.
CVE-2022-36552 1 Tendacn 2 Ac6, Ac6 Firmware 2024-11-21 7.5 High
Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains an issue in the component /cgi-bin/DownloadFlash which allows attackers to steal all data such as source code and system files via a crafted GET request.
CVE-2022-36539 1 Eigen\&wijzer Ouderapp Project 1 Eigen\&wijzer Ouderapp 2024-11-21 7.5 High
WeDayCare B.V Ouderapp before v1.1.22 allows attackers to alter the ID value within intercepted calls to gain access to data of other parents and children.
CVE-2022-36534 2 Linux, Syncovery 2 Linux Kernel, Syncovery 2024-11-21 8.8 High
Super Flexible Software GmbH & Co. KG Syncovery 9 for Linux v9.47x and below was discovered to contain multiple remote code execution (RCE) vulnerabilities via the Job_ExecuteBefore and Job_ExecuteAfter parameters at post_profilesettings.php.
CVE-2022-36532 1 Bolt 1 Bolt Cms 2024-11-21 8.8 High
Bolt CMS contains a vulnerability in version 5.1.12 and below that allows an authenticated user with the ROLE_EDITOR privileges to upload and rename a malicious file to achieve remote code execution.
CVE-2022-36529 1 Kensite Cms Project 1 Kensite Cms 2024-11-21 8.8 High
Kensite CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities via the name and oldname parameters at /framework/mod/db/DBMapper.xml.