| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-25753 | Cri | 0.64 | 9.8 | 0.02 | Jun 16, 2021 | An issue was discovered on Enphase Envoy R3.x and D4.x devices with v3 software. The default admin password is set to the last 6 digits of the serial number. The serial number can be retrieved by an unauthenticated user at /info.xml. | ||
| CVE-2021-34813 | Cri | 0.64 | 9.8 | 0.04 | Jun 16, 2021 | Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an Olm encrypted room key backup from the homeserver) because olm_pk_decrypt has a stack-based buffer overflow. Remote code execution might be possible for some… | ||
| CVE-2020-22212 | Cri | 0.64 | 9.8 | 0.01 | Jun 16, 2021 | SQL Injection in 74cms 3.2.0 via the id parameter to wap/wap-company-show.php. | ||
| CVE-2020-22211 | Cri | 0.64 | 9.8 | 0.08 | Jun 16, 2021 | SQL Injection in 74cms 3.2.0 via the key parameter to plus/ajax_street.php. | ||
| CVE-2020-22210 | Cri | 0.64 | 9.8 | 0.09 | Jun 16, 2021 | SQL Injection in 74cms 3.2.0 via the x parameter to ajax_officebuilding.php. | ||
| CVE-2020-22209 | Cri | 0.64 | 9.8 | 0.09 | Jun 16, 2021 | SQL Injection in 74cms 3.2.0 via the query parameter to plus/ajax_common.php. | ||
| CVE-2020-22208 | Cri | 0.65 | 9.8 | 0.10 | Jun 16, 2021 | SQL Injection in 74cms 3.2.0 via the x parameter to plus/ajax_street.php. | ||
| CVE-2020-22206 | Cri | 0.64 | 9.8 | 0.01 | Jun 16, 2021 | SQL Injection in ECShop 3.0 via the aid parameter to admin/affiliate_ck.php. | ||
| CVE-2020-22205 | Cri | 0.64 | 9.8 | 0.01 | Jun 16, 2021 | SQL Injection in ECShop 3.0 via the id parameter to admin/shophelp.php. | ||
| CVE-2020-22204 | Cri | 0.64 | 9.8 | 0.01 | Jun 16, 2021 | SQL Injection in ECShop 2.7.6 via the goods_number parameter to flow.php. . | ||
| CVE-2020-22203 | Cri | 0.64 | 9.8 | 0.01 | Jun 16, 2021 | SQL Injection in phpCMS 2008 sp4 via the genre parameter to yp/job.php. | ||
| CVE-2020-22199 | Cri | 0.64 | 9.8 | 0.01 | Jun 16, 2021 | SQL Injection vulnerability in phpCMS 2007 SP6 build 0805 via the digg_mod parameter to digg_add.php. | ||
| CVE-2020-35760 | Cri | 0.64 | 9.8 | 0.02 | Jun 16, 2021 | bloofoxCMS 0.5.2.1 is infected with Unrestricted File Upload that allows attackers to upload malicious files (ex: php files). | ||
| CVE-2020-22198 | Cri | 0.64 | 9.8 | 0.02 | Jun 16, 2021 | SQL Injection vulnerability in DedeCMS 5.7 via mdescription parameter to member/ajax_membergroup.php. | ||
| CVE-2021-27610 | Cri | 0.64 | 9.8 | 0.01 | Jun 16, 2021 | SAP NetWeaver ABAP Server and ABAP Platform, versions - 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 804, does not create information about internal and external RFC user in consistent and distinguished format, which could lead to improper authentication and may be… | ||
| CVE-2021-32928 | Cri | 0.64 | 9.8 | 0.01 | Jun 16, 2021 | The Sentinel LDK Run-Time Environment installer (Versions 7.6 and prior) adds a firewall rule named “Sentinel License Manager” that allows incoming connections from private networks using TCP Port 1947. While uninstalling, the uninstaller fails to close Port 1947. | ||
| CVE-2021-20093 | Cri | 0.62 | 9.1 | 0.33 | Jun 16, 2021 | A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server. | ||
| CVE-2020-9493 | Cri | 0.64 | 9.8 | 0.05 | Jun 16, 2021 | A deserialization flaw was found in Apache Chainsaw versions prior to 2.1.0 which could lead to malicious code execution. | ||
| CVE-2021-32685 | Cri | 0.57 | 9.8 | 0.01 | Jun 16, 2021 | tEnvoy contains the PGP, NaCl, and PBKDF2 in node.js and the browser (hashing, random, encryption, decryption, signatures, conversions), used by TogaTech.org. In versions prior to 7.0.3, the `verifyWithMessage` method of `tEnvoyNaClSigningKey` always returns `true` for any… | ||
| CVE-2021-24037 | Cri | 0.57 | 9.8 | 0.02 | Jun 15, 2021 | A use after free in hermes, while emitting certain error messages, prior to commit d86e185e485b6330216dee8e854455c694e3a36e allows attackers to potentially execute arbitrary code via crafted JavaScript. Note that this is only exploitable if the application using Hermes permits… | ||
| CVE-2021-34170 | Cri | 0.64 | 9.8 | 0.03 | Jun 15, 2021 | Bandai Namco FromSoftware Dark Souls III allows remote attackers to execute arbitrary code. | ||
| CVE-2021-33622 | Cri | 0.64 | 9.8 | 0.01 | Jun 15, 2021 | Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value. | ||
| CVE-2021-27388 | Cri | 0.64 | 9.8 | 0.02 | Jun 15, 2021 | SINAMICS medium voltage routable products are affected by a vulnerability in the Sm@rtServer component for remote access that could allow an unauthenticated attacker to cause a denial-of-service condition, and/or execution of limited configuration modifications and/or execution… | ||
| CVE-2020-29214 | Cri | 0.64 | 9.8 | 0.04 | Jun 15, 2021 | SQL injection vulnerability in SourceCodester Alumni Management System 1.0 allows the user to inject SQL payload to bypass the authentication via admin/login.php. | ||
| CVE-2021-0324 | Cri | 0.64 | 9.8 | 0.01 | Jun 14, 2021 | Product: AndroidVersions: Android SoCAndroid ID: A-175402462 | ||
| CVE-2021-32682 | Cri | 0.65 | 9.8 | 0.70 | Jun 14, 2021 | elFinder is an open-source file manager for web, written in JavaScript using jQuery UI. Several vulnerabilities affect elFinder 2.1.58. These vulnerabilities can allow an attacker to execute arbitrary code and commands on the server hosting the elFinder PHP connector, even with… | ||
| CVE-2021-34679 | Cri | 0.65 | 10.0 | 0.01 | Jun 11, 2021 | Thycotic Password Reset Server before 5.3.0 allows credential disclosure. | ||
| CVE-2021-27200 | Cri | 0.64 | 9.8 | 0.03 | Jun 11, 2021 | In WoWonder 3.0.4, remote attackers can take over any account due to the weak cryptographic algorithm in recover.php. The code parameter is easily predicted from the time of day. | ||
| CVE-2021-32930 | Cri | 0.64 | 9.8 | 0.08 | Jun 11, 2021 | The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182). | ||
| CVE-2021-27410 | Cri | 0.64 | 9.8 | 0.02 | Jun 11, 2021 | The affected product is vulnerable to an out-of-bounds write, which may result in corruption of data or code execution on the Welch Allyn medical device management tools (Welch Allyn Service Tool: versions prior to v1.10, Welch Allyn Connex Device Integration Suite – Network… | ||
| CVE-2021-21833 | Cri | 0.64 | 9.8 | 0.01 | Jun 11, 2021 | An improper array index validation vulnerability exists in the TIF IP_planar_raster_unpack functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger this vulnerability. | ||
| CVE-2021-21824 | Cri | 0.64 | 9.8 | 0.01 | Jun 11, 2021 | An out-of-bounds write vulnerability exists in the JPG Handle_JPEG420 functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability. | ||
| CVE-2021-21795 | Cri | 0.64 | 9.8 | 0.01 | Jun 11, 2021 | A heap-based buffer overflow vulnerability exists in the PSD read_icc_icCurve_data functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to an integer overflow that, in turn, leads to a heap buffer overflow. An attacker can provide a malicious… | ||
| CVE-2021-0474 | Cri | 0.64 | 9.8 | 0.03 | Jun 11, 2021 | In avrc_msg_cback of avrc_api.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11… | ||
| CVE-2021-23230 | Cri | 0.64 | 9.9 | 0.01 | Jun 11, 2021 | A SQL Injection vulnerability in the OPCUA interface of Gallagher Command Centre allows a remote unprivileged Command Centre Operator to modify Command Centre databases undetected. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions… | ||
| CVE-2021-23140 | Cri | 0.64 | 9.9 | 0.01 | Jun 11, 2021 | Improper Authorization vulnerability in Gallagher Command Centre Server allows command line macros to be modified by an unauthorised Command Centre Operator. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions prior to 8.30.1359… | ||
| CVE-2021-22915 | Cri | 0.64 | 9.8 | 0.02 | Jun 11, 2021 | Nextcloud server before 19.0.11, 20.0.10, 21.0.2 is vulnerable to brute force attacks due to lack of inclusion of IPv6 subnets in rate-limiting considerations. This could potentially result in an attacker bypassing rate-limit controls such as the Nextcloud brute-force protection. | ||
| CVE-2021-22768 | Cri | 0.64 | 9.8 | 0.03 | Jun 11, 2021 | A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that could cause denial of service or remote code execution via a specially crafted HTTP packet.This CVE ID is unique from CVE-2021-22767 | ||
| CVE-2021-22767 | Cri | 0.64 | 9.8 | 0.03 | Jun 11, 2021 | A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that could cause denial of service or remote code execution via a specially crafted HTTP packet.This CVE ID is unique from CVE-2021-2276 | ||
| CVE-2021-22765 | Cri | 0.64 | 9.8 | 0.03 | Jun 11, 2021 | A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that could cause denial of service or remote code execution via a specially crafted HTTP packet | ||
| CVE-2021-22763 | Cri | 0.64 | 9.8 | 0.02 | Jun 11, 2021 | A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and PowerLogic EGX300 (see security notification for version infromation) that could allow an attacker administrator level access to… | ||
| CVE-2021-25387 | Cri | 0.59 | 9.0 | 0.01 | Jun 11, 2021 | An improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | ||
| CVE-2021-25386 | Cri | 0.59 | 9.0 | 0.01 | Jun 11, 2021 | An improper input validation vulnerability in sdfffd_parse_chunk_FVER() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | ||
| CVE-2021-25385 | Cri | 0.59 | 9.0 | 0.01 | Jun 11, 2021 | An improper input validation vulnerability in sdfffd_parse_chunk_PROP() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | ||
| CVE-2021-25384 | Cri | 0.59 | 9.0 | 0.01 | Jun 11, 2021 | An improper input validation vulnerability in sdfffd_parse_chunk_PROP() with Sample Rate Chunk in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | ||
| CVE-2021-25383 | Cri | 0.59 | 9.0 | 0.01 | Jun 11, 2021 | An improper input validation vulnerability in scmn_mfal_read() in libsapeextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process. | ||
| CVE-2020-5003 | Cri | 0.59 | 9.1 | 0.02 | Jun 11, 2021 | IBM Financial Transaction Manager 3.2.4 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 192956. | ||
| CVE-2021-3013 | Cri | 0.64 | 9.8 | 0.02 | Jun 11, 2021 | ripgrep before 13 on Windows allows attackers to trigger execution of arbitrary programs from the current working directory via the -z/--search-zip or --pre flag. | ||
| CVE-2021-24035 | Cri | 0.59 | 9.1 | 0.01 | Jun 11, 2021 | A lack of filename validation when unzipping archives prior to WhatsApp for Android v2.21.8.13 and WhatsApp Business for Android v2.21.8.13 could have allowed path traversal attacks that overwrite WhatsApp files. | ||
| CVE-2020-23323 | Cri | 0.64 | 9.8 | 0.01 | Jun 10, 2021 | There is a heap-buffer-overflow at re-parser.c in re_parse_char_escape in JerryScript 2.2.0. |
- risk 0.64cvss 9.8epss 0.02
An issue was discovered on Enphase Envoy R3.x and D4.x devices with v3 software. The default admin password is set to the last 6 digits of the serial number. The serial number can be retrieved by an unauthenticated user at /info.xml.
- risk 0.64cvss 9.8epss 0.04
Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an Olm encrypted room key backup from the homeserver) because olm_pk_decrypt has a stack-based buffer overflow. Remote code execution might be possible for some…
- risk 0.64cvss 9.8epss 0.01
SQL Injection in 74cms 3.2.0 via the id parameter to wap/wap-company-show.php.
- risk 0.64cvss 9.8epss 0.08
SQL Injection in 74cms 3.2.0 via the key parameter to plus/ajax_street.php.
- risk 0.64cvss 9.8epss 0.09
SQL Injection in 74cms 3.2.0 via the x parameter to ajax_officebuilding.php.
- risk 0.64cvss 9.8epss 0.09
SQL Injection in 74cms 3.2.0 via the query parameter to plus/ajax_common.php.
- risk 0.65cvss 9.8epss 0.10
SQL Injection in 74cms 3.2.0 via the x parameter to plus/ajax_street.php.
- risk 0.64cvss 9.8epss 0.01
SQL Injection in ECShop 3.0 via the aid parameter to admin/affiliate_ck.php.
- risk 0.64cvss 9.8epss 0.01
SQL Injection in ECShop 3.0 via the id parameter to admin/shophelp.php.
- risk 0.64cvss 9.8epss 0.01
SQL Injection in ECShop 2.7.6 via the goods_number parameter to flow.php. .
- risk 0.64cvss 9.8epss 0.01
SQL Injection in phpCMS 2008 sp4 via the genre parameter to yp/job.php.
- risk 0.64cvss 9.8epss 0.01
SQL Injection vulnerability in phpCMS 2007 SP6 build 0805 via the digg_mod parameter to digg_add.php.
- risk 0.64cvss 9.8epss 0.02
bloofoxCMS 0.5.2.1 is infected with Unrestricted File Upload that allows attackers to upload malicious files (ex: php files).
- risk 0.64cvss 9.8epss 0.02
SQL Injection vulnerability in DedeCMS 5.7 via mdescription parameter to member/ajax_membergroup.php.
- risk 0.64cvss 9.8epss 0.01
SAP NetWeaver ABAP Server and ABAP Platform, versions - 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 804, does not create information about internal and external RFC user in consistent and distinguished format, which could lead to improper authentication and may be…
- risk 0.64cvss 9.8epss 0.01
The Sentinel LDK Run-Time Environment installer (Versions 7.6 and prior) adds a firewall rule named “Sentinel License Manager” that allows incoming connections from private networks using TCP Port 1947. While uninstalling, the uninstaller fails to close Port 1947.
- risk 0.62cvss 9.1epss 0.33
A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server.
- risk 0.64cvss 9.8epss 0.05
A deserialization flaw was found in Apache Chainsaw versions prior to 2.1.0 which could lead to malicious code execution.
- risk 0.57cvss 9.8epss 0.01
tEnvoy contains the PGP, NaCl, and PBKDF2 in node.js and the browser (hashing, random, encryption, decryption, signatures, conversions), used by TogaTech.org. In versions prior to 7.0.3, the `verifyWithMessage` method of `tEnvoyNaClSigningKey` always returns `true` for any…
- risk 0.57cvss 9.8epss 0.02
A use after free in hermes, while emitting certain error messages, prior to commit d86e185e485b6330216dee8e854455c694e3a36e allows attackers to potentially execute arbitrary code via crafted JavaScript. Note that this is only exploitable if the application using Hermes permits…
- risk 0.64cvss 9.8epss 0.03
Bandai Namco FromSoftware Dark Souls III allows remote attackers to execute arbitrary code.
- risk 0.64cvss 9.8epss 0.01
Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.
- risk 0.64cvss 9.8epss 0.02
SINAMICS medium voltage routable products are affected by a vulnerability in the Sm@rtServer component for remote access that could allow an unauthenticated attacker to cause a denial-of-service condition, and/or execution of limited configuration modifications and/or execution…
- risk 0.64cvss 9.8epss 0.04
SQL injection vulnerability in SourceCodester Alumni Management System 1.0 allows the user to inject SQL payload to bypass the authentication via admin/login.php.
- risk 0.64cvss 9.8epss 0.01
Product: AndroidVersions: Android SoCAndroid ID: A-175402462
- risk 0.65cvss 9.8epss 0.70
elFinder is an open-source file manager for web, written in JavaScript using jQuery UI. Several vulnerabilities affect elFinder 2.1.58. These vulnerabilities can allow an attacker to execute arbitrary code and commands on the server hosting the elFinder PHP connector, even with…
- risk 0.65cvss 10.0epss 0.01
Thycotic Password Reset Server before 5.3.0 allows credential disclosure.
- risk 0.64cvss 9.8epss 0.03
In WoWonder 3.0.4, remote attackers can take over any account due to the weak cryptographic algorithm in recover.php. The code parameter is easily predicted from the time of day.
- risk 0.64cvss 9.8epss 0.08
The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182).
- risk 0.64cvss 9.8epss 0.02
The affected product is vulnerable to an out-of-bounds write, which may result in corruption of data or code execution on the Welch Allyn medical device management tools (Welch Allyn Service Tool: versions prior to v1.10, Welch Allyn Connex Device Integration Suite – Network…
- risk 0.64cvss 9.8epss 0.01
An improper array index validation vulnerability exists in the TIF IP_planar_raster_unpack functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger this vulnerability.
- risk 0.64cvss 9.8epss 0.01
An out-of-bounds write vulnerability exists in the JPG Handle_JPEG420 functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
- risk 0.64cvss 9.8epss 0.01
A heap-based buffer overflow vulnerability exists in the PSD read_icc_icCurve_data functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to an integer overflow that, in turn, leads to a heap buffer overflow. An attacker can provide a malicious…
- risk 0.64cvss 9.8epss 0.03
In avrc_msg_cback of avrc_api.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11…
- risk 0.64cvss 9.9epss 0.01
A SQL Injection vulnerability in the OPCUA interface of Gallagher Command Centre allows a remote unprivileged Command Centre Operator to modify Command Centre databases undetected. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions…
- risk 0.64cvss 9.9epss 0.01
Improper Authorization vulnerability in Gallagher Command Centre Server allows command line macros to be modified by an unauthorised Command Centre Operator. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions prior to 8.30.1359…
- risk 0.64cvss 9.8epss 0.02
Nextcloud server before 19.0.11, 20.0.10, 21.0.2 is vulnerable to brute force attacks due to lack of inclusion of IPv6 subnets in rate-limiting considerations. This could potentially result in an attacker bypassing rate-limit controls such as the Nextcloud brute-force protection.
- risk 0.64cvss 9.8epss 0.03
A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that could cause denial of service or remote code execution via a specially crafted HTTP packet.This CVE ID is unique from CVE-2021-22767
- risk 0.64cvss 9.8epss 0.03
A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that could cause denial of service or remote code execution via a specially crafted HTTP packet.This CVE ID is unique from CVE-2021-2276
- risk 0.64cvss 9.8epss 0.03
A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that could cause denial of service or remote code execution via a specially crafted HTTP packet
- risk 0.64cvss 9.8epss 0.02
A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and PowerLogic EGX300 (see security notification for version infromation) that could allow an attacker administrator level access to…
- risk 0.59cvss 9.0epss 0.01
An improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.
- risk 0.59cvss 9.0epss 0.01
An improper input validation vulnerability in sdfffd_parse_chunk_FVER() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.
- risk 0.59cvss 9.0epss 0.01
An improper input validation vulnerability in sdfffd_parse_chunk_PROP() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.
- risk 0.59cvss 9.0epss 0.01
An improper input validation vulnerability in sdfffd_parse_chunk_PROP() with Sample Rate Chunk in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.
- risk 0.59cvss 9.0epss 0.01
An improper input validation vulnerability in scmn_mfal_read() in libsapeextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.
- risk 0.59cvss 9.1epss 0.02
IBM Financial Transaction Manager 3.2.4 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 192956.
- risk 0.64cvss 9.8epss 0.02
ripgrep before 13 on Windows allows attackers to trigger execution of arbitrary programs from the current working directory via the -z/--search-zip or --pre flag.
- risk 0.59cvss 9.1epss 0.01
A lack of filename validation when unzipping archives prior to WhatsApp for Android v2.21.8.13 and WhatsApp Business for Android v2.21.8.13 could have allowed path traversal attacks that overwrite WhatsApp files.
- risk 0.64cvss 9.8epss 0.01
There is a heap-buffer-overflow at re-parser.c in re_parse_char_escape in JerryScript 2.2.0.