Vulnerabilities (CVE)

Filtered by NVD-CWE-noinfo
Total 36333 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-24455 1 Microsoft 6 Windows 10, Windows 8.1, Windows Rt 8.1 and 3 more 2026-06-17 7.2 HIGH 7.8 HIGH
Windows CD-ROM Driver Elevation of Privilege Vulnerability
CVE-2022-24454 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2026-06-17 7.2 HIGH 7.8 HIGH
Windows Security Support Provider Interface Elevation of Privilege Vulnerability
CVE-2022-24452 1 Microsoft 1 Hevc Video Extensions 2026-06-17 6.8 MEDIUM 7.8 HIGH
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2022-24451 1 Microsoft 1 Vp9 Video Extensions 2026-06-17 6.8 MEDIUM 7.8 HIGH
VP9 Video Extensions Remote Code Execution Vulnerability
CVE-2022-24447 1 Zohocorp 1 Manageengine Key Manager Plus 2026-06-17 4.0 MEDIUM 6.5 MEDIUM
An issue was discovered in Zoho ManageEngine Key Manager Plus before 6200. A service exposed by the application allows a user, with the level Operator, to access stored SSL certificates and associated key pairs during export.
CVE-2022-24446 1 Zohocorp 1 Manageengine Key Manager Plus 2026-06-17 3.5 LOW 4.3 MEDIUM
An issue was discovered in Zoho ManageEngine Key Manager Plus 6.1.6. A user, with the level Operator, can see all SSH servers (and user information) even if no SSH server or user is associated to the operator.
CVE-2022-24434 1 Dicer Project 1 Dicer 2026-06-17 5.0 MEDIUM 7.5 HIGH
This affects all versions of package dicer. A malicious attacker can send a modified form to server, and crash the nodejs service. An attacker could sent the payload again and again so that the service continuously crashes.
CVE-2022-24398 1 Sap 1 Business Objects Business Intelligence Platform 2026-06-17 3.5 LOW 6.5 MEDIUM
Under certain conditions SAP Business Objects Business Intelligence Platform - versions 420, 430, allows an authenticated attacker to access information which would otherwise be restricted.
CVE-2022-24379 1 Intel 4 Server Board M70klp2sb, Server Board M70klp2sb Firmware, Server System M70klp4s2uhh and 1 more 2026-06-17 N/A 7.5 HIGH
Improper input validation in some Intel(R) Server System M70KLP Family BIOS firmware before version 01.04.0029 may allow a privileged user to potentially enable escalation of privilege via local access.
CVE-2022-24346 1 Jetbrains 1 Intellij Idea 2026-06-17 4.6 MEDIUM 7.8 HIGH
In JetBrains IntelliJ IDEA before 2021.3.1, local code execution via RLO (Right-to-Left Override) characters was possible.
CVE-2022-24345 1 Jetbrains 1 Intellij Idea 2026-06-17 4.6 MEDIUM 7.8 HIGH
In JetBrains IntelliJ IDEA before 2021.2.4, local code execution (without permission from a user) upon opening a project was possible.
CVE-2022-24336 1 Jetbrains 1 Teamcity 2026-06-17 5.0 MEDIUM 5.3 MEDIUM
In JetBrains TeamCity before 2021.2.1, an unauthenticated attacker can cancel running builds via an XML-RPC request to the TeamCity server.
CVE-2022-24334 1 Jetbrains 1 Teamcity 2026-06-17 5.0 MEDIUM 5.3 MEDIUM
In JetBrains TeamCity before 2021.2.1, the Agent Push feature allowed selection of any private key on the server.
CVE-2022-24328 1 Jetbrains 1 Hub 2026-06-17 4.0 MEDIUM 6.5 MEDIUM
In JetBrains Hub before 2021.1.13956, an unprivileged user could perform DoS.
CVE-2022-24308 4 Apple, Automox, Linux and 1 more 4 Macos, Automox, Linux Kernel and 1 more 2026-06-17 2.1 LOW 5.5 MEDIUM
Automox Agent prior to version 37 on Windows and Linux and Version 36 on OSX could allow for a non privileged user to obtain sensitive information during the install process.
CVE-2022-24305 1 Zohocorp 1 Manageengine Sharepoint Manager Plus 2026-06-17 7.5 HIGH 9.8 CRITICAL
Zoho ManageEngine SharePoint Manager Plus before 4329 is vulnerable to a sensitive data leak that leads to privilege escalation.
CVE-2022-24303 2 Fedoraproject, Python 2 Fedora, Pillow 2026-06-17 6.4 MEDIUM 9.1 CRITICAL
Pillow before 9.0.1 allows attackers to delete files because spaces in temporary pathnames are mishandled.
CVE-2022-24297 1 Intel 118 Lapbc510, Lapbc510 Firmware, Lapbc710 and 115 more 2026-06-17 4.6 MEDIUM 6.7 MEDIUM
Improper buffer restrictions in firmware for some Intel(R) NUCs may allow a privileged user to potentially enable escalation of privilege via local access.
CVE-2022-24218 1 Elitecms 1 Elite Cms 2026-06-17 6.4 MEDIUM 9.1 CRITICAL
An issue in /admin/delete_image.php of eliteCMS v1.0 allows attackers to delete arbitrary files.
CVE-2022-24132 1 Phpshe 1 Phpshe 2026-06-17 5.0 MEDIUM 7.5 HIGH
phpshe V1.8 is affected by a denial of service (DoS) attack in the registry's verification code, which can paralyze the target service.