Search Results (356041 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-38275 1 Jflyfox 1 Jfinal Cms 2024-11-21 7.2 High
JFinal CMS 5.1.0 is vulnerable to SQL Injection via /admin/contact/list.
CVE-2022-38274 1 Jflyfox 1 Jfinal Cms 2024-11-21 7.2 High
JFinal CMS 5.1.0 is vulnerable to SQL Injection via /admin/comment/list.
CVE-2022-38273 1 Jflyfox 1 Jfinal Cms 2024-11-21 7.2 High
JFinal CMS 5.1.0 is vulnerable to SQL Injection via /admin/article/list_approve.
CVE-2022-38272 1 Jflyfox 1 Jfinal Cms 2024-11-21 7.2 High
JFinal CMS 5.1.0 is vulnerable to SQL Injection via /admin/article/list.
CVE-2022-38269 1 School Activity Updates With Sms Notification Project 1 School Activity Updates With Sms Notification 2024-11-21 7.2 High
School Activity Updates with SMS Notification v1.0 was discovered to contain a SQL injection vulnerability via the component /modules/modstudent/index.php?view=edit&id=.
CVE-2022-38268 1 School Activity Updates With Sms Notification Project 1 School Activity Updates With Sms Notification 2024-11-21 7.2 High
School Activity Updates with SMS Notification v1.0 was discovered to contain a SQL injection vulnerability via the component /modules/autonumber/index.php?view=edit&id=.
CVE-2022-38267 1 School Activity Updates With Sms Notification Project 1 School Activity Updates With Sms Notification 2024-11-21 7.2 High
School Activity Updates with SMS Notification v1.0 was discovered to contain a SQL injection vulnerability via the component /modules/user/index.php?view=edit&id=.
CVE-2022-38266 3 Debian, Leptonica, Tesseract Project 3 Debian Linux, Leptonica, Tesseract 2024-11-21 6.5 Medium
An issue in the Leptonica linked library (v1.79.0) allows attackers to cause an arithmetic exception leading to a Denial of Service (DoS) via a crafted JPEG file.
CVE-2022-38265 1 Apartment Visitor Management System Project 1 Apartment Visitor Management System 2024-11-21 7.2 High
Apartment Visitor Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter at /avms/edit-apartment.php.
CVE-2022-38258 1 Dlink 2 Dir-819, Dir-819 Firmware 2024-11-21 8.1 High
A local file inclusion (LFI) vulnerability in D-Link DIR 819 v1.06 allows attackers to cause a Denial of Service (DoS) or access sensitive server information via manipulation of the getpage parameter in a crafted web request.
CVE-2022-38256 1 Tastyigniter 1 Tastyigniter 2024-11-21 5.4 Medium
TastyIgniter v3.5.0 was discovered to contain a cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVE-2022-38254 1 Nagios 1 Nagios Xi 2024-11-21 6.1 Medium
Nagios XI before v5.8.7 was discovered to contain a cross-site scripting (XSS) vulnerability via the ajax.php script in CCM 3.1.5.
CVE-2022-38251 1 Nagios 1 Nagios Xi 2024-11-21 4.8 Medium
Nagios XI v5.8.6 was discovered to contain a cross-site scripting (XSS) vulnerability via the System Performance Settings page under the Admin panel.
CVE-2022-38250 1 Nagios 1 Nagios Xi 2024-11-21 9.8 Critical
Nagios XI v5.8.6 was discovered to contain a SQL injection vulnerability via the mib_name parameter at the Manage MIBs page.
CVE-2022-38249 1 Nagios 1 Nagios Xi 2024-11-21 6.1 Medium
Nagios XI v5.8.6 was discovered to contain a cross-site scripting (XSS) vulnerability via the MTR component in version 1.0.4.
CVE-2022-38248 1 Nagios 1 Nagios Xi 2024-11-21 6.1 Medium
Nagios XI before v5.8.7 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities at auditlog.php.
CVE-2022-38247 1 Nagios 1 Nagios Xi 2024-11-21 4.8 Medium
Nagios XI v5.8.6 was discovered to contain a cross-site scripting (XSS) vulnerability via the System Settings page under the Admin panel.
CVE-2022-38238 1 Xpdf Project 1 Xpdf 2024-11-21 7.8 High
XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::lookChar() at /xpdf/Stream.cc.
CVE-2022-38237 1 Xpdf Project 1 Xpdf 2024-11-21 7.8 High
XPDF commit ffaf11c was discovered to contain a heap-buffer overflow via DCTStream::readScan() at /xpdf/Stream.cc.
CVE-2022-38236 1 Xpdf Project 1 Xpdf 2024-11-21 7.8 High
XPDF commit ffaf11c was discovered to contain a global-buffer overflow via Lexer::getObj(Object*) at /xpdf/Lexer.cc.