VulnSea

Tagged “csaf”

CVEs tagged csaf, newest first.

3138 CVEsRSS

CVE-2022-20931Medium· 6.5
3y ago

Cisco Touch 10 Device Downgrade Attack Vulnerability

A vulnerability in the version control of Cisco TelePresence CE Software for Cisco Touch 10 Devices could allow an unauthenticated, adjacent attacker to install an older version of the software on an affected device. This vulnerability …

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.27%via CSAF
CVE-2022-20793Medium· 6.8
3y ago

Cisco Touch 10 Device Insufficient Identity Verification Vulnerability

A vulnerability in pairing process of Cisco TelePresence CE Software and RoomOS Software for Cisco Touch 10 Devices could allow an unauthenticated, remote attacker to impersonate a legitimate device and pair with an affected device. Thi…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.43%via CSAF
CVE-2022-20728Medium· 4.7
4y ago

Cisco Aironet Access Points VLAN bypass from Native VLAN Vulnerability

A vulnerability in the client forwarding code of multiple Cisco Access Points (APs) could allow an unauthenticated, adjacent attacker to inject packets from the native VLAN to clients within nonnative VLANs on an affected device. This v…

▾ SunlitCisco · Cisco Aironet Access Point Software (IOS XE Controller)EPSS 0.27%via CSAF
CVE-2022-3297High· 7.8
4y ago

Use After Free in GitHub repository vim/vim prior to 9.0.0579.

Use After Free in GitHub repository vim/vim prior to 9.0.0579.

▾ Twilightneovim · neovimEPSS 0.52%via NVD
CVE-2022-3296High· 7.8
4y ago

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0577.

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0577.

▾ Twilightneovim · neovimEPSS 0.56%via NVD
CVE-2022-3256High· 7.8
4y ago

Use After Free in GitHub repository vim/vim prior to 9.0.0530.

Use After Free in GitHub repository vim/vim prior to 9.0.0530.

▾ Twilightneovim · neovimEPSS 0.49%via NVD
CVE-2022-38266Medium· 6.5
4y ago

An issue in the Leptonica linked library (v1.79.0) allows attackers to cause an arithmetic exception leading to a Denial of Service (DoS) via a crafted JPEG file.

An issue in the Leptonica linked library (v1.79.0) allows attackers to cause an arithmetic exception leading to a Denial of Service (DoS) via a crafted JPEG file.

▾ Sunlittesseract-ocr · tesseract_ocrEPSS 1.4%via NVD
CVE-2022-3037High· 7.8
4y ago

Use After Free in GitHub repository vim/vim prior to 9.0.0322.

Use After Free in GitHub repository vim/vim prior to 9.0.0322.

▾ Twilightneovim · neovimEPSS 0.53%via NVD
CVE-2022-3064High· 7.5
4y ago

go-yaml: Improve heuristics preventing CPU/memory abuse by parsing malicious or large YAML documents (CVE-2022-3064)

A flaw was found in go-yaml. This issue causes the consumption of excessive amounts of CPU or memory when attempting to parse a large or maliciously crafted YAML document.

▾ TwilightRed Hat · Red Hat Enterprise Linux AppStream (v. 8)EPSS 1.7%via CSAF
CVE-2022-37434Critical· 9.8PoC⚖ disputed
4y ago

zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field

zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the af…

▾ Abyssalzlib · zlibEPSS 18%via NVD
CVE-2022-20768Medium· 4.9
4y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Information Disclosure Vulnerability (CVE-2022-20768)

A vulnerability in the logging component of Cisco TelePresence Collaboration Endpoint (CE) and RoomOS Software could allow an authenticated, remote attacker to view sensitive information in clear text on an affected system. This vulnera…

▾ SunlitCisco · Cisco RoomOS SoftwareEPSS 0.97%via CSAF
CVE-2022-20794Medium· 4.7
4y ago

vuln-CVE-2022-20794

Multiple vulnerabilities in the web engine of Cisco Telepresence CE Software and RoomOS Software could allow a remote attacker to cause a denial of service (DoS) condition, redirect users to an attacker controlled destination or view sensi…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.75%via CSAF
CVE-2022-20764Medium· 6.5
4y ago

Cisco RoomsOS Denial of Service Vulnerability

Multiple vulnerabilities in the web engine of Cisco Telepresence CE Software and RoomOS Software could allow a remote attacker to cause a denial of service (DoS) condition, redirect users to an attacker controlled destination or view sensi…

▾ SunlitCisco · Cisco RoomOS SoftwareEPSS 1.0%via CSAF
CVE-2022-20783High· 7.5
4y ago

Cisco Telepresence CE and RoomOS Software Denial of Service Vulnerability

A vulnerability in the packet processing functionality of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an …

▾ TwilightCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 1.4%via CSAF
CVE-2022-20622High· 8.6
4y ago

Cisco Aironet Access Points ICMP Denial of Service Vulnerability

A vulnerability in IP ingress packet processing of the Cisco Embedded Wireless Controller with Catalyst Access Points Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, causing a denial of …

▾ TwilightCisco · Cisco Aironet Access Point Software (IOS XE Controller)EPSS 1.4%via CSAF
CVE-2018-25032High· 7.5PoC
4y ago

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches.

▾ Midnightnokogiri · nokogiriEPSS 52%via NVD
CVE-2021-44227High· 8.0
4y ago

mailman: CSRF token bypass allows to perform CSRF attacks and admin takeover (CVE-2021-44227)

A Cross-Site Request Forgery (CSRF) attack can be performed in mailman due to a CSRF token bypass. CSRF tokens are not checked against the right type of user when performing admin operations and a token created by a regular user can be use…

▾ TwilightRed Hat · Red Hat Enterprise Linux AppStream EUS (v. 8.2)EPSS 0.76%via CSAF
CVE-2021-1529High· 7.8
4y ago

Cisco IOS XE SD-WAN Software Command Injection Vulnerability (CVE-2021-1529)

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbitrary commands with root privileges. The vulnerability is due to insufficient input validation by the system CLI. An …

▾ TwilightCisco · Cisco 4000 Series Integrated Services RoutersEPSS 0.31%via CSAF
CVE-2021-34758None
4y ago

Cisco TelePresence Collaboration Endpoint and RoomOS Software Denial of Service Vulnerability

It was previously published that a vulnerability in the memory management of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an authenticated, local attacker to corrupt a shared memory segment,…

▾ SunlitCisco · Cisco TelePresence Endpoint Software (TC/CE)EPSS 0.19%via CSAF
CVE-2021-34725Medium· 6.7
5y ago

Cisco IOS XE SD-WAN Command Injection Vulnerability

A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to be executed with root-level privileges on the underlying operating system. This vulnerability is due…

▾ SunlitCisco · Cisco 4000 Series Integrated Services RoutersEPSS 0.36%via CSAF
CVE-2021-1625Medium· 5.8
5y ago

Cisco IOS XE Software Zone Based Firewall ICMP and UDP Inspection Vulnerability

A vulnerability in the Zone-Based Policy Firewall feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to prevent the Zone-Based Policy Firewall from correctly classifying traffic. This vulnerability exists b…

▾ SunlitCisco · Cisco IOS XE SoftwareEPSS 0.91%via CSAF
CVE-2021-1619Critical· 9.8
5y ago

Cisco IOS XE Software NETCONF/RESTCONF AAA Vulnerability

A vulnerability in the authentication, authorization, and accounting (AAA) function of Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass NETCONF or RESTCONF authentication and do either of the following: In…

▾ MidnightCisco · Cisco IOS XE SoftwareEPSS 1.8%via CSAF
CVE-2021-34727Critical· 9.8
5y ago

Cisco IOS XE SD-WAN Software Buffer Overflow Vulnerability (CVE-2021-34727)

A vulnerability in the vDaemon process in Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to cause a buffer overflow on an affected device. This vulnerability is due to insufficient bounds checking when an a…

▾ MidnightCisco · Cisco 4000 Series Integrated Services RoutersEPSS 2.6%via CSAF
CVE-2021-1612Medium· 5.5
5y ago

Cisco IOS XE SD-WAN Arbitrary File Overwrite Vulnerability

A vulnerability in the Cisco IOS XE SD-WAN Software CLI could allow an authenticated, local attacker to overwrite arbitrary files on the local system. This vulnerability is due to improper access controls on files within the local file …

▾ SunlitCisco · Cisco 4000 Series Integrated Services RoutersEPSS 0.25%via CSAF
CVE-2021-34740High· 7.4
5y ago

Cisco Aironet Access Points WLAN Control Protocol Packet Buffer Leak Denial of Service Vulnerability (CVE-2021-34740)

A vulnerability in the WLAN Control Protocol (WCP) implementation for Cisco Aironet Access Point (AP) software could allow an unauthenticated, adjacent attacker to cause a reload of an affected device, resulting in a denial of service (DoS…

▾ TwilightCisco · Cisco Aironet Access Point SoftwareEPSS 0.36%via CSAF
CVE-2021-1419High· 7.8
5y ago

Cisco Aironet Access Points Privilege Escalation Vulnerability

A vulnerability in the SSH management feature of multiple Cisco Access Points (APs) platforms could allow a local, authenticated user to modify files on the affected device and possibly gain escalated privileges. The vulnerability is du…

▾ TwilightCisco · Cisco 5500 Series Wireless ControllersEPSS 0.22%via CSAF
CVE-2021-40690High· 7.5
5y ago

All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element

All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allo…

▾ Twilightapache · santuario_xml_security_for_javaEPSS 7.4%via NVD
CVE-2021-40438Critical· 9.0CISA KEVPoC
5y ago

A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user

A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.

▾ Hadalredhat · jboss_core_servicesEPSS 100%via NVD
CVE-2021-38554Medium· 5.3
5y ago

vault: UI erroneously cached and exposed user-viewed secrets between sessions in a single shared browser (CVE-2021-38554)

A flaw was found in the vault package. The Vault UI web application may fail to completely clear a client-side data cache on user logout. As a result, an authenticated user sharing a browser to access Vault may have been able to view the p…

▾ SunlitRed Hat · Red Hat Openshift Container Storage 4EPSS 0.91%via CSAF
CVE-2021-32760Medium· 5.5
5y ago

containerd: pulling and extracting crafted container image may result in Unix file permission changes (CVE-2021-32760)

A flaw was found in containerd where pulling and extracting a specially-crafted container image can result in Unix file permission changes for existing files in the host’s filesystem. Changes to file permissions can deny access to the expe…

▾ SunlitRed Hat · RHOSSM 2.4 for RHEL 8EPSS 1.6%via CSAF
CVEs tagged “csaf” — page 104 · VulnSea