VYPR

CVEs

38,061 total · page 521 of 762

  • CVE-2021-30180CriJun 1, 2021
    risk 0.69cvss 9.8epss 0.60

    Apache Dubbo prior to 2.7.9 support Tag routing which will enable a customer to route the request to the right server. These rules are used by the customers when making a request in order to find the right endpoint. When parsing these YAML rules, Dubbo customers may enable…

  • CVE-2021-30179CriJun 1, 2021
    risk 0.64cvss 9.8epss 0.04

    Apache Dubbo prior to 2.6.9 and 2.7.9 by default supports generic calls to arbitrary methods exposed by provider interfaces. These invocations are handled by the GenericFilter which will find the service and method specified in the first arguments of the invocation and use the…

  • CVE-2021-25641CriJun 1, 2021
    risk 0.65cvss 9.8epss 0.21

    Each Apache Dubbo server will set a serialization id to tell the clients which serialization protocol it is working on. But for Dubbo versions before 2.7.8 or 2.6.9, an attacker can choose which serialization id the Provider will use by tampering with the byte preamble flags,…

  • CVE-2021-24321CriJun 1, 2021
    risk 0.69cvss 9.8epss 0.67

    The Bello - Directory & Listing WordPress theme before 1.6.0 did not sanitise the bt_bb_listing_field_price_range_to, bt_bb_listing_field_now_open, bt_bb_listing_field_my_lng, listing_list_view and bt_bb_listing_field_my_lat parameters before using them in a SQL statement,…

  • CVE-2020-4561CriJun 1, 2021
    risk 0.65cvss 10.0epss 0.03

    IBM Cognos Analytics 11.0 and 11.1 DQM API allows submitting of all control requests in unauthenticated sessions. This allows a remote attacker who can access a valid CA endpoint to read and write files to the Cognos Analytics system. IBM X-Force ID: 183903.

  • CVE-2021-27828CriJun 1, 2021
    risk 0.64cvss 9.1epss 0.20

    SQL injection in In4Suite ERP 3.2.74.1370 allows attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.

  • CVE-2020-10666CriMay 31, 2021
    risk 0.64cvss 9.8epss 0.02

    The restapps (aka Rest Phone apps) module for Sangoma FreePBX and PBXact 13, 14, and 15 through 15.0.19.2 allows remote code execution via a URL variable to an AMI command.

  • CVE-2021-33790CriMay 31, 2021
    risk 0.64cvss 9.8epss 0.03

    The RebornCore library before 4.7.3 allows remote code execution because it deserializes untrusted data in ObjectInputStream.readObject as part of reborncore.common.network.ExtendedPacketBuffer. An attacker can instantiate any class on the classpath with any data. A class usable…

  • CVE-2021-33564CriMay 29, 2021
    risk 0.62cvss 9.8epss 0.72

    An argument injection vulnerability in the Dragonfly gem before 1.4.0 for Ruby allows remote attackers to read and write to arbitrary files via a crafted URL when the verify_url option is disabled. This may lead to code execution. The problem occurs because the generate and…

  • CVE-2021-31703CriMay 29, 2021
    risk 0.64cvss 9.8epss 0.01

    Frontier ichris through 5.18 allows users to upload malicious executable files that might later be downloaded and run by any client user.

  • CVE-2021-30461CriMay 29, 2021
    risk 0.67cvss 9.8epss 0.37

    A remote code execution issue was discovered in the web UI of VoIPmonitor before 24.61. When the recheck option is used, the user-supplied SPOOLDIR value (which might contain PHP code) is injected into config/configuration.php.

  • CVE-2021-32619CriMay 28, 2021
    risk 0.64cvss 9.8epss 0.01

    Deno is a runtime for JavaScript and TypeScript that uses V8 and is built in Rust. In Deno versions 1.5.0 to 1.10.1, modules that are dynamically imported through `import()` or `new Worker` might have been able to bypass network and file system permission checks when statically…

  • CVE-2021-22519CriMay 28, 2021
    risk 0.64cvss 9.8epss 0.02

    Execute arbitrary code vulnerability in Micro Focus SiteScope product, affecting versions 11.40,11.41 , 2018.05(11.50), 2018.08(11.51), 2018.11(11.60), 2019.02(11.70), 2019.05(11.80), 2019.08(11.90), 2019.11(11.91), 2020.05(11.92), 2020.10(11.93). The vulnerability could allow…

  • CVE-2021-32637CriMay 28, 2021
    risk 0.58cvss 10.0epss 0.02

    Authelia is a a single sign-on multi-factor portal for web apps. This affects uses who are using nginx ngx_http_auth_request_module with Authelia, it allows a malicious individual who crafts a malformed HTTP request to bypass the authentication mechanism. It additionally could…

  • CVE-2020-15782CriMay 28, 2021
    risk 0.64cvss 9.8epss 0.05

    A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants) (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V21.9),…

  • CVE-2021-20236CriMay 28, 2021
    risk 0.57cvss 9.8epss 0.02

    A flaw was found in the ZeroMQ server in versions before 4.3.3. This flaw allows a malicious client to cause a stack buffer overflow on the server by sending crafted topic subscription requests and then unsubscribing. The highest threat from this vulnerability is to…

  • CVE-2021-20195CriMay 28, 2021
    risk 0.55cvss 9.6epss 0.01

    A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack vector escalating to a complete account takeover is possible due to user-supplied data fields not being properly encoded and Javascript code being used to process the data. The highest threat from…

  • CVE-2020-27847CriMay 28, 2021
    risk 0.64cvss 9.8epss 0.02

    A vulnerability exists in the SAML connector of the github.com/dexidp/dex library used to process SAML Signature Validation. This flaw allows an attacker to bypass SAML authentication. The highest threat from this vulnerability is to confidentiality, integrity, as well as system…

  • CVE-2021-27852CriKEVMay 27, 2021
    risk 0.78cvss 9.8epss 0.30

    Deserialization of Untrusted Data vulnerability in CheckboxWeb.dll of Checkbox Survey allows an unauthenticated remote attacker to execute arbitrary code. This issue affects: Checkbox Survey versions prior to 7.

  • CVE-2020-15180CriMay 27, 2021
    risk 0.59cvss 9.0epss 0.06

    A flaw was found in the mysql-wsrep component of mariadb. Lack of input sanitization in `wsrep_sst_method` allows for command injection that can be exploited by a remote attacker to execute arbitrary commands on galera cluster nodes. This threatens the system's confidentiality,…

  • CVE-2020-12403CriMay 27, 2021
    risk 0.59cvss 9.1epss 0.02

    A flaw was found in the way CHACHA20-POLY1305 was implemented in NSS in versions before 3.55. When using multi-part Chacha20, it could cause out-of-bounds reads. This issue was fixed by explicitly disabling multi-part ChaCha20 (which was not functioning correctly) and strictly…

  • CVE-2020-27832CriMay 27, 2021
    risk 0.59cvss 9.0epss 0.01

    A flaw was found in Red Hat Quay, where it has a persistent Cross-site Scripting (XSS) vulnerability when displaying a repository's notification. This flaw allows an attacker to trick a user into performing a malicious action to impersonate the target user. The highest threat…

  • CVE-2021-31535CriMay 27, 2021
    risk 0.65cvss 9.8epss 0.11

    LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than…

  • CVE-2021-22911CriMay 27, 2021
    risk 0.74cvss 9.8epss 0.95

    A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenticated NoSQL injection, resulting potentially in RCE.

  • CVE-2021-22891CriMay 27, 2021
    risk 0.64cvss 9.8epss 0.01

    A missing authorization vulnerability exists in Citrix ShareFile Storage Zones Controller before 5.7.3, 5.8.3, 5.9.3, 5.10.1 and 5.11.18 may allow unauthenticated remote compromise of the Storage Zones Controller.

  • CVE-2021-33590CriMay 27, 2021
    risk 0.64cvss 9.8epss 0.01

    GattLib 0.3-rc1 has a stack-based buffer over-read in get_device_path_from_mac in dbus/gattlib.c.

  • CVE-2021-22738CriMay 26, 2021
    risk 0.64cvss 9.8epss 0.01

    Use of a Broken or Risky Cryptographic Algorithm vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior that could cause unauthorized access when credentials are discovered after a brute force attack.

  • CVE-2021-22737CriMay 26, 2021
    risk 0.64cvss 9.8epss 0.01

    Insufficiently Protected Credentials vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior that could cause unauthorized access of when credentials are discovered after a brute force attack.

  • CVE-2021-22731CriMay 26, 2021
    risk 0.64cvss 9.8epss 0.01

    Weak Password Recovery Mechanism for Forgotten Password vulnerability exists on Modicon Managed Switch MCSESM* and MCSESP* V8.21 and prior which could cause an unauthorized password change through HTTP / HTTPS when basic user information is known by a remote attacker.

  • CVE-2019-25029CriMay 26, 2021
    risk 0.64cvss 9.8epss 0.02

    In Versa Director, the command injection is an attack in which the goal is execution of arbitrary commands on the host operating system via a vulnerable application. Command injection attacks are possible when an application passes unsafe user supplied data (forms, cookies, HTTP…

  • CVE-2018-10867CriMay 26, 2021
    risk 0.59cvss 9.1epss 0.01

    Files are accessible without restrictions from the /update/results page of redhat-certification 7 package, allowing an attacker to remove any file accessible by the apached user.

  • CVE-2018-10866CriMay 26, 2021
    risk 0.59cvss 9.1epss 0.01

    It was discovered that the /configuration view of redhat-certification 7 does not perform an authorization check and it allows an unauthenticated user to remove a "system" file, that is an xml file with host related information, not belonging to him.

  • CVE-2021-33470CriMay 26, 2021
    risk 0.64cvss 9.8epss 0.02

    COVID19 Testing Management System 1.0 is vulnerable to SQL Injection via the admin panel.

  • CVE-2021-20487CriMay 26, 2021
    risk 0.59cvss 9.1epss 0.01

    IBM Power9 Self Boot Engine(SBE) could allow a privileged user to inject malicious code and compromise the integrity of the host firmware bypassing the host firmware signature verification process.

  • CVE-2021-25945CriMay 26, 2021
    risk 0.64cvss 9.8epss 0.03

    Prototype pollution vulnerability in 'js-extend' versions 0.0.1 through 1.0.1 allows attacker to cause a denial of service and may lead to remote code execution.

  • CVE-2021-21986CriMay 26, 2021
    risk 0.65cvss 9.8epss 0.13

    The vSphere Client (HTML5) contains a vulnerability in a vSphere authentication mechanism for the Virtual SAN Health Check, Site Recovery, vSphere Lifecycle Manager, and VMware Cloud Director Availability plug-ins. A malicious actor with network access to port 443 on vCenter…

  • CVE-2021-21985CriKEVMay 26, 2021
    risk 0.93cvss 9.8epss 1.00

    The vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input validation in the Virtual SAN Health Check plug-in which is enabled by default in vCenter Server. A malicious actor with network access to port 443 may exploit this issue to execute…

  • CVE-2021-22160CriMay 26, 2021
    risk 0.68cvss 9.8epss 0.53

    If Apache Pulsar is configured to authenticate clients using tokens based on JSON Web Tokens (JWT), the signature of the token is not validated if the algorithm of the presented token is set to "none". This allows an attacker to connect to Pulsar instances as any user (incl.…

  • CVE-2021-33575CriMay 25, 2021
    risk 0.64cvss 9.8epss 0.03

    The Pixar ruby-jss gem before 1.6.0 allows remote attackers to execute arbitrary code because of the Plist gem's documented behavior of using Marshal.load during XML document processing.

  • CVE-2021-33574CriMay 25, 2021
    risk 0.64cvss 9.8epss 0.03

    The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service…

  • CVE-2021-25946CriMay 25, 2021
    risk 0.64cvss 9.8epss 0.03

    Prototype pollution vulnerability in `nconf-toml` versions 0.0.1 through 0.0.2 allows an attacker to cause a denial of service and may lead to remote code execution.

  • CVE-2021-25944CriMay 25, 2021
    risk 0.64cvss 9.8epss 0.03

    Prototype pollution vulnerability in 'deep-defaults' versions 1.0.0 through 1.0.5 allows attacker to cause a denial of service and may lead to remote code execution.

  • CVE-2021-21658CriMay 25, 2021
    risk 0.52cvss 9.1epss 0.02

    Jenkins Nuget Plugin 1.0 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

  • CVE-2020-13601CriMay 25, 2021
    risk 0.59cvss 9.0epss 0.01

    Possible read out of bounds in dns read. Zephyr versions >= 1.14.2, >= 2.3.0 contain Out-of-bounds Read (CWE-125). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-mm57-9hqw-qh44

  • CVE-2021-30194CriMay 25, 2021
    risk 0.59cvss 9.1epss 0.01

    CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Read.

  • CVE-2021-30193CriMay 25, 2021
    risk 0.64cvss 9.8epss 0.01

    CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write.

  • CVE-2021-30192CriMay 25, 2021
    risk 0.64cvss 9.8epss 0.01

    CODESYS V2 Web-Server before 1.1.9.20 has an Improperly Implemented Security Check.

  • CVE-2021-30190CriMay 25, 2021
    risk 0.64cvss 9.8epss 0.01

    CODESYS V2 Web-Server before 1.1.9.20 has Improper Access Control.

  • CVE-2021-30189CriMay 25, 2021
    risk 0.64cvss 9.8epss 0.01

    CODESYS V2 Web-Server before 1.1.9.20 has a Stack-based Buffer Overflow.

  • CVE-2021-30188CriMay 25, 2021
    risk 0.64cvss 9.8epss 0.01

    CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow.