CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2021-46459

    Last Modified: 21 Nov 2024

    Victor CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities in the component admin/users.php?source=add_user. These vulnerabilities can be exploited through a crafted POST request via the user_name, user_firstname,user_lastname, or user_email parameters.

    Published: 31 Jan 2022
    8.1
    High

    CVE-2021-42635

    Last Modified: 21 Nov 2024

    PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use a hardcoded APP_KEY value, leading to pre-auth remote code execution.

    Published: 31 Jan 2022
    8.1
    High

    CVE-2021-42631

    Last Modified: 21 Nov 2024

    PrinterLogic Web Stack versions 19.1.1.13 SP9 and below deserializes attacker controlled leading to pre-auth remote code execution.

    Published: 31 Jan 2022
    4.8
    Medium

    CVE-2021-44114

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Stock Management System in PHP/OOP 1.0, which allows remote malicious users to execute arbitrary remote code execution via create user function.

    Published: 31 Jan 2022
    5.5
    Medium

    CVE-2021-40033

    Last Modified: 21 Nov 2024

    There is an information exposure vulnerability on several Huawei Products. The vulnerability is due to that the software does not properly protect certain information. Successful exploit could cause information disclosure. Affected product versions include: CloudEngine 12800 V200R005C10SPC800; CloudEngine 5800 V200R005C10SPC800, V200R019C00SPC800; CloudEngine 6800 V200R005C10SPC800, V200R005C20SPC800, V200R019C00SPC800; CloudEngine 7800 V200R005C10SPC800, V200R019C00SPC800.

    Published: 31 Jan 2022
    6.5
    Medium

    CVE-2021-40042

    Last Modified: 21 Nov 2024

    There is a release of invalid pointer vulnerability in some Huawei products, successful exploit may cause the process and service abnormal. Affected product versions include: CloudEngine 12800 V200R019C10SPC800, V200R019C10SPC900; CloudEngine 5800 V200R019C10SPC800, V200R020C00SPC600; CloudEngine 6800 versions V200R019C10SPC800, V200R019C10SPC900, V200R020C00SPC600, V300R020C00SPC200; CloudEngine 7800 V200R019C10SPC800.

    Published: 31 Jan 2022
    7.5
    High

    CVE-2021-46458

    Last Modified: 21 Nov 2024

    Victor CMS v1.0 was discovered to contain a SQL injection vulnerability in the component admin/posts.php?source=add_post. This vulnerability can be exploited through a crafted POST request via the post_title parameter.

    Published: 31 Jan 2022
    9.8
    Critical

    CVE-2021-31617

    Last Modified: 21 Nov 2024

    In ASQ in Stormshield Network Security (SNS) 1.0.0 through 2.7.8, 2.8.0 through 2.16.0, 3.0.0 through 3.7.20, 3.8.0 through 3.11.8, and 4.0.1 through 4.2.2, mishandling of memory management can lead to remote code execution.

    Published: 31 Jan 2022
    7.2
    High

    CVE-2021-28962

    Last Modified: 21 Nov 2024

    Stormshield Network Security (SNS) before 4.2.2 allows a read-only administrator to gain privileges via CLI commands.

    Published: 31 Jan 2022
    5.4
    Medium

    CVE-2020-36056

    Last Modified: 21 Nov 2024

    Beetel 777VR1-DI Hardware Version REV.1.01 Firmware Version V01.00.09_55 was discovered to contain a cross-site scripting (XSS) vulnerability via the Ping diagnostic option.

    Published: 31 Jan 2022
    9.8
    Critical

    CVE-2020-36064

    Last Modified: 21 Nov 2024

    Online Course Registration v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.

    Published: 31 Jan 2022
    7.2
    High

    CVE-2021-44255

    Last Modified: 21 Nov 2024

    Authenticated remote code execution in MotionEye <= 0.42.1 and MotioneEyeOS <= 20200606 allows a remote attacker to upload a configuration backup file containing a malicious python pickle file which will execute arbitrary code on the server.

    Published: 31 Jan 2022
    5.5
    Medium

    CVE-2021-23520

    Last Modified: 21 Nov 2024

    The package juce-framework/juce before 6.1.5 are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) via the ZipFile::uncompressEntry function in juce_ZipFile.cpp. This vulnerability is triggered when the archive is extracted upon calling uncompressTo() on a ZipFile object.

    Published: 31 Jan 2022
    5.5
    Medium

    CVE-2021-23521

    Last Modified: 21 Nov 2024

    This affects the package juce-framework/JUCE before 6.1.5. This vulnerability is triggered when a malicious archive is crafted with an entry containing a symbolic link. When extracted, the symbolic link is followed outside of the target dir allowing writing arbitrary files on the target host. In some cases, this can allow an attacker to execute arbitrary code. The vulnerable code is in the ZipFile::uncompressEntry function in juce_ZipFile.cpp and is executed when the archive is extracted upon calling uncompressTo() on a ZipFile object.

    Published: 31 Jan 2022
    5.5
    Medium

    CVE-2023-1249

    Last Modified: 19 Mar 2025

    A use-after-free flaw was found in the Linux kernel’s core dump subsystem. This flaw allows a local user to crash the system. Only if patch 390031c94211 ("coredump: Use the vma snapshot in fill_files_note") not applied yet, then kernel could be affected.

    Published: 31 Jan 2022
    9.1
    Critical

    CVE-2021-45079

    Last Modified: 21 Nov 2024

    In strongSwan before 5.9.5, a malicious responder can send an EAP-Success message too early without actually authenticating the client and (in the case of EAP methods with mutual authentication and EAP-only authentication for IKEv2) even without server authentication.

    Published: 31 Jan 2022
    7.5
    High

    CVE-2021-34805

    Last Modified: 21 Nov 2024

    An issue was discovered in FAUST iServer before 9.0.019.019.7. For each URL request, it accesses the corresponding .fau file on the operating system without preventing %2e%2e%5c directory traversal.

    Published: 31 Jan 2022
    7.8
    High

    CVE-2021-27971

    Last Modified: 21 Nov 2024

    Alps Alpine Touchpad Driver 10.3201.101.215 is vulnerable to DLL Injection.

    Published: 31 Jan 2022
    4.9
    Medium

    CVE-2022-23409

    Last Modified: 21 Nov 2024

    The Logs plugin before 3.0.4 for Craft CMS allows remote attackers to read arbitrary files via input to actionStream in Controller.php.

    Published: 31 Jan 2022
    5.5
    Medium

    CVE-2021-4218

    Last Modified: 21 Nov 2024

    A flaw was found in the Linux kernel’s implementation of reading the SVC RDMA counters. Reading the counter sysctl panics the system. This flaw allows a local attacker with local access to cause a denial of service while the system reboots. The issue is specific to CentOS/RHEL.

    Published: 31 Jan 2022
    8.6
    High

    CVE-2022-1055

    Last Modified: 13 Aug 2026

    A use-after-free exists in the Linux Kernel in tc_new_tfilter that could allow a local attacker to gain privilege escalation. The exploit requires unprivileged user namespaces. We recommend upgrading past commit 04c2a47ffb13c29778e2a14e414ad4cb5a5db4b5

    Published: 31 Jan 2022
    7.5
    High

    CVE-2021-46101

    Last Modified: 21 Nov 2024

    In Git for windows through 2.34.1 when using git pull to update the local warehouse, git.cmd can be run directly.

    Published: 31 Jan 2022
    8.8
    High

    CVE-2022-0336

    Last Modified: 21 Nov 2024

    The Samba AD DC includes checks when adding service principals names (SPNs) to an account to ensure that SPNs do not alias with those already in the database. Some of these checks are able to be bypassed if an account modification re-adds an SPN that was previously present on that account, such as one added when a computer is joined to a domain. An attacker who has the ability to write to an account can exploit this to perform a denial-of-service attack by adding an SPN that matches an existing service. Additionally, an attacker who can intercept traffic can impersonate existing services, resulting in a loss of confidentiality and integrity.

    Published: 31 Jan 2022
    5.5
    Medium

    CVE-2022-24130

    Last Modified: 21 Nov 2024

    xterm through Patch 370, when Sixel support is enabled, allows attackers to trigger a buffer overflow in set_sixel in graphics_sixel.c via crafted text.

    Published: 31 Jan 2022
    6.5
    Medium

    CVE-2021-41571

    Last Modified: 21 Nov 2024

    In Apache Pulsar it is possible to access data from BookKeeper that does not belong to the topics accessible by the authenticated user. The Admin API get-message-by-id requires the user to input a topic and a ledger id. The ledger id is a pointer to the data, and it is supposed to be a valid it for the topic. Authorisation controls are performed against the topic name and there is not proper validation the that ledger id is valid in the context of such ledger. So it may happen that the user is able to read from a ledger that contains data owned by another tenant. This issue affects Apache Pulsar Apache Pulsar version 2.8.0 and prior versions; Apache Pulsar version 2.7.3 and prior versions; Apache Pulsar version 2.6.4 and prior versions.

    Published: 31 Jan 2022
    4.3
    Medium

    CVE-2021-44141

    Last Modified: 21 Nov 2024

    All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.

    Published: 31 Jan 2022
    8.8
    High

    CVE-2021-44142

    Last Modified: 23 Apr 2025

    The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fruit configured allow out-of-bounds heap read and write via specially crafted extended file attributes. A remote attacker with write access to extended file attributes can execute arbitrary code with the privileges of smbd, typically root.

    Published: 31 Jan 2022
    5.5
    Medium

    CVE-2022-0530

    Last Modified: 13 Feb 2025

    A flaw was found in Unzip. The vulnerability occurs during the conversion of a wide string to a local string that leads to a heap of out-of-bound write. This flaw allows an attacker to input a specially crafted zip file, leading to a crash or code execution.

    Published: 31 Jan 2022
    4.3
    Medium

    CVE-2022-0414

    Last Modified: 21 Nov 2024

    Improper Validation of Specified Quantity in Input in Packagist dolibarr/dolibarr prior to 16.0.

    Published: 31 Jan 2022
    6.5
    Medium

    CVE-2022-0273

    Last Modified: 21 Nov 2024

    Improper Access Control in Pypi calibreweb prior to 0.6.16.

    Published: 30 Jan 2022
    9.8
    Critical

    CVE-2022-0339

    Last Modified: 21 Nov 2024

    Server-Side Request Forgery (SSRF) in Pypi calibreweb prior to 0.6.16.

    Published: 30 Jan 2022
    6.1
    Medium

    CVE-2022-22919

    Last Modified: 21 Nov 2024

    Adenza AxiomSL ControllerView through 10.8.1 allows redirection for SSO login URLs.

    Published: 30 Jan 2022
    5.3
    Medium

    CVE-2022-24032

    Last Modified: 21 Nov 2024

    Adenza AxiomSL ControllerView through 10.8.1 is vulnerable to user enumeration. An attacker can identify valid usernames on the platform because a failed login attempt produces a different error message when the username is valid.

    Published: 30 Jan 2022
    7.8
    High

    CVE-2022-0407

    Last Modified: 21 Nov 2024

    Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

    Published: 30 Jan 2022
    7.8
    High

    CVE-2022-0413

    Last Modified: 21 Nov 2024

    Use After Free in GitHub repository vim/vim prior to 8.2.

    Published: 30 Jan 2022
    7.8
    High

    CVE-2022-0408

    Last Modified: 21 Nov 2024

    Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

    Published: 30 Jan 2022
    9.8
    Critical

    CVE-2021-46660

    Last Modified: 21 Nov 2024

    Signiant Manager+Agents before 15.1 allows XML External Entity (XXE) attacks.

    Published: 29 Jan 2022
    9
    Critical

    CVE-2022-24123

    Last Modified: 21 Nov 2024

    MarkText through 0.16.3 does not sanitize the input of a mermaid block before rendering. This could lead to Remote Code Execution via a .md file containing a mutation Cross-Site Scripting (XSS) payload.

    Published: 29 Jan 2022
    7.5
    High

    CVE-2022-24124

    Last Modified: 21 Nov 2024

    The query API in Casdoor before 1.13.1 has a SQL injection vulnerability related to the field and value parameters, as demonstrated by api/get-organizations.

    Published: 29 Jan 2022
    7.8
    High

    CVE-2022-24122

    Last Modified: 21 Nov 2024

    kernel/ucount.c in the Linux kernel 5.14 through 5.16.4, when unprivileged user namespaces are enabled, allows a use-after-free and privilege escalation because a ucounts object can outlive its namespace.

    Published: 29 Jan 2022
    7.5
    High

    CVE-2021-43859

    Last Modified: 3 Nov 2025

    XStream is an open source java library to serialize objects to XML and back again. Versions prior to 1.4.19 may allow a remote attacker to allocate 100% CPU time on the target system depending on CPU type or parallel execution of such a payload resulting in a denial of service only by manipulating the processed input stream. XStream 1.4.19 monitors and accumulates the time it takes to add elements to collections and throws an exception if a set threshold is exceeded. Users are advised to upgrade as soon as possible. Users unable to upgrade may set the NO_REFERENCE mode to prevent recursion. See GHSA-rmr5-cpv2-vgjf for further details on a workaround if an upgrade is not possible.

    Published: 29 Jan 2022
    5.9
    Medium

    CVE-2022-21721

    Last Modified: 5 May 2025

    Next.js is a React framework. Starting with version 12.0.0 and prior to version 12.0.9, vulnerable code could allow a bad actor to trigger a denial of service attack for anyone using i18n functionality. In order to be affected by this CVE, one must use next start or a custom server and the built-in i18n support. Deployments on Vercel, along with similar environments where invalid requests are filtered before reaching Next.js, are not affected. A patch has been released, `[email protected]`, that mitigates this issue. As a workaround, one may ensure `/${locale}/_next/` is blocked from reaching the Next.js instance until it becomes feasible to upgrade.

    Published: 28 Jan 2022
    6.1
    Medium

    CVE-2022-23598

    Last Modified: 23 Apr 2025

    laminas-form is a package for validating and displaying simple and complex forms. When rendering validation error messages via the `formElementErrors()` view helper shipped with laminas-form, many messages will contain the submitted value. However, in laminas-form prior to version 3.1.1, the value was not being escaped for HTML contexts, which could potentially lead to a reflected cross-site scripting attack. Versions 3.1.1 and above contain a patch to mitigate the vulnerability. A workaround is available. One may manually place code at the top of a view script where one calls the `formElementErrors()` view helper. More information about this workaround is available on the GitHub Security Advisory.

    Published: 28 Jan 2022
    4.3
    Medium

    CVE-2022-23599

    Last Modified: 5 May 2025

    Products.ATContentTypes are the core content types for Plone 2.1 - 4.3. Versions of Plone that are dependent on Products.ATContentTypes prior to version 3.0.6 are vulnerable to reflected cross site scripting and open redirect when an attacker can get a compromised version of the image_view_fullscreen page in a cache, for example in Varnish. The technique is known as cache poisoning. Any later visitor can get redirected when clicking on a link on this page. Usually only anonymous users are affected, but this depends on the user's cache settings. Version 3.0.6 of Products.ATContentTypes has been released with a fix. This version works on Plone 5.2, Python 2 only. As a workaround, make sure the image_view_fullscreen page is not stored in the cache. More information about the vulnerability and cvmitigation measures is available in the GitHub Security Advisory.

    Published: 28 Jan 2022
    7.7
    High

    CVE-2021-44419

    Last Modified: 15 Apr 2025

    A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetMdAlarm param is not object. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 28 Jan 2022
    7.7
    High

    CVE-2021-44417

    Last Modified: 15 Apr 2025

    A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetAlarm param is not object. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 28 Jan 2022
    7.7
    High

    CVE-2021-44418

    Last Modified: 15 Apr 2025

    A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetMdState param is not object. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 28 Jan 2022
    7.7
    High

    CVE-2021-44416

    Last Modified: 15 Apr 2025

    A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. Disconnect param is not object. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 28 Jan 2022
    7.7
    High

    CVE-2021-44415

    Last Modified: 15 Apr 2025

    A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. ModifyUser param is not object. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 28 Jan 2022
    7.7
    High

    CVE-2021-44413

    Last Modified: 15 Apr 2025

    A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. AddUser param is not object. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 28 Jan 2022