Daily Vulnerability Trends: Thu May 19 2022
CVE NAME | CVE Description |
CVE-2022-26688 | No description provided |
CVE-2022-26727 | No description provided |
CVE-2022-22676 | No description provided |
CVE-2022-26712 | No description provided |
CVE-2022-30778 | Laravel 9.1.8, when processing attacker-controlled data for deserialization, allows Remote Code Execution via an unserialize pop chain in __destruct in Illuminate\Broadcasting\PendingBroadcast.php and dispatch($command) in Illuminate\Bus\QueueingDispatcher.php. |
CVE-2022-26763 | No description provided |
CVE-2022-29142 | Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-29133. |
CVE-2022-26809 | Remote Procedure Call Runtime Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-24492, CVE-2022-24528. |
CVE-2022-21908 | Windows Installer Elevation of Privilege Vulnerability. |
CVE-2022-26751 | No description provided |
CVE-2022-1388 | On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13.1.5, and all 12.1.x and 11.6.x versions, undisclosed requests may bypass iControl REST authentication. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated |
CVE-2022-26923 | Active Directory Domain Services Elevation of Privilege Vulnerability. |
CVE-2022-22646 | No description provided |
CVE-2022-22675 | No description provided |
CVE-2022-26925 | Windows LSA Spoofing Vulnerability. |
CVE-2021-27905 | The ReplicationHandler (normally registered at “/replication” under a Solr core) in Apache Solr has a “masterUrl” (also “leaderUrl” alias) parameter that is used to designate another ReplicationHandler on another Solr core to replicate index data into the local core. To prevent a SSRF vulnerability, Solr ought to check these parameters against a similar configuration it uses for the “shards” parameter. Prior to this bug getting fixed, it did not. This problem affects essentially all Solr versions prior to it getting fixed in 8.8.2. |
CVE-2022-26690 | No description provided |
CVE-2022-22617 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. An application may be able to gain elevated privileges. |
CVE-2022-22583 | A permissions issue was addressed with improved validation. This issue is fixed in Security Update 2022-001 Catalina, macOS Monterey 12.2, macOS Big Sur 11.6.3. An application may be able to access restricted files. |
CVE-2022-30525 | Multiple Zyxel devices command execution | CVE-2022-30525 |
If you like the site, please consider joining the telegram channel and supporting us on Patreon using the button below.