Total
38408 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2022-32145 | 1 Siemens | 1 Teamcenter Active Workspace | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
A vulnerability has been identified in Teamcenter Active Workspace V5.2 (All versions < V5.2.9), Teamcenter Active Workspace V6.0 (All versions < V6.0.3). A reflected cross-site scripting (XSS) vulnerability exists in the web interface of the affected application that could allow an attacker to execute malicious code by tricking users into accessing a malicious link. | |||||
CVE-2022-32131 | 1 74cms | 1 74cmsse | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /index/notice/show. | |||||
CVE-2022-32130 | 1 74cms | 1 74cmsse | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company/down_resume/total/nature. | |||||
CVE-2022-32129 | 1 74cms | 1 74cmsse | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company/account/safety/trade. | |||||
CVE-2022-32128 | 1 74cms | 1 74cmsse | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company/service/increment/add/im. | |||||
CVE-2022-32127 | 1 74cms | 1 74cmsse | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company/view_be_browsed/total. | |||||
CVE-2022-32126 | 1 74cms | 1 74cmsse | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /company. | |||||
CVE-2022-32125 | 1 74cms | 1 74cmsse | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the path /job. | |||||
CVE-2022-32124 | 1 74cms | 1 74cmsse | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
74cmsSE v3.5.1 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component /index/jobfairol/show/. | |||||
CVE-2022-32118 | 1 Arox | 1 School Erp Pro | 2024-11-21 | N/A | 6.1 MEDIUM |
Arox School ERP Pro v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the dispatchcategory parameter in backoffice.inc.php. | |||||
CVE-2022-32115 | 1 Withknown | 1 Known | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
An issue in the isSVG() function of Known v1.2.2+2020061101 allows attackers to execute arbitrary code via a crafted SVG file. | |||||
CVE-2022-32074 | 1 Osticket | 1 Osticket | 2024-11-21 | N/A | 5.4 MEDIUM |
A stored cross-site scripting (XSS) vulnerability in the component audit/class.audit.php of osTicket-plugins - Storage-FS before commit a7842d494889fd5533d13deb3c6a7789768795ae allows attackers to execute arbitrary web scripts or HTML via a crafted SVG file. | |||||
CVE-2022-32065 | 1 Ruoyi | 1 Ruoyi | 2024-11-21 | 3.5 LOW | 5.4 MEDIUM |
An arbitrary file upload vulnerability in the background management module of RuoYi v4.7.3 and below allows attackers to execute arbitrary code via a crafted HTML file. | |||||
CVE-2022-32061 | 1 Snipeitapp | 1 Snipe-it | 2024-11-21 | 3.5 LOW | 4.8 MEDIUM |
An arbitrary file upload vulnerability in the Select User function under the People Menu component of Snipe-IT v6.0.2 allows attackers to execute arbitrary code via a crafted file. | |||||
CVE-2022-32060 | 1 Snipeitapp | 1 Snipe-it | 2024-11-21 | 3.5 LOW | 4.8 MEDIUM |
An arbitrary file upload vulnerability in the Update Branding Settings component of Snipe-IT v6.0.2 allows attackers to execute arbitrary code via a crafted file. | |||||
CVE-2022-31914 | 1 Phpgurukul | 1 Zoo Management System | 2024-11-21 | 3.5 LOW | 5.4 MEDIUM |
Zoo Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via zms/admin/public_html/save_animal?an_id=24. | |||||
CVE-2022-31910 | 1 Online Tutor Portal Site Project | 1 Online Tutor Portal Site | 2024-11-21 | 3.5 LOW | 4.8 MEDIUM |
Online Tutor Portal Site v1.0 is vulnerable to Cross Site Scripting (XSS). via /otps/classes/Master.php. | |||||
CVE-2022-31906 | 1 Online Fire Reporting System Project | 1 Online Fire Reporting System | 2024-11-21 | 3.5 LOW | 4.8 MEDIUM |
Online Fire Reporting System v1.0 is vulnerable to Cross Site Scripting (XSS) via /ofrs/classes/Master.php. | |||||
CVE-2022-31904 | 1 Uberrider | 1 Mediacenter | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
EGT-Kommunikationstechnik UG Mediacenter before v2.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component Online_Update.php. | |||||
CVE-2022-31897 | 1 Phpgurukul | 1 Zoo Management System | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
SourceCodester Zoo Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via public_html/register_visitor?msg=. |