Search Results (357649 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-31590 1 Sap 1 Powerdesigner Proxy 2024-11-21 7.8 High
SAP PowerDesigner Proxy - version 16.7, allows an attacker with low privileges and has local access, with the ability to work around system’s root disk access restrictions to Write/Create a program file on system disk root path, which could then be executed with elevated privileges of the application during application start up or reboot, potentially compromising Confidentiality, Integrity and Availability of the system.
CVE-2022-31589 1 Sap 3 Erp Financial Accounting, Erp Localization For Cee Countries, S\/4hana 2024-11-21 6.5 Medium
Due to improper authorization check, business users who are using Israeli File from SHAAM program (/ATL/VQ23 transaction), are granted more than needed authorization to perform certain transaction, which may lead to users getting access to data that would otherwise be restricted.
CVE-2022-31588 1 Testplatform Project 1 Testplatform 2024-11-21 9.3 Critical
The zippies/testplatform repository through 2016-07-19 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31587 1 Kg-fashion-chatbot Project 1 Kg-fashion-chatbot 2024-11-21 9.3 Critical
The yuriyouzhou/KG-fashion-chatbot repository through 2018-05-22 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31586 1 Changepop-back Project 1 Changepop-back 2024-11-21 9.3 Critical
The unizar-30226-2019-06/ChangePop-Back repository through 2019-06-04 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31585 1 Home Internet Project 1 Home Internet 2024-11-21 9.3 Critical
The umeshpatil-dev/Home__internet repository through 2020-08-28 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31584 1 S3label Project 1 S3label 2024-11-21 9.3 Critical
The stonethree/s3label repository through 2019-08-14 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31583 1 Automatedquizeval Project 1 Automatedquizeval 2024-11-21 9.3 Critical
The sravaniboinepelli/AutomatedQuizEval repository through 2020-04-27 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31582 1 Videoserver Project 1 Videoserver 2024-11-21 9.3 Critical
The shaolo1/VideoServer repository through 2019-09-21 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31581 1 Scorelab 1 Openmf 2024-11-21 9.3 Critical
The scorelab/OpenMF repository before 2022-05-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31580 1 Caretakerr-api Project 1 Caretakerr-api 2024-11-21 9.3 Critical
The sanojtharindu/caretakerr-api repository through 2021-05-17 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31579 1 Iasset Project 1 Iasset 2024-11-21 9.3 Critical
The ralphjzhang/iasset repository through 2022-05-04 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31578 1 Bt Lnmp Project 1 Bt Lnmp 2024-11-21 7.5 High
The piaoyunsoft/bt_lnmp repository through 2019-10-10 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31577 1 Audio Aligner App Project 1 Audio Aligner App 2024-11-21 9.3 Critical
The longmaoteamtf/audio_aligner_app repository through 2020-01-10 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31576 1 Shackerpanel Project 1 Shackerpanel 2024-11-21 9.3 Critical
The heidi-luong1109/shackerpanel repository through 2021-05-25 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31575 1 Livro Python Project 1 Livro Python 2024-11-21 9.3 Critical
The duducosmos/livro_python repository through 2018-06-06 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31574 1 Realestate Project 1 Realestate 2024-11-21 9.3 Critical
The deepaliupadhyay/RealEstate repository through 2018-11-30 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31573 1 Chainer 1 Chainerrl-visualizer 2024-11-21 9.3 Critical
The chainer/chainerrl-visualizer repository through 0.1.1 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31572 1 Cockybook Project 1 Cockybook 2024-11-21 9.3 Critical
The ceee-vip/cockybook repository through 2015-04-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31571 1 Python-flask-restful-api Project 1 Python-flask-restful-api 2024-11-21 9.3 Critical
The akashtalole/python-flask-restful-api repository through 2019-09-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.