VulnSea

Tagged “exploit-available”

CVEs tagged exploit-available, newest first.

3810 CVEsRSS

CVE-2022-37969High· 7.8CISA KEV0dayPoC
4y ago

Windows Common Log File System Driver Elevation of Privilege Vulnerability

Windows Common Log File System Driver Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10_1507EPSS 28%via NVD
CVE-2022-36271High· 7.8PoC
4y ago

Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking

Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking. iertutil.dll is missing so an attacker can use a malicious dll with same name and can get admin privileges.

▾ Midnightoutbyte · pc_repairEPSS 0.51%via NVD
CVE-2022-34668Critical· 9.8PoC
4y ago

NVFLARE unsafe deserialization due to Pickle

NVFLARE unsafe deserialization due to Pickle

▾ Abyssalnvflare · nvflareEPSS 11%via OSV
CVE-2022-36633High· 8.8PoC
4y ago

Improper token validation leading to code execution in Teleport

Improper token validation leading to code execution in Teleport

▾ Midnightgravitational · github.com/gravitational/teleportEPSS 50%via OSV
CVE-2021-42627Critical· 9.8PoC
4y ago

The WAN configuration page "wan.htm" on D-Link DIR-615 devices with firmware 20.06 can be accessed directly without authentication which can lead to disclose the information about WAN settings and also leverage attacker to modify the dat…

The WAN configuration page "wan.htm" on D-Link DIR-615 devices with firmware 20.06 can be accessed directly without authentication which can lead to disclose the information about WAN settings and also leverage attacker to modify the dat…

▾ Abyssaldlink · dir-615_firmwareEPSS 63%via NVD
CVE-2022-28598Medium· 6.1PoC
4y ago

Frappe ERPNext 12.29.0 is vulnerable to XSS where the software does not neutralize or incorrectly neutralize user-controllable input before it is placed in output that is used as a web page that is served to other users.

Frappe ERPNext 12.29.0 is vulnerable to XSS where the software does not neutralize or incorrectly neutralize user-controllable input before it is placed in output that is used as a web page that is served to other users.

▾ Twilightfrappe · erpnextEPSS 4.1%via NVD
CVE-2022-24654Medium· 5.4PoC
4y ago

Authenticated stored cross-site scripting (XSS) vulnerability in "Field Server Address" field in INTELBRAS ATA 200 Firmware 74.19.10.21 allows attackers to inject JavaScript code through a crafted payload.

Authenticated stored cross-site scripting (XSS) vulnerability in "Field Server Address" field in INTELBRAS ATA 200 Firmware 74.19.10.21 allows attackers to inject JavaScript code through a crafted payload.

▾ Twilightintelbras · ata_200_firmwareEPSS 1.2%via NVD
CVE-2022-37042Critical· 9.8CISA KEV0dayPoC
4y ago

Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it

Zimbra Collaboration Suite (ZCS) 8.8.15 and 9.0 has mboximport functionality that receives a ZIP archive and extracts files from it. By bypassing authentication (i.e., not having an authtoken), an attacker can upload arbitrary files to t…

▾ Hadalsynacor · zimbra_collaboration_suiteEPSS 92%via NVD
CVE-2022-35493Medium· 6.1PoC
4y ago

A Cross-site scripting (XSS) vulnerability in json search parse and the json response in wrteam.in, eShop - Multipurpose Ecommerce Store Website version 3.0.4 allows remote attackers to inject arbitrary web script or HTML via the get_pro…

A Cross-site scripting (XSS) vulnerability in json search parse and the json response in wrteam.in, eShop - Multipurpose Ecommerce Store Website version 3.0.4 allows remote attackers to inject arbitrary web script or HTML via the get_pro…

▾ Twilightwrteam · eshop_-_ecommerce_/_store_websiteEPSS 1.7%via NVD
CVE-2022-37434Critical· 9.8PoC⚖ disputed
4y ago

zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field

zlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only applications that call inflateGetHeader are affected. Some common applications bundle the af…

▾ Abyssalzlib · zlibEPSS 19%via NVD
CVE-2022-35131Critical· 9.0PoC
4y ago

Joplin v2.8.8 allows attackers to execute arbitrary commands via a crafted payload injected into the Node titles.

Joplin v2.8.8 allows attackers to execute arbitrary commands via a crafted payload injected into the Node titles.

▾ Abyssaljoplinapp · joplinEPSS 2.3%via NVD
CVE-2022-24992High· 7.5PoC
4y ago

A vulnerability in the component process.php of QR Code Generator v5.2.7 allows attackers to perform directory traversal.

A vulnerability in the component process.php of QR Code Generator v5.2.7 allows attackers to perform directory traversal.

▾ Midnightqr_code_generator_project · qr_code_generatorEPSS 1.5%via NVD
CVE-2022-32119High· 8.8PoC
4y ago

Arox School ERP Pro v1.0 was discovered to contain multiple arbitrary file upload vulnerabilities via the Add Photo function at photogalleries.inc.php and the import staff excel function at 1finance_master.inc.php.

Arox School ERP Pro v1.0 was discovered to contain multiple arbitrary file upload vulnerabilities via the Add Photo function at photogalleries.inc.php and the import staff excel function at 1finance_master.inc.php.

▾ Midnightarox · school_erp_proEPSS 2.0%via NVD
CVE-2022-30024High· 8.8PoC
4y ago

A buffer overflow in the httpd daemon on TP-Link TL-WR841N V12 (firmware version 3.16.9) devices allows an authenticated remote attacker to execute arbitrary code via a GET request to the page for the System Tools of the Wi-Fi network

A buffer overflow in the httpd daemon on TP-Link TL-WR841N V12 (firmware version 3.16.9) devices allows an authenticated remote attacker to execute arbitrary code via a GET request to the page for the System Tools of the Wi-Fi network. T…

▾ Midnighttp-link · tl-wr841_firmwareEPSS 2.1%via NVD
CVE-2022-32074Medium· 5.4PoC
4y ago

A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-FS before commit a7842d494889fd5533d13deb3c6a7789768795ae allows attackers to execute arbitrary web scripts or HTML vi…

A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-FS before commit a7842d494889fd5533d13deb3c6a7789768795ae allows attackers to execute arbitrary web scripts or HTML vi…

▾ Twilightenhancesoft · osticketEPSS 1.5%via NVD
CVE-2022-32114High· 8.8PoC
4y ago

An unrestricted file upload vulnerability in the Add New Assets function of Strapi 4.1.12 allows attackers to conduct XSS attacks via a crafted PDF file

An unrestricted file upload vulnerability in the Add New Assets function of Strapi 4.1.12 allows attackers to conduct XSS attacks via a crafted PDF file. NOTE: the project documentation suggests that a user with the Media Library "Create…

▾ Midnightstrapi · strapiEPSS 2.0%via NVD
CVE-2022-33098Medium· 6.1PoC
4y ago

Magnolia CMS v6.2.19 was discovered to contain a cross-site scripting (XSS) vulnerability via the Edit Contact function

Magnolia CMS v6.2.19 was discovered to contain a cross-site scripting (XSS) vulnerability via the Edit Contact function. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted SVG document, with JavaSc…

▾ Twilightmagnolia-cms · magnolia_cmsEPSS 53%via NVD
CVE-2022-33075Medium· 5.4PoC
4y ago

A stored cross-site scripting (XSS) vulnerability in the Add Classification function of Zoo Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via unspecified vectors.

A stored cross-site scripting (XSS) vulnerability in the Add Classification function of Zoo Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via unspecified vectors.

▾ Twilightphpgurukul · zoo_management_systemEPSS 0.64%via NVD
CVE-2022-33082High· 7.5PoC
4y ago

Denial of service in Open Policy Agent

Denial of service in Open Policy Agent

▾ Midnightopen-policy-agent · github.com/open-policy-agent/opaEPSS 1.7%via OSV
CVE-2022-31897Medium· 6.1PoC
4y ago

SourceCodester Zoo Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via public_html/register_visitor?msg=.

SourceCodester Zoo Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via public_html/register_visitor?msg=.

▾ Twilightphpgurukul · zoo_management_systemEPSS 0.90%via NVD
CVE-2021-45026Medium· 6.1PoC
4y ago

ASG technologies ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cross Site Scripting (XSS).

ASG technologies ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cross Site Scripting (XSS).

▾ Twilightrocketsoftware · ags-zenaEPSS 1.2%via NVD
CVE-2017-20051Medium· 6.3PoC
4y ago

A vulnerability was detected in InnoSetup Installer 5.5.9

A vulnerability was detected in InnoSetup Installer 5.5.9. This affects an unknown part. The manipulation results in uncontrolled search path. The attack can be executed remotely. The exploit is now public and may be used. This is a malf…

▾ Twilightjrsoftware · inno_setupEPSS 0.75%via NVD
CVE-2022-24562Critical· 9.8PoC
4y ago

In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary read/write access to the entire file-system (with admin privileges) on the victim's endpoint, which can result in da…

In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary read/write access to the entire file-system (with admin privileges) on the victim's endpoint, which can result in da…

▾ Abyssaliobit · iotransferEPSS 54%via NVD
CVE-2022-30023High· 8.8⚠ ExploitedPoC
4y ago

Tenda ONT GPON AC1200 Dual band WiFi HG9 v1.0.1 is vulnerable to Command Injection via the Ping function.

Tenda ONT GPON AC1200 Dual band WiFi HG9 v1.0.1 is vulnerable to Command Injection via the Ping function.

▾ Midnighttenda · hg9_firmwareEPSS 39%via NVD
CVE-2022-32981High· 7.8PoC
4y ago

An issue was discovered in the Linux kernel through 5.18.3 on powerpc 32-bit platforms

An issue was discovered in the Linux kernel through 5.18.3 on powerpc 32-bit platforms. There is a buffer overflow in ptrace PEEKUSER and POKEUSER (aka PEEKUSR and POKEUSR) when accessing floating point registers.

▾ Midnightlinux · linux_kernelEPSS 0.96%via NVD
CVE-2022-30075High· 8.8PoC
4y ago

In TP-Link Router AX50 firmware 210730 and older, import of a malicious backup file via web interface can lead to remote code execution due to improper validation.

In TP-Link Router AX50 firmware 210730 and older, import of a malicious backup file via web interface can lead to remote code execution due to improper validation.

▾ Midnighttp-link · archer_ax50_firmwareEPSS 34%via NVD
CVE-2022-27438High· 8.1PoC
4y ago

Caphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are affected by a remote code execution vulnerability via the CustomDetection parameter in the update check…

Caphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are affected by a remote code execution vulnerability via the CustomDetection parameter in the update check…

▾ Midnightcaphyon · advanced_installerEPSS 2.0%via NVD
CVE-2022-30190High· 7.8CISA KEV0dayPoC
4y ago

A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word

A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word. An attacker who successfully exploits this vulnerability can run arbitrary code with the privileges of the c…

▾ Abyssalmicrosoft · windows_10_1507EPSS 99%via NVD
CVE-2019-14322High· 7.5PoC
4y ago

Pallets Werkzeug vulnerable to Path Traversal

Pallets Werkzeug vulnerable to Path Traversal

▾ Midnightwerkzeug · werkzeugEPSS 56%via OSV
CVE-2019-6446Critical· 9.8PoC
4y ago

Numpy Deserialization of Untrusted Data

Numpy Deserialization of Untrusted Data

▾ Abyssalnumpy · numpyEPSS 18%via OSV
CVEs tagged “exploit-available” — page 116 · VulnSea