CVE-2022-0855

CVSS v3 Score
7.4
High
CVSS v2 Score
5.8
Medium

Vulnerability Description

Improper Resolution of Path Equivalence in GitHub repository microweber-dev/whmcs_plugin prior to 0.0.4.

CVSS:7.3(High)

In lunary-ai/lunary, the privilege check mechanism is flawed in version git afc5df4. The system incorrectly identifies certain endpoints as public if the path contains '/auth/' anywhere within it. Thi...

CWE-412024
CVSS:7.8(High)

Windows Compressed Folder Remote Code Execution Vulnerability

CWE-412023
CVSS:7.8(High)

Windows Security Zone Mapping Security Feature Bypass Vulnerability

CWE-412024
CVSS:6.5(Medium)

IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to arbitrarily delete a file. IBM X-Force ID: 269406.

CWE-412023
CVSS:6.5(Medium)

Windows Deployment Services Information Disclosure Vulnerability

CWE-412024
CVSS:8.6(High)

An Improper Resolution of Path Equivalence vulnerability [CWE-41] in FortiPortal 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.11 may allow a remote unauthenticated attacker to retrieve ...

CWE-412025