CVE-2022-22781 The Zoom Client for Meetings prior to version 5.9.6 failed to check the package version properly.
After the update, users could see a “Notify of Update” message under the menu bar providing a link to update to the newer version. This
CVE-2022-27404 - Breaking Down The FreeType Heap Buffer Overflow (sfnt_init_face) With Code, Exploit Details, and References
In 2022, a critical heap buffer overflow vulnerability, tracked as CVE-2022-27404, was found in the FreeType project—an open source font rendering engine
CVE-2022-27505 Reflected cross site scripting (XSS)
XSS is a type of injection that occurs when user input is not filtered properly and is redirected to another site. There are many different
CVE-2022-24681 ADS SelfService Plus before 6.12 has XSS that allows reset password, unlock account, or user must change password.
XSS is an injection vulnerability where code is injected into one web application component and executed in another component’s context. This can lead to
CVE-2022-23973 ASUS RT-AX56U has a user profile configuration vulnerability that is vulnerable to buffer overflow due to insufficient validation of parameters.
The issue is resolved in RT-AX56U firmware version 1.0.3.3 from February 12, 2017. An attacker can access the user profile configuration
Episode
00:00:00
00:00:00