VYPR

CVEs

38,065 total · page 494 of 762

  • CVE-2021-43882CriDec 15, 2021
    risk 0.59cvss 9.0epss 0.03

    Microsoft Defender for IoT Remote Code Execution Vulnerability

  • CVE-2021-43215CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.03

    iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution

  • CVE-2021-42313CriDec 15, 2021
    risk 0.65cvss 10.0epss 0.04

    Microsoft Defender for IoT Remote Code Execution Vulnerability

  • CVE-2021-42311CriDec 15, 2021
    risk 0.65cvss 10.0epss 0.04

    Microsoft Defender for IoT Remote Code Execution Vulnerability

  • CVE-2021-43113CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.05

    iTextPDF in iText 7 and up to (excluding 4.4.13.3) 7.1.17 allows command injection via a CompareTool filename that is mishandled on the gs (aka Ghostscript) command line in GhostscriptHelper.java.

  • CVE-2021-42945CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.01

    A SQL Injection vulnerability exists in ZZCMS 2021 via the askbigclassid parameter in /admin/ask.php.

  • CVE-2021-41560CriDec 15, 2021
    risk 0.65cvss 9.8epss 0.11

    OpenCATS through 0.9.6 allows remote attackers to execute arbitrary code by uploading an executable file via lib/FileUtility.php.

  • CVE-2021-41844CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.01

    Crocoblock JetEngine before 2.9.1 does not properly validate and sanitize form data.

  • CVE-2021-43821CriDec 14, 2021
    risk 0.58cvss 9.9epss 0.02

    Opencast is an Open Source Lecture Capture & Video Management for Education. Opencast before version 9.10 or 10.6 allows references to local file URLs in ingested media packages, allowing attackers to include local files from Opencast's host machines and making them available…

  • CVE-2021-45046CriKEVDec 14, 2021
    risk 0.80cvss 9.0epss 1.00

    It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers with control over Thread Context Map (MDC) input data when the logging configuration uses a non-default Pattern Layout…

  • CVE-2021-40883CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.03

    A Remote Code Execution (RCE) vulnerability exists in emlog 5.3.1 via content/plugins.

  • CVE-2021-44042CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in UiPath Assistant 21.4.4. User-controlled data supplied to the --process-start argument of the URI handler for uipath-assistant:// is not correctly encoded, resulting in attacker-controlled content being injected into the error message displayed (when…

  • CVE-2021-44041CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.02

    UiPath Assistant 21.4.4 will load and execute attacker controlled data from the file path supplied to the --dev-widget argument of the URI handler for uipath-assistant://. This allows an attacker to execute code on a victim's machine or capture NTLM credentials by supplying a…

  • CVE-2021-4073CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.07

    The RegistrationMagic WordPress plugin made it possible for unauthenticated users to log in as any site user, including administrators, if they knew a valid username on the site due to missing identity validation in the social login function social_login_using_email() of the…

  • CVE-2021-44231CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.01

    Internally used text extraction reports allow an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.

  • CVE-2021-42064CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.01

    If configured to use an Oracle database and if a query is created using the flexible search java api with a parameterized "in" clause, SAP Commerce - versions 1905, 2005, 2105, 2011, allows attacker to execute crafted database queries, exposing backend database. The…

  • CVE-2021-44949CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.01

    glFusion CMS 1.7.9 is affected by an access control vulnerability via /public_html/users.php.

  • CVE-2021-45015CriDec 14, 2021
    risk 0.59cvss 9.1epss 0.02

    taocms 3.0.2 is vulnerable to arbitrary file deletion via taocms\include\Model\file.php from line 60 to line 72.

  • CVE-2021-45014CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.01

    There is an upload sql injection vulnerability in the background of taocms 3.0.2 in parameter id:action=cms&ctrl=update&id=26

  • CVE-2021-44538CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.02

    The olm_session_describe function in Matrix libolm before 3.2.7 is vulnerable to a buffer overflow. The Olm session object represents a cryptographic channel between two parties. Therefore, its state is partially controllable by the remote party of the channel. Attackers can…

  • CVE-2021-44935CriDec 14, 2021
    risk 0.59cvss 9.1epss 0.01

    glFusion CMS v1.7.9 is affected by an arbitrary user impersonation vulnerability in /public_html/comment.php. The attacker can complete the attack remotely without interaction.

  • CVE-2021-44524CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.02

    A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All versions < V1.6.284.0). Affected applications…

  • CVE-2021-44523CriDec 14, 2021
    risk 0.59cvss 9.1epss 0.01

    A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All versions < V1.6.284.0). Affected applications…

  • CVE-2021-24045CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.01

    A type confusion vulnerability could be triggered when resolving the "typeof" unary operator in Facebook Hermes prior to v0.10.0. Note that this is only exploitable if the application using Hermes permits evaluation of untrusted JavaScript. Hence, most React Native applications…

  • CVE-2021-39063CriDec 13, 2021
    risk 0.59cvss 9.1epss 0.01

    IBM Spectrum Protect Plus 10.1.0.0 through 10.1.8.x uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information due to a misconfiguration in access control headers. IBM X-Force ID: 214956.

  • CVE-2021-32024CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    A remote code execution vulnerability in the BMP image codec of BlackBerry QNX SDP version(s) 6.4 to 7.1 could allow an attacker to potentially execute code in the context of the affected process.

  • CVE-2021-39065CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to execute arbitrary commands on the system, caused by improper validation of user-supplied input by the Spectrum Copy Data Management Admin Console login and uploadcertificate function . A remote…

  • CVE-2021-39052CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.01

    IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to access the Spring Boot console without authorization. IBM X-Force ID: 214523.

  • CVE-2021-22279CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.01

    A Missing Authentication vulnerability in RobotWare for the OmniCore robot controller allows an attacker to read and modify files on the robot controller if the attacker has access to the Connected Services Gateway Ethernet port.

  • CVE-2021-44966CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    SQL injection bypass authentication vulnerability in PHPGURUKUL Employee Record Management System 1.2 via index.php. An attacker can log in as an admin account of this system and can destroy, change or manipulate all sensitive information on the system.

  • CVE-2021-43117CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    fastadmin v1.2.1 is affected by a file upload vulnerability which allows arbitrary code execution through shell access.

  • CVE-2021-24951CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    The LearnPress WordPress plugin before 4.1.4 does not sanitise, validate and escape the id parameter before using it in SQL statements when duplicating course/lesson/quiz/question, leading to SQL Injections issues

  • CVE-2021-24946CriDec 13, 2021
    risk 0.73cvss 9.8epss 0.73

    The Modern Events Calendar Lite WordPress plugin before 6.1.5 does not sanitise and escape the time parameter before using it in a SQL statement in the mec_load_single_page AJAX action, available to unauthenticated users, leading to an unauthenticated SQL injection issue

  • CVE-2021-24922CriDec 13, 2021
    risk 0.59cvss 9.0epss 0.01

    The Pixel Cat WordPress plugin before 2.6.2 does not have CSRF check when saving its settings, and did not sanitise as well as escape some of them, which could allow attacker to make a logged in admin change them and perform Cross-Site Scripting attacks

  • CVE-2021-24863CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    The WP Block and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection Plugin StopBadBots WordPress plugin before 6.67 does not sanitise and escape the User Agent before using it in a SQL statement to save it, leading to a SQL injection

  • CVE-2021-24857CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    The ToTop Link WordPress plugin through 1.7.1 passes base64 encoded user input to the unserialize() PHP function, which could lead to PHP Object injection if a plugin installed on the blog has a suitable gadget chain.

  • CVE-2021-44152CriDec 13, 2021
    risk 0.68cvss 9.8epss 0.59

    An issue was discovered in Reprise RLM 14.2. Because /goform/change_password_process does not verify authentication or authorization, an unauthenticated user can change the password of any existing user. This allows an attacker to change the password of any known user, thereby…

  • CVE-2021-44847CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.04

    A stack-based buffer overflow in handle_request function in DHT.c in toxcore 0.1.9 through 0.1.11 and 0.2.0 through 0.2.12 (caused by an improper length calculation during the handling of received network packets) allows remote attackers to crash the process or potentially…

  • CVE-2021-44833CriDec 12, 2021
    risk 0.64cvss 9.8epss 0.02

    The CLI 1.0.0 for Amazon AWS OpenSearch has weak permissions for the configuration file.

  • CVE-2021-44515CriKEVDec 12, 2021
    risk 0.84cvss 9.8epss 1.00

    Zoho ManageEngine Desktop Central is vulnerable to authentication bypass, leading to remote code execution on the server, as exploited in the wild in December 2021. For Enterprise builds 10.1.2127.17 and earlier, upgrade to 10.1.2127.18. For Enterprise builds 10.1.2128.0 through…

  • CVE-2021-23639CriDec 10, 2021
    risk 0.57cvss 9.8epss 0.05

    The package md-to-pdf before 5.0.0 are vulnerable to Remote Code Execution (RCE) due to utilizing the library gray-matter to parse front matter content, without disabling the JS engine.

  • CVE-2021-27983CriDec 10, 2021
    risk 0.64cvss 9.8epss 0.04

    Remote Code Execution (RCE) vulnerability exists in MaxSite CMS v107.5 via the Documents page.

  • CVE-2021-38917CriDec 10, 2021
    risk 0.59cvss 9.1epss 0.02

    IBM PowerVM Hypervisor FW860, FW940, and FW950 could allow an attacker that gains service access to the FSP can read and write arbitrary host system memory through a series of carefully crafted service procedures. IBM X-Force ID: 210018.

  • CVE-2021-31746CriDec 10, 2021
    risk 0.64cvss 9.8epss 0.03

    Zip Slip vulnerability in Pluck-CMS Pluck 4.7.15 allows an attacker to upload specially crafted zip files, resulting in directory traversal and potentially arbitrary code execution.

  • CVE-2021-37934CriDec 10, 2021
    risk 0.64cvss 9.8epss 0.02

    Due to insufficient server-side login-attempt limit enforcement, a vulnerability in /account/login in Huntflow Enterprise before 3.10.14 could allow an unauthenticated, remote user to perform multiple login attempts for brute-force password guessing.

  • CVE-2021-35978CriDec 10, 2021
    risk 0.64cvss 9.8epss 0.04

    An issue was discovered in Digi TransPort DR64, SR44 VC74, and WR. The ZING protocol allows arbitrary remote command execution with SUPER privileges. This allows an attacker (with knowledge of the protocol) to execute arbitrary code on the controller including overwriting…

  • CVE-2021-44228CriKEVDec 10, 2021
    risk 0.94cvss 10.0epss 1.00

    Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints. An attacker who can control log…

  • CVE-2021-43802CriDec 9, 2021
    risk 0.65cvss 9.9epss 0.02

    Etherpad is a real-time collaborative editor. In versions prior to 1.8.16, an attacker can craft an `*.etherpad` file that, when imported, might allow the attacker to gain admin privileges for the Etherpad instance. This, in turn, can be used to install a malicious Etherpad…

  • CVE-2021-44514CriDec 9, 2021
    risk 0.64cvss 9.8epss 0.06

    OpUtils in Zoho ManageEngine OpManager 12.5 before 125490 mishandles authentication for a few audit directories.

  • CVE-2021-43608CriDec 9, 2021
    risk 0.57cvss 9.8epss 0.02

    Doctrine DBAL 3.x before 3.1.4 allows SQL Injection. The escaping of offset and length inputs to the generation of a LIMIT clause was not probably cast to an integer, allowing SQL injection to take place if application developers passed unescaped user input to the DBAL…