CVE-2022-3502 A vulnerability was found in Human Resource Management System 1.0. It is problematic and could be exploited to make malicious requests to sensitive parts of the application.
The security risk of this vulnerability is estimated as critical by vendors. It is assumed that a hacker may leverage this issue for cross site
CVE-2022-41481 An AC1200 WiFi router with a buffer overflow was discovered. The function 0x47de1c is vulnerable.
The vulnerability can be exploited when the Tenda AC1200 US_AC6V2.0RTL_V15.03.06.51_multi_TDE01 application is accessed by a user. A
CVE-2022-41474 An RPCMS v3.0.2 contains a CSRF which allows attackers to change any account's password.
This vulnerability was discovered by Robert Vandenberg of Tenable Research Team. RPCms is a command-line interface for managing Active Directory. It can be installed on
CVE-2022-42900 FBX files could have out-of-bounds read issues. This could lead to information disclosure and code execution.
A search for "out of bounds read" may return details of exploitation on the vendor advisory website. Bentley recommends users upgrade to the
CVE-2022-39282 FreeRDP is a library for remote desktop protocol, it supports unix systems using the /parallel switch. It might read uninitialized data and send it to the server the client is currently connected to.
You can upgrade to latest version 4.0.0 by installing the `freerdp >= 4.0.0` package via `apt-get`. You can also download the
Episode
00:00:00
00:00:00