VYPR

CVEs

1,665 total · page 16 of 34

  • CVE-2022-22718HigKEVFeb 9, 2022
    risk 0.64cvss 7.8epss 0.18

    Windows Print Spooler Elevation of Privilege Vulnerability

  • CVE-2022-21999HigKEVFeb 9, 2022
    risk 0.75cvss 7.8epss 0.42

    Windows Print Spooler Elevation of Privilege Vulnerability

  • CVE-2022-21971HigKEVFeb 9, 2022
    risk 0.67cvss 7.8epss 0.54

    Windows Runtime Remote Code Execution Vulnerability

  • CVE-2022-24682MedKEVFeb 9, 2022
    risk 0.53cvss 6.1epss 0.31

    An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the wild starting in December 2021. An attacker could place HTML containing executable JavaScript inside element attributes. This markup becomes…

  • CVE-2021-4034HigKEVJan 28, 2022
    risk 0.79cvss 7.8epss 0.95

    A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the…

  • CVE-2021-40407HigKEVJan 28, 2022
    risk 0.63cvss 7.2epss 0.48

    An OS command injection vulnerability exists in the device network settings functionality of reolink RLC-410W v3.0.0.136_20121102. At [1] or [2], based on DDNS type, the ddns->domain variable, that has the value of the domain parameter provided through the SetDdns API, is not…

  • CVE-2021-22600MedKEVJan 26, 2022
    risk 0.12cvss 6.6epss 0.06

    A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscalls to escalate privileges or deny service. We recommend upgrading kernel past the effected versions or rebuilding past ec6af094ea28f0f2dda1a6a33b14cd57e36a9755

  • CVE-2021-35587CriKEVJan 19, 2022
    risk 0.86cvss 9.8epss 0.96

    Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: OpenSSO Agent). Supported versions that are affected are 11.1.2.3.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via…

  • CVE-2022-23227CriKEVJan 14, 2022
    risk 0.16cvss 9.8epss 0.49

    NUUO NVRmini2 through 3.11 allows an unauthenticated attacker to upload an encrypted TAR archive, which can be abused to add arbitrary users because of the lack of handle_import_user.php authentication. When combined with another flaw (CVE-2011-5325), it is possible to overwrite…

  • CVE-2022-23134LowKEVJan 13, 2022
    risk 0.43cvss 3.7epss 0.85

    After the initial setup process, some steps of setup.php file are reachable not only by super-administrators, but by unauthenticated users as well. Malicious actor can pass step checks and potentially change the configuration of Zabbix Frontend.

  • CVE-2022-23131CriKEVJan 13, 2022
    risk 0.79cvss 9.1epss 0.96

    In the case of instances where the SAML SSO authentication is enabled (non-default), session data can be modified by a malicious actor, because a user login stored in the session was not verified. Malicious unauthenticated actor may exploit this issue to escalate privileges and…

  • CVE-2022-21919HigKEVJan 11, 2022
    risk 0.58cvss 7.0epss 0.03

    Windows User Profile Service Elevation of Privilege Vulnerability

  • CVE-2022-21882HigKEVJan 11, 2022
    risk 0.71cvss 7.0epss 0.55

    Win32k Elevation of Privilege Vulnerability

  • CVE-2022-22265MedKEVJan 10, 2022
    risk 0.45cvss 5.0epss 0.00

    An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code execution.

  • CVE-2021-35247MedKEVJan 10, 2022
    risk 0.40cvss 4.3epss 0.03

    Serv-U web login screen to LDAP authentication was allowing characters that were not sufficiently sanitized. SolarWinds has updated the input mechanism to perform additional validation and sanitization. Please Note: No downstream affect has been detected as the LDAP servers…

  • CVE-2021-44168LowKEVJan 4, 2022
    risk 0.34cvss 3.3epss 0.01

    A download of code without integrity check vulnerability in the "execute restore src-vis" command of FortiOS before 7.0.3 may allow a local authenticated attacker to download arbitrary files on the device via specially crafted update packages.

  • CVE-2021-44207HigKEVDec 21, 2021
    risk 0.66cvss 8.1epss 0.18

    Acclaim USAHERDS through 7.4.0.1 uses hard-coded credentials.

  • CVE-2021-22054HigKEVDec 17, 2021
    risk 0.69cvss 7.5epss 0.97

    VMware Workspace ONE UEM console 20.0.8 prior to 20.0.8.37, 20.11.0 prior to 20.11.0.40, 21.2.0 prior to 21.2.0.27, and 21.5.0 prior to 21.5.0.37 contain an SSRF vulnerability. This issue may allow a malicious actor with network access to UEM to send their requests without…

  • CVE-2021-1048HigKEVDec 15, 2021
    risk 0.63cvss 7.8epss 0.01

    In ep_loop_check_proc of eventpoll.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2021-0920MedKEVDec 15, 2021
    risk 0.54cvss 6.4epss 0.01

    In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android…

  • CVE-2021-43890HigKEVDec 15, 2021
    risk 0.65cvss 7.1epss 0.10

    We have investigated reports of a spoofing vulnerability in AppX installer that affects Microsoft Windows. Microsoft is aware of attacks that attempt to exploit this vulnerability by using specially crafted packages that include the malware family known as…

  • CVE-2021-43226HigKEVDec 15, 2021
    risk 0.63cvss 7.8epss 0.03

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

  • CVE-2021-45046CriKEVDec 14, 2021
    risk 0.87cvss 9.0epss 1.00

    It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers with control over Thread Context Map (MDC) input data when the logging configuration uses a non-default Pattern Layout…

  • CVE-2021-39935MedKEVDec 13, 2021
    risk 0.52cvss 6.8epss 0.36

    An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.5 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2. Unauthorized external users could perform Server Side Requests via the CI Lint API

  • CVE-2021-44515CriKEVDec 12, 2021
    risk 0.84cvss 9.8epss 1.00

    Zoho ManageEngine Desktop Central is vulnerable to authentication bypass, leading to remote code execution on the server, as exploited in the wild in December 2021. For Enterprise builds 10.1.2127.17 and earlier, upgrade to 10.1.2127.18. For Enterprise builds 10.1.2128.0 through…

  • CVE-2021-44228CriKEVDec 10, 2021
    risk 0.94cvss 10.0epss 1.00

    Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints. An attacker who can control log…

  • CVE-2021-44529CriKEVDec 8, 2021
    risk 0.93cvss 9.8epss 0.99

    A code injection vulnerability in the Ivanti EPM Cloud Services Appliance (CSA) allows an unauthenticated user to execute arbitrary code with limited permissions (nobody).

  • CVE-2021-27860CriKEVDec 8, 2021
    risk 0.79cvss 9.8epss 0.40

    A vulnerability in the web management interface of FatPipe WARP, IPVPN, and MPVPN software prior to versions 10.1.2r60p92 and 10.2.2r44p1 allows a remote, unauthenticated attacker to upload a file to any location on the filesystem. The FatPipe advisory identifier for this…

  • CVE-2021-20038CriKEVDec 8, 2021
    risk 0.90cvss 9.8epss 1.00

    A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows a remote unauthenticated attacker to potentially execute code as a 'nobody' user in the appliance. This vulnerability affected SMA 200, 210, 400, 410 and 500v…

  • CVE-2021-43798HigKEVDec 7, 2021
    risk 0.64cvss 7.5epss 0.89

    Grafana is an open-source platform for monitoring and observability. Grafana versions 8.0.0-beta1 through 8.3.0 (except for patched versions) iss vulnerable to directory traversal, allowing access to local files. The vulnerable URL path is: `<grafana_host_url>/public/plugins//`,…

  • CVE-2021-44077CriKEVNov 29, 2021
    risk 0.86cvss 9.8epss 0.93

    Zoho ManageEngine ServiceDesk Plus before 11306, ServiceDesk Plus MSP before 10530, and SupportCenter Plus before 11014 are vulnerable to unauthenticated remote code execution. This is related to /RestAPI URLs in a servlet, and ImportTechnicians in the Struts configuration.

  • CVE-2021-38003HigKEVNov 23, 2021
    risk 0.72cvss 8.8epss 0.39

    Inappropriate implementation in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

  • CVE-2021-38000MedKEVNov 23, 2021
    risk 0.52cvss 6.1epss 0.05

    Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote attacker to arbitrarily browser to a malicious URL via a crafted HTML page.

  • CVE-2021-44026CriKEVNov 19, 2021
    risk 0.15cvss 9.8epss 0.43

    Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to a potential SQL injection via search or search_params.

  • CVE-2021-41277CriKEVNov 17, 2021
    risk 0.20cvss 10.0epss 0.97

    Metabase is an open source data analytics platform. In affected versions a security issue has been discovered with the custom GeoJSON map (`admin->settings->maps->custom maps->add a map`) support and potential local file inclusion (including environment variables). URLs were not…

  • CVE-2021-42321HigKEVNov 10, 2021
    risk 0.85cvss 8.8epss 0.90

    Microsoft Exchange Server Remote Code Execution Vulnerability

  • CVE-2021-42292HigKEVNov 10, 2021
    risk 0.65cvss 7.8epss 0.32

    Microsoft Excel Security Feature Bypass Vulnerability

  • CVE-2021-42287HigKEVNov 10, 2021
    risk 0.73cvss 7.5epss 0.74

    Active Directory Domain Services Elevation of Privilege Vulnerability

  • CVE-2021-42278HigKEVNov 10, 2021
    risk 0.72cvss 7.5epss 0.70

    Active Directory Domain Services Elevation of Privilege Vulnerability

  • CVE-2021-41379MedKEVNov 10, 2021
    risk 0.55cvss 5.5epss 0.20

    Windows Installer Elevation of Privilege Vulnerability

  • CVE-2021-42237CriKEVNov 5, 2021
    risk 0.93cvss 9.8epss 0.98

    Sitecore XP 7.5 Initial Release to Sitecore XP 8.2 Update-7 is vulnerable to an insecure deserialization attack where it is possible to achieve remote command execution on the machine. No authentication or special configuration is required to exploit this vulnerability.

  • CVE-2021-42258CriKEVOct 22, 2021
    risk 0.91cvss 9.8epss 0.73

    BQE BillQuick Web Suite 2018 through 2021 before 22.0.9.1 allows SQL injection for unauthenticated remote code execution, as exploited in the wild in October 2021 for ransomware installation. SQL injection can, for example, use the txtID (aka username) parameter. Successful…

  • CVE-2021-30807HigKEVOct 19, 2021
    risk 0.65cvss 7.8epss 0.29

    A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.5.1, iOS 14.7.1 and iPadOS 14.7.1, watchOS 7.6.1. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this…

  • CVE-2021-27561CriKEVOct 15, 2021
    risk 0.82cvss 9.8epss 0.83

    Yealink Device Management (DM) 3.6.0.20 allows command injection as root via the /sm/api/v1/firewall/zone/services URI, without authentication.

  • CVE-2021-20124HigKEVOct 13, 2021
    risk 0.66cvss 7.5epss 0.71

    A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the WebServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files from the underlying operating system with root…

  • CVE-2021-20123HigKEVOct 13, 2021
    risk 0.67cvss 7.5epss 0.75

    A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the DownloadFileServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files from the underlying operating system…

  • CVE-2021-41357HigKEVOct 13, 2021
    risk 0.63cvss 7.8epss 0.02

    Win32k Elevation of Privilege Vulnerability

  • CVE-2021-40450HigKEVOct 13, 2021
    risk 0.63cvss 7.8epss 0.02

    Win32k Elevation of Privilege Vulnerability

  • CVE-2021-40449HigKEVOct 13, 2021
    risk 0.78cvss 7.8epss 0.74

    Win32k Elevation of Privilege Vulnerability

  • CVE-2021-37976MedKEVOct 8, 2021
    risk 0.56cvss 6.5epss 0.20

    Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.