VYPR

CVEs

38,063 total · page 506 of 762

  • CVE-2021-24638CriSep 20, 2021
    risk 0.59cvss 9.1epss 0.02

    The OMGF WordPress plugin before 4.5.4 does not escape or validate the handle parameter of the REST API, which allows unauthenticated users to perform path traversal and overwrite arbitrary CSS file with Google Fonts CSS, or download fonts uploaded on Google Fonts website.

  • CVE-2021-41393CriSep 18, 2021
    risk 0.64cvss 9.8epss 0.01

    Teleport before 4.4.11, 5.x before 5.2.4, 6.x before 6.2.12, and 7.x before 7.1.1 allows forgery of SSH host certificates in some situations.

  • CVE-2021-41392CriSep 17, 2021
    risk 0.64cvss 9.8epss 0.03

    static/main-preload.js in Boost Note through 0.22.0 allows remote command execution. A remote attacker may send a crafted IPC message to the exposed vulnerable ipcRenderer IPC interface, which invokes the dangerous openExternal Electron API.

  • CVE-2021-38412CriSep 17, 2021
    risk 0.63cvss 9.6epss 0.01

    Properly formatted POST requests to multiple resources on the HTTP and HTTPS web servers of the Digi PortServer TS 16 Rack device do not require authentication or authentication tokens. This vulnerability could allow an attacker to enable the SNMP service and manipulate the…

  • CVE-2021-41326CriSep 17, 2021
    risk 0.64cvss 9.8epss 0.02

    In MISP before 2.4.148, app/Lib/Export/OpendataExport.php mishandles parameter data that is used in a shell_exec call.

  • CVE-2020-12083CriSep 17, 2021
    risk 0.64cvss 9.9epss 0.01

    An elevated privileges issue related to Spring MVC calls impacts Code Insight v7.x releases up to and including 2020 R1 (7.11.0-64).

  • CVE-2021-41317CriSep 17, 2021
    risk 0.64cvss 9.8epss 0.02

    XSS Hunter Express before 2021-09-17 does not properly enforce authentication requirements for paths.

  • CVE-2021-41303CriSep 17, 2021
    risk 0.70cvss 9.8epss 0.77

    Apache Shiro before 1.8.0, when using Apache Shiro with Spring Boot, a specially crafted HTTP request may cause an authentication bypass. Users should update to Apache Shiro 1.8.0.

  • CVE-2021-1976CriSep 17, 2021
    risk 0.64cvss 9.8epss 0.01

    A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired…

  • CVE-2021-20791CriSep 17, 2021
    risk 0.61cvss 9.3epss 0.01

    Improper access control vulnerability in RevoWorks Browser 2.1.230 and earlier allows an attacker to bypass access restriction and to exchange unauthorized files between the local environment and the isolated environment or settings of the web browser via unspecified vectors.

  • CVE-2021-20790CriSep 17, 2021
    risk 0.63cvss 9.6epss 0.01

    Improper control of program execution vulnerability in RevoWorks Browser 2.1.230 and earlier allows an attacker to execute an arbitrary command or code via unspecified vectors.

  • CVE-2021-40670CriSep 16, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability exists in Wuzhi CMS 4.1.0 via the keywords iparameter under the /coreframe/app/order/admin/card.php file.

  • CVE-2021-40669CriSep 16, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability exists in Wuzhi CMS 4.1.0 via the keywords parameter under the coreframe/app/promote/admin/index.php file.

  • CVE-2021-40438CriKEVSep 16, 2021
    risk 0.85cvss 9.0epss 1.00

    A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.

  • CVE-2021-39275CriSep 16, 2021
    risk 0.67cvss 9.8epss 0.39

    ap_escape_quotes() may write beyond the end of a buffer when given malicious input. No included modules pass untrusted data to these functions, but third-party / external modules may. This issue affects Apache HTTP Server 2.4.48 and earlier.

  • CVE-2021-27341CriSep 16, 2021
    risk 0.64cvss 9.8epss 0.02

    OpenSIS Community Edition version <= 7.6 is affected by a local file inclusion vulnerability in DownloadWindow.php via the "filename" parameter.

  • CVE-2020-14124CriSep 16, 2021
    risk 0.64cvss 9.8epss 0.02

    There is a buffer overflow in librsa.so called by getwifipwdurl interface, resulting in code execution on Xiaomi router AX3600 with ROM version =rom< 1.1.12.

  • CVE-2020-14119CriSep 16, 2021
    risk 0.64cvss 9.8epss 0.03

    There is command injection in the addMeshNode interface of xqnetwork.lua, which leads to command execution under administrator authority on Xiaomi router AX3600 with rom versionrom< 1.1.12

  • CVE-2021-40881CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue in the BAT file parameters of PublicCMS v4.0 allows attackers to execute arbitrary code.

  • CVE-2021-33045CriKEVSep 15, 2021
    risk 0.84cvss 9.8epss 1.00

    The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.

  • CVE-2021-33044CriKEVSep 15, 2021
    risk 0.84cvss 9.8epss 1.00

    The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.

  • CVE-2020-21322CriSep 15, 2021
    risk 0.57cvss 9.8epss 0.02

    An arbitrary file upload vulnerability in Feehi CMS v2.0.8 and below allows attackers to execute arbitrary code via a crafted PHP file.

  • CVE-2021-37913CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.03

    The HGiga OAKlouds mobile portal does not filter special characters of the IPv6 Gateway parameter of the network interface card setting page. Remote attackers can use this vulnerability to perform command injection and execute arbitrary commands in the system without logging in.

  • CVE-2021-37912CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.03

    The HGiga OAKlouds mobile portal does not filter special characters of the Ethernet number parameter of the network interface card setting page. Remote attackers can use this vulnerability to perform command injection and execute arbitrary commands in the system without logging…

  • CVE-2021-37909CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.02

    WriteRegistry function in TSSServiSign component does not filter and verify users’ input, remote attackers can rewrite to the registry without permissions thus perform hijack attacks to execute arbitrary code.

  • CVE-2021-33701CriSep 15, 2021
    risk 0.59cvss 9.1epss 0.02

    DMIS Mobile Plug-In or SAP S/4HANA, versions - DMIS 2011_1_620, 2011_1_640, 2011_1_700, 2011_1_710, 2011_1_730, 710, 2011_1_731, 710, 2011_1_752, 2020, SAPSCORE 125, S4CORE 102, 102, 103, 104, 105, allows an attacker with access to highly privileged account to execute…

  • CVE-2021-33695CriSep 15, 2021
    risk 0.59cvss 9.1epss 0.01

    Potentially, SAP Cloud Connector, version - 2.0 communication with the backend is accepted without sufficient validation of the certificate.

  • CVE-2021-33690CriSep 15, 2021
    risk 0.70cvss 9.9epss 0.69

    Server-Side Request Forgery (SSRF) vulnerability has been detected in the SAP NetWeaver Development Infrastructure Component Build Service versions - 7.11, 7.20, 7.30, 7.31, 7.40, 7.50The SAP NetWeaver Development Infrastructure Component Build Service allows a threat actor who…

  • CVE-2021-39392CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.02

    The management tool in MyLittleBackup up to and including 1.7 allows remote attackers to execute arbitrary code because machineKey is hardcoded (the same for all customers' installations) in web.config, and can be used to send serialized ASP code.

  • CVE-2020-21127CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.02

    MetInfo 7.0.0 contains a SQL injection vulnerability via admin/?n=logs&c=index&a=dodel.

  • CVE-2020-21125CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.02

    An arbitrary file creation vulnerability in UReport 2.2.9 allows attackers to execute arbitrary code.

  • CVE-2020-21124CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.02

    UReport 2.2.9 allows attackers to execute arbitrary code due to a lack of access control to the designer page.

  • CVE-2020-21121CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.01

    Pligg CMS 2.0.2 contains a time-based SQL injection vulnerability via the $recordIDValue parameter in the admin_update_module_widgets.php file.

  • CVE-2021-3797CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.01

    hestiacp is vulnerable to Use of Wrong Operator in String Comparison

  • CVE-2021-38647CriKEVSep 15, 2021
    risk 0.93cvss 9.8epss 1.00

    Open Management Infrastructure (OMI) Remote Code Execution Vulnerability

  • CVE-2021-3751CriSep 15, 2021
    risk 0.64cvss 9.8epss 0.01

    libmobi is vulnerable to Out-of-bounds Write

  • CVE-2021-23031CriSep 14, 2021
    risk 0.65cvss 9.9epss 0.02

    On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.1, 13.1.x before 13.1.4, 12.1.x before 12.1.6, and 11.6.x before 11.6.5.3, an authenticated user may perform a privilege escalation on the BIG-IP Advanced WAF and ASM Configuration utility. Note:…

  • CVE-2021-35493CriSep 14, 2021
    risk 0.59cvss 9.0epss 0.01

    The WebFOCUS Reporting Server and WebFOCUS Client components of TIBCO Software Inc.'s TIBCO WebFOCUS Client, TIBCO WebFOCUS Installer, and TIBCO WebFOCUS Reporting Server contain easily exploitable Stored and Reflected Cross Site Scripting (XSS) vulnerabilities that allow a low…

  • CVE-2021-23038CriSep 14, 2021
    risk 0.59cvss 9.0epss 0.01

    On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all versions of 12.1.x, a stored cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration utility that allows an attacker to…

  • CVE-2021-23037CriSep 14, 2021
    risk 0.62cvss 9.6epss 0.01

    On all versions of 16.1.x, 16.0.x, 15.1.x, 14.1.x, 13.1.x, 12.1.x, and 11.6.x, a reflected cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration utility that allows an attacker to execute JavaScript in the context of the currently…

  • CVE-2021-38163CriKEVSep 14, 2021
    risk 0.79cvss 9.9epss 0.37

    SAP NetWeaver (Visual Composer 7.0 RT) versions - 7.30, 7.31, 7.40, 7.50, without restriction, an attacker authenticated as a non-administrative user can upload a malicious file over a network and trigger its processing, which is capable of running operating system commands with…

  • CVE-2021-37535CriSep 14, 2021
    risk 0.64cvss 9.8epss 0.01

    SAP NetWeaver Application Server Java (JMS Connector Service) - versions 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not perform necessary authorization checks for user privileges.

  • CVE-2021-36582CriSep 14, 2021
    risk 0.64cvss 9.8epss 0.01

    In Kooboo CMS 2.1.1.0, it is possible to upload a remote shell (e.g., aspx) to the server and then call upon it to receive a reverse shell from the victim server. The files are uploaded to /Content/Template/root/reverse-shell.aspx and can be simply triggered by browsing that URL.

  • CVE-2021-36581CriSep 14, 2021
    risk 0.64cvss 9.8epss 0.01

    Kooboo CMS 2.1.1.0 is vulnerable to Insecure file upload. It is possible to upload any file extension to the server. The server does not verify the extension of the file and the tester was able to upload an aspx to the server.

  • CVE-2021-33672CriSep 14, 2021
    risk 0.62cvss 9.6epss 0.01

    Due to missing encoding in SAP Contact Center's Communication Desktop component- version 700, an attacker could send malicious script in chat message. When the message is accepted by the chat recipient, the script gets executed in their scope. Due to the usage of ActiveX in the…

  • CVE-2021-37184CriSep 14, 2021
    risk 0.64cvss 9.8epss 0.01

    A vulnerability has been identified in Industrial Edge Management (All versions < V1.3). An unauthenticated attacker could change the the password of any user in the system under certain circumstances. With this an attacker could impersonate any valid user on an affected system.

  • CVE-2021-37181CriSep 14, 2021
    risk 0.65cvss 10.0epss 0.02

    A vulnerability has been identified in Cerberus DMS V4.0 (All versions), Cerberus DMS V4.1 (All versions), Cerberus DMS V4.2 (All versions), Cerberus DMS V5.0 (All versions < v5.0 QU1), Desigo CC Compact V4.0 (All versions), Desigo CC Compact V4.1 (All versions), Desigo CC…

  • CVE-2021-33719CriSep 14, 2021
    risk 0.64cvss 9.8epss 0.02

    A vulnerability has been identified in SIPROTEC 5 relays with CPU variants CP050 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP100 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP300 (All versions < V8.80). Specially crafted packets sent to port…

  • CVE-2021-31891CriSep 14, 2021
    risk 0.65cvss 10.0epss 0.04

    A vulnerability has been identified in Desigo CC (All versions with OIS Extension Module), GMA-Manager (All versions with OIS running on Debian 9 or earlier), Operation Scheduler (All versions with OIS running on Debian 9 or earlier), Siveillance Control (All versions with OIS…

  • CVE-2021-27391CriSep 14, 2021
    risk 0.64cvss 9.8epss 0.03

    A vulnerability has been identified in APOGEE MBC (PPC) (P2 Ethernet) (All versions >= V2.6.3), APOGEE MEC (PPC) (P2 Ethernet) (All versions >= V2.6.3), APOGEE PXC Compact (BACnet) (All versions < V3.5.3), APOGEE PXC Compact (P2 Ethernet) (All versions >= V2.8), APOGEE PXC…