Search Results (96569 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-28073 1 Radare 1 Radare2 2024-11-21 7.5 High
A use after free in r_reg_set_value function in radare2 5.4.2 and 5.4.0.
CVE-2022-28072 1 Radare 1 Radare2 2024-11-21 7.5 High
A heap buffer overflow in r_read_le32 function in radare25.4.2 and 5.4.0.
CVE-2022-28071 1 Radare 1 Radare2 2024-11-21 7.5 High
A use after free in r_reg_get_name_idx function in radare2 5.4.2 and 5.4.0.
CVE-2022-28070 1 Radare 1 Radare2 2024-11-21 7.5 High
A null pointer deference in __core_anal_fcn function in radare2 5.4.2 and 5.4.0.
CVE-2022-28069 1 Radare 1 Radare2 2024-11-21 7.5 High
A heap buffer overflow in vax_opfunction in radare2 5.4.2 and 5.4.0.
CVE-2022-28068 1 Radare 1 Radare2 2024-11-21 7.5 High
A heap buffer overflow in r_sleb128 function in radare2 5.4.2 and 5.4.0.
CVE-2022-28067 1 Sandboxie 1 Sandboxie 2024-11-21 8.6 High
An incorrect access control issue in Sandboxie Classic v5.55.13 allows attackers to cause a Denial of Service (DoS) in the Sandbox via a crafted executable.
CVE-2022-28062 1 Online Car Rental System Project 1 Online Car Rental System 2024-11-21 8.8 High
Car Rental System v1.0 contains an arbitrary file upload vulnerability via the Add Car component which allows attackers to upload a webshell and execute arbitrary code.
CVE-2022-28060 1 Victor Cms Project 1 Victor Cms 2024-11-21 7.5 High
SQL Injection vulnerability in Victor CMS v1.0, via the user_name parameter to /includes/login.php.
CVE-2022-28059 1 Verydows 1 Verydows 2024-11-21 8.1 High
Verydows v2.0 was discovered to contain an arbitrary file deletion vulnerability via \backend\database_controller.php.
CVE-2022-28058 1 Verydows 1 Verydows 2024-11-21 8.1 High
Verydows v2.0 was discovered to contain an arbitrary file deletion vulnerability via \backend\file_controller.php.
CVE-2022-28053 1 Typemill 1 Typemill 2024-11-21 8.8 High
Typemill v1.5.3 was discovered to contain an arbitrary file upload vulnerability via the upload function. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
CVE-2022-28052 1 Roothub 1 Roothub 2024-11-21 8.0 High
Directory Traversal vulnerability in file cn/roothub/store/FileSystemStorageService in function store in Roothub 2.6.0 allows remote attackers with low privlege to arbitrarily upload files via /common/upload API, which could lead to remote arbitrary code execution.
CVE-2022-28048 2 Fedoraproject, Stb Project 2 Fedora, Stb 2024-11-21 8.8 High
STB v2.27 was discovered to contain an integer shift of invalid size in the component stbi__jpeg_decode_block_prog_ac.
CVE-2022-28042 3 Debian, Fedoraproject, Nothings 3 Debian Linux, Fedora, Stb Image.h 2024-11-21 8.8 High
stb_image.h v2.27 was discovered to contain an heap-based use-after-free via the function stbi__jpeg_huff_decode.
CVE-2022-28020 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-11-21 8.8 High
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_edit.php.
CVE-2022-28019 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-11-21 8.8 High
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_edit.php.
CVE-2022-28018 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-11-21 8.8 High
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_edit.php.
CVE-2022-28017 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-11-21 8.8 High
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\overtime_edit.php.
CVE-2022-28016 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-11-21 8.8 High
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\deduction_edit.php.