VYPR

CVEs

38,065 total · page 499 of 762

  • CVE-2021-26443CriNov 10, 2021
    risk 0.59cvss 9.0epss 0.02

    Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability

  • CVE-2021-43572CriNov 9, 2021
    risk 0.57cvss 9.8epss 0.01

    The verify function in the Stark Bank Python ECDSA library (aka starkbank-escada or ecdsa-python) before 2.0.1 fails to check that the signature is non-zero, which allows attackers to forge signatures on arbitrary messages.

  • CVE-2021-43571CriNov 9, 2021
    risk 0.64cvss 9.8epss 0.01

    The verify function in the Stark Bank Node.js ECDSA library (ecdsa-node) 1.1.2 fails to check that the signature is non-zero, which allows attackers to forge signatures on arbitrary messages.

  • CVE-2021-43570CriNov 9, 2021
    risk 0.57cvss 9.8epss 0.01

    The verify function in the Stark Bank Java ECDSA library (ecdsa-java) 1.0.0 fails to check that the signature is non-zero, which allows attackers to forge signatures on arbitrary messages.

  • CVE-2021-43569CriNov 9, 2021
    risk 0.64cvss 9.8epss 0.01

    The verify function in the Stark Bank .NET ECDSA library (ecdsa-dotnet) 1.3.1 fails to check that the signature is non-zero, which allows attackers to forge signatures on arbitrary messages.

  • CVE-2021-43568CriNov 9, 2021
    risk 0.57cvss 9.8epss 0.01

    The verify function in the Stark Bank Elixir ECDSA library (ecdsa-elixir) 1.0.0 fails to check that the signature is non-zero, which allows attackers to forge signatures on arbitrary messages.

  • CVE-2021-43200CriNov 9, 2021
    risk 0.64cvss 9.8epss 0.01

    In JetBrains TeamCity before 2021.1.2, permission checks in the Agent Push functionality were insufficient.

  • CVE-2021-43193CriNov 9, 2021
    risk 0.64cvss 9.8epss 0.02

    In JetBrains TeamCity before 2021.1.2, remote code execution via the agent push functionality is possible.

  • CVE-2021-43185CriNov 9, 2021
    risk 0.64cvss 9.8epss 0.02

    JetBrains YouTrack before 2021.3.23639 is vulnerable to Host header injection.

  • CVE-2021-43183CriNov 9, 2021
    risk 0.64cvss 9.8epss 0.01

    In JetBrains Hub before 2021.1.13690, the authentication throttling mechanism could be bypassed.

  • CVE-2019-16240CriNov 9, 2021
    risk 0.59cvss 9.1epss 0.01

    A Buffer Overflow and Information Disclosure issue exists in HP OfficeJet Pro Printers before 001.1937C, and HP PageWide Managed Printers and HP PageWide Pro Printers before 001.1937D exists; A maliciously crafted print file might cause certain HP Inkjet printers to assert.…

  • CVE-2021-43466CriNov 9, 2021
    risk 0.64cvss 9.8epss 0.04

    In the thymeleaf-spring5:3.0.12 component, thymeleaf combined with specific scenarios in template injection may lead to remote code execution.

  • CVE-2021-40358CriNov 9, 2021
    risk 0.64cvss 9.9epss 0.01

    A vulnerability has been identified in SIMATIC PCS 7 V8.2 (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3 UC04), SIMATIC PCS 7 V9.1 (All versions < V9.1 SP1), SIMATIC WinCC V15 and earlier (All versions < V15 SP1 Update 7), SIMATIC WinCC V16 (All versions < V16…

  • CVE-2021-31886CriNov 9, 2021
    risk 0.64cvss 9.8epss 0.03

    A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BACnet) (All versions), APOGEE MEC (PPC) (P2 Ethernet) (All versions), APOGEE PXC Compact (BACnet) (All versions < V3.5.4), APOGEE…

  • CVE-2021-31884CriNov 9, 2021
    risk 0.64cvss 9.8epss 0.01

    A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BACnet) (All versions), APOGEE MEC (PPC) (P2 Ethernet) (All versions), APOGEE PXC Compact (BACnet) (All versions < V3.5.4), APOGEE…

  • CVE-2021-41170CriNov 8, 2021
    risk 0.57cvss 9.8epss 0.02

    neoan3-apps/template is a neoan3 minimal template engine. Versions prior to 1.1.1 have allowed for passing in closures directly into the template engine. As a result values that are callable are executed by the template engine. The issue arises if a value has the same name as a…

  • CVE-2021-24827CriNov 8, 2021
    risk 0.65cvss 9.8epss 0.13

    The Asgaros Forum WordPress plugin before 1.15.13 does not validate and escape user input when subscribing to a topic before using it in a SQL statement, leading to an unauthenticated SQL injection issue

  • CVE-2021-24731CriNov 8, 2021
    risk 0.64cvss 9.8epss 0.06

    The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.7.1.6 does not properly escape user data before using it in a SQL statement in the wp-json/pie/v1/login REST API endpoint, leading to an…

  • CVE-2021-24693CriNov 8, 2021
    risk 0.59cvss 9.0epss 0.01

    The Simple Download Monitor WordPress plugin before 3.9.5 does not escape the "File Thumbnail" post meta before outputting it in some pages, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks. Given the that XSS is triggered…

  • CVE-2021-28024CriNov 8, 2021
    risk 0.64cvss 9.8epss 0.01

    Unauthorized system access in the login form in ServiceTonic Helpdesk software version < 9.0.35937 allows attacker to login without using a password.

  • CVE-2021-28023CriNov 8, 2021
    risk 0.64cvss 9.8epss 0.01

    Arbitrary file upload in Service import feature in ServiceTonic Helpdesk software version < 9.0.35937 allows a malicious user to execute JSP code by uploading a zip that extracts files in relative paths.

  • CVE-2021-25979CriNov 8, 2021
    risk 0.57cvss 9.8epss 0.01

    Apostrophe CMS versions prior to 3.3.1 did not invalidate existing login sessions when disabling a user account or changing the password, creating a situation in which a device compromised by a third party could not be locked out by those means. As a mitigation for older…

  • CVE-2021-30132CriNov 8, 2021
    risk 0.64cvss 9.8epss 0.01

    Cloudera Manager 7.2.4 has Incorrect Access Control, allowing Escalation of Privileges.

  • CVE-2021-42371CriNov 8, 2021
    risk 0.64cvss 9.8epss 0.02

    lpar2rrd is a hardcoded system account in XoruX LPAR2RRD and STOR2RRD before 7.30.

  • CVE-2021-42077CriNov 8, 2021
    risk 0.64cvss 9.8epss 0.03

    PHP Event Calendar before 2021-09-03 allows SQL injection, as demonstrated by the /server/ajax/user_manager.php username parameter. This can be used to execute SQL statements directly on the database, allowing an adversary in some cases to completely compromise the database…

  • CVE-2021-34684CriNov 8, 2021
    risk 0.64cvss 9.8epss 0.06

    Hitachi Vantara Pentaho Business Analytics through 9.1 allows an unauthenticated user to execute arbitrary SQL queries on any Pentaho data source and thus retrieve data from the related databases, as demonstrated by an api/repos/dashboards/editor URI.

  • CVE-2020-22226CriNov 5, 2021
    risk 0.64cvss 9.8epss 0.01

    Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionSetAmount function.

  • CVE-2020-22225CriNov 5, 2021
    risk 0.64cvss 9.8epss 0.01

    Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoadForm function.

  • CVE-2020-22223CriNov 5, 2021
    risk 0.64cvss 9.8epss 0.01

    Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionLoad function.

  • CVE-2021-42837CriNov 5, 2021
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Talend Data Catalog before 7.3-20210930. After setting up SAML/OAuth, authentication is not correctly enforced on the native login page. Any valid user from the SAML/OAuth provider can be used as the username with an arbitrary password, and login will…

  • CVE-2021-35368CriNov 5, 2021
    risk 0.64cvss 9.8epss 0.03

    OWASP ModSecurity Core Rule Set 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.2 is affected by a Request Body Bypass via a trailing pathname.

  • CVE-2021-42670CriNov 5, 2021
    risk 0.64cvss 9.8epss 0.08

    A SQL injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the id parameter to the announcements_student.php web page. As a result a malicious user can extract sensitive data from the web server and in some cases use this vulnerability in order to…

  • CVE-2021-42669CriNov 5, 2021
    risk 0.66cvss 9.8epss 0.23

    A file upload vulnerability exists in Sourcecodester Engineers Online Portal in PHP via dashboard_teacher.php, which allows changing the avatar through teacher_avatar.php. Once an avatar gets uploaded it is getting uploaded to the /admin/uploads/ directory, and is accessible by…

  • CVE-2021-42668CriNov 5, 2021
    risk 0.64cvss 9.8epss 0.05

    A SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the id parameter in the my_classmates.php web page.. As a result, an attacker can extract sensitive data from the web server and in some cases can use this vulnerability in order to get a…

  • CVE-2021-42667CriNov 5, 2021
    risk 0.65cvss 9.8epss 0.16

    A SQL Injection vulnerability exists in Sourcecodester Online Event Booking and Reservation System in PHP in event-management/views. An attacker can leverage this vulnerability in order to manipulate the sql query performed. As a result he can extract sensitive data from the web…

  • CVE-2021-42665CriNov 5, 2021
    risk 0.64cvss 9.8epss 0.05

    An SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the login form inside of index.php, which can allow an attacker to bypass authentication.

  • CVE-2021-42237CriKEVNov 5, 2021
    risk 0.93cvss 9.8epss 0.98

    Sitecore XP 7.5 Initial Release to Sitecore XP 8.2 Update-7 is vulnerable to an insecure deserialization attack where it is possible to achieve remote command execution on the machine. No authentication or special configuration is required to exploit this vulnerability.

  • CVE-2021-43400CriNov 4, 2021
    risk 0.59cvss 9.1epss 0.02

    An issue was discovered in gatt-database.c in BlueZ 5.61. A use-after-free can occur when a client disconnects during D-Bus processing of a WriteValue call.

  • CVE-2021-21697CriNov 4, 2021
    risk 0.52cvss 9.1epss 0.02

    Jenkins 2.318 and earlier, LTS 2.303.2 and earlier allows any agent to read and write the contents of any build directory stored in Jenkins with very few restrictions.

  • CVE-2021-21696CriNov 4, 2021
    risk 0.57cvss 9.8epss 0.02

    Jenkins 2.318 and earlier, LTS 2.303.2 and earlier does not limit agent read/write access to the libs/ directory inside build directories when using the FilePath APIs, allowing attackers in control of agent processes to replace the code of a trusted library with a modified…

  • CVE-2021-21694CriNov 4, 2021
    risk 0.57cvss 9.8epss 0.02

    FilePath#toURI, FilePath#hasSymlink, FilePath#absolutize, FilePath#isDescendant, and FilePath#get*DiskSpace do not check any permissions in Jenkins 2.318 and earlier, LTS 2.303.2 and earlier.

  • CVE-2021-21693CriNov 4, 2021
    risk 0.57cvss 9.8epss 0.02

    When creating temporary files, agent-to-controller access to create those files is only checked after they've been created in Jenkins 2.318 and earlier, LTS 2.303.2 and earlier.

  • CVE-2021-21692CriNov 4, 2021
    risk 0.57cvss 9.8epss 0.02

    FilePath#renameTo and FilePath#moveAllChildrenTo in Jenkins 2.318 and earlier, LTS 2.303.2 and earlier only check 'read' agent-to-controller access permission on the source path, instead of 'delete'.

  • CVE-2021-21691CriNov 4, 2021
    risk 0.57cvss 9.8epss 0.02

    Creating symbolic links is possible without the 'symlink' agent-to-controller access control permission in Jenkins 2.318 and earlier, LTS 2.303.2 and earlier.

  • CVE-2021-21690CriNov 4, 2021
    risk 0.57cvss 9.8epss 0.03

    Agent processes are able to completely bypass file path filtering by wrapping the file operation in an agent file path in Jenkins 2.318 and earlier, LTS 2.303.2 and earlier.

  • CVE-2021-21689CriNov 4, 2021
    risk 0.52cvss 9.1epss 0.01

    FilePath#unzip and FilePath#untar were not subject to any agent-to-controller access control in Jenkins 2.318 and earlier, LTS 2.303.2 and earlier.

  • CVE-2021-21687CriNov 4, 2021
    risk 0.59cvss 9.1epss 0.01

    Jenkins 2.318 and earlier, LTS 2.303.2 and earlier does not check agent-to-controller access to create symbolic links when unarchiving a symbolic link in FilePath#untar.

  • CVE-2021-21685CriNov 4, 2021
    risk 0.52cvss 9.1epss 0.02

    Jenkins 2.318 and earlier, LTS 2.303.2 and earlier does not check agent-to-controller access to create parent directories in FilePath#mkdirs.

  • CVE-2021-40119CriNov 4, 2021
    risk 0.64cvss 9.8epss 0.03

    A vulnerability in the key-based SSH authentication mechanism of Cisco Policy Suite could allow an unauthenticated, remote attacker to log in to an affected system as the root user. This vulnerability is due to the re-use of static SSH keys across installations. An attacker…

  • CVE-2021-40113CriNov 4, 2021
    risk 0.65cvss 10.0epss 0.05

    Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical Network Terminal (ONT) could allow an unauthenticated, remote attacker to perform the following actions: Log in with a default credential if…