Export limit exceeded: 372344 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (372344 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-46325 1 Huawei 2 Emui, Harmonyos 2025-04-16 9.8 Critical
Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause system service exceptions.
CVE-2022-46324 1 Huawei 2 Emui, Harmonyos 2025-04-16 9.8 Critical
Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnerability may cause system service exceptions.
CVE-2022-46323 1 Huawei 2 Emui, Harmonyos 2025-04-16 9.8 Critical
Some smartphones have the out-of-bounds write vulnerability.Successful exploitation of this vulnerability may cause system service exceptions.
CVE-2022-46322 1 Huawei 2 Emui, Harmonyos 2025-04-16 7.5 High
Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnerability may cause system service exceptions.
CVE-2022-46321 1 Huawei 2 Emui, Harmonyos 2025-04-16 7.5 High
The Wi-Fi module has a vulnerability in permission verification. Successful exploitation of this vulnerability may affect data confidentiality.
CVE-2022-46320 1 Huawei 2 Emui, Harmonyos 2025-04-16 9.8 Critical
The kernel module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may cause memory overwriting.
CVE-2022-46319 1 Huawei 2 Emui, Harmonyos 2025-04-16 9.8 Critical
Fingerprint calibration has a vulnerability of lacking boundary judgment. Successful exploitation of this vulnerability may cause out-of-bounds write.
CVE-2022-46318 1 Huawei 2 Emui, Harmonyos 2025-04-16 5.3 Medium
The HAware module has a function logic error. Successful exploitation of this vulnerability will affect the account removal function in Settings.
CVE-2022-46317 1 Huawei 2 Emui, Harmonyos 2025-04-16 7.5 High
The power consumption module has an out-of-bounds read vulnerability. Successful exploitation of this vulnerability may affect system availability.
CVE-2022-44756 1 Hcltechsw 1 Bigfix Insights For Vulnerability Remediation 2025-04-16 6.4 Medium
Insights for Vulnerability Remediation (IVR) is vulnerable to improper input validation. This may lead to information disclosure. This requires privileged access. 
CVE-2022-42454 1 Hcltechsw 1 Bigfix Insights For Vulnerability Remediation 2025-04-16 6.4 Medium
Insights for Vulnerability Remediation (IVR) is vulnerable to man-in-the-middle attacks that may lead to information disclosure.  This requires privileged network access.
CVE-2022-41599 1 Huawei 2 Emui, Harmonyos 2025-04-16 7.5 High
The system service has a vulnerability that causes incorrect return values. Successful exploitation of this vulnerability may affect data confidentiality.
CVE-2022-41596 1 Huawei 2 Emui, Harmonyos 2025-04-16 7.5 High
The system tool has inconsistent serialization and deserialization. Successful exploitation of this vulnerability will cause unauthorized startup of components.
CVE-2022-41591 1 Huawei 2 Emui, Harmonyos 2025-04-16 7.5 High
The backup module has a path traversal vulnerability. Successful exploitation of this vulnerability causes unauthorized access to other system files.
CVE-2022-41590 1 Huawei 1 Harmonyos 2025-04-16 5.5 Medium
Some smartphones have authentication-related (including session management) vulnerabilities as the setup wizard is bypassed. Successful exploitation of this vulnerability affects the smartphone availability.
CVE-2022-38733 1 Netapp 1 Oncommand Insight 2025-04-16 8.6 High
OnCommand Insight versions 7.3.1 through 7.3.14 are susceptible to an authentication bypass vulnerability in the Data Warehouse component.
CVE-2022-25940 1 Lite-server Project 1 Lite-server 2025-04-16 7.5 High
All versions of package lite-server are vulnerable to Denial of Service (DoS) when an attacker sends an HTTP request and includes control characters that the decodeURI() function is unable to parse.
CVE-2022-25929 1 Smoothiecharts 1 Smoothie Charts 2025-04-16 5.4 Medium
The package smoothie from 1.31.0 and before 1.36.1 are vulnerable to Cross-site Scripting (XSS) due to improper user input sanitization in strokeStyle and tooltipLabel properties. Exploiting this vulnerability is possible when the user can control these properties.
CVE-2022-25895 1 Lite-dev-server Project 1 Lite-dev-server 2025-04-16 7.5 High
All versions of package lite-dev-server are vulnerable to Directory Traversal due to missing input sanitization and sandboxes being employed to the req.url user input that is passed to the server code.
CVE-2024-27710 1 Eskooly 2 Eskooly, Free Online School Management Software 2025-04-16 9.8 Critical
An issue in Eskooly Free Online School management Software v.3.0 and before allows a remote attacker to escalate privileges via the authentication mechanism.