| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2022-25629 | Broadcom Symantec Messaging Gateway 跨站脚本漏洞 | - | Symantec Messaging Gateway | 中危 | - | 2022-12-09 00:00:00 | Deep Dive |
| CVE-2022-25630 | Broadcom Symantec Messaging Gateway 跨站脚本漏洞 | - | Symantec Messaging Gateway | 中危 | - | 2022-12-09 00:00:00 | Deep Dive |
| CVE-2022-46829 | JetBrains Gateway 授权问题漏洞 | JetBrains | JetBrains Gateway | High | 7.1 | 2022-12-08 17:38:02 | Deep Dive |
| CVE-2022-35254 | Pulse Secure Pulse Connect Secure 资源管理错误漏洞 | - | Ivanti Connect Secure (ICS), Ivanti Policy Secure (IPS), and Ivanti Neurons for Zero Trust Access Gateway | 高危 | - | 2022-12-05 00:00:00 | Deep Dive |
| CVE-2022-35258 | Pulse Secure Pulse Connect Secure 安全漏洞 | - | Ivanti Connect Secure (ICS), Ivanti Policy Secure (IPS), and Ivanti Neurons for Zero Trust Access Gateway | 高危 | - | 2022-12-05 00:00:00 | Deep Dive |
| CVE-2022-3270 | Incomplete Documentation of remote functions in FESTO products. | Festo SE | Bus module CPX-E-EP | Critical | 9.8 | 2022-12-01 10:27:52 | Deep Dive |
| CVE-2022-23746 | Check Point IPSec VPN 安全漏洞 | - | Gateway & Management, IPsec VPN blade SNX portal. | 高危 | - | 2022-11-30 00:00:00 | Deep Dive |
| CVE-2022-40228 | IBM DataPower Gateway session fixation | IBM | DataPower Gateway | Low | 3.7 | 2022-11-22 18:52:13 | Deep Dive |
| CVE-2022-27516 | User login brute force protection functionality bypass | Citrix | Citrix Gateway, Citrix ADC | Medium | 5.3 | 2022-11-08 21:26:13 | Deep Dive |
| CVE-2022-27510 | Unauthorized access to Gateway user capabilities | Citrix | Citrix Gateway, Citrix ADC | Critical | 9.8 | 2022-11-08 21:26:11 | Deep Dive |
| CVE-2022-27513 | Remote desktop takeover via phishing | Citrix | Citrix Gateway, Citrix ADC | High | 8.3 | 2022-11-08 21:26:08 | Deep Dive |
| CVE-2022-39065 | IKEA TRÅDFRI smart lighting 安全漏洞 | Ikea | TRÅDFRI gateway system | 中危 | - | 2022-10-14 00:00:00 | Deep Dive |
| CVE-2022-22387 | IBM Application Gateway 跨站脚本漏洞 | IBM | Application Gateway | 中危 | - | 2022-09-28 15:55:14 | Deep Dive |
| CVE-2022-28816 | Reflected XSS in Carlo Gavazzi UWP 3.0 | Carlo Gavazzi | UWP 3.0 Monitoring Gateway and Controller | Medium | 6.1 | 2022-09-28 13:45:37 | Deep Dive |
| CVE-2022-28815 | SQL-Injection in Carlo Gavazzi UWP 3.0 Sentilo Proxy | Carlo Gavazzi | UWP 3.0 Monitoring Gateway and Controller | Low | 2.7 | 2022-09-28 13:45:36 | Deep Dive |
| CVE-2022-28814 | Path traversal in Carlo Gavazzi UWP 3.0 could lead to full device access | Carlo Gavazzi | UWP 3.0 Monitoring Gateway and Controller | Critical | 9.8 | 2022-09-28 13:45:35 | Deep Dive |
| CVE-2022-28812 | Use of Hard-coded Credentials in UWP3.0 allows SuperUser authentication bypass in Car Park Server. | Carlo Gavazzi | UWP 3.0 Monitoring Gateway and Controller | Critical | 9.8 | 2022-09-28 13:45:33 | Deep Dive |
| CVE-2022-28811 | Possible command injection in Car Park Server in Carlo Gavazzi UWP3.0 | Carlo Gavazzi | UWP 3.0 Monitoring Gateway and Controller | Critical | 9.8 | 2022-09-28 13:45:32 | Deep Dive |
| CVE-2022-22526 | Missing authentication for API in Carlo Gavazzi UWP 3.0 Car Park Server | Carlo Gavazzi | UWP 3.0 Monitoring Gateway and Controller | Critical | 9.8 | 2022-09-28 13:45:31 | Deep Dive |
| CVE-2022-22524 | SQL-injection in Carlo Gavazzi UWP 3.0 allows for full database access | Carlo Gavazzi | UWP 3.0 Monitoring Gateway and Controller | Critical | 9.4 | 2022-09-28 13:45:30 | Deep Dive |