VYPR

CVEs

38,065 total · page 498 of 762

  • CVE-2021-43996CriNov 17, 2021
    risk 0.64cvss 9.8epss 0.02

    The Ignition component before 1.16.15, and 2.0.x before 2.0.6, for Laravel has a "fix variable names" feature that can lead to incorrect access control.

  • CVE-2021-41277CriKEVNov 17, 2021
    risk 0.85cvss 10.0epss 0.97

    Metabase is an open source data analytics platform. In affected versions a security issue has been discovered with the custom GeoJSON map (`admin->settings->maps->custom maps->add a map`) support and potential local file inclusion (including environment variables). URLs were not…

  • CVE-2021-41275CriNov 17, 2021
    risk 0.54cvss 9.3epss 0.01

    spree_auth_devise is an open source library which provides authentication and authorization services for use with the Spree storefront framework by using an underlying Devise authentication framework. In affected versions spree_auth_devise is subject to a CSRF vulnerability that…

  • CVE-2021-41274CriNov 17, 2021
    risk 0.54cvss 9.3epss 0.01

    solidus_auth_devise provides authentication services for the Solidus webstore framework, using the Devise gem. In affected versions solidus_auth_devise is subject to a CSRF vulnerability that allows user account takeover. All applications using any version of the frontend…

  • CVE-2021-32234CriNov 17, 2021
    risk 0.64cvss 9.8epss 0.02

    SmarterTools SmarterMail 16.x through 100.x before 100.0.7803 allows remote code execution.

  • CVE-2021-41931CriNov 17, 2021
    risk 0.64cvss 9.8epss 0.01

    The Company's Recruitment Management System in id=2 of the parameter from view_vacancy app on-page appears to be vulnerable to SQL injection. The payloads 19424269' or '1309'='1309 and 39476597' or '2917'='2923 were each submitted in the id parameter. These two requests resulted…

  • CVE-2021-43048CriNov 16, 2021
    risk 0.64cvss 9.8epss 0.01

    The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain a vulnerability that theoretically allows an unauthenticated attacker with network access to execute a clickjacking attack on the affected system. A successful attack using…

  • CVE-2021-43047CriNov 16, 2021
    risk 0.59cvss 9.0epss 0.01

    The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain easily exploitable Stored and Reflected Cross Site Scripting (XSS) vulnerabilities that allow a low privileged attacker to social engineer a legitimate user with network…

  • CVE-2021-43362CriNov 16, 2021
    risk 0.64cvss 9.9epss 0.01

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MedData HBYS allows SQL Injection.This issue affects HBYS: from unspecified before 1.1.

  • CVE-2021-43361CriNov 16, 2021
    risk 0.64cvss 9.9epss 0.01

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MedData HBYS allows SQL Injection.This issue affects HBYS: from unspecified before 1.1.

  • CVE-2021-3958CriNov 16, 2021
    risk 0.65cvss 9.8epss 0.14

    Improper Handling of Parameters vulnerability in Ipack Automation Systems Ipack SCADA Software allows : Blind SQL Injection.This issue affects Ipack SCADA Software: from unspecified before 1.1.0.

  • CVE-2021-42114CriNov 16, 2021
    risk 0.59cvss 9.0epss 0.03

    Modern DRAM devices (PC-DDR4, LPDDR4X) are affected by a vulnerability in their internal Target Row Refresh (TRR) mitigation against Rowhammer attacks. Novel non-uniform Rowhammer access patterns, consisting of aggressors with different frequencies, phases, and amplitudes allow…

  • CVE-2021-37580CriNov 16, 2021
    risk 0.60cvss 9.8epss 0.42

    A flaw was found in Apache ShenYu Admin. The incorrect use of JWT in ShenyuAdminBootstrap allows an attacker to bypass authentication. This issue affected Apache ShenYu 2.3.0 and 2.4.0

  • CVE-2021-42377CriNov 15, 2021
    risk 0.64cvss 9.8epss 0.04

    An attacker-controlled pointer free in Busybox's hush applet leads to denial of service and possible code execution when processing a crafted shell command, due to the shell mishandling the &&& string. This may be used for remote code execution under rare conditions of filtered…

  • CVE-2021-41269CriNov 15, 2021
    risk 0.58cvss 10.0epss 0.04

    cron-utils is a Java library to define, parse, validate, migrate crons as well as get human readable descriptions for them. In affected versions A template Injection was identified in cron-utils enabling attackers to inject arbitrary Java EL expressions, leading to…

  • CVE-2021-41244CriNov 15, 2021
    risk 0.59cvss 9.1epss 0.03

    Grafana is an open-source platform for monitoring and observability. In affected versions when the fine-grained access control beta feature is enabled and there is more than one organization in the Grafana instance admins are able to access users from other organizations.…

  • CVE-2021-42580CriNov 15, 2021
    risk 0.67cvss 9.8epss 0.10

    Sourcecodester Online Learning System 2.0 is vunlerable to sql injection authentication bypass in admin login file (/admin/login.php) and authenticated file upload in (Master.php) file , we can craft these two vunlerablities to get unauthenticated remote command execution.

  • CVE-2021-41950CriNov 15, 2021
    risk 0.65cvss 9.1epss 0.75

    A directory traversal issue in ResourceSpace 9.6 before 9.6 rev 18277 allows remote unauthenticated attackers to delete arbitrary files on the ResourceSpace server via the provider and variant parameters in pages/ajax/tiles.php. Attackers can delete configuration or source code…

  • CVE-2021-41765CriNov 15, 2021
    risk 0.69cvss 9.8epss 0.68

    A SQL injection issue in pages/edit_fields/9_ajax/add_keyword.php of ResourceSpace 9.5 and 9.6 < rev 18274 allows remote unauthenticated attackers to execute arbitrary SQL commands via the k parameter. This allows attackers to uncover the full contents of the ResourceSpace…

  • CVE-2021-43272CriNov 14, 2021
    risk 0.64cvss 9.8epss 0.04

    An improper handling of exceptional conditions vulnerability exists in Open Design Alliance ODA Viewer sample before 2022.11. ODA Viewer continues to process invalid or malicious DWF files instead of stopping upon an exception. An attacker can leverage this vulnerability to…

  • CVE-2020-16152CriNov 14, 2021
    risk 0.70cvss 9.8epss 0.36

    The NetConfig UI administrative interface in Extreme Networks ExtremeWireless Aerohive HiveOS and IQ Engine through 10.0r8a allows attackers to execute PHP code as the root user via remote HTTP requests that insert this code into a log file and then traverse to that file.

  • CVE-2021-43617CriNov 14, 2021
    risk 0.68cvss 9.8epss 0.20

    Laravel Framework through 8.70.2 does not sufficiently block the upload of executable PHP content because Illuminate/Validation/Concerns/ValidatesAttributes.php lacks a check for .phar files, which are handled as application/x-httpd-php on systems based on Debian. NOTE: this CVE…

  • CVE-2021-43616CriNov 13, 2021
    risk 0.59cvss 9.0epss 0.03

    The npm ci command in npm 7.x and 8.x through 8.1.3 proceeds with an installation even if dependency information in package-lock.json differs from package.json. This behavior is inconsistent with the documentation, and makes it easier for attackers to install malware that was…

  • CVE-2021-41653CriNov 13, 2021
    risk 0.70cvss 9.8epss 0.76

    The PING function on the TP-Link TL-WR840N EU v5 router with firmware through TL-WR840N(EU)_V5_171211 is vulnerable to remote code execution via a crafted payload in an IP address input field.

  • CVE-2021-3918CriNov 13, 2021
    risk 0.57cvss 9.8epss 0.04

    json-schema is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

  • CVE-2021-39303CriNov 12, 2021
    risk 0.64cvss 9.8epss 0.02

    The server in Jamf Pro before 10.32.0 has an SSRF vulnerability, aka PI-006352. NOTE: Jamf Nation will also publish an article about this vulnerability.

  • CVE-2021-41264CriNov 12, 2021
    risk 0.57cvss 9.8epss 0.01

    OpenZeppelin Contracts is a library for smart contract development. In affected versions upgradeable contracts using `UUPSUpgradeable` may be vulnerable to an attack affecting uninitialized implementation contracts. A fix is included in version 4.3.2 of `@openzeppelin/contracts`…

  • CVE-2021-30321CriNov 12, 2021
    risk 0.64cvss 9.8epss 0.01

    Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity

  • CVE-2021-1975CriNov 12, 2021
    risk 0.64cvss 9.8epss 0.01

    Possible heap overflow due to improper length check of domain while parsing the DNS response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-1924CriNov 12, 2021
    risk 0.59cvss 9.0epss 0.00

    Information disclosure through timing and power side-channels during mod exponentiation for RSA-CRT in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT,…

  • CVE-2021-42775CriNov 12, 2021
    risk 0.59cvss 9.1epss 0.01

    Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a vulnerability in the remote firmware download feature that could allow a user to place or replace an arbitrary file on the…

  • CVE-2021-42774CriNov 12, 2021
    risk 0.64cvss 9.8epss 0.02

    Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a buffer overflow vulnerability in the remote firmware download feature that could allow remote unauthenticated users to perform…

  • CVE-2021-43350CriNov 11, 2021
    risk 0.57cvss 9.8epss 0.05

    An unauthenticated Apache Traffic Control Traffic Ops user can send a request with a specially-crafted username to the POST /login endpoint of any API version to inject unsanitized content into the LDAP filter.

  • CVE-2021-42847CriNov 11, 2021
    risk 0.72cvss 9.8epss 0.70

    Zoho ManageEngine ADAudit Plus before 7006 allows attackers to write to, and execute, arbitrary files.

  • CVE-2021-42002CriNov 11, 2021
    risk 0.64cvss 9.8epss 0.07

    Zoho ManageEngine ADManager Plus before 7115 is vulnerable to a filter bypass that leads to file-upload remote code execution.

  • CVE-2021-41833CriNov 11, 2021
    risk 0.64cvss 9.8epss 0.08

    Zoho ManageEngine Patch Connect Plus before 90099 is vulnerable to unauthenticated remote code execution.

  • CVE-2021-41081CriNov 11, 2021
    risk 0.69cvss 9.8epss 0.64

    Zoho ManageEngine Network Configuration Manager before 125465 is vulnerable to SQL Injection in a configuration search.

  • CVE-2021-41080CriNov 11, 2021
    risk 0.64cvss 9.8epss 0.05

    Zoho ManageEngine Network Configuration Manager before 125465 is vulnerable to SQL Injection in a hardware details search.

  • CVE-2021-43573CriNov 11, 2021
    risk 0.64cvss 9.8epss 0.01

    A buffer overflow was discovered on Realtek RTL8195AM devices before 2.0.10. It exists in the client code when processing a malformed IE length of HT capability information in the Beacon and Association response frame.

  • CVE-2021-33816CriNov 10, 2021
    risk 0.57cvss 9.8epss 0.04

    The website builder module in Dolibarr 13.0.2 allows remote PHP code execution because of an incomplete protection mechanism in which system, exec, and shell_exec are blocked but backticks are not blocked.

  • CVE-2020-23878CriNov 10, 2021
    risk 0.64cvss 9.8epss 0.02

    pdf2json v0.71 was discovered to contain a stack buffer overflow in the component XRef::fetch.

  • CVE-2020-23877CriNov 10, 2021
    risk 0.64cvss 9.8epss 0.02

    pdf2xml v2.0 was discovered to contain a stack buffer overflow in the component getObjectStream.

  • CVE-2020-23874CriNov 10, 2021
    risk 0.64cvss 9.8epss 0.02

    pdf2xml v2.0 was discovered to contain a heap-buffer overflow in the function TextPage::addAttributsNode.

  • CVE-2020-23873CriNov 10, 2021
    risk 0.64cvss 9.8epss 0.02

    pdf2xml v2.0 was discovered to contain a heap-buffer overflow in the function TextPage::dump.

  • CVE-2021-40520CriNov 10, 2021
    risk 0.64cvss 9.8epss 0.01

    Airangel HSMX Gateway devices through 5.2.04 have Weak SSH Credentials.

  • CVE-2021-3064CriNov 10, 2021
    risk 0.65cvss 9.8epss 0.20

    A memory corruption vulnerability exists in Palo Alto Networks GlobalProtect portal and gateway interfaces that enables an unauthenticated network-based attacker to disrupt system processes and potentially execute arbitrary code with root privileges. The attacker must have…

  • CVE-2021-40521CriNov 10, 2021
    risk 0.64cvss 9.8epss 0.04

    Airangel HSMX Gateway devices through 5.2.04 allow Remote Code Execution.

  • CVE-2021-40519CriNov 10, 2021
    risk 0.65cvss 10.0epss 0.01

    Airangel HSMX Gateway devices through 5.2.04 have Hard-coded Database Credentials.

  • CVE-2021-43523CriNov 10, 2021
    risk 0.63cvss 9.6epss 0.03

    In uClibc and uClibc-ng before 1.0.39, incorrect handling of special characters in domain names returned by DNS servers via gethostbyname, getaddrinfo, gethostbyaddr, and getnameinfo can lead to output of wrong hostnames (leading to domain hijacking) or injection into…

  • CVE-2021-43136CriNov 10, 2021
    risk 0.68cvss 9.8epss 0.16

    An authentication bypass issue in FormaLMS <= 2.4.4 allows an attacker to bypass the authentication mechanism and obtain a valid access to the platform.