CVE-2022-31123 Grafana is an open source observability and data visualization platform. Versions prior to 9.1.8 and 8.5.14 are vulnerable to a plugin signature verification bypass.
Oracle Due to a flaw, Oracle’s Ovid software is vulnerable to a remote code execution. An attacker can remotely exploit this flaw to gain
CVE-2022-20432 There is an missing authorization issue in the system service
It is recommended to fix the permission issue in the component.
Oracle WebLogic Server
WebLogic Server
It is recommended to fix the permission issue in
CVE-2022-41513 An SQL injection was found in the online diagnostic lab management system v1.0 via the id parameter.
An attacker can inject SQL commands that will run against the database to leak sensitive information. Remote attackers can exploit this vulnerability to execute code
CVE-2022-39858 An attack can write arbitrary files as the FactoryCamera privilege.
CVE-2019-0538 Media framework in Android before version 8.1.0 allows attackers to gain privileges via a crafted app that accesses an intents receiver during
CVE-2022-2975 An admin user was able to modify accounts and access root user privileges to execute arbitrary code.
An unauthenticated remote attacker could exploit this vulnerability by accessing the web application and performing a series of actions leading to execution of arbitrary code
Episode
00:00:00
00:00:00