CVE-2022-28762 The Zoom Client for Meetings for Macs starting with 5.10.6 has a misconfiguration of a debugging port.
This could be used for example to launch other malware or perform other potentially unwanted actions. Zoom for meetings is a collaborative presentation and meeting
CVE-2022-2880 ReverseProxy forwards requests with raw query parameters, including unparseable ones.
This is a critical change as a successful request with an unparseable query parameter could allow a proxy to be exploited to launch an attack
CVE-2022-35052 Heap buffer overflow was discovered in OTFCC commit 617837b.
This issue is addressed by updating the length check in this code. Google Project Zero researchers have also published a detailed guide on how to
CVE-2022-3502 A vulnerability was found in Human Resource Management System 1.0. It is problematic and could be exploited to make malicious requests to sensitive parts of the application.
The security risk of this vulnerability is estimated as critical by vendors. It is assumed that a hacker may leverage this issue for cross site
CVE-2022-3495 A critical vulnerability has been found in SourceCodester Simple Online Public Access Catalog 1.0 and affected code of the file /opac/Actions.php?a=login. It compromises the Admin Login component.
The security risk of manipulating the username/password argument via sql injection in SourceCodester Simple Online Public Access Catalog 1.0 is estimated as critical.
Episode
00:00:00
00:00:00