VYPR

CVEs

38,061 total · page 517 of 762

  • CVE-2021-32519CriJul 7, 2021
    risk 0.64cvss 9.8epss 0.01

    Use of password hash with insufficient computational effort vulnerability in QSAN Storage Manager, XEVO, SANOS allows remote attackers to recover the plain-text password by brute-forcing the MD5 hash. The referred vulnerability has been solved with the updated version of QSAN…

  • CVE-2021-32513CriJul 7, 2021
    risk 0.64cvss 9.8epss 0.02

    QsanTorture in QSAN Storage Manager does not filter special parameters properly that allows remote unauthenticated attackers to inject and execute arbitrary commands. The referred vulnerability has been solved with the updated version of QSAN Storage Manager v3.3.3.

  • CVE-2021-32512CriJul 7, 2021
    risk 0.64cvss 9.8epss 0.02

    QuickInstall in QSAN Storage Manager does not filter special parameters properly that allows remote unauthenticated attackers to inject and execute arbitrary commands. The referred vulnerability has been solved with the updated version of QSAN Storage Manager v3.3.3.

  • CVE-2020-24148CriJul 7, 2021
    risk 0.60cvss 9.1epss 0.15

    Server-side request forgery (SSRF) in the Import XML and RSS Feeds (import-xml-feed) plugin 2.0.1 for WordPress via the data parameter in a moove_read_xml action.

  • CVE-2020-24147CriJul 7, 2021
    risk 0.59cvss 9.1epss 0.02

    Server-side request forgery (SSR) vulnerability in the WP Smart Import (wp-smart-import) plugin 1.0.0 for WordPress via the file field.

  • CVE-2020-24142CriJul 7, 2021
    risk 0.64cvss 9.8epss 0.02

    Server-side request forgery in the Video Downloader for TikTok (aka downloader-tiktok) plugin 1.3 for WordPress lets an attacker send crafted requests from the back-end server of a vulnerable web application via the njt-tk-download-video parameter. It can help identify open…

  • CVE-2021-34624CriJul 7, 2021
    risk 0.64cvss 9.8epss 0.07

    A vulnerability in the file uploader component found in the ~/src/Classes/FileUploader.php file of the ProfilePress WordPress plugin made it possible for users to upload arbitrary files during user registration or during profile updates. This issue affects versions 3.0.0 -…

  • CVE-2021-34623CriJul 7, 2021
    risk 0.64cvss 9.8epss 0.02

    A vulnerability in the image uploader component found in the ~/src/Classes/ImageUploader.php file of the ProfilePress WordPress plugin made it possible for users to upload arbitrary files during user registration or during profile updates. This issue affects versions 3.0.0 -…

  • CVE-2021-34622CriJul 7, 2021
    risk 0.64cvss 9.8epss 0.04

    A vulnerability in the user profile update component found in the ~/src/Classes/EditUserProfile.php file of the ProfilePress WordPress plugin made it possible for users to escalate their privileges to that of an administrator while editing their profile. This issue affects…

  • CVE-2021-34621CriJul 7, 2021
    risk 0.72cvss 9.8epss 0.69

    A vulnerability in the user registration component found in the ~/src/Classes/RegistrationAuth.php file of the ProfilePress WordPress plugin made it possible for users to register on sites as an administrator. This issue affects versions 3.0.0 - 3.1.3. .

  • CVE-2021-25952CriJul 7, 2021
    risk 0.57cvss 9.8epss 0.03

    Prototype pollution vulnerability in ‘just-safe-set’ versions 1.0.0 through 2.2.1 allows an attacker to cause a denial of service and may lead to remote code execution.

  • CVE-2021-20776CriJul 7, 2021
    risk 0.64cvss 9.8epss 0.01

    Improper authentication vulnerability in SCT-40CM01SR and AT-40CM01SR allows an attacker to bypass access restriction and execute an arbitrary command via telnet.

  • CVE-2020-22249CriJul 6, 2021
    risk 0.64cvss 9.8epss 0.03

    Remote Code Execution vulnerability in phplist 3.5.1. The application does not check any file extensions stored in the plugin zip file, Uploading a malicious plugin which contains the php files with extensions like PHP,phtml,php7 will be copied to the plugins directory which…

  • CVE-2021-24384CriJul 6, 2021
    risk 0.64cvss 9.8epss 0.02

    The joomsport_md_load AJAX action of the JoomSport WordPress plugin before 5.1.8, registered for both unauthenticated and unauthenticated users, unserialised user input from the shattr POST parameter, leading to a PHP Object Injection issue. Even though the plugin does not have…

  • CVE-2021-24375CriJul 6, 2021
    risk 0.64cvss 9.8epss 0.03

    Lack of authentication or validation in motor_load_more, motor_gallery_load_more, motor_quick_view and motor_project_quick_view AJAX handlers of the Motor WordPress theme before 3.1.0 allows an unauthenticated attacker access to arbitrary files in the server file system, and to…

  • CVE-2021-35209CriJul 2, 2021
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in ProxyServlet.java in the /proxy servlet in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.x before 9.0.0 Patch 16. The value of the X-Host header overwrites the value of the Host header in proxied requests. The value of X-Host header is…

  • CVE-2021-36128CriJul 2, 2021
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. Autoblocks for CentralAuth-issued suppression blocks are not properly implemented.

  • CVE-2021-36126CriJul 2, 2021
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in the AbuseFilter extension in MediaWiki through 1.36. If the MediaWiki:Abusefilter-blocker message is invalid within the content language, the filter user falls back to the English version, but that English version could also be invalid on a wiki. This…

  • CVE-2021-35029CriJul 2, 2021
    risk 0.64cvss 9.8epss 0.02

    An authentication bypasss vulnerability in the web-based management interface of Zyxel USG/Zywall series firmware versions 4.35 through 4.64 and USG Flex, ATP, and VPN series firmware versions 4.35 through 5.01, which could allow a remote attacker to execute arbitrary commands…

  • CVE-2021-35042CriJul 2, 2021
    risk 0.60cvss 9.8epss 0.44

    Django 3.1.x before 3.1.13 and 3.2.x before 3.2.5 allows QuerySet.order_by SQL injection if order_by is untrusted input from a client of a web application.

  • CVE-2021-35336CriJul 1, 2021
    risk 0.65cvss 9.8epss 0.10

    Tieline IP Audio Gateway 2.6.4.8 and below is affected by Incorrect Access Control. A vulnerability in the Tieline Web Administrative Interface could allow an unauthenticated user to access a sensitive part of the system with a high privileged account.

  • CVE-2021-22343CriJul 1, 2021
    risk 0.59cvss 9.1epss 0.01

    There is a Configuration Defect vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service integrity and availability.

  • CVE-2021-36088CriJul 1, 2021
    risk 0.64cvss 9.8epss 0.02

    Fluent Bit (aka fluent-bit) 1.7.0 through 1.7.4 has a double free in flb_free (called from flb_parser_json_do and flb_parser_do).

  • CVE-2020-36400CriJul 1, 2021
    risk 0.57cvss 9.8epss 0.02

    ZeroMQ libzmq 4.3.3 has a heap-based buffer overflow in zmq::tcp_read, a different vulnerability than CVE-2021-20235.

  • CVE-2018-25017CriJul 1, 2021
    risk 0.64cvss 9.8epss 0.02

    RawSpeed (aka librawspeed) 3.1 has a heap-based buffer overflow in TableLookUp::setTable.

  • CVE-2021-28804CriJul 1, 2021
    risk 0.64cvss 9.8epss 0.02

    A command injection vulnerabilities have been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary commands in a compromised application. This issue affects: QNAP Systems Inc. QTS versions prior to 4.5.1.1540 build…

  • CVE-2021-28802CriJul 1, 2021
    risk 0.64cvss 9.8epss 0.02

    A command injection vulnerabilities have been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary commands in a compromised application. This issue affects: QNAP Systems Inc. QTS versions prior to 4.5.1.1540 build…

  • CVE-2021-22345CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.01

    There is an Input Verification Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause out-of-bounds memory write.

  • CVE-2021-22348CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.01

    There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause code to execute.

  • CVE-2021-22367CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.01

    There is a Key Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may lead to authentication bypass.

  • CVE-2021-22354CriJun 30, 2021
    risk 0.59cvss 9.1epss 0.01

    There is an Information Disclosure Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause out-of-bounds read.

  • CVE-2021-35973CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.03

    NETGEAR WAC104 devices before 1.0.4.15 are affected by an authentication bypass vulnerability in /usr/sbin/mini_httpd, allowing an unauthenticated attacker to invoke any action by adding the &currentsetting.htm substring to the HTTP query, a related issue to CVE-2020-27866. This…

  • CVE-2021-35971CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.01

    Veeam Backup and Replication 10 before 10.0.1.4854 P20210609 and 11 before 11.0.0.837 P20210507 mishandles deserialization during Microsoft .NET remoting.

  • CVE-2021-22373CriJun 30, 2021
    risk 0.59cvss 9.1epss 0.01

    There is a Defects Introduced in the Design Process Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service integrity and availability.

  • CVE-2021-22323CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.01

    There is an Integer Overflow Vulnerability in Huawei Smartphone. Successful exploitation of these vulnerabilities may escalate the permission to that of the root user.

  • CVE-2021-22380CriJun 30, 2021
    risk 0.59cvss 9.1epss 0.01

    There is a Cleartext Transmission of Sensitive Information Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality and availability.

  • CVE-2021-22375CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.01

    There is a Key Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality,availability and integrity.

  • CVE-2021-27903CriJun 30, 2021
    risk 0.57cvss 9.8epss 0.03

    An issue was discovered in Craft CMS before 3.6.7. In some circumstances, a potential Remote Code Execution vulnerability existed on sites that did not restrict administrative changes (if an attacker were somehow able to hijack an administrator's session).

  • CVE-2021-30648CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.01

    The Symantec Advanced Secure Gateway (ASG) and ProxySG web management consoles are susceptible to an authentication bypass vulnerability. An unauthenticated attacker can execute arbitrary CLI commands, view/modify the appliance configuration and policy, and shutdown/restart the…

  • CVE-2019-18906CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.01

    A Improper Authentication vulnerability in cryptctl of SUSE Linux Enterprise Server for SAP 12-SP5, SUSE Manager Server 4.0 allows attackers with access to the hashed password to use it without having to crack it. This issue affects: SUSE Linux Enterprise Server for SAP 12-SP5…

  • CVE-2021-35474CriJun 30, 2021
    risk 0.64cvss 9.8epss 0.03

    Stack-based Buffer Overflow vulnerability in cachekey plugin of Apache Traffic Server. This issue affects Apache Traffic Server 7.0.0 to 7.1.12, 8.0.0 to 8.1.1, 9.0.0 to 9.0.1.

  • CVE-2021-35958CriJun 30, 2021
    risk 0.59cvss 9.1epss 0.02

    TensorFlow through 2.5.0 allows attackers to overwrite arbitrary files via a crafted archive when tf.keras.utils.get_file is used with extract=True. NOTE: the vendor's position is that tf.keras.utils.get_file is not intended for untrusted archives

  • CVE-2021-29485CriJun 29, 2021
    risk 0.65cvss 9.9epss 0.02

    Ratpack is a toolkit for creating web applications. In versions prior to 1.9.0, a malicious attacker can achieve Remote Code Execution (RCE) via a maliciously crafted Java deserialization gadget chain leveraged against the Ratpack session store. If one's application does not use…

  • CVE-2021-32992CriJun 29, 2021
    risk 0.64cvss 9.8epss 0.02

    FATEK Automation WinProladder Versions 3.30 and prior do not properly restrict operations within the bounds of a memory buffer, which may allow an attacker to execute arbitrary code.

  • CVE-2021-32990CriJun 29, 2021
    risk 0.64cvss 9.8epss 0.02

    FATEK Automation WinProladder Versions 3.30 and prior are vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code.

  • CVE-2021-32988CriJun 29, 2021
    risk 0.64cvss 9.8epss 0.02

    FATEK Automation WinProladder Versions 3.30 and prior are vulnerable to an out-of-bounds write, which may allow an attacker to execute arbitrary code.

  • CVE-2021-31531CriJun 29, 2021
    risk 0.64cvss 9.8epss 0.02

    Zoho ManageEngine ServiceDesk Plus MSP before 10521 is vulnerable to Server-Side Request Forgery (SSRF).

  • CVE-2020-7869CriJun 29, 2021
    risk 0.59cvss 9.0epss 0.02

    An improper input validation vulnerability of ZOOK software (remote administration tool) could allow a remote attacker to create arbitrary file. The ZOOK viewer has the "Tight file CMD" function to create file. An attacker could create and execute arbitrary file in the ZOOK…

  • CVE-2020-7868CriJun 29, 2021
    risk 0.63cvss 9.6epss 0.03

    A remote code execution vulnerability exists in helpUS(remote administration tool) due to improper validation of parameter of ShellExecutionExA function used for login.

  • CVE-2020-23711CriJun 28, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in NavigateCMS 2.9 via the URL encoded GET input category in navigate.php.