| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-42132 | Hig | 0.63 | 8.8 | 0.70 | Dec 7, 2021 | A command Injection vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary command execution. | ||
| CVE-2021-42131 | Hig | 0.63 | 8.8 | 0.67 | Dec 7, 2021 | A SQL Injection vulnerability exists in Ivanti Avalance before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation. | ||
| CVE-2021-42130 | Hig | 0.62 | 8.8 | 0.62 | Dec 7, 2021 | A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary code execution. | ||
| CVE-2021-42129 | Hig | 0.63 | 8.8 | 0.77 | Dec 7, 2021 | A command injection vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary command execution. | ||
| CVE-2021-42126 | Hig | 0.58 | 8.8 | 0.04 | Dec 7, 2021 | An improper authorization control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation. | ||
| CVE-2021-42125 | Hig | 0.64 | 8.8 | 0.82 | Dec 7, 2021 | An unrestricted file upload vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to write dangerous files. | ||
| CVE-2021-42124 | Hig | 0.57 | 8.8 | 0.03 | Dec 7, 2021 | An improper access control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform a session takeover. | ||
| CVE-2021-22956 | Hig | 0.49 | 7.5 | 0.01 | Dec 7, 2021 | An uncontrolled resource consumption vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 that could allow an attacker with access to NSIP or SNIP with management interface access to cause a temporary disruption of the Management GUI, Nitro API, and RPC… | ||
| CVE-2021-22955 | Hig | 0.49 | 7.5 | 0.01 | Dec 7, 2021 | A unauthenticated denial of service vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 when configured as a VPN (Gateway) or AAA virtual server could allow an attacker to cause a temporary disruption of the Management GUI, Nitro API, and RPC communication. | ||
| CVE-2021-28703 | Hig | 0.46 | 7.0 | 0.00 | Dec 7, 2021 | grant table v2 status pages may remain accessible after de-allocation (take two) Guest get permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire lifetime. Grant table v2 status pages, however,… | ||
| CVE-2021-44513 | Hig | 0.00 | 7.0 | 0.00 | Dec 7, 2021 | Insecure creation of temporary directories in tmate-ssh-server 2.3.0 allows a local attacker to compromise the integrity of session handling. | ||
| CVE-2021-44512 | Hig | 0.00 | 7.0 | 0.00 | Dec 7, 2021 | World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to compromise the integrity of session handling, or obtain the read-write session ID from a read-only session symlink in this directory. | ||
| CVE-2021-44686 | Hig | 0.49 | 7.5 | 0.05 | Dec 7, 2021 | calibre before 5.32.0 contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service) in html_preprocess_rules in ebooks/conversion/preprocess.py. | ||
| CVE-2021-31631 | Hig | 0.57 | 8.8 | 0.01 | Dec 6, 2021 | b2evolution CMS v7.2.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the User login page. This vulnerability allows attackers to escalate privileges. | ||
| CVE-2021-4075 | Hig | 0.40 | 7.2 | 0.01 | Dec 6, 2021 | snipe-it is vulnerable to Server-Side Request Forgery (SSRF) | ||
| CVE-2021-40313 | Hig | 0.57 | 8.8 | 0.01 | Dec 6, 2021 | Piwigo v11.5 was discovered to contain a SQL injection vulnerability via the parameter pwg_token in /admin/batch_manager_global.php. | ||
| CVE-2021-43800 | Hig | 0.00 | 7.5 | 0.02 | Dec 6, 2021 | Wiki.js is a wiki app built on Node.js. Prior to version 2.5.254, directory traversal outside of Wiki.js context is possible when a storage module with local asset cache fetching is enabled on a Windows host. A malicious user can potentially read any file on the file system by… | ||
| CVE-2021-36198 | — | Hig | 0.54 | 8.3 | 0.01 | Dec 6, 2021 | Successful exploitation of this vulnerability could allow an unauthorized user to access sensitive data. | |
| CVE-2021-35245 | Hig | 0.55 | 8.4 | 0.01 | Dec 6, 2021 | When a user has admin rights in Serv-U Console, the user can move, create and delete any files are able to be accessed on the Serv-U host machine. | ||
| CVE-2021-35242 | Hig | 0.54 | 8.3 | 0.01 | Dec 6, 2021 | Serv-U server responds with valid CSRFToken when the request contains only Session. | ||
| CVE-2021-24917 | Hig | 0.57 | 7.5 | 0.72 | Dec 6, 2021 | The WPS Hide Login WordPress plugin before 1.9.1 has a bug which allows to get the secret login page by setting a random referer string and making a request to /wp-admin/options.php as an unauthenticated user. | ||
| CVE-2021-24914 | Hig | 0.52 | 8.0 | 0.01 | Dec 6, 2021 | The Tawk.To Live Chat WordPress plugin before 0.6.0 does not have capability and CSRF checks in the tawkto_setwidget and tawkto_removewidget AJAX actions, available to any authenticated user. The first one allows low-privileged users (including simple subscribers) to change the… | ||
| CVE-2021-43471 | Hig | 0.49 | 7.5 | 0.01 | Dec 6, 2021 | In Canon LBP223 printers, the System Manager Mode login does not require an account password or PIN. An attacker can remotely shut down the device after entering the background, creating a denial of service vulnerability. | ||
| CVE-2021-4069 | Hig | 0.00 | 7.8 | 0.01 | Dec 6, 2021 | vim is vulnerable to Use After Free | ||
| CVE-2021-43469 | Hig | 0.57 | 8.8 | 0.02 | Dec 6, 2021 | VINGA WR-N300U 77.102.1.4853 is affected by a command execution vulnerability in the goahead component. | ||
| CVE-2021-43041 | Hig | 0.57 | 8.8 | 0.02 | Dec 6, 2021 | An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. A crafted HTTP request could induce a format string vulnerability in the privileged vaultServer application. | ||
| CVE-2021-43040 | Hig | 0.57 | 8.8 | 0.02 | Dec 6, 2021 | An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The privileged vaultServer could be leveraged to create arbitrary writable files, leading to privilege escalation. | ||
| CVE-2021-43038 | Hig | 0.57 | 8.8 | 0.02 | Dec 6, 2021 | An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The wguest account could execute commands by injecting into PostgreSQL trigger functions. This allowed privilege escalation from the wguest user to the postgres user. | ||
| CVE-2021-43037 | Hig | 0.51 | 7.8 | 0.01 | Dec 6, 2021 | An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The Unitrends Windows agent was vulnerable to DLL injection and binary planting due to insecure default permissions. This allowed privilege escalation from an unprivileged user to SYSTEM. | ||
| CVE-2021-43034 | Hig | 0.51 | 7.8 | 0.00 | Dec 6, 2021 | An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. A world writable file allowed local users to execute arbitrary code as the user apache, leading to privilege escalation. | ||
| CVE-2021-44048 | Hig | 0.51 | 7.8 | 0.01 | Dec 5, 2021 | An out-of-bounds write vulnerability exists when reading a TIF file using Open Design Alliance (ODA) Drawings Explorer before 2022.11. The specific issue exists after loading TIF files. Crafted data in a TIF file can trigger a write operation past the end of an allocated buffer.… | ||
| CVE-2021-44047 | Hig | 0.51 | 7.8 | 0.01 | Dec 5, 2021 | A use-after-free vulnerability exists when reading a DWF/DWFX file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists with parsing DWF/DWFX files. Crafted data in a DWF/DWFX file and lack of proper validation of input data can trigger a write… | ||
| CVE-2021-44046 | Hig | 0.51 | 7.8 | 0.01 | Dec 5, 2021 | An out-of-bounds write vulnerability exists when reading U3D files in Open Design Alliance PRC SDK before 2022.11. An unchecked return value of a function (verifying input data from a U3D file) leads to an out-of-bounds write. An attacker can leverage this vulnerability to… | ||
| CVE-2021-44045 | Hig | 0.51 | 7.8 | 0.01 | Dec 5, 2021 | An out-of-bounds write vulnerability exists when reading a DGN file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists within the parsing of DGN files. Crafted data in a DGN file and lack of proper validation for the XFAT sectors count can trigger… | ||
| CVE-2021-44044 | Hig | 0.51 | 7.8 | 0.01 | Dec 5, 2021 | An out-of-bounds write vulnerability exists when reading a JPG file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists with parsing JPG files. Crafted data in a JPG (4 extraneous bytes before the marker 0xca) can trigger a write operation past the… | ||
| CVE-2021-37253 | Hig | 0.49 | 7.5 | 0.03 | Dec 5, 2021 | M-Files Web before 20.10.9524.1 allows a denial of service via overlapping ranges (in HTTP requests with crafted Range or Request-Range headers). NOTE: this is disputed because the range behavior is the responsibility of the web server, not the responsibility of the individual… | ||
| CVE-2021-43415 | — | Hig | 0.57 | 8.8 | 0.01 | Dec 3, 2021 | HashiCorp Nomad and Nomad Enterprise up to 1.0.13, 1.1.7, and 1.2.0, with the QEMU task driver enabled, allowed authenticated users with job submission capabilities to bypass the configured allowed image paths. Fixed in 1.0.14, 1.1.8, and 1.2.1. | |
| CVE-2021-35413 | Hig | 0.00 | 8.8 | 0.03 | Dec 3, 2021 | A remote code execution (RCE) vulnerability in course_intro_pdf_import.php of Chamilo LMS v1.11.x allows authenticated attackers to execute arbitrary code via a crafted .htaccess file. | ||
| CVE-2021-23758 | — | Hig | 0.03 | 8.1 | 0.89 | Dec 3, 2021 | All versions of package ajaxpro.2 are vulnerable to Deserialization of Untrusted Data due to the possibility of deserialization of arbitrary .NET classes, which can be abused to gain remote code execution. | |
| CVE-2021-29756 | Hig | 0.57 | 8.8 | 0.01 | Dec 3, 2021 | IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to cross-site request forgery (CSRF) in the My Inbox page which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 202167. | ||
| CVE-2021-20470 | Hig | 0.49 | 7.5 | 0.01 | Dec 3, 2021 | IBM Cognos Analytics 11.1.7 and 11.2.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 196339. | ||
| CVE-2021-3980 | Hig | 0.42 | 7.5 | 0.02 | Dec 3, 2021 | elgg is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor | ||
| CVE-2021-44021 | Hig | 0.51 | 7.8 | 0.00 | Dec 3, 2021 | An unnecessary privilege vulnerability in Trend Micro Worry-Free Business Security 10.0 SP1 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system… | ||
| CVE-2021-44020 | Hig | 0.51 | 7.8 | 0.00 | Dec 3, 2021 | An unnecessary privilege vulnerability in Trend Micro Worry-Free Business Security 10.0 SP1 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system… | ||
| CVE-2021-44019 | Hig | 0.51 | 7.8 | 0.00 | Dec 3, 2021 | An unnecessary privilege vulnerability in Trend Micro Worry-Free Business Security 10.0 SP1 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system… | ||
| CVE-2021-25784 | Hig | 0.47 | 7.2 | 0.01 | Dec 2, 2021 | Taocms v2.5Beta5 was discovered to contain a blind SQL injection vulnerability via the function Edit Article. | ||
| CVE-2021-25783 | Hig | 0.47 | 7.2 | 0.01 | Dec 2, 2021 | Taocms v2.5Beta5 was discovered to contain a blind SQL injection vulnerability via the function Article Search. | ||
| CVE-2020-29176 | Hig | 0.51 | 7.8 | 0.01 | Dec 2, 2021 | An arbitrary file upload vulnerability in Z-BlogPHP v1.6.1.2100 allows attackers to execute arbitrary code via a crafted JPG file. | ||
| CVE-2021-28236 | Hig | 0.49 | 7.5 | 0.01 | Dec 2, 2021 | LibreDWG v0.12.3 was discovered to contain a NULL pointer dereference via out_dxfb.c. | ||
| CVE-2020-36133 | Hig | 0.57 | 8.8 | 0.02 | Dec 2, 2021 | AOM v2.0.1 was discovered to contain a global buffer overflow via the component av1/encoder/partition_search.h. |
- risk 0.63cvss 8.8epss 0.70
A command Injection vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary command execution.
- risk 0.63cvss 8.8epss 0.67
A SQL Injection vulnerability exists in Ivanti Avalance before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.
- risk 0.62cvss 8.8epss 0.62
A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary code execution.
- risk 0.63cvss 8.8epss 0.77
A command injection vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform arbitrary command execution.
- risk 0.58cvss 8.8epss 0.04
An improper authorization control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform privilege escalation.
- risk 0.64cvss 8.8epss 0.82
An unrestricted file upload vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to write dangerous files.
- risk 0.57cvss 8.8epss 0.03
An improper access control vulnerability exists in Ivanti Avalanche before 6.3.3 allows an attacker with access to the Inforail Service to perform a session takeover.
- risk 0.49cvss 7.5epss 0.01
An uncontrolled resource consumption vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 that could allow an attacker with access to NSIP or SNIP with management interface access to cause a temporary disruption of the Management GUI, Nitro API, and RPC…
- risk 0.49cvss 7.5epss 0.01
A unauthenticated denial of service vulnerability exists in Citrix ADC <13.0-83.27, <12.1-63.22 and 11.1-65.23 when configured as a VPN (Gateway) or AAA virtual server could allow an attacker to cause a temporary disruption of the Management GUI, Nitro API, and RPC communication.
- risk 0.46cvss 7.0epss 0.00
grant table v2 status pages may remain accessible after de-allocation (take two) Guest get permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire lifetime. Grant table v2 status pages, however,…
- risk 0.00cvss 7.0epss 0.00
Insecure creation of temporary directories in tmate-ssh-server 2.3.0 allows a local attacker to compromise the integrity of session handling.
- risk 0.00cvss 7.0epss 0.00
World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to compromise the integrity of session handling, or obtain the read-write session ID from a read-only session symlink in this directory.
- risk 0.49cvss 7.5epss 0.05
calibre before 5.32.0 contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service) in html_preprocess_rules in ebooks/conversion/preprocess.py.
- risk 0.57cvss 8.8epss 0.01
b2evolution CMS v7.2.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the User login page. This vulnerability allows attackers to escalate privileges.
- risk 0.40cvss 7.2epss 0.01
snipe-it is vulnerable to Server-Side Request Forgery (SSRF)
- risk 0.57cvss 8.8epss 0.01
Piwigo v11.5 was discovered to contain a SQL injection vulnerability via the parameter pwg_token in /admin/batch_manager_global.php.
- risk 0.00cvss 7.5epss 0.02
Wiki.js is a wiki app built on Node.js. Prior to version 2.5.254, directory traversal outside of Wiki.js context is possible when a storage module with local asset cache fetching is enabled on a Windows host. A malicious user can potentially read any file on the file system by…
- risk 0.54cvss 8.3epss 0.01
Successful exploitation of this vulnerability could allow an unauthorized user to access sensitive data.
- risk 0.55cvss 8.4epss 0.01
When a user has admin rights in Serv-U Console, the user can move, create and delete any files are able to be accessed on the Serv-U host machine.
- risk 0.54cvss 8.3epss 0.01
Serv-U server responds with valid CSRFToken when the request contains only Session.
- risk 0.57cvss 7.5epss 0.72
The WPS Hide Login WordPress plugin before 1.9.1 has a bug which allows to get the secret login page by setting a random referer string and making a request to /wp-admin/options.php as an unauthenticated user.
- risk 0.52cvss 8.0epss 0.01
The Tawk.To Live Chat WordPress plugin before 0.6.0 does not have capability and CSRF checks in the tawkto_setwidget and tawkto_removewidget AJAX actions, available to any authenticated user. The first one allows low-privileged users (including simple subscribers) to change the…
- risk 0.49cvss 7.5epss 0.01
In Canon LBP223 printers, the System Manager Mode login does not require an account password or PIN. An attacker can remotely shut down the device after entering the background, creating a denial of service vulnerability.
- risk 0.00cvss 7.8epss 0.01
vim is vulnerable to Use After Free
- risk 0.57cvss 8.8epss 0.02
VINGA WR-N300U 77.102.1.4853 is affected by a command execution vulnerability in the goahead component.
- risk 0.57cvss 8.8epss 0.02
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. A crafted HTTP request could induce a format string vulnerability in the privileged vaultServer application.
- risk 0.57cvss 8.8epss 0.02
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The privileged vaultServer could be leveraged to create arbitrary writable files, leading to privilege escalation.
- risk 0.57cvss 8.8epss 0.02
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The wguest account could execute commands by injecting into PostgreSQL trigger functions. This allowed privilege escalation from the wguest user to the postgres user.
- risk 0.51cvss 7.8epss 0.01
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The Unitrends Windows agent was vulnerable to DLL injection and binary planting due to insecure default permissions. This allowed privilege escalation from an unprivileged user to SYSTEM.
- risk 0.51cvss 7.8epss 0.00
An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. A world writable file allowed local users to execute arbitrary code as the user apache, leading to privilege escalation.
- risk 0.51cvss 7.8epss 0.01
An out-of-bounds write vulnerability exists when reading a TIF file using Open Design Alliance (ODA) Drawings Explorer before 2022.11. The specific issue exists after loading TIF files. Crafted data in a TIF file can trigger a write operation past the end of an allocated buffer.…
- risk 0.51cvss 7.8epss 0.01
A use-after-free vulnerability exists when reading a DWF/DWFX file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists with parsing DWF/DWFX files. Crafted data in a DWF/DWFX file and lack of proper validation of input data can trigger a write…
- risk 0.51cvss 7.8epss 0.01
An out-of-bounds write vulnerability exists when reading U3D files in Open Design Alliance PRC SDK before 2022.11. An unchecked return value of a function (verifying input data from a U3D file) leads to an out-of-bounds write. An attacker can leverage this vulnerability to…
- risk 0.51cvss 7.8epss 0.01
An out-of-bounds write vulnerability exists when reading a DGN file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists within the parsing of DGN files. Crafted data in a DGN file and lack of proper validation for the XFAT sectors count can trigger…
- risk 0.51cvss 7.8epss 0.01
An out-of-bounds write vulnerability exists when reading a JPG file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists with parsing JPG files. Crafted data in a JPG (4 extraneous bytes before the marker 0xca) can trigger a write operation past the…
- risk 0.49cvss 7.5epss 0.03
M-Files Web before 20.10.9524.1 allows a denial of service via overlapping ranges (in HTTP requests with crafted Range or Request-Range headers). NOTE: this is disputed because the range behavior is the responsibility of the web server, not the responsibility of the individual…
- risk 0.57cvss 8.8epss 0.01
HashiCorp Nomad and Nomad Enterprise up to 1.0.13, 1.1.7, and 1.2.0, with the QEMU task driver enabled, allowed authenticated users with job submission capabilities to bypass the configured allowed image paths. Fixed in 1.0.14, 1.1.8, and 1.2.1.
- risk 0.00cvss 8.8epss 0.03
A remote code execution (RCE) vulnerability in course_intro_pdf_import.php of Chamilo LMS v1.11.x allows authenticated attackers to execute arbitrary code via a crafted .htaccess file.
- risk 0.03cvss 8.1epss 0.89
All versions of package ajaxpro.2 are vulnerable to Deserialization of Untrusted Data due to the possibility of deserialization of arbitrary .NET classes, which can be abused to gain remote code execution.
- risk 0.57cvss 8.8epss 0.01
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to cross-site request forgery (CSRF) in the My Inbox page which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 202167.
- risk 0.49cvss 7.5epss 0.01
IBM Cognos Analytics 11.1.7 and 11.2.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 196339.
- risk 0.42cvss 7.5epss 0.02
elgg is vulnerable to Exposure of Private Personal Information to an Unauthorized Actor
- risk 0.51cvss 7.8epss 0.00
An unnecessary privilege vulnerability in Trend Micro Worry-Free Business Security 10.0 SP1 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system…
- risk 0.51cvss 7.8epss 0.00
An unnecessary privilege vulnerability in Trend Micro Worry-Free Business Security 10.0 SP1 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system…
- risk 0.51cvss 7.8epss 0.00
An unnecessary privilege vulnerability in Trend Micro Worry-Free Business Security 10.0 SP1 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system…
- risk 0.47cvss 7.2epss 0.01
Taocms v2.5Beta5 was discovered to contain a blind SQL injection vulnerability via the function Edit Article.
- risk 0.47cvss 7.2epss 0.01
Taocms v2.5Beta5 was discovered to contain a blind SQL injection vulnerability via the function Article Search.
- risk 0.51cvss 7.8epss 0.01
An arbitrary file upload vulnerability in Z-BlogPHP v1.6.1.2100 allows attackers to execute arbitrary code via a crafted JPG file.
- risk 0.49cvss 7.5epss 0.01
LibreDWG v0.12.3 was discovered to contain a NULL pointer dereference via out_dxfb.c.
- risk 0.57cvss 8.8epss 0.02
AOM v2.0.1 was discovered to contain a global buffer overflow via the component av1/encoder/partition_search.h.