CVE-2022-26777
published 2022-04-16CVE-2022-26777: Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view license details.
PriorityP431medium5.3CVSS 3.1
AVNACLPRNUINSUCLINAN
EPSS
2.03%
78.6th percentile
Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view license details.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| zohocorp | manageengine_remote_access_plus | < 10.1.2137.15 | 10.1.2137.15 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-gjq6-54j6-8rpm: Zoho ManageEngine Remote Access Plus before 10
ghsa_unreviewed·2022-04-17
CVE-2022-26777 [MEDIUM] CWE-668 GHSA-gjq6-54j6-8rpm: Zoho ManageEngine Remote Access Plus before 10
Zoho ManageEngine Remote Access Plus before 10.1.2137.15 allows guest users to view license details.
Red Hat
kernel: fbdev: sis: Error out if pixclock equals zero
vendor_redhat·2024-04-03·CVSS 5.5
CVE-2024-26777 [MEDIUM] CWE-369 kernel: fbdev: sis: Error out if pixclock equals zero
kernel: fbdev: sis: Error out if pixclock equals zero
In the Linux kernel, the following vulnerability has been resolved:
fbdev: sis: Error out if pixclock equals zero
The userspace program could pass any values to the driver through
ioctl() interface. If the driver doesn't check the value of pixclock,
it may cause divide-by-zero error.
In sisfb_check_var(), var->pixclock is used as a divisor to caculate
drate before it is checked against zero. Fix this by checking it
at the beginning.
This is similar to CVE-2022-3061 in i740fb which was fixed by
commit 15cf0b8.
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel (Re
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-04-16
Published