๐จ CVE-2022-32398
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/cells/manage_cell.php:4
๐@cveNotify
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/cells/manage_cell.php:4
๐@cveNotify
SourceCodester
Prison Management System in PHP/OOP Free Source Code
Introduction This project is entitled Prison Management System. This is a web-based application project developed in PHP and MySQL Database. The main purpose of this project is to provide an online and automated platform for the Prison to manage the inmates'โฆ
๐จ CVE-2022-32394
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/inmates/view_inmate.php:3
๐@cveNotify
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/inmates/view_inmate.php:3
๐@cveNotify
SourceCodester
Prison Management System in PHP/OOP Free Source Code
Introduction This project is entitled Prison Management System. This is a web-based application project developed in PHP and MySQL Database. The main purpose of this project is to provide an online and automated platform for the Prison to manage the inmates'โฆ
๐จ CVE-2022-32396
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/visits/manage_visit.php:4
๐@cveNotify
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/visits/manage_visit.php:4
๐@cveNotify
GitHub
BugBounty/cve-2022-32396.md at main ยท Dyrandy/BugBounty
Prison Management System Bugs. Contribute to Dyrandy/BugBounty development by creating an account on GitHub.
๐จ CVE-2022-32395
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/crimes/manage_crime.php:4
๐@cveNotify
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/crimes/manage_crime.php:4
๐@cveNotify
SourceCodester
Prison Management System in PHP/OOP Free Source Code
Introduction This project is entitled Prison Management System. This is a web-based application project developed in PHP and MySQL Database. The main purpose of this project is to provide an online and automated platform for the Prison to manage the inmates'โฆ
๐จ CVE-2022-32392
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/actions/manage_action.php:4
๐@cveNotify
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/actions/manage_action.php:4
๐@cveNotify
SourceCodester
Prison Management System in PHP/OOP Free Source Code
Introduction This project is entitled Prison Management System. This is a web-based application project developed in PHP and MySQL Database. The main purpose of this project is to provide an online and automated platform for the Prison to manage the inmates'โฆ
๐จ CVE-2022-32391
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/actions/view_action.php:4
๐@cveNotify
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/actions/view_action.php:4
๐@cveNotify
GitHub
BugBounty/cve-2022-32391.md at main ยท Dyrandy/BugBounty
Prison Management System Bugs. Contribute to Dyrandy/BugBounty development by creating an account on GitHub.
๐จ CVE-2022-32393
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/cells/view_cell.php:4
๐@cveNotify
Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/cells/view_cell.php:4
๐@cveNotify
SourceCodester
Prison Management System in PHP/OOP Free Source Code
Introduction This project is entitled Prison Management System. This is a web-based application project developed in PHP and MySQL Database. The main purpose of this project is to provide an online and automated platform for the Prison to manage the inmates'โฆ
๐จ CVE-2022-31009
wire-ios is an iOS client for the Wire secure messaging application. Invalid accent colors of Wire communication partners may render the iOS Wire Client partially unusable by causing it to crash multiple times on launch. These invalid accent colors can be used by and sent between Wire users. The root cause was an unnecessary assert statement when converting an integer value into the corresponding enum value, causing an exception instead of a fallback to a default value. This issue is fixed in [wire-ios](https://github.com/wireapp/wire-ios/commit/caa0e27dbe51f9edfda8c7a9f017d93b8cfddefb) and in Wire for iOS 3.100. There is no workaround available, but users may use other Wire clients (such as the [web app](https://app.wire.com)) to continue using Wire, or upgrade their client.
๐@cveNotify
wire-ios is an iOS client for the Wire secure messaging application. Invalid accent colors of Wire communication partners may render the iOS Wire Client partially unusable by causing it to crash multiple times on launch. These invalid accent colors can be used by and sent between Wire users. The root cause was an unnecessary assert statement when converting an integer value into the corresponding enum value, causing an exception instead of a fallback to a default value. This issue is fixed in [wire-ios](https://github.com/wireapp/wire-ios/commit/caa0e27dbe51f9edfda8c7a9f017d93b8cfddefb) and in Wire for iOS 3.100. There is no workaround available, but users may use other Wire clients (such as the [web app](https://app.wire.com)) to continue using Wire, or upgrade their client.
๐@cveNotify
GitHub
chore: remove unnecessary assert SQCORE-1299 (#5660) ยท wireapp/wire-ios@caa0e27
* chore: remove unnecessary assert
* empty
* empty
๐จ CVE-2017-20088
A vulnerability classified as problematic has been found in Atahualpa Theme. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely.
๐@cveNotify
A vulnerability classified as problematic has been found in Atahualpa Theme. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely.
๐@cveNotify
Vuldb
CVE-2017-20088 | Atahualpa Theme cross-site request forgery
A vulnerability classified as problematic has been found in Atahualpa Theme. This vulnerability is traded as CVE-2017-20088.
๐จ CVE-2022-2182
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
๐@cveNotify
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
๐@cveNotify
GitHub
patch 8.2.5150: read past the end of the first line with ":0;'{" ยท vim/vim@f7c7c3f
Problem: Read past the end of the first line with ":0;'{".
Solution: When on line zero check the column is valid for line one.
Solution: When on line zero check the column is valid for line one.
๐จ CVE-2022-34299
There is a heap-based buffer over-read in libdwarf 0.4.0. This issue is related to dwarf_global_formref_b.
๐@cveNotify
There is a heap-based buffer over-read in libdwarf 0.4.0. This issue is related to dwarf_global_formref_b.
๐@cveNotify
GitHub
heap overflow in dwarf_global_formref_b ยท Issue #119 ยท davea42/libdwarf-code
asan output: ================================================================= ==3946410==ERROR: AddressSanitizer: heap-buffer-overflow on address 0x61b000000697 at pc 0x0000005d9f2d bp 0x7fffffff9...
๐จ CVE-2022-34328
PMB 7.3.10 allows reflected XSS via the id parameter in an lvl=author_see request to index.php.
๐@cveNotify
PMB 7.3.10 allows reflected XSS via the id parameter in an lvl=author_see request to index.php.
๐@cveNotify
GitHub
GitHub - jenaye/PMB
Contribute to jenaye/PMB development by creating an account on GitHub.
๐จ CVE-2022-34300
In tinyexr 1.0.1, there is a heap-based buffer over-read in tinyexr::DecodePixelData.
๐@cveNotify
In tinyexr 1.0.1, there is a heap-based buffer over-read in tinyexr::DecodePixelData.
๐@cveNotify
GitHub
heap overflow in tinyexr::DecodePixelData ยท Issue #167 ยท syoyo/tinyexr
desc There is a heap based buffer overflow in tinyexr::DecodePixelData before 20220506 that could cause remote code execution depending on the usage of this program. asan output ==2363537==ERROR: A...
๐จ CVE-2021-36773
uBlock Origin before 1.36.2 and nMatrix before 4.4.9 support an arbitrary depth of parameter nesting for strict blocking, which allows crafted web sites to cause a denial of service (unbounded recursion that can trigger memory consumption and a loss of all blocking functionality).
๐@cveNotify
uBlock Origin before 1.36.2 and nMatrix before 4.4.9 support an arbitrary depth of parameter nesting for strict blocking, which allows crafted web sites to cause a denial of service (unbounded recursion that can trigger memory consumption and a loss of all blocking functionality).
๐@cveNotify
๐จ CVE-2022-34835
In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function.
๐@cveNotify
In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function.
๐@cveNotify
GitLab
i2c: fix stack buffer overflow vulnerability in i2c md command (8f8c04bf) ยท Commits ยท U-Boot / U-Boot ยท GitLab
When running "i2c md 0 0 80000100", the function do_i2c_md parses the length into an unsigned int variable named length. The value is then moved to a signed variable: int...
๐จ CVE-2022-28327
The generic P-256 feature in crypto/elliptic in Go before 1.17.9 and 1.18.x before 1.18.1 allows a panic via long scalar input.
๐@cveNotify
The generic P-256 feature in crypto/elliptic in Go before 1.17.9 and 1.18.x before 1.18.1 allows a panic via long scalar input.
๐@cveNotify
๐จ CVE-2022-24675
encoding/pem in Go before 1.17.9 and 1.18.x before 1.18.1 has a Decode stack overflow via a large amount of PEM data.
๐@cveNotify
encoding/pem in Go before 1.17.9 and 1.18.x before 1.18.1 has a Decode stack overflow via a large amount of PEM data.
๐@cveNotify
๐จ CVE-2022-2125
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
๐@cveNotify
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.
๐@cveNotify