CVE-2022-48175
https://notcve.org/view.php?id=CVE-2022-48175
Rukovoditel v3.2.1 was discovered to contain a remote code execution (RCE) vulnerability in the component /rukovoditel/index.php?module=dashboard/ajax_request. • https://github.com/y1s3m0/vulnfind/blob/main/rukovoditel/rce_ajax_request.md • CWE-94: Improper Control of Generation of Code ('Code Injection') •
CVE-2021-4315 – NYUCCL psiTurk experiment.py special elements used in a template engine
https://notcve.org/view.php?id=CVE-2021-4315
A vulnerability has been found in NYUCCL psiTurk up to 3.2.0 and classified as critical. This vulnerability affects unknown code of the file psiturk/experiment.py. The manipulation of the argument mode leads to improper neutralization of special elements used in a template engine. The exploit has been disclosed to the public and may be used. Upgrading to version 3.2.1 is able to address this issue. • https://github.com/NYUCCL/psiTurk/commit/47787e15cecd66f2aa87687bf852ae0194a4335f https://github.com/NYUCCL/psiTurk/pull/517 https://github.com/NYUCCL/psiTurk/releases/tag/v3.2.1 https://vuldb.com/?ctiid.219676 https://vuldb.com/?id.219676 • CWE-94: Improper Control of Generation of Code ('Code Injection') CWE-1336: Improper Neutralization of Special Elements Used in a Template Engine •
CVE-2022-46356
https://notcve.org/view.php?id=CVE-2022-46356
Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure. • https://support.hp.com/us-en/document/ish_7334353-7334378-16 •
CVE-2022-46357
https://notcve.org/view.php?id=CVE-2022-46357
Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure. • https://support.hp.com/us-en/document/ish_7334353-7334378-16 •
CVE-2022-46358
https://notcve.org/view.php?id=CVE-2022-46358
Potential vulnerabilities have been identified in HP Security Manager which may allow escalation of privilege, arbitrary code execution, and information disclosure. • https://support.hp.com/us-en/document/ish_7334353-7334378-16 •