Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

unspecified — Vulnerabilities & Security Advisories 259

Browse all 259 CVE security advisories affecting unspecified. AI-powered Chinese analysis, POCs, and references for each vulnerability.

The term "unspecified" in cybersecurity contexts typically refers to software components, libraries, or hardware modules where the vendor or manufacturer has not been publicly identified or disclosed. This anonymity often complicates vulnerability tracking, resulting in a significant backlog of assigned CVEs, currently totaling 259. Historically, these unidentified assets frequently exhibit critical flaws such as remote code execution, cross-site scripting, and privilege escalation vulnerabilities, stemming from a lack of standardized security development lifecycles. The absence of clear attribution hinders coordinated patching efforts and incident response, leaving downstream users exposed to prolonged risk. Notable incidents involving unspecified components often involve supply chain attacks or zero-day exploits where the origin remains obscure until forensic analysis reveals the underlying architecture. This opacity creates a persistent threat landscape, as defenders cannot implement targeted mitigations without knowing the specific software stack or vendor context associated with the vulnerability.

CVE ID Title CVSS Severity Published
CVE-2022-4642 tatoeba2 Profile Name cross site scripting — tatoeba2 CWE-707 3.5 Low 2022-12-21
CVE-2021-4273 studygolang search.go Search cross site scripting — studygolang CWE-707 4.3 Medium 2022-12-21
CVE-2021-4272 studygolang topics.js cross site scripting — studygolang CWE-707 3.5 Low 2022-12-21
CVE-2021-4270 Imprint CMS ViewHelpers.cs SearchForm cross site scripting — Imprint CMS CWE-707 3.5 Low 2022-12-21
CVE-2021-4269 SimpleRisk common.js checkAndSetValidation cross site scripting — SimpleRisk CWE-707 3.5 Low 2022-12-21
CVE-2021-4268 phpRedisAdmin cross-site request forgery — phpRedisAdmin CWE-863 4.3 Medium 2022-12-21
CVE-2021-4267 tad_discuss cross site scripting — tad_discuss CWE-707 3.5 Low 2022-12-21
CVE-2021-4265 siwapp-ror cross site scripting — siwapp-ror CWE-707 3.5 Low 2022-12-21
CVE-2020-36623 Pengu index.js runApp cross-site request forgery — Pengu CWE-863 4.3 Medium 2022-12-21
CVE-2022-4641 pig-vector LogisticRegression.java LogisticRegression temp file — pig-vector CWE-377 2.5 Low 2022-12-21
CVE-2022-4639 sslh Packet Dumping probe.c hexdump format string — sslh CWE-119 5.6 Medium 2022-12-21
CVE-2022-4638 collective.contact.widget widgets.py title cross site scripting — collective.contact.widget CWE-707 3.5 Low 2022-12-21
CVE-2022-4631 WP-Ban ban-options.php cross site scripting — WP-Ban CWE-707 3.5 Low 2022-12-21
CVE-2021-4262 laravel-jqgrid EloquentRepositoryAbstract.php getRows sql injection — laravel-jqgrid CWE-707 5.5 Medium 2022-12-19
CVE-2020-36619 multimon-ng demod_flex.c add_ch format string — multimon-ng CWE-119 5.5 Medium 2022-12-19
CVE-2021-4258 whohas Package Information cleartext transmission — whohas CWE-310 3.7 Low 2022-12-19
CVE-2021-4260 oils-js Web.js redirect — oils-js CWE-601 6.3 Medium 2022-12-19
CVE-2021-4261 pacman-canvas db-handler.php addHighscore sql injection — pacman-canvas CWE-707 6.3 Medium 2022-12-19
CVE-2022-4593 retra-system cross site scripting — retra-system CWE-707 3.5 Low 2022-12-18
CVE-2022-4603 ppp pppdump pppdump.c dumpppp array index — ppp CWE-119 4.3 Medium 2022-12-18
CVE-2022-4596 Shoplazza Add Blog Post cross site scripting — Shoplazza CWE-707 3.5 Low 2022-12-18
CVE-2022-4595 django-openipam exposed_hosts.html cross site scripting — django-openipam CWE-707 3.5 Low 2022-12-18
CVE-2021-4249 xml-conduit DOCTYPE Entity Expansion Parse.hs infinite loop — xml-conduit CWE-404 4.3 Medium 2022-12-18
CVE-2021-4251 as include.cdn.php getFullURL cross site scripting — as CWE-707 3.5 Low 2022-12-18
CVE-2021-4252 WP-Ban ban-options.php toggle_checkbox cross site scripting — WP-Ban CWE-707 3.5 Low 2022-12-18
CVE-2022-4583 jLEMS JUtil.java unpackJar path traversal — jLEMS CWE-22 6.3 Medium 2022-12-17
CVE-2022-4582 starter-public-edition-4 cross site scripting — starter-public-edition-4 CWE-707 3.5 Low 2022-12-17
CVE-2022-4572 UBI Reader UBIFS File output.py ubireader_extract_files path traversal — UBI Reader CWE-22 5.4 Medium 2022-12-17
CVE-2022-4561 SemanticDrilldown Extension GET Parameter SDBrowseDataPage.php printFilterLine cross site scripting — SemanticDrilldown Extension CWE-707 3.5 Low 2022-12-16
CVE-2022-4522 CalendarXP cross site scripting — CalendarXP CWE-707 3.5 Low 2022-12-15

This page lists every published CVE security advisory associated with unspecified. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.