Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2022-22489PUBLISHED: 2022-08-19IBM MQ 8.0, (9.0, 9.1, 9.2 LTS), and (9.1 and 9.2 CD) are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 226339.
CVE-2022-23459PUBLISHED: 2022-08-19
Jsonxx or Json++ is a JSON parser, writer and reader written in C++. In affected versions of jsonxx use of the Value class may lead to memory corruption via a double free or via a use after free. The value class has a default assignment operator which may be used with pointer types which may point t...
CVE-2022-0542PUBLISHED: 2022-08-19Cross-site Scripting (XSS) - DOM in GitHub repository chatwoot/chatwoot prior to 2.7.0.
CVE-2022-36577PUBLISHED: 2022-08-19An issue was discovered in jizhicms v2.3.1. There is a CSRF vulnerability that can add a admin.
CVE-2022-36578PUBLISHED: 2022-08-19jizhicms v2.3.1 has SQL injection in the background.
User Rank: Author
4/3/2014 | 11:16:55 AM