• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2022-34301
2022-09-01
N/A
6.7 MEDIUM
A flaw was found in CryptoPro Secure Disk bootloaders before 2022-06-01. An attacker may use this bootloader to bypass or tamper with Secure Boot protections. In order to load and execute arbitrary code in the pre-boot stage, an attacker simply needs to replace the existing signed bootloader currently in use with this bootloader. Access to the EFI System Partition is required for booting using external media.
CVE-2022-34300
2022-06-29
N/A
8.8 HIGH
In tinyexr 1.0.1, there is a heap-based buffer over-read in tinyexr::DecodePixelData.
CVE-2022-3430
2023-02-03
N/A
6.7 MEDIUM
A potential vulnerability in the WMI Setup driver on some consumer Lenovo Notebook devices may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
CVE-2022-34299
2022-06-29
N/A
8.1 HIGH
There is a heap-based buffer over-read in libdwarf 0.4.0. This issue is related to dwarf_global_formref_b.
CVE-2022-34298
2022-07-06
N/A
5.3 MEDIUM
The NT auth module in OpenAM before 14.6.6 allows a "replace Samba username attack."
CVE-2022-34297
2022-12-13
N/A
5.4 MEDIUM
Yii Yii2 Gii through 2.2.4 allows stored XSS by injecting a payload into any field.
CVE-2022-34296
2022-07-06
N/A
7.5 HIGH
In Zalando Skipper before 0.13.218, a query predicate could be bypassed via a prepared request.
CVE-2022-34295
2022-07-06
N/A
6.5 MEDIUM
totd before 1.5.3 does not properly randomize mesg IDs.
CVE-2022-34294
2022-08-17
N/A
9.8 CRITICAL
totd 1.5.3 uses a fixed UDP source port in upstream queries sent to DNS resolvers. This allows DNS cache poisoning because there is not enough entropy to prevent traffic injection attacks.
CVE-2022-34293
2022-08-12
N/A
7.5 HIGH
wolfSSL before 5.4.0 allows remote attackers to cause a denial of service via DTLS because a check for return-routability can be skipped.
« Previous 1 … 9,765 9,766 9,767 9,768 9,769 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE