• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2022-4805
2023-01-05
N/A
4.3 MEDIUM
Incorrect Use of Privileged APIs in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4804
2023-01-05
N/A
5.3 MEDIUM
Improper Authorization in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-4803
Memos, Usememos
Memos
2023-01-05
N/A
8.8 HIGH
Improper Access Control in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-48023
2023-02-09
N/A
4.3 MEDIUM
Insufficient privilege verification in Zammad v5.3.0 allows an authenticated attacker to perform changes on the tags of their customer tickets using the Zammad API. This is now corrected in v5.3.1 so that only agents with write permissions may change ticket tags.
CVE-2022-48022
2023-02-09
N/A
4.3 MEDIUM
An issue in the component /api/v1/mentions of Zammad v5.3.0 allows authenticated attackers with agent permissions to view information about tickets they are not authorized to see.
CVE-2022-48021
2023-02-09
N/A
9.8 CRITICAL
A vulnerability in Zammad v5.3.0 allows attackers to execute arbitrary code or escalate privileges via a crafted message sent to the server.
CVE-2022-4802
Memos, Usememos
Memos
2023-01-05
N/A
5.4 MEDIUM
Improper Authorization in GitHub repository usememos/memos prior to 0.9.1.
CVE-2022-48019
2023-02-14
N/A
7.8 HIGH
The components wfshbr64.sys and wfshbr32.sys in Another Eden before v3.0.20 and before v2.14.200 allows attackers to perform privilege escalation via a crafted payload.
CVE-2022-48013
2023-02-04
N/A
5.4 MEDIUM
Opencats v0.9.7 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the component /opencats/index.php?m=calendar. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Description or Title text fields.
CVE-2022-48012
2023-02-04
N/A
6.1 MEDIUM
Opencats v0.9.7 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the component /opencats/index.php?m=settings&a=ajax_tags_upd.
« Previous 1 … 8,899 8,900 8,901 8,902 8,903 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE