VYPR

CVEs

38,065 total · page 496 of 762

  • CVE-2021-44684CriDec 7, 2021
    risk 0.64cvss 9.8epss 0.03

    naholyr github-todos 3.1.0 is vulnerable to command injection. The range argument for the _hook subcommand is concatenated without any validation, and is directly used by the exec function.

  • CVE-2021-44682CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue (6 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault application starts several services that listen on random .NET Remoting TCP ports for possible commands from client applications. These TCP services can be exploited…

  • CVE-2021-44681CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue (5 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault application starts several services that listen on random .NET Remoting TCP ports for possible commands from client applications. These TCP services can be exploited…

  • CVE-2021-44680CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue (4 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault application starts several services that listen on random .NET Remoting TCP ports for possible commands from client applications. These TCP services can be exploited…

  • CVE-2021-44679CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue (3 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault application starts several services that listen on random .NET Remoting TCP ports for possible commands from client applications. These TCP services can be exploited…

  • CVE-2021-44678CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue (2 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault application starts several services that listen on random .NET Remoting TCP ports for possible commands from client applications. These TCP services can be exploited…

  • CVE-2021-44677CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue (1 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault application starts several services that listen on random .NET Remoting TCP ports for possible commands from client applications. These TCP services can be exploited…

  • CVE-2021-31632CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    b2evolution CMS v7.2.3 was discovered to contain a SQL injection vulnerability via the parameter cfqueryparam in the User login section. This vulnerability allows attackers to execute arbitrary code via a crafted input.

  • CVE-2021-40091CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.01

    An SSRF issue was discovered in SquaredUp for SCOM 5.2.1.6654.

  • CVE-2021-36567CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    ThinkPHP v6.0.8 was discovered to contain a deserialization vulnerability via the component League\Flysystem\Cached\Storage\AbstractCache.

  • CVE-2021-36564CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    ThinkPHP v6.0.8 was discovered to contain a deserialization vulnerability via the component vendor\league\flysystem-cached-adapter\src\Storage\Adapter.php.

  • CVE-2021-43936CriDec 6, 2021
    risk 0.71cvss 10.0epss 0.36

    The software allows the attacker to upload or transfer files of dangerous types to the WebHMI portal, that may be automatically processed within the product's environment or lead to arbitrary code execution.

  • CVE-2021-43931CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.01

    The authentication algorithm of the WebHMI portal is sound, but the implemented mechanism can be bypassed as the result of a separate weakness that is primary to the authentication error.

  • CVE-2021-24943CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.07

    The Registrations for the Events Calendar WordPress plugin before 2.7.6 does not sanitise and escape the event_id in the rtec_send_unregister_link AJAX action (available to both unauthenticated and authenticated users) before using it in a SQL statement, leading to an…

  • CVE-2021-24931CriDec 6, 2021
    risk 0.73cvss 9.8epss 0.79

    The Secure Copy Content Protection and Content Locking WordPress plugin before 2.8.2 does not escape the sccp_id parameter of the ays_sccp_results_export_file AJAX action (available to both unauthenticated and authenticated users) before using it in a SQL statement, leading to…

  • CVE-2021-24866CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    The WP Data Access WordPress plugin before 5.0.0 does not properly sanitise and escape the backup_date parameter before using it a SQL statement, leading to a SQL injection issue and could allow arbitrary table deletion

  • CVE-2021-43044CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The SNMP daemon was configured with a weak default community.

  • CVE-2021-43042CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. A buffer overflow existed in the vaultServer component. This was exploitable by a remote unauthenticated attacker.

  • CVE-2021-43036CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The password for the PostgreSQL wguest account is weak.

  • CVE-2021-43035CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. Two unauthenticated SQL injection vulnerabilities were discovered, allowing arbitrary SQL queries to be injected and executed under the postgres superuser account. Remote code execution was possible,…

  • CVE-2021-43033CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.06

    An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. Multiple functions in the bpserverd daemon were vulnerable to arbitrary remote code execution as root. The vulnerability was caused by untrusted input (received by the server) being passed to system…

  • CVE-2021-35414CriDec 3, 2021
    risk 0.64cvss 9.8epss 0.02

    Chamilo LMS v1.11.x was discovered to contain a SQL injection via the doc parameter in main/plagiarism/compilatio/upload.php.

  • CVE-2021-44349CriDec 3, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability exists in TuziCMS v2.0.6 via the id parameter in App\Manage\Controller\DownloadController.class.php.

  • CVE-2021-44348CriDec 3, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability exists in TuziCMS v2.0.6 via the id parameer in App\Manage\Controller\AdvertController.class.php.

  • CVE-2021-35346CriDec 3, 2021
    risk 0.64cvss 9.8epss 0.02

    tsMuxer v2.6.16 was discovered to contain a heap-based buffer overflow via the function HevcSpsUnit::short_term_ref_pic_set(int) in hevc.cpp.

  • CVE-2021-35344CriDec 3, 2021
    risk 0.64cvss 9.8epss 0.02

    tsMuxer v2.6.16 was discovered to contain a heap-based buffer overflow via the function BitStreamReader::getCurVal in bitStream.h.

  • CVE-2021-44352CriDec 3, 2021
    risk 0.65cvss 9.8epss 0.13

    A Stack-based Buffer Overflow vulnerability exists in the Tenda AC15 V15.03.05.18_multi device via the list parameter in a post request in goform/SetIpMacBind.

  • CVE-2021-44347CriDec 3, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability exists in TuziCMS v2.0.6 in App\Manage\Controller\GuestbookController.class.php.

  • CVE-2021-43676CriDec 3, 2021
    risk 0.57cvss 9.8epss 0.01

    matyhtf framework v3.0.5 is affected by a path manipulation vulnerability in Smarty.class.php.

  • CVE-2021-44278CriDec 3, 2021
    risk 0.64cvss 9.8epss 0.01

    Librenms 21.11.0 is affected by a path manipulation vulnerability in includes/html/pages/device/showconfig.inc.php.

  • CVE-2021-43674CriDec 3, 2021
    risk 0.64cvss 9.8epss 0.01

    ThinkUp 2.0-beta.10 is affected by a path manipulation vulnerability in Smarty.class.php. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

  • CVE-2020-29177CriDec 2, 2021
    risk 0.59cvss 9.1epss 0.01

    Z-BlogPHP v1.6.1.2100 was discovered to contain an arbitrary file deletion vulnerability via \app_del.php.

  • CVE-2021-28237CriDec 2, 2021
    risk 0.64cvss 9.8epss 0.01

    LibreDWG v0.12.3 was discovered to contain a heap-buffer overflow via decode_preR13.

  • CVE-2021-40333CriDec 2, 2021
    risk 0.59cvss 9.0epss 0.01

    Weak Password Requirements vulnerability in Hitachi Energy FOX61x, XCM20 allows an attacker to gain unauthorized access to the Data Communication Network (DCN) routing configuration. This issue affects: Hitachi Energy FOX61x versions prior to R15A. Hitachi Energy XCM20 versions…

  • CVE-2015-20105CriDec 2, 2021
    risk 0.62cvss 9.6epss 0.01

    The ClickBank Affiliate Ads WordPress plugin through 1.20 does not have CSRF check when saving its settings, allowing attacker to make logged in admin change them via a CSRF attack. Furthermore, due to the lack of escaping when they are outputting, it could also lead to Stored…

  • CVE-2021-43679CriDec 2, 2021
    risk 0.64cvss 9.8epss 0.02

    ecshop v2.7.3 is affected by a SQL injection vulnerability in shopex\ecshop\upload\api\client\api.php.

  • CVE-2021-26777CriDec 2, 2021
    risk 0.64cvss 9.8epss 0.03

    Buffer overflow vulnerability in function SetFirewall in index.cgi in CIRCUTOR COMPACT DC-S BASIC smart metering concentrator Firwmare version CIR_CDC_v1.2.17, allows attackers to execute arbitrary code.

  • CVE-2021-33274CriDec 1, 2021
    risk 0.64cvss 9.8epss 0.04

    D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80040af8 in /formWlanSetup. This vulnerability is triggered via a crafted POST request.

  • CVE-2021-33271CriDec 1, 2021
    risk 0.64cvss 9.8epss 0.04

    D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function sub_80046EB4 in /formSetPortTr. This vulnerability is triggered via a crafted POST request.

  • CVE-2021-33270CriDec 1, 2021
    risk 0.64cvss 9.8epss 0.04

    D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_800462c4 in /formAdvFirewall. This vulnerability is triggered via a crafted POST request.

  • CVE-2021-33269CriDec 1, 2021
    risk 0.64cvss 9.8epss 0.04

    D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_8004776c in /formVirtualServ. This vulnerability is triggered via a crafted POST request.

  • CVE-2021-33268CriDec 1, 2021
    risk 0.64cvss 9.8epss 0.04

    D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function sub_8003183C in /fromLogin. This vulnerability is triggered via a crafted POST request.

  • CVE-2021-33267CriDec 1, 2021
    risk 0.64cvss 9.8epss 0.04

    D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80034d60 in /formStaticDHCP. This vulnerability is triggered via a crafted POST request.

  • CVE-2021-33266CriDec 1, 2021
    risk 0.65cvss 9.8epss 0.17

    D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_8004776c in /formVirtualApp. This vulnerability is triggered via a crafted POST request.

  • CVE-2021-33265CriDec 1, 2021
    risk 0.65cvss 9.8epss 0.14

    D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80046eb4 in /formSetPortTr. This vulnerability is triggered via a crafted POST request.

  • CVE-2021-43451CriDec 1, 2021
    risk 0.64cvss 9.8epss 0.02

    SQL Injection vulnerability exists in PHPGURUKUL Employee Record Management System 1.2 via the Email POST parameter in /forgetpassword.php.

  • CVE-2021-43685CriDec 1, 2021
    risk 0.64cvss 9.8epss 0.01

    libretime hv3.0.0-alpha.10 is affected by a path manipulation vulnerability in /blob/master/legacy/application/modules/rest/controllers/ShowImageController.php through the rename function.

  • CVE-2021-26334CriDec 1, 2021
    risk 0.64cvss 9.9epss 0.01

    The AMDPowerProfiler.sys driver of AMD μProf tool may allow lower privileged users to access MSRs in kernel which may lead to privilege escalation and ring-0 code execution by the lower privileged user.

  • CVE-2021-44280CriDec 1, 2021
    risk 0.64cvss 9.8epss 0.02

    attendance management system 1.0 is affected by a SQL injection vulnerability in admin/incFunctions.php through the makeSafe function.

  • CVE-2021-3994CriDec 1, 2021
    risk 0.56cvss 9.6epss 0.01

    django-helpdesk is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')