• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2022-47769
2023-02-08
N/A
9.8 CRITICAL
An arbitrary file write vulnerability in Serenissima Informatica Fast Checkin v1.0 allows unauthenticated attackers to upload malicious files in the web root of the application to gain access to the server via the web shell.
CVE-2022-47768
2023-02-08
N/A
7.5 HIGH
Serenissima Informatica Fast Checkin 1.0 is vulnerable to Directory Traversal.
CVE-2022-47767
2023-02-06
N/A
9.8 CRITICAL
A backdoor in Solar-Log Gateway products allows remote access via web panel gaining super administration privileges to the attacker. This affects all Solar-Log devices that use firmware version v4.2.7 up to v5.1.1 (included).
CVE-2022-47766
2023-01-25
N/A
8.8 HIGH
PopojiCMS v2.0.1 backend plugin function has a file upload vulnerability.
CVE-2022-47762
2023-02-10
N/A
7.5 HIGH
In gin-vue-admin < 2.5.5, the download module has a Path Traversal vulnerability.
CVE-2022-4776
2023-02-06
N/A
5.4 MEDIUM
The CC Child Pages WordPress plugin before 1.43 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.
CVE-2022-4775
2023-02-01
N/A
5.4 MEDIUM
The GeoDirectory WordPress plugin before 2.2.22 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.
CVE-2022-47747
2023-01-27
N/A
7.5 HIGH
kraken <= 0.1.4 has an arbitrary file read vulnerability via the component testfs.
CVE-2022-47745
2023-01-26
N/A
8.8 HIGH
ZenTao 16.4 to 18.0.beta1 is vulnerable to SQL injection. After logging in with any user, you can complete SQL injection by constructing a special request and sending it to function importNotice.
CVE-2022-47740
2023-01-26
N/A
9.8 CRITICAL
Seltmann GmbH Content Management System 6 is vulnerable to SQL Injection via /index.php.
« Previous 1 … 8,908 8,909 8,910 8,911 8,912 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE