Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In November 2022
This issue was addressed with improved entitlements. This issue is fixed in iOS 16, watchOS 9. An app may be able to read a persistent device identifier.
CVSS Score
3.3
EPSS Score
0.001
Published
2022-11-01
The issue was addressed with improved memory handling. This issue is fixed in iOS 16, macOS Ventura 13, watchOS 9. An app may be able to leak sensitive kernel state.
CVSS Score
5.5
EPSS Score
0.001
Published
2022-11-01
Database connections on deleted users could stay active on MySQL data sources in Remote Desktop Manager 2022.3.7 and below which allow deleted users to access unauthorized data. This issue affects : Remote Desktop Manager 2022.3.7 and prior versions.
CVSS Score
7.5
EPSS Score
0.002
Published
2022-11-01
Dashlane password and Keepass Server password in My Account SettingsĀ  are not encrypted in the database in Devolutions Remote Desktop Manager 2022.2.26 and prior versions and Devolutions Server 2022.3.1 and prior versions which allows database users to read the data. This issue affects : Remote Desktop Manager 2022.2.26 and prior versions. Devolutions Server 2022.3.1 and prior versions.
CVSS Score
6.5
EPSS Score
0.001
Published
2022-11-01
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /editorder.php.
CVSS Score
7.2
EPSS Score
0.001
Published
2022-11-01
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /print.php.
CVSS Score
7.2
EPSS Score
0.001
Published
2022-11-01
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /editorder.php.
CVSS Score
7.2
EPSS Score
0.001
Published
2022-11-01
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php_action/printOrder.php.
CVSS Score
7.2
EPSS Score
0.001
Published
2022-11-01
Senayan Library Management System v9.4.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the component pop_chart.php.
CVSS Score
4.8
EPSS Score
0.001
Published
2022-11-01
Senayan Library Management System v9.4.2 was discovered to contain a SQL injection vulnerability via the collType parameter at loan_by_class.php.
CVSS Score
7.2
EPSS Score
0.001
Published
2022-11-01


Contact Us

Shodan ® - All rights reserved