VYPR

CVEs

38,061 total · page 509 of 762

  • CVE-2021-36356CriAug 31, 2021
    risk 0.71cvss 9.8epss 0.54

    KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts arbitrary executable pathnames (even though browseSystemFiles.php is no longer reachable via the GUI). NOTE: this issue exists because of an…

  • CVE-2020-22848CriAug 30, 2021
    risk 0.64cvss 9.8epss 0.03

    A remote code execution (RCE) vulnerability in the \Playsong.php component of cscms v4.1 allows attackers to execute arbitrary commands.

  • CVE-2021-37421CriAug 30, 2021
    risk 0.64cvss 9.8epss 0.02

    Zoho ManageEngine ADSelfService Plus 6103 and prior is vulnerable to admin portal access-restriction bypass.

  • CVE-2021-37417CriAug 30, 2021
    risk 0.64cvss 9.8epss 0.05

    Zoho ManageEngine ADSelfService Plus version 6103 and prior allows CAPTCHA bypass due to improper parameter validation.

  • CVE-2021-34646CriAug 30, 2021
    risk 0.71cvss 9.8epss 0.51

    Versions up to, and including, 5.4.3, of the Booster for WooCommerce WordPress plugin are vulnerable to authentication bypass via the process_email_verification function due to a random token generation weakness in the reset_and_mail_activation_link function found in the…

  • CVE-2021-34066CriAug 30, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in EdgeGallery/developer before v1.0. There is a "Deserialization of yaml file" vulnerability that can allow attackers to execute system command through uploading the malicious constructed YAML file.

  • CVE-2021-33055CriAug 30, 2021
    risk 0.65cvss 9.8epss 0.18

    Zoho ManageEngine ADSelfService Plus through 6102 allows unauthenticated remote code execution in non-English editions.

  • CVE-2021-38393CriAug 30, 2021
    risk 0.65cvss 9.8epss 0.18

    A Blind SQL injection vulnerability exists in the /DataHandler/HandlerAlarmGroup.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter agid before using it as…

  • CVE-2021-38391CriAug 30, 2021
    risk 0.64cvss 9.8epss 0.03

    A Blind SQL injection vulnerability exists in the /DataHandler/AM/AM_Handler.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter type before using it as part of…

  • CVE-2021-38390CriAug 30, 2021
    risk 0.65cvss 9.8epss 0.20

    A Blind SQL injection vulnerability exists in the /DataHandler/HandlerEnergyType.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter egyid before using it as…

  • CVE-2021-32983CriAug 30, 2021
    risk 0.64cvss 9.8epss 0.04

    A Blind SQL injection vulnerability exists in the /DataHandler/Handler_CFG.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter keyword before using it as part…

  • CVE-2021-32967CriAug 30, 2021
    risk 0.64cvss 9.8epss 0.01

    Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to add a new administrative user without being authenticated or authorized, which may allow the attacker to log in and use the device with administrative privileges.

  • CVE-2021-32955CriAug 30, 2021
    risk 0.67cvss 9.8epss 0.37

    Delta Electronics DIAEnergie Version 1.7.5 and prior allows unrestricted file uploads, which may allow an attacker to remotely execute code.

  • CVE-2021-21741CriAug 30, 2021
    risk 0.64cvss 9.8epss 0.02

    There is a command execution vulnerability in a ZTE conference management system. As some services are enabled by default, the attacker could exploit this vulnerability to execute arbitrary commands by sending specific serialization command.

  • CVE-2020-15744CriAug 30, 2021
    risk 0.63cvss 9.6epss 0.01

    Stack-based Buffer Overflow vulnerability in the ONVIF server component of Victure PC420 smart camera allows an attacker to execute remote code on the target device. This issue affects: Victure PC420 firmware version 1.2.2 and prior versions.

  • CVE-2021-26084CriKEVAug 30, 2021
    risk 0.93cvss 9.8epss 1.00

    In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server or Data Center instance. The affected versions are before version 6.13.23, from version…

  • CVE-2021-37749CriAug 30, 2021
    risk 0.64cvss 9.8epss 0.02

    MapService.svc in Hexagon GeoMedia WebMap 2020 before Update 2 (aka 16.6.2.66) allows blind SQL Injection via the Id (within sourceItems) parameter to the GetMap method.

  • CVE-2021-40177CriAug 29, 2021
    risk 0.64cvss 9.8epss 0.05

    Zoho ManageEngine Log360 before Build 5225 allows remote code execution via BCP file overwrite.

  • CVE-2021-40175CriAug 29, 2021
    risk 0.64cvss 9.8epss 0.07

    Zoho ManageEngine Log360 before Build 5219 allows unrestricted file upload with resultant remote code execution.

  • CVE-2020-18114CriAug 27, 2021
    risk 0.64cvss 9.8epss 0.02

    An arbitrary file upload vulnerability in the /uploads/dede component of DedeCMS V5.7SP2 allows attackers to upload a webshell in HTM format.

  • CVE-2020-18106CriAug 27, 2021
    risk 0.64cvss 9.8epss 0.01

    The GET parameter "id" in WMS v1.0 is passed without filtering, which allows attackers to perform SQL injection.

  • CVE-2020-19001CriAug 27, 2021
    risk 0.57cvss 9.8epss 0.04

    Command Injection in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary system commands via line 64 of the component 'simiki/blob/master/simiki/config.py'.

  • CVE-2021-39168CriAug 27, 2021
    risk 0.58cvss 10.0epss 0.02

    OpenZepplin is a library for smart contract development. In affected versions a vulnerability in TimelockController allowed an actor with the executor role to escalate privileges. Further details about the vulnerability will be disclosed at a later date. As a workaround revoke…

  • CVE-2021-39167CriAug 27, 2021
    risk 0.58cvss 10.0epss 0.02

    OpenZepplin is a library for smart contract development. In affected versions a vulnerability in TimelockController allowed an actor with the executor role to escalate privileges. Further details about the vulnerability will be disclosed at a later date. As a workaround revoke…

  • CVE-2020-20675CriAug 26, 2021
    risk 0.64cvss 9.8epss 0.01

    Nuishop v2.3 contains a SQL injection vulnerability in /goods/getGoodsListByConditions/.

  • CVE-2021-29772CriAug 26, 2021
    risk 0.64cvss 9.8epss 0.01

    IBM API Connect 5.0.0.0 through 5.0.8.11 could allow a user to potentially inject code due to unsanitized user input. IBM X-Force ID: 202774.

  • CVE-2021-29715CriAug 26, 2021
    risk 0.59cvss 9.1epss 0.02

    IBM API Connect 5.0.0.0 through 5.0.8.11 could alllow a remote user to obtain sensitive information or conduct denial of serivce attacks due to open ports. IBM X-Force ID: 201018.

  • CVE-2021-40147CriAug 26, 2021
    risk 0.64cvss 9.8epss 0.01

    EmTec ZOC before 8.02.2 allows \e[201~ pastes, a different vulnerability than CVE-2021-32198.

  • CVE-2021-27944CriAug 26, 2021
    risk 0.64cvss 9.8epss 0.04

    Several high privileged APIs on the Vizio P65-F1 6.0.31.4-2 and E50x-E1 10.0.31.4-2 Smart TVs do not enforce access controls, allowing an unauthenticated threat actor to access privileged functionality, leading to OS command execution. The specific attack methodology is a file…

  • CVE-2020-19705CriAug 26, 2021
    risk 0.64cvss 9.8epss 0.01

    thinkphp-zcms as of 20190715 allows SQL injection via index.php?m=home&c=message&a=add.

  • CVE-2021-37334CriAug 25, 2021
    risk 0.64cvss 9.8epss 0.03

    Umbraco Forms version 4.0.0 up to and including 8.7.5 and below are vulnerable to a security flaw that could lead to a remote code execution attack and/or arbitrary file deletion. A vulnerability occurs because validation of the file extension is performed after the file has…

  • CVE-2021-37154CriAug 25, 2021
    risk 0.64cvss 9.8epss 0.01

    In ForgeRock Access Management (AM) before 7.0.2, the SAML2 implementation allows XML injection, potentially enabling a fraudulent SAML 2.0 assertion.

  • CVE-2021-37153CriAug 25, 2021
    risk 0.64cvss 9.8epss 0.01

    ForgeRock Access Management (AM) before 7.0.2, when configured with Active Directory as the Identity Store, has an authentication-bypass issue.

  • CVE-2021-1577CriAug 25, 2021
    risk 0.59cvss 9.1epss 0.01

    A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Application Policy Infrastructure Controller (Cloud APIC) could allow an unauthenticated, remote attacker to read or write arbitrary files on an affected system. This…

  • CVE-2021-39159CriAug 25, 2021
    risk 0.56cvss 9.6epss 0.02

    BinderHub is a kubernetes-based cloud service that allows users to share reproducible interactive computing environments from code repositories. In affected versions a remote code execution vulnerability has been identified in BinderHub, where providing BinderHub with…

  • CVE-2021-39160CriAug 25, 2021
    risk 0.56cvss 9.6epss 0.02

    nbgitpuller is a Jupyter server extension to sync a git repository one-way to a local path. Due to unsanitized input, visiting maliciously crafted links could result in arbitrary code execution in the user environment. This has been resolved in version 0.10.2 and all users are…

  • CVE-2021-33885CriAug 25, 2021
    risk 0.65cvss 10.0epss 0.06

    An Insufficient Verification of Data Authenticity vulnerability in B. Braun SpaceCom2 prior to 012U000062 allows a remote unauthenticated attacker to send the device malicious data that will be used in place of the correct data. This results in full system command access and…

  • CVE-2021-40084CriAug 25, 2021
    risk 0.64cvss 9.8epss 0.03

    opensysusers through 0.6 does not safely use eval on files in sysusers.d that may contain shell metacharacters. For example, it allows command execution via a crafted GECOS field whereas systemd-sysusers (a program with the same specification) does not do that.

  • CVE-2021-39510CriAug 24, 2021
    risk 0.64cvss 9.8epss 0.09

    An issue was discovered in D-Link DIR816_A1_FW101CNB04 750m11ac wireless router, The HTTP request parameter is used in the handler function of /goform/form2userconfig.cgi route, which can construct the user name string to delete the user function. This can lead to command…

  • CVE-2021-39509CriAug 24, 2021
    risk 0.64cvss 9.8epss 0.05

    An issue was discovered in D-Link DIR-816 DIR-816A2_FWv1.10CNB05_R1B011D88210 The HTTP request parameter is used in the handler function of /goform/form2userconfig.cgi route, which can construct the user name string to delete the user function. This can lead to command injection…

  • CVE-2021-31009CriAug 24, 2021
    risk 0.64cvss 9.8epss 0.01

    Multiple issues were addressed by removing HDF5. This issue is fixed in iOS 15.2 and iPadOS 15.2, macOS Monterey 12.1. Multiple issues in HDF5.

  • CVE-2021-30925CriAug 24, 2021
    risk 0.59cvss 9.1epss 0.01

    The issue was addressed with improved permissions logic. This issue is fixed in watchOS 8, macOS Big Sur 11.6, iOS 15 and iPadOS 15. A malicious application may be able to bypass Privacy preferences.

  • CVE-2021-30856CriAug 24, 2021
    risk 0.59cvss 9.1epss 0.01

    This issue was addressed by adding a new Remote Login option for opting into Full Disk Access for Secure Shell sessions. This issue is fixed in macOS Big Sur 11.3. A malicious unsandboxed app on a system with Remote Login enabled may bypass Privacy preferences.

  • CVE-2021-3711CriAug 24, 2021
    risk 0.71cvss 9.8epss 0.88

    In order to decrypt SM2 encrypted data an application is expected to call the API function EVP_PKEY_decrypt(). Typically an application will call this function twice. The first time, on entry, the "out" parameter can be NULL and, on exit, the "outlen" parameter is populated with…

  • CVE-2021-26040CriAug 24, 2021
    risk 0.59cvss 9.1epss 0.01

    An issue was discovered in Joomla! 4.0.0. The media manager does not correctly check the user's permissions before executing a file deletion command.

  • CVE-2021-38306CriAug 24, 2021
    risk 0.64cvss 9.8epss 0.09

    Network Attached Storage on LG N1T1*** 10124 devices allows an unauthenticated attacker to gain root access via OS command injection in the en/ajp/plugins/access.ssh/checkInstall.php destServer parameter.

  • CVE-2021-37538CriAug 24, 2021
    risk 0.70cvss 9.8epss 0.74

    Multiple SQL injection vulnerabilities in SmartDataSoft SmartBlog for PrestaShop before 4.06 allow a remote unauthenticated attacker to execute arbitrary SQL commands via the day, month, or year parameter to the controllers/front/archive.php archive controller, or the…

  • CVE-2021-38613CriAug 24, 2021
    risk 0.64cvss 9.8epss 0.05

    The assets/index.php Image Upload feature of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to upload any code to the target system and achieve remote code execution.

  • CVE-2021-38611CriAug 24, 2021
    risk 0.64cvss 9.8epss 0.02

    A command-injection vulnerability in the Image Upload function of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to execute arbitrary commands, as root, via shell metacharacters in the filename parameter to assets/index.php.

  • CVE-2021-36385CriAug 24, 2021
    risk 0.64cvss 9.8epss 0.03

    A SQL Injection vulnerability in Cerner Mobile Care 5.0.0 allows remote unauthenticated attackers to execute arbitrary SQL commands via a Fullwidth Apostrophe (aka U+FF07) in the default.aspx User ID field. Arbitrary system commands can be executed through the use of xp_cmdshell.