• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-862

CVE-2022-3946

February 23, 2023 by godfreyd94

The Welcart e-Commerce WordPress plugin before 2.8.4 does not have authorisation and CSRF in an AJAX action, allowing any logged-in user to create, update and delete shipping methods.

CVE-2022-3961

February 23, 2023 by godfreyd94

The Directorist WordPress plugin before 7.4.4 does not prevent users with low privileges (like subscribers) from accessing sensitive system information.

CVE-2022-3920

February 23, 2023 by godfreyd94

HashiCorp Consul and Consul Enterprise 1.13.0 up to 1.13.3 do not filter cluster filtering’s imported nodes and services for HTTP or RPC endpoints used by the UI. Fixed in 1.14.0.

CVE-2022-39090

February 23, 2023 by godfreyd94

In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

CVE-2022-39091

February 23, 2023 by godfreyd94

In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

CVE-2022-39092

February 23, 2023 by godfreyd94

In power management service, there is a missing permission check. This could lead to set up power management service with no additional execution privileges needed.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 152
  • Go to page 153
  • Go to page 154
  • Go to page 155
  • Go to page 156
  • Interim pages omitted …
  • Go to page 211
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE