2b45 / vuln-list

0 stars 0 forks source link

【2022-01-02 18:01:16.553457】抓取 1 天内的NVD数据 #7

Open meigea opened 2 years ago

meigea commented 2 years ago
CVE 描述 更新时间
CVE-2022-22293 admin/limits.php in Dolibarr 7.0.2 allows HTML injection, as demonstrated by the MAIN_MAX_DECIMALS_TOT parameter. 2022-01-02 00:15:09+00:00
CVE-2021-44896 DMP Roadmap before 3.0.4 allows XSS. 2022-01-01 23:15:08+00:00
CVE-2021-45972 The giftrans function in giftrans 1.12.2 contains a stack-based buffer overflow because a value inside the input file determines the amount of data to write. This allows an attacker to overwrite up to 250 bytes outside of the allocated buffer with arbitrary data. 2022-01-01 21:15:07+00:00
CVE-2021-45960 In Expat (aka libexpat) before 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory). 2022-01-01 19:15:08+00:00