CVE-2022-39855 FACM application has an access control vulnerability that allows a local attacker to connect arbitrary AP and Bluetooth devices.
This vulnerability is due to the weakness in the authentication process. An attacker can easily connect to a device and activate it remotely. Depending on
CVE-2022-39862 In-app browser api was compromised in Dynamic Lockscreen prior to SMR Sep-2022 release.
This occurs when the user locks the screen of his device and navigates to any website with javascript enabled. In the above scenario, the user
CVE-2022-41517 An overflow was found in the setLanguageCfg function of TOTOLINK NR1800X V9.1.0u.6279_B20210910.
allowing for remote code execution. The advisory was discovered by the researchers from Google Project Zero and was responsibly disclosed to the vendor. The advisory
CVE-2022-40895 An unauthenticated, remote attacker could exploit a vulnerability in Nedi products to affect the integrity of a device.
However, this issue has already been fixed in version 1.0.8 of NeDi. This issue has been assigned the CVE-2018-14632 rating. However,
CVE-2022-3002 XSS stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.
It was found that due to the way data was sanitized before being stored to session, there was a possibility of XSS. It was patched
Episode
00:00:00
00:00:00