VYPR

CVEs

38,061 total · page 519 of 762

  • CVE-2020-25753CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered on Enphase Envoy R3.x and D4.x devices with v3 software. The default admin password is set to the last 6 digits of the serial number. The serial number can be retrieved by an unauthenticated user at /info.xml.

  • CVE-2021-34813CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.04

    Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an Olm encrypted room key backup from the homeserver) because olm_pk_decrypt has a stack-based buffer overflow. Remote code execution might be possible for some…

  • CVE-2020-22212CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection in 74cms 3.2.0 via the id parameter to wap/wap-company-show.php.

  • CVE-2020-22211CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.08

    SQL Injection in 74cms 3.2.0 via the key parameter to plus/ajax_street.php.

  • CVE-2020-22210CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.09

    SQL Injection in 74cms 3.2.0 via the x parameter to ajax_officebuilding.php.

  • CVE-2020-22209CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.09

    SQL Injection in 74cms 3.2.0 via the query parameter to plus/ajax_common.php.

  • CVE-2020-22208CriJun 16, 2021
    risk 0.65cvss 9.8epss 0.10

    SQL Injection in 74cms 3.2.0 via the x parameter to plus/ajax_street.php.

  • CVE-2020-22206CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection in ECShop 3.0 via the aid parameter to admin/affiliate_ck.php.

  • CVE-2020-22205CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection in ECShop 3.0 via the id parameter to admin/shophelp.php.

  • CVE-2020-22204CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection in ECShop 2.7.6 via the goods_number parameter to flow.php. .

  • CVE-2020-22203CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection in phpCMS 2008 sp4 via the genre parameter to yp/job.php.

  • CVE-2020-22199CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in phpCMS 2007 SP6 build 0805 via the digg_mod parameter to digg_add.php.

  • CVE-2020-35760CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.02

    bloofoxCMS 0.5.2.1 is infected with Unrestricted File Upload that allows attackers to upload malicious files (ex: php files).

  • CVE-2020-22198CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.02

    SQL Injection vulnerability in DedeCMS 5.7 via mdescription parameter to member/ajax_membergroup.php.

  • CVE-2021-27610CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.01

    SAP NetWeaver ABAP Server and ABAP Platform, versions - 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 804, does not create information about internal and external RFC user in consistent and distinguished format, which could lead to improper authentication and may be…

  • CVE-2021-32928CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.01

    The Sentinel LDK Run-Time Environment installer (Versions 7.6 and prior) adds a firewall rule named “Sentinel License Manager” that allows incoming connections from private networks using TCP Port 1947. While uninstalling, the uninstaller fails to close Port 1947.

  • CVE-2021-20093CriJun 16, 2021
    risk 0.62cvss 9.1epss 0.33

    A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server.

  • CVE-2020-9493CriJun 16, 2021
    risk 0.64cvss 9.8epss 0.05

    A deserialization flaw was found in Apache Chainsaw versions prior to 2.1.0 which could lead to malicious code execution.

  • CVE-2021-32685CriJun 16, 2021
    risk 0.57cvss 9.8epss 0.01

    tEnvoy contains the PGP, NaCl, and PBKDF2 in node.js and the browser (hashing, random, encryption, decryption, signatures, conversions), used by TogaTech.org. In versions prior to 7.0.3, the `verifyWithMessage` method of `tEnvoyNaClSigningKey` always returns `true` for any…

  • CVE-2021-24037CriJun 15, 2021
    risk 0.57cvss 9.8epss 0.02

    A use after free in hermes, while emitting certain error messages, prior to commit d86e185e485b6330216dee8e854455c694e3a36e allows attackers to potentially execute arbitrary code via crafted JavaScript. Note that this is only exploitable if the application using Hermes permits…

  • CVE-2021-34170CriJun 15, 2021
    risk 0.64cvss 9.8epss 0.03

    Bandai Namco FromSoftware Dark Souls III allows remote attackers to execute arbitrary code.

  • CVE-2021-33622CriJun 15, 2021
    risk 0.64cvss 9.8epss 0.01

    Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.

  • CVE-2021-27388CriJun 15, 2021
    risk 0.64cvss 9.8epss 0.02

    SINAMICS medium voltage routable products are affected by a vulnerability in the Sm@rtServer component for remote access that could allow an unauthenticated attacker to cause a denial-of-service condition, and/or execution of limited configuration modifications and/or execution…

  • CVE-2020-29214CriJun 15, 2021
    risk 0.64cvss 9.8epss 0.04

    SQL injection vulnerability in SourceCodester Alumni Management System 1.0 allows the user to inject SQL payload to bypass the authentication via admin/login.php.

  • CVE-2021-0324CriJun 14, 2021
    risk 0.64cvss 9.8epss 0.01

    Product: AndroidVersions: Android SoCAndroid ID: A-175402462

  • CVE-2021-32682CriJun 14, 2021
    risk 0.65cvss 9.8epss 0.70

    elFinder is an open-source file manager for web, written in JavaScript using jQuery UI. Several vulnerabilities affect elFinder 2.1.58. These vulnerabilities can allow an attacker to execute arbitrary code and commands on the server hosting the elFinder PHP connector, even with…

  • CVE-2021-34679CriJun 11, 2021
    risk 0.65cvss 10.0epss 0.01

    Thycotic Password Reset Server before 5.3.0 allows credential disclosure.

  • CVE-2021-27200CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.03

    In WoWonder 3.0.4, remote attackers can take over any account due to the weak cryptographic algorithm in recover.php. The code parameter is easily predicted from the time of day.

  • CVE-2021-32930CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.08

    The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182).

  • CVE-2021-27410CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.02

    The affected product is vulnerable to an out-of-bounds write, which may result in corruption of data or code execution on the Welch Allyn medical device management tools (Welch Allyn Service Tool: versions prior to v1.10, Welch Allyn Connex Device Integration Suite – Network…

  • CVE-2021-21833CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.01

    An improper array index validation vulnerability exists in the TIF IP_planar_raster_unpack functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger this vulnerability.

  • CVE-2021-21824CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.01

    An out-of-bounds write vulnerability exists in the JPG Handle_JPEG420 functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

  • CVE-2021-21795CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.01

    A heap-based buffer overflow vulnerability exists in the PSD read_icc_icCurve_data functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to an integer overflow that, in turn, leads to a heap buffer overflow. An attacker can provide a malicious…

  • CVE-2021-0474CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.03

    In avrc_msg_cback of avrc_api.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11…

  • CVE-2021-23230CriJun 11, 2021
    risk 0.64cvss 9.9epss 0.01

    A SQL Injection vulnerability in the OPCUA interface of Gallagher Command Centre allows a remote unprivileged Command Centre Operator to modify Command Centre databases undetected. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions…

  • CVE-2021-23140CriJun 11, 2021
    risk 0.64cvss 9.9epss 0.01

    Improper Authorization vulnerability in Gallagher Command Centre Server allows command line macros to be modified by an unauthorised Command Centre Operator. This issue affects: Gallagher Command Centre 8.40 versions prior to 8.40.1888 (MR3); 8.30 versions prior to 8.30.1359…

  • CVE-2021-22915CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.02

    Nextcloud server before 19.0.11, 20.0.10, 21.0.2 is vulnerable to brute force attacks due to lack of inclusion of IPv6 subnets in rate-limiting considerations. This could potentially result in an attacker bypassing rate-limit controls such as the Nextcloud brute-force protection.

  • CVE-2021-22768CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.03

    A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that could cause denial of service or remote code execution via a specially crafted HTTP packet.This CVE ID is unique from CVE-2021-22767

  • CVE-2021-22767CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.03

    A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that could cause denial of service or remote code execution via a specially crafted HTTP packet.This CVE ID is unique from CVE-2021-2276

  • CVE-2021-22765CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.03

    A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that could cause denial of service or remote code execution via a specially crafted HTTP packet

  • CVE-2021-22763CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.02

    A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and PowerLogic EGX300 (see security notification for version infromation) that could allow an attacker administrator level access to…

  • CVE-2021-25387CriJun 11, 2021
    risk 0.59cvss 9.0epss 0.01

    An improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.

  • CVE-2021-25386CriJun 11, 2021
    risk 0.59cvss 9.0epss 0.01

    An improper input validation vulnerability in sdfffd_parse_chunk_FVER() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.

  • CVE-2021-25385CriJun 11, 2021
    risk 0.59cvss 9.0epss 0.01

    An improper input validation vulnerability in sdfffd_parse_chunk_PROP() in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.

  • CVE-2021-25384CriJun 11, 2021
    risk 0.59cvss 9.0epss 0.01

    An improper input validation vulnerability in sdfffd_parse_chunk_PROP() with Sample Rate Chunk in libsdffextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.

  • CVE-2021-25383CriJun 11, 2021
    risk 0.59cvss 9.0epss 0.01

    An improper input validation vulnerability in scmn_mfal_read() in libsapeextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.

  • CVE-2020-5003CriJun 11, 2021
    risk 0.59cvss 9.1epss 0.02

    IBM Financial Transaction Manager 3.2.4 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 192956.

  • CVE-2021-3013CriJun 11, 2021
    risk 0.64cvss 9.8epss 0.02

    ripgrep before 13 on Windows allows attackers to trigger execution of arbitrary programs from the current working directory via the -z/--search-zip or --pre flag.

  • CVE-2021-24035CriJun 11, 2021
    risk 0.59cvss 9.1epss 0.01

    A lack of filename validation when unzipping archives prior to WhatsApp for Android v2.21.8.13 and WhatsApp Business for Android v2.21.8.13 could have allowed path traversal attacks that overwrite WhatsApp files.

  • CVE-2020-23323CriJun 10, 2021
    risk 0.64cvss 9.8epss 0.01

    There is a heap-buffer-overflow at re-parser.c in re_parse_char_escape in JerryScript 2.2.0.