CVE-2022-4719

CVSS v3 Score
5.7
Medium

Vulnerability Description

Business Logic Errors in GitHub repository ikus060/rdiffweb prior to 2.5.5.

CVSS:5.9(Medium)

The package integrity validation in yarn < 1.19.0 contains a TOCTOU vulnerability where the hash is computed before writing a package to cache. It's not computed again when reading from the cache. Thi...

CVSS:5.9(Medium)

When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it t...

CVSS:5.9(Medium)

Business Logic Errors in GitHub repository microweber/microweber prior to 2.0.

CVSS:5.5(Medium)

Privilege escalation vulnerability in the NMS module Impact: Successful exploitation of this vulnerability will affect availability.

CVSS:5.5(Medium)

Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.

CVSS:5.5(Medium)

Access control vulnerability in the security verification module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.