Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2022-2870PUBLISHED: 2022-08-17
A vulnerability was found in laravel 5.1 and classified as problematic. This issue affects some unknown processing. The manipulation leads to deserialization. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-206501 was assigned to...
CVE-2022-2849PUBLISHED: 2022-08-17Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0219.
CVE-2022-35117PUBLISHED: 2022-08-17
Clinic's Patient Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via update_medicine_details.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Packing text box under the Update Medical...
CVE-2022-38392PUBLISHED: 2022-08-17A certain 5400 RPM OEM hard drive, as shipped with laptop PCs in approximately 2005, allows physically proximate attackers to cause a denial of service (device malfunction and system crash) via a resonant-frequency attack with the audio signal from the Rhythm Nation music video.
CVE-2022-22455PUBLISHED: 2022-08-17IBM Security Verify Governance Identity Manager 10.0 virtual appliance component performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses. IBM X-Force ID: 224989.