Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In January 2022
SpiceDB is a database system for managing security-critical application permissions. Any user making use of a wildcard relationship under the right hand branch of an `exclusion` or within an `intersection` operation will see `Lookup`/`LookupResources` return a resource as "accessible" if it is *not* accessible by virtue of the inclusion of the wildcard in the intersection or the right side of the exclusion. In `v1.3.0`, the wildcard is ignored entirely in lookup's dispatch, resulting in the `banned` wildcard being ignored in the exclusion. Version 1.4.0 contains a patch for this issue. As a workaround, don't make use of wildcards on the right side of intersections or within exclusions.
CVSS Score
8.1
EPSS Score
0.003
Published
2022-01-11
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVSS Score
6.1
EPSS Score
0.008
Published
2022-01-11
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVSS Score
6.8
EPSS Score
0.02
Published
2022-01-11
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVSS Score
6.8
EPSS Score
0.02
Published
2022-01-11
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVSS Score
6.8
EPSS Score
0.02
Published
2022-01-11
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVSS Score
6.8
EPSS Score
0.02
Published
2022-01-11
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVSS Score
6.8
EPSS Score
0.02
Published
2022-01-11
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVSS Score
6.4
EPSS Score
0.017
Published
2022-01-11
Remote Desktop Licensing Diagnoser Information Disclosure Vulnerability
CVSS Score
5.5
EPSS Score
0.023
Published
2022-01-11
Microsoft Exchange Server Remote Code Execution Vulnerability
CVSS Score
9.0
EPSS Score
0.009
Published
2022-01-11


Contact Us

Shodan ® - All rights reserved