CVE-2022-22503 Robotic Process Automation 21.0.0 could be hijacked by a remote attacker.
CVE-2019-10565 A vulnerability in the XCVF system could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to
CVE-2022-41427 Bento4 v1.6.0-639 had a memory leak in the AP4_AvcFrameParser::Feed function.
As a result, a attacker could leverage this issue to crash the application or execute arbitrary code on the system. Note that memory leak vulnerabilities
CVE-2022-42003 Databind before 2.14.0-rc1 can exhaust resources when UNWRAP_SINGLE_VALUE_ARRAYS feature is enabled.
This results in excessive calls to primitive value deserializers, which can lead to resource exhaustion. If UNWRAP_SINGLE_VALUE_ARRAYS is disabled and resource exhaustion
CVE-2022-23726 Previous versions of the PingCentral Ping API exposed Spring Boot actuator endpoints with administrative authentication that gives away sensitive information.
The most common attack scenario is via an outside party using a web crawling tool to search for available endpoints and then craft a request
CVE-2020-15338 The Zyxel CloudCNM SecuManager has a "Use of GET Request Method With Sensitive Query Strings" issue. This issue may be exploited by attackers to access sensitive information.
In these cases, the server may return a different response code than expected. This issue occurs when the GET request method is used with a
Episode
00:00:00
00:00:00