8.5

CVSS4.0

CVE-2022-50924 - Private Internet Access 3.3 - 'pia-service' Unquoted Service Path

Private Internet Access 3.3 contains an unquoted service path vulnerability that allows local users to potentially execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted path in the service configuration to inject malicious code that would execute with LocalSysteโ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.5

CVSS4.0

CVE-2022-50923 - Cobian Backup 0.9 - Unquoted Service Path

Cobian Backup 0.9 contains an unquoted service path vulnerability that allows local users to execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted binary path in the CobianReflectorService to inject malicious code that will execute with LocalSystem permissions dโ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: March 5, 2026, 1:29 a.m.

8.6

CVSS4.0

CVE-2022-50922 - Audio Conversion Wizard v2.01 - Buffer Overflow

Audio Conversion Wizard v2.01 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting memory with a specially crafted registration code. Attackers can generate a payload that overwrites the application's memory stack, potentially enabling remote code โ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.5

CVSS4.0

CVE-2022-50921 - WOW21 5.0.1.9 - 'Service WOW21_Service' Unquoted Service Path

WOW21 5.0.1.9 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted binary path to inject malicious executables that will be launched with LocalSystem permissions during sโ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: Feb. 2, 2026, 4:16 p.m.

8.5

CVSS4.0

CVE-2022-50920 - Sandboxie-Plus 5.50.2 - 'Service SbieSvc' Unquoted Service Path

Sandboxie-Plus 5.50.2 contains an unquoted service path vulnerability in the SbieSvc Windows service that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted binary path to inject malicious executables that will be run with LocalSystem privileges during โ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS4.0

CVE-2022-50919 - Tdarr 2.00.15 - Command Injection

Tdarr 2.00.15 contains an unauthenticated remote code execution vulnerability in its Help terminal that allows attackers to inject and chain arbitrary commands. Attackers can exploit the lack of input filtering by chaining commands like `--help; curl .py | python` to execute remote code without autโ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: March 5, 2026, 1:29 a.m.

8.5

CVSS4.0

CVE-2022-50918 - VIVE Runtime Service - 'ViveAgentService' Unquoted Service Path

VIVE Runtime Service 1.0.0.4 contains an unquoted service path vulnerability that allows local users to execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted binary path by placing malicious executables in specific system directories to gain LocalSystem access dโ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.5

CVSS4.0

CVE-2022-50917 - ProtonVPN 1.26.0 - Unquoted Service Path

ProtonVPN 1.26.0 contains an unquoted service path vulnerability in its WireGuard service configuration that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path by placing malicious executables in specific file system locations to gain elevated privโ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 2:06 p.m.

8.7

CVSS4.0

CVE-2022-50916 - e107 CMS v3.2.1 - Upload restriction bypass (Authenticated [Admin])+ Server file override

e107 CMS version 3.2.1 contains a file upload vulnerability that allows authenticated administrators to override server files through the Media Manager import functionality. Attackers can exploit the upload mechanism by manipulating the upload URL parameter to overwrite existing files like top.php โ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 2:06 p.m.

8.5

CVSS4.0

CVE-2022-50915 - PTPublisher 2.3.4 - Unquoted Service Path

PTPublisher 2.3.4 contains an unquoted service path vulnerability in the PTProtect service that allows local attackers to potentially execute arbitrary code with elevated privileges. Attackers can exploit the unquoted path in 'C:\Program Files (x86)\Primera Technology\PTPublisher\UsbFlashDongleServโ€ฆ

๐Ÿ“… Published: Jan. 13, 2026, 10:51 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 2:06 p.m.
Total resulsts: 349182
Page 2147 of 34,919
ยซ previous page ยป next page
Filters