CVE Notify
19.6K subscribers
4 photos
238K links
Alert on the latest CVEs

Partner channel: @malwr
Download Telegram
🚨 CVE-2022-43121
A cross-site scripting (XSS) vulnerability in the CMS Field Add page of Intelliants Subrion CMS v4.2.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the tooltip text field.

πŸŽ–@cveNotify
🚨 CVE-2022-39956
The OWASP ModSecurity Core Rule Set (CRS) is affected by a partial rule set bypass for HTTP multipart requests by submitting a payload that uses a character encoding scheme via the Content-Type or the deprecated Content-Transfer-Encoding multipart MIME header fields that will not be decoded and inspected by the web application firewall engine and the rule set. The multipart payload will therefore bypass detection. A vulnerable backend that supports these encoding schemes can potentially be exploited. The legacy CRS versions 3.0.x and 3.1.x are affected, as well as the currently supported versions 3.2.1 and 3.3.2. Integrators and users are advised upgrade to 3.2.2 and 3.3.3 respectively. The mitigation against these vulnerabilities depends on the installation of the latest ModSecurity version (v2.9.6 / v3.0.8).

πŸŽ–@cveNotify
🚨 CVE-2022-39955
The OWASP ModSecurity Core Rule Set (CRS) is affected by a partial rule set bypass by submitting a specially crafted HTTP Content-Type header field that indicates multiple character encoding schemes. A vulnerable back-end can potentially be exploited by declaring multiple Content-Type "charset" names and therefore bypassing the configurable CRS Content-Type header "charset" allow list. An encoded payload can bypass CRS detection this way and may then be decoded by the backend. The legacy CRS versions 3.0.x and 3.1.x are affected, as well as the currently supported versions 3.2.1 and 3.3.2. Integrators and users are advised to upgrade to 3.2.2 and 3.3.3 respectively.

πŸŽ–@cveNotify
🚨 CVE-2021-42205
ELAN Miniport touchpad Windows driver before 24.21.51.2, as used in PC hardware from multiple manufacturers, allows local users to cause a system crash by sending a certain IOCTL request, because that request is handled twice.

πŸŽ–@cveNotify
🚨 CVE-2022-41060
Microsoft Word Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-41103.

πŸŽ–@cveNotify
🚨 CVE-2022-41058
Windows Network Address Translation (NAT) Denial of Service Vulnerability.

πŸŽ–@cveNotify
🚨 CVE-2022-41057
Windows HTTP.sys Elevation of Privilege Vulnerability.

πŸŽ–@cveNotify
🚨 CVE-2022-41056
Network Policy Server (NPS) RADIUS Protocol Denial of Service Vulnerability.

πŸŽ–@cveNotify
🚨 CVE-2022-41055
Windows Human Interface Device Information Disclosure Vulnerability.

πŸŽ–@cveNotify
🚨 CVE-2022-41054
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability.

πŸŽ–@cveNotify
🚨 CVE-2022-41053
Windows Kerberos Denial of Service Vulnerability.

πŸŽ–@cveNotify
🚨 CVE-2022-41052
Windows Graphics Component Remote Code Execution Vulnerability.

πŸŽ–@cveNotify
🚨 CVE-2022-41051
Azure RTOS GUIX Studio Remote Code Execution Vulnerability.

πŸŽ–@cveNotify
🚨 CVE-2022-41050
Windows Extensible File Allocation Table Elevation of Privilege Vulnerability.

πŸŽ–@cveNotify
🚨 CVE-2022-41049
Windows Mark of the Web Security Feature Bypass Vulnerability. This CVE ID is unique from CVE-2022-41091.

πŸŽ–@cveNotify
🚨 CVE-2022-3819
An improper authorization issue in GitLab CE/EE affecting all versions from 15.0 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows a malicious users to set emojis on internal notes they don't have access to.

πŸŽ–@cveNotify
🚨 CVE-2022-3818
An uncontrolled resource consumption issue when parsing URLs in GitLab CE/EE affecting all versions prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows an attacker to cause performance issues and potentially a denial of service on the GitLab instance.

πŸŽ–@cveNotify
🚨 CVE-2022-3793
An improper authorization issue in GitLab CE/EE affecting all versions from 14.4 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows an attacker to read variables set directly in a GitLab CI/CD configuration file they don't have access to.

πŸŽ–@cveNotify
🚨 CVE-2022-3726
Lack of sand-boxing of OpenAPI documents in GitLab CE/EE affecting all versions from 12.6 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows an attacker to trick a user to click on the Swagger OpenAPI viewer and issue HTTP requests that affect the victim's account.

πŸŽ–@cveNotify
🚨 CVE-2022-3706
Improper authorization in GitLab CE/EE affecting all versions from 7.14 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2 allows a user retrying a job in a downstream pipeline to take ownership of the retried jobs in the upstream pipeline even if the user doesn't have access to that project.

πŸŽ–@cveNotify
🚨 CVE-2022-3413
Incorrect authorization during display of Audit Events in GitLab EE affecting all versions from 14.5 prior to 15.3.5, 15.4 prior to 15.4.4, and 15.5 prior to 15.5.2, allowed Developers to view the project's Audit Events and Developers or Maintainers to view the group's Audit Events. These should have been restricted to Project Maintainers, Group Owners, and above.

πŸŽ–@cveNotify