Export limit exceeded: 43035 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (43035 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-32550 1 1password 6 1password, 1password In The Browser, Command-line and 3 more 2024-11-21 4.8 Medium
An issue was discovered in AgileBits 1Password, involving the method various 1Password apps and integrations used to create connections to the 1Password service. In specific circumstances, this issue allowed a malicious server to convince a 1Password app or integration it is communicating with the 1Password service.
CVE-2022-32458 1 Digiwin 1 Business Process Management 2024-11-21 7.5 High
Digiwin BPM has a XML External Entity Injection (XXE) vulnerability due to insufficient validation for user input. An unauthenticated remote attacker can perform XML injection attack to access arbitrary system files.
CVE-2022-32457 1 Digiwin 1 Business Process Management 2024-11-21 5.3 Medium
Digiwin BPM has inadequate filtering for URL parameter. An unauthenticated remote attacker can perform Blind SSRF attack to discover internal network topology base on URL error response.
CVE-2022-32456 1 Digiwin 1 Business Process Management 2024-11-21 9.8 Critical
Digiwin BPM’s function has insufficient validation for user input. An unauthenticated remote attacker can inject arbitrary SQL command to access, modify, delete database or disrupt service.
CVE-2022-32455 1 F5 11 Big-ip Access Policy Manager, Big-ip Advanced Firewall Manager, Big-ip Analytics and 8 more 2024-11-21 7.5 High
In BIG-IP Versions 16.1.x before 16.1.2.2, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when a BIG-IP LTM Client SSL profile is configured on a virtual server to perform client certificate authentication with session tickets enabled, undisclosed requests cause the Traffic Management Microkernel (TMM) to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVE-2022-32434 1 Opener Project 1 Opener 2024-11-21 7.8 High
EIPStackGroup OpENer v2.3.0 was discovered to contain a stack overflow via /bin/posix/src/ports/POSIX/OpENer+0x56073d.
CVE-2022-32433 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to Arbitrary code execution via ip/school/view/all_teacher.php.
CVE-2022-32381 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_admin_profile.php?my_index=.
CVE-2022-32380 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_student_subject.php?index=.
CVE-2022-32379 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_parents_profile.php?my_index=.
CVE-2022-32378 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher_profile.php?my_index=.
CVE-2022-32377 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_exam_timetable.php?id=.
CVE-2022-32376 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_events.php?event_id=.
CVE-2022-32375 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_timetable.php?id=.
CVE-2022-32374 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject_routing.php?id=.
CVE-2022-32373 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_exam.php?id=.
CVE-2022-32372 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject.php?id=.
CVE-2022-32371 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher.php?id=.
CVE-2022-32370 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_classroom.php?id=.
CVE-2022-32368 1 Advanced School Management System Project 1 Advanced School Management System 2024-11-21 7.2 High
itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_grade.php?id=.