VYPR

CVEs

38,061 total · page 513 of 762

  • CVE-2021-34371CriAug 5, 2021
    risk 0.65cvss 9.8epss 0.13

    Neo4j through 3.4.18 (with the shell server enabled) exposes an RMI service that arbitrarily deserializes Java objects, e.g., through setSessionVariable. An attacker can abuse this for remote code execution because there are dependencies with exploitable gadget chains.

  • CVE-2021-29978CriAug 5, 2021
    risk 0.64cvss 9.8epss 0.03

    Multiple low security issues were discovered and fixed in a security audit of Mozilla VPN 2.x branch as part of a 3rd party security audit. This vulnerability affects Mozilla VPN < 2.3.

  • CVE-2021-29971CriAug 5, 2021
    risk 0.64cvss 9.8epss 0.01

    If a user had granted a permission to a webpage and saved that grant, any webpage running on the same host - irrespective of scheme or port - would be granted that permission. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This…

  • CVE-2021-20028CriKEVAug 4, 2021
    risk 0.84cvss 9.8epss 0.30

    Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products, specifically the SRA appliances running all 8.x firmware and 9.0.0.9-26sv or earlier

  • CVE-2021-1610CriAug 4, 2021
    risk 0.64cvss 9.8epss 0.09

    Multiple vulnerabilities in the web-based management interface of the Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an attacker to do the following: Execute arbitrary code Cause a denial of service (DoS) condition Execute…

  • CVE-2021-1609CriAug 4, 2021
    risk 0.64cvss 9.8epss 0.10

    Multiple vulnerabilities in the web-based management interface of the Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an attacker to do the following: Execute arbitrary code Cause a denial of service (DoS) condition Execute…

  • CVE-2021-32590CriAug 4, 2021
    risk 0.64cvss 9.9epss 0.02

    Multiple improper neutralization of special elements used in an SQL command vulnerabilities in FortiPortal 6.0.0 through 6.0.4, 5.3.0 through 5.3.5, 5.2.0 through 5.2.5, and 4.2.2 and earlier may allow an attacker with regular user's privileges to execute arbitrary commands on…

  • CVE-2021-37232CriAug 4, 2021
    risk 0.64cvss 9.8epss 0.02

    A stack overflow vulnerability occurs in Atomicparsley 20210124.204813.840499f through APar_read64() in src/util.cpp due to the lack of buffer size of uint32_buffer while reading more bytes in APar_read64.

  • CVE-2020-19305CriAug 3, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue in /app/system/column/admin/index.class.php of Metinfo v7.0.0 causes the indeximg parameter to be deleted when the column is deleted, allowing attackers to escalate privileges.

  • CVE-2020-19302CriAug 3, 2021
    risk 0.64cvss 9.8epss 0.02

    An arbitrary file upload vulnerability in the avatar upload function of vaeThink v1.0.1 allows attackers to open a webshell via changing uploaded file suffixes to ".php".

  • CVE-2020-19301CriAug 3, 2021
    risk 0.64cvss 9.8epss 0.03

    A vulnerability in the vae_admin_rule database table of vaeThink v1.0.1 allows attackers to execute arbitrary code via a crafted payload in the condition parameter.

  • CVE-2021-30571CriAug 3, 2021
    risk 0.62cvss 9.6epss 0.01

    Insufficient policy enforcement in DevTools in Google Chrome prior to 92.0.4515.107 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted HTML page.

  • CVE-2021-36701CriAug 3, 2021
    risk 0.59cvss 9.1epss 0.02

    In htmly version 2.8.1, is vulnerable to an Arbitrary File Deletion on the local host when delete backup files. The vulnerability may allow a remote attacker to delete arbitrary know files on the host.

  • CVE-2021-36623CriAug 3, 2021
    risk 0.64cvss 9.8epss 0.02

    Arbitrary File Upload in Sourcecodester Phone Shop Sales Management System 1.0 enables RCE.

  • CVE-2021-36622CriAug 3, 2021
    risk 0.64cvss 9.8epss 0.02

    Sourcecodester Online Covid Vaccination Scheduler System 1.0 is affected vulnerable to Arbitrary File Upload. The admin panel has an upload function of profile photo accessible at http://localhost/scheduler/admin/?page=user. An attacker could upload a malicious file such as…

  • CVE-2021-32016CriAug 3, 2021
    risk 0.65cvss 9.9epss 0.02

    An issue was discovered in JUMP AMS 3.6.0.04.009-2487. A JUMP SOAP endpoint permitted the writing of arbitrary files to a user-controlled location on the remote filesystem (with user-controlled content) via directory traversal, potentially leading to remote code and command…

  • CVE-2021-32017CriAug 3, 2021
    risk 0.64cvss 9.9epss 0.01

    An issue was discovered in JUMP AMS 3.6.0.04.009-2487. A JUMP SOAP endpoint permitted the listing of the content of the remote file system. This can be used to identify the complete server filesystem structure, i.e., identifying all the directories and files.

  • CVE-2021-37558CriAug 3, 2021
    risk 0.64cvss 9.8epss 0.02

    A SQL injection vulnerability in a MediaWiki script in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote unauthenticated attackers to execute arbitrary SQL commands via the host_name and service_description parameters. The vulnerability can be exploited only when a…

  • CVE-2021-33485CriAug 3, 2021
    risk 0.64cvss 9.8epss 0.01

    CODESYS Control Runtime system before 3.5.17.10 has a Heap-based Buffer Overflow.

  • CVE-2021-27952CriAug 3, 2021
    risk 0.64cvss 9.8epss 0.01

    Hardcoded default root credentials exist on the ecobee3 lite 4.5.81.200 device. This allows a threat actor to gain access to the password-protected bootloader environment through the serial console.

  • CVE-2021-36159CriAug 3, 2021
    risk 0.59cvss 9.1epss 0.03

    libfetch before 2021-07-26, as used in apk-tools, xbps, and other products, mishandles numeric strings for the FTP and HTTP protocols. The FTP passive mode implementation allows an out-of-bounds read because strtol is used to parse the relevant numbers into address bytes. It…

  • CVE-2021-37832CriAug 3, 2021
    risk 0.64cvss 9.8epss 0.04

    A SQL injection vulnerability exists in version 3.0.2 of Hotel Druid when SQLite is being used as the application database. A malicious attacker can issue SQL commands to the SQLite database through the vulnerable idappartamenti parameter.

  • CVE-2021-37843CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.02

    The resolution SAML SSO apps for Atlassian products allow a remote attacker to login to a user account when only the username is known (i.e., no other authentication is provided). The fixed versions are for Jira: 3.6.6.1, 4.0.12, 5.0.5; for Confluence 3.6.6, 4.0.12, 5.0.5; for…

  • CVE-2021-32810CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.02

    crossbeam-deque is a package of work-stealing deques for building task schedulers when programming in Rust. In versions prior to 0.7.4 and 0.8.0, the result of the race condition is that one or more tasks in the worker queue can be popped twice instead of other tasks that are…

  • CVE-2021-22444CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.01

    There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause code injection.

  • CVE-2021-22438CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.01

    There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause malicious code to be executed.

  • CVE-2021-22435CriAug 2, 2021
    risk 0.59cvss 9.1epss 0.01

    There is a Configuration Defect Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service integrity and availability.

  • CVE-2021-22390CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.01

    There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed.

  • CVE-2021-22389CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.01

    There is a Permission Control Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed.

  • CVE-2021-22388CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.01

    There is an Integer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause certain codes to be executed.

  • CVE-2021-22387CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.01

    There is an Improper Control of Dynamically Managing Code Resources Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to remotely execute commands.

  • CVE-2021-37167CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.02

    An insecure permissions issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. A user logged in using the default credentials can gain root access to the device, which provides…

  • CVE-2021-37164CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.03

    A buffer overflow issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. In the tcpTxThread function, the received data is copied to a stack buffer. An off-by-3 condition can occur,…

  • CVE-2021-37163CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.01

    An insecure permissions issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus operated by released versions of software before Nexus Software 7.2.5.7. The device has two user accounts with passwords that are hardcoded.

  • CVE-2021-37162CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.03

    A buffer overflow issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. If an attacker sends a malformed UDP message, a buffer underflow occurs, leading to an out-of-bounds copy and…

  • CVE-2021-37161CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.03

    A buffer overflow issue was discovered in the HMI3 Control Panel contained within the Swisslog Healthcare Nexus Panel, operated by released versions of software before Nexus Software 7.2.5.7. A buffer overflow allows an attacker to overwrite an internal queue data structure and…

  • CVE-2021-37160CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.08

    A firmware validation issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. There is no firmware validation (e.g., cryptographic signature validation) during a File Upload for a…

  • CVE-2021-37165CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.03

    A buffer overflow issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. When a message is sent to the HMI TCP socket, it is forwarded to the hmiProcessMsg function through the…

  • CVE-2021-33527CriAug 2, 2021
    risk 0.64cvss 9.8epss 0.05

    In MB connect line mbDIALUP versions <= 3.9R0.0 a remote attacker can send a specifically crafted HTTP request to the service running with NT AUTHORITY\SYSTEM that will not correctly validate the input. This can lead to an arbitrary code execution with the privileges of the…

  • CVE-2021-24472CriAug 2, 2021
    risk 0.68cvss 9.8epss 0.57

    The OnAir2 WordPress theme before 3.9.9.2 and QT KenthaRadio WordPress plugin before 2.0.2 have exposed proxy functionality to unauthenticated users, sending requests to this proxy functionality will have the web server fetch and display the content from any URI, this would…

  • CVE-2021-37760CriJul 31, 2021
    risk 0.64cvss 9.8epss 0.01

    A Session ID leak in the audit log in Graylog before 4.1.2 allows attackers to escalate privileges (to the access level of the leaked session ID).

  • CVE-2021-37759CriJul 31, 2021
    risk 0.64cvss 9.8epss 0.01

    A Session ID leak in the DEBUG log file in Graylog before 4.1.2 allows attackers to escalate privileges (to the access level of the leaked session ID).

  • CVE-2021-37595CriJul 30, 2021
    risk 0.64cvss 9.8epss 0.02

    In FreeRDP before 2.4.0 on Windows, wf_cliprdr_server_file_contents_request in client/Windows/wf_cliprdr.c has missing input checks for a FILECONTENTS_RANGE File Contents Request PDU.

  • CVE-2021-37594CriJul 30, 2021
    risk 0.64cvss 9.8epss 0.01

    In FreeRDP before 2.4.0 on Windows, wf_cliprdr_server_file_contents_request in client/Windows/wf_cliprdr.c has missing input checks for a FILECONTENTS_SIZE File Contents Request PDU.

  • CVE-2021-37593CriJul 30, 2021
    risk 0.63cvss 9.1epss 0.05

    PEEL Shopping version 9.4.0 allows remote SQL injection. A public user/guest (unauthenticated) can inject a malicious SQL query in order to affect the execution of predefined SQL commands. Upon a successful SQL injection attack, an attacker can read sensitive data from the…

  • CVE-2021-37144CriJul 30, 2021
    risk 0.59cvss 9.1epss 0.01

    CSZ CMS 1.2.9 is vulnerable to Arbitrary File Deletion. This occurs in PHP when the unlink() function is called and user input might affect portions of or the whole affected parameter, which represents the path of the file to remove, without sufficient sanitization.

  • CVE-2021-36624CriJul 30, 2021
    risk 0.64cvss 9.8epss 0.03

    Sourcecodester Phone Shop Sales Managements System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

  • CVE-2021-35458CriJul 30, 2021
    risk 0.64cvss 9.8epss 0.02

    Online Pet Shop We App 1.0 is vulnerable to Union SQL Injection in products.php (aka p=products) via the c or s parameter.

  • CVE-2021-34166CriJul 30, 2021
    risk 0.64cvss 9.8epss 0.03

    A SQL INJECTION vulnerability in Sourcecodester Simple Food Website 1.0 allows a remote attacker to Bypass Authentication and become Admin.

  • CVE-2021-34165CriJul 30, 2021
    risk 0.64cvss 9.8epss 0.03

    A SQL Injection vulnerability in Sourcecodester Basic Shopping Cart 1.0 allows a remote attacker to Bypass Authentication and become Admin.