Lucene search

K

Digital Security Vulnerabilities

cve
cve

CVE-2022-36356

Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Liam Gladdy / Thirty8 Digital Culture Object plugin <= 4.0.1 at...

4.8CVSS

4.8AI Score

0.001EPSS

2022-09-09 03:15 PM
35
6
cve
cve

CVE-2022-23002

When compressing or decompressing a point on the NIST P-256 elliptic curve with an X coordinate of zero, the resulting output is not properly reduced modulo the P-256 field prime and is invalid. The resulting output will cause an error when used in other operations. This may be leveraged by an...

5.3CVSS

5.3AI Score

0.001EPSS

2022-07-29 07:15 PM
30
7
cve
cve

CVE-2022-23003

When computing a shared secret or point multiplication on the NIST P-256 curve that results in an X coordinate of zero, the resulting output is not properly reduced modulo the P-256 field prime and is invalid. The resulting output may cause an error when used in other operations. This may be...

5.3CVSS

5.3AI Score

0.001EPSS

2022-07-29 07:15 PM
34
5
cve
cve

CVE-2022-23004

When computing a shared secret or point multiplication on the NIST P-256 curve using a public key with an X coordinate of zero, an error is returned from the library, and an invalid unreduced value is written to the output buffer. This may be leveraged by an attacker to cause an error scenario,...

5.3CVSS

5.3AI Score

0.001EPSS

2022-07-29 07:15 PM
29
5
cve
cve

CVE-2022-23001

When compressing or decompressing elliptic curve points using the Sweet B library, an incorrect choice of sign bit is used. An attacker with user level privileges and no other user's assistance can exploit this vulnerability with only knowledge of the public key and the library. The resulting...

5.3CVSS

5.3AI Score

0.001EPSS

2022-07-29 07:15 PM
31
3
cve
cve

CVE-2022-23000

The Western Digital My Cloud Web App [https://os5.mycloud.com/] uses a weak SSLContext when attempting to configure port forwarding rules. This was enabled to maintain compatibility with old or outdated home routers. By using an "SSL" context instead of "TLS" or specifying stronger validation,...

7.8CVSS

7.6AI Score

0.0004EPSS

2022-07-25 07:15 PM
38
5
cve
cve

CVE-2022-22999

Western Digital My Cloud devices are vulnerable to a cross side scripting vulnerability that can allow a malicious user with elevated privileges access to drives being backed up to construct and inject JavaScript payloads into an authenticated user's browser. As a result, it may be possible to...

8.2CVSS

5.9AI Score

0.001EPSS

2022-07-25 07:15 PM
38
9
cve
cve

CVE-2022-22998

Implemented protections on AWS credentials that were not properly...

8CVSS

7.6AI Score

0.002EPSS

2022-07-12 09:15 PM
37
2
cve
cve

CVE-2022-22997

Addressed a remote code execution vulnerability by resolving a command injection vulnerability and closing an AWS S3 bucket that potentially allowed an attacker to execute unsigned code on My Cloud Home...

9.8CVSS

9.8AI Score

0.003EPSS

2022-07-12 09:15 PM
44
2
cve
cve

CVE-2022-29408

Persistent Cross-Site Scripting (XSS) vulnerability in Vsourz Digital's Advanced Contact form 7 DB plugin <= 1.8.7 at...

6.1CVSS

5.9AI Score

0.001EPSS

2022-05-25 04:15 PM
63
4
cve
cve

CVE-2022-21170

Improper check for certificate revocation in i-FILTER Ver.10.45R01 and earlier, i-FILTER Ver.9.50R10 and earlier, i-FILTER Browser & Cloud MultiAgent for Windows Ver.4.93R04 and earlier, and D-SPA (Ver.3 / Ver.4) using i-FILTER allows a remote unauthenticated attacker to conduct a...

3.7CVSS

4.4AI Score

0.005EPSS

2022-03-10 05:45 PM
61
cve
cve

CVE-2022-22993

A limited SSRF vulnerability was discovered on Western Digital My Cloud devices that could allow an attacker to impersonate a server and reach any page on the server by bypassing access controls. The vulnerability was addressed by creating a whitelist for valid...

8.8CVSS

8.5AI Score

0.001EPSS

2022-01-28 08:15 PM
335
cve
cve

CVE-2022-22994

A remote code execution vulnerability was discovered on Western Digital My Cloud devices where an attacker could trick a NAS device into loading through an unsecured HTTP call. This was a result insufficient verification of calls to the device. The vulnerability was addressed by disabling checks...

9.8CVSS

9.5AI Score

0.054EPSS

2022-01-28 08:15 PM
91
cve
cve

CVE-2022-22991

A malicious user on the same LAN could use DNS spoofing followed by a command injection attack to trick a NAS device into loading through an unsecured HTTP call. Addressed this vulnerability by disabling checks for internet connectivity using...

8.8CVSS

8.8AI Score

0.001EPSS

2022-01-13 09:15 PM
63
cve
cve

CVE-2021-39354

The Easy Digital Downloads WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the $start_date and $end_date parameters found in the ~/includes/admin/payments/class-payments-table.php file which allows attackers to inject arbitrary web scripts, in versions up to and including...

4.8CVSS

4.9AI Score

0.001EPSS

2021-10-21 08:15 PM
25
cve
cve

CVE-2021-42336

The learning history page of the Easytest is vulnerable by permission bypass. After obtaining a user’s permission, remote attackers can access other users’ and administrator’s account information except password by crafting URL...

4.3CVSS

4.7AI Score

0.001EPSS

2021-10-15 12:15 PM
19
cve
cve

CVE-2021-42334

The Easytest contains SQL injection vulnerabilities. After obtaining a user’s privilege, remote attackers can inject SQL commands into the parameters of the elective course management page to obtain all database and administrator...

8.8CVSS

9.1AI Score

0.001EPSS

2021-10-15 12:15 PM
21
cve
cve

CVE-2021-42335

Easytest bulletin board management function of online learning platform does not filter special characters. After obtaining a user’s privilege, remote attackers can inject JavaScript and execute stored XSS...

5.4CVSS

5.4AI Score

0.001EPSS

2021-10-15 12:15 PM
20
cve
cve

CVE-2021-42333

The Easytest contains SQL injection vulnerabilities. After obtaining user’s privilege, remote attackers can inject SQL commands into the parameters of the learning history page to access all database and obtain administrator...

8.8CVSS

9.1AI Score

0.001EPSS

2021-10-15 12:15 PM
19
cve
cve

CVE-2021-37211

The bulletin function of Flygo does not filter special characters while a new announcement is added. Remoter attackers can use the vulnerability with general user’s credential to inject JavaScript and execute stored XSS...

5.4CVSS

5.3AI Score

0.001EPSS

2021-08-09 10:15 AM
18
4
cve
cve

CVE-2021-37214

The employee management page of Flygo contains Insecure Direct Object Reference (IDOR) vulnerability. After being authenticated as a general user, remote attackers can manipulate the employee ID in specific parameters to arbitrary access employee's data, modify it, and then obtain administrator...

8.8CVSS

8.7AI Score

0.003EPSS

2021-08-09 10:15 AM
19
6
cve
cve

CVE-2021-37213

The check-in record page of Flygo contains Insecure Direct Object Reference (IDOR) vulnerability. After being authenticated as a general user, remote attackers can manipulate the employee ID and date in specific parameters to access particular employee’s check-in...

4.3CVSS

4.6AI Score

0.001EPSS

2021-08-09 10:15 AM
24
6
cve
cve

CVE-2021-37212

The bulletin function of Flygo contains Insecure Direct Object Reference (IDOR) vulnerability. After being authenticated as a general user, remote attackers can manipulate the bulletin ID in specific Url parameters and access and modify bulletin particular...

5.4CVSS

5.5AI Score

0.001EPSS

2021-08-09 10:15 AM
19
2
cve
cve

CVE-2021-37215

The employee management page of Flygo contains an Insecure Direct Object Reference (IDOR) vulnerability. After being authenticated as a general user, remote attacker can manipulate the user data and then over-write another employee’s user data by specifying that employee’s ID in the API...

4.3CVSS

4.6AI Score

0.001EPSS

2021-08-09 10:15 AM
21
8
cve
cve

CVE-2021-29467

Wrongthink is an encrypted peer-to-peer chat program. A user could check their fingerprint into the service and enter a script to run arbitrary JavaScript on the site. No workarounds exist, but a patch exists in version...

6.1CVSS

6.2AI Score

0.001EPSS

2021-04-22 12:15 AM
14
cve
cve

CVE-2020-5240

In wagtail-2fa before 1.4.1, any user with access to the CMS can view and delete other users 2FA devices by going to the correct path. The user does not require special permissions in order to do so. By deleting the other users device they can disable the target users 2FA devices and potentially...

8.5CVSS

8.3AI Score

0.001EPSS

2020-03-13 10:15 PM
118
cve
cve

CVE-2020-8990

Western Digital My Cloud Home before 3.6.0 and ibi before 3.6.0 allow Session...

9.1CVSS

9.1AI Score

0.002EPSS

2020-02-20 10:15 PM
64
cve
cve

CVE-2019-16766

When using wagtail-2fa before 1.3.0, if someone gains access to someone's Wagtail login credentials, they can log into the CMS and bypass the 2FA check by changing the URL. They can then add a new device and gain full access to the CMS. This problem has been patched in version...

8.8CVSS

8.6AI Score

0.002EPSS

2019-11-29 05:15 PM
47
cve
cve

CVE-2019-18929

Western Digital My Cloud EX2 Ultra firmware 2.31.183 allows web users (including guest accounts) to remotely execute arbitrary code via a download_mgr.cgi stack-based buffer...

8.8CVSS

8.9AI Score

0.001EPSS

2019-11-13 04:15 PM
20
cve
cve

CVE-2019-18930

Western Digital My Cloud EX2 Ultra firmware 2.31.183 allows web users (including guest account) to remotely execute arbitrary code via a stack-based buffer overflow. There is no size verification logic in one of functions in libscheddl.so, and download_mgr.cgi makes it possible to enter...

8.8CVSS

8.9AI Score

0.001EPSS

2019-11-13 04:15 PM
23
cve
cve

CVE-2019-18931

Western Digital My Cloud EX2 Ultra firmware 2.31.195 allows a Buffer Overflow with Extended Instruction Pointer (EIP) control via crafted GET/POST...

8.8CVSS

8.6AI Score

0.001EPSS

2019-11-13 04:15 PM
20
cve
cve

CVE-2019-9951

Western Digital My Cloud, My Cloud Mirror Gen2, My Cloud EX2 Ultra, My Cloud EX2100, My Cloud EX4100, My Cloud DL2100, My Cloud DL4100, My Cloud PR2100 and My Cloud PR4100 firmware before 2.31.174 is affected by an unauthenticated file upload vulnerability. The page...

9.8CVSS

9.6AI Score

0.004EPSS

2019-04-24 06:29 PM
31
cve
cve

CVE-2018-16180

Cross-site scripting vulnerability in i-FILTER Ver.9.50R05 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified...

6.1CVSS

6AI Score

0.001EPSS

2019-01-09 11:29 PM
26
cve
cve

CVE-2018-16181

HTTP header injection vulnerability in i-FILTER Ver.9.50R05 and earlier may allow remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks that may result in an arbitrary script injection or setting an arbitrary cookie values via unspecified...

6.1CVSS

6.2AI Score

0.001EPSS

2019-01-09 11:29 PM
23
cve
cve

CVE-2018-13519

The mint function of a smart contract implementation for DigitalCloudToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any...

7.5CVSS

7.7AI Score

0.001EPSS

2018-07-09 06:29 AM
19
cve
cve

CVE-2018-1151

The web server on Western Digital TV Media Player 1.03.07 and TV Live Hub 3.12.13 allow unauthenticated remote attackers to execute arbitrary code or cause denial of service via crafted HTTP requests to...

9.8CVSS

9.8AI Score

0.011EPSS

2018-06-12 05:29 PM
31
cve
cve

CVE-2017-10860

Untrusted search path vulnerability in "i-filter 6.0 installer" timestamp of code signing is before 23 Aug 2017 (JST) allows an attacker to execute arbitrary code via a specially crafted executable file in an unspecified...

7.8CVSS

7.8AI Score

0.002EPSS

2017-09-15 05:29 PM
38
cve
cve

CVE-2017-10858

Untrusted search path vulnerability in "i-filter 6.0 install program" file version 1.0.8.1 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified...

7.8CVSS

7.7AI Score

0.001EPSS

2017-09-15 05:29 PM
42
cve
cve

CVE-2017-10859

Untrusted search path vulnerability in "i-filter 6.0 installer" timestamp of code signing is before 23 Aug 2017 (JST) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified...

7.8CVSS

7.7AI Score

0.001EPSS

2017-09-15 05:29 PM
35
cve
cve

CVE-2017-7910

A Stack-Based Buffer Overflow issue was discovered in Digital Canal Structural Wind Analysis versions 9.1 and prior. An attacker may be able to run arbitrary code by remotely exploiting an executable to perform a denial-of-service...

7.5CVSS

7.5AI Score

0.001EPSS

2017-06-14 09:29 PM
23
cve
cve

CVE-2016-10107

Unauthenticated Remote Command injection as root occurs in the Western Digital MyCloud NAS 2.11.142 index.php page via a modified Cookie...

9.8CVSS

8.9AI Score

0.006EPSS

2017-01-03 06:59 AM
16
cve
cve

CVE-2014-100030

Cross-site scripting (XSS) vulnerability in module/search/function.php in Ganesha Digital Library (GDL) 4.2 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter in a ByEge...

5.8AI Score

0.002EPSS

2015-01-13 03:59 PM
21
cve
cve

CVE-2014-100029

Multiple directory traversal vulnerabilities in class/session.php in Ganesha Digital Library (GDL) 4.2 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) newlang or (2) newtheme...

7AI Score

0.004EPSS

2015-01-13 03:59 PM
16
cve
cve

CVE-2013-0137

The default configuration of the Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS device before 2.0-2 contains a known SSH private key, which makes it easier for remote attackers to obtain root access, and spoof alerts, via an SSH...

9.1AI Score

0.007EPSS

2013-06-30 07:28 PM
47
cve
cve

CVE-2008-7011

The Unreal engine, as used in Unreal Tournament 3 1.3, Unreal Tournament 2003 and 2004, Dead Man's Hand, Pariah, WarPath, Postal2, and Shadow Ops, allows remote authenticated users to cause a denial of service (server exit) via multiple file downloads from the server, which triggers an assertion...

6.5AI Score

0.058EPSS

2009-08-19 10:30 AM
18
cve
cve

CVE-2008-1985

Cross-site scripting (XSS) vulnerability in base.php in DigitalHive 2.0 RC2 allows remote attackers to inject arbitrary web script or HTML via the mt parameter, possibly related to...

5.8AI Score

0.002EPSS

2008-04-27 09:05 PM
25
cve
cve

CVE-2008-0380

Buffer overflow in the Digital Data Communications RtspVaPgCtrl ActiveX control (RtspVapgDecoder.dll 1.1.0.29) allows remote attackers to execute arbitrary code via a long MP4Prefix...

7.9AI Score

0.104EPSS

2008-01-22 08:00 PM
16
cve
cve

CVE-2007-3071

Buffer overflow in the GetWebStoreURL function in a certain ActiveX control in eSellerateControl365.dll 3.6.5.0 in eSellerate SDK allows user-assisted remote attackers to execute arbitrary code via a long first...

7.8AI Score

0.035EPSS

2007-06-06 10:30 AM
20
cve
cve

CVE-2007-1600

PHP remote file inclusion vulnerability in module.php in Digital Eye Gallery 1.1 Beta (aka 0.1.1b) allows remote attackers to execute arbitrary PHP code via a URL in the menu...

7.5AI Score

0.093EPSS

2007-03-22 11:19 PM
22
cve
cve

CVE-2007-0018

Stack-based buffer overflow in the NCTAudioFile2.AudioFile ActiveX control (NCTAudioFile2.dll), as used by multiple products, allows remote attackers to execute arbitrary code via a long argument to the SetFormatLikeSample function. NOTE: the products include (1) NCTsoft NCTAudioStudio,...

7.7AI Score

0.952EPSS

2007-01-24 09:28 PM
50
Total number of security vulnerabilities173