CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2021-42061

    Last Modified: 21 Nov 2024

    SAP BusinessObjects Business Intelligence Platform (Web Intelligence) - version 420, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. This allows a low privileged attacker to retrieve some data from the victim but will never be able to modify the document and publish these modifications to the server. It impacts the "Quick Prompt" workflow.

    Published: 14 Dec 2021
    3.3
    Low

    CVE-2021-42068

    Last Modified: 21 Nov 2024

    When a user opens a manipulated GIF (.gif) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.

    Published: 14 Dec 2021
    9.8
    Critical

    CVE-2021-42064

    Last Modified: 21 Nov 2024

    If configured to use an Oracle database and if a query is created using the flexible search java api with a parameterized "in" clause, SAP Commerce - versions 1905, 2005, 2105, 2011, allows attacker to execute crafted database queries, exposing backend database. The vulnerability is present if the parameterized "in" clause accepts more than 1000 values.

    Published: 14 Dec 2021
    3.3
    Low

    CVE-2021-42070

    Last Modified: 21 Nov 2024

    When a user opens manipulated Jupiter Tessellation (.jt) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application

    Published: 14 Dec 2021
    8.8
    High

    CVE-2021-38182

    Last Modified: 21 Nov 2024

    Due to insufficient input validation of Kyma, authenticated users can pass a Header of their choice and escalate privileges which can completely compromise the cluster.

    Published: 14 Dec 2021
    3.3
    Low

    CVE-2021-42069

    Last Modified: 21 Nov 2024

    When a user opens manipulated Tagged Image File Format (.tif) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application

    Published: 14 Dec 2021
    6.1
    Medium

    CVE-2021-42063

    Last Modified: 21 Nov 2024

    A security vulnerability has been discovered in the SAP Knowledge Warehouse - versions 7.30, 7.31, 7.40, 7.50. The usage of one SAP KW component within a Web browser enables unauthorized attackers to conduct XSS attacks, which might lead to disclose sensitive data.

    Published: 14 Dec 2021
    4.4
    Medium

    CVE-2021-42066

    Last Modified: 21 Nov 2024

    SAP Business One - version 10.0, allows an admin user to view DB password in plain text over the network, which should otherwise be encrypted. For an attacker to discover vulnerable function in-depth application knowledge is required, but once exploited the attacker may be able to completely compromise confidentiality, integrity, and availability of the application.

    Published: 14 Dec 2021
    7.7
    High

    CVE-2021-44232

    Last Modified: 21 Nov 2024

    SAF-T Framework Transaction SAFTN_G allows an attacker to exploit insufficient validation of path information provided by normal user, leading to full server directory access. The attacker can see the whole filesystem structure but cannot overwrite, delete, or corrupt arbitrary files on the server.

    Published: 14 Dec 2021
    6.7
    Medium

    CVE-2021-44235

    Last Modified: 21 Nov 2024

    Two methods of a utility class in SAP NetWeaver AS ABAP - versions 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, 755, 756, allow an attacker with high privileges and has direct access to SAP System, to inject code when executing with a certain transaction class builder. This could allow execution of arbitrary commands on the operating system, that could highly impact the Confidentiality, Integrity and Availability of the system.

    Published: 14 Dec 2021
    9.8
    Critical

    CVE-2021-44231

    Last Modified: 21 Nov 2024

    Internally used text extraction reports allow an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.

    Published: 14 Dec 2021
    8.8
    High

    CVE-2021-44233

    Last Modified: 21 Nov 2024

    SAP GRC Access Control - versions V1100_700, V1100_731, V1200_750, does not perform necessary authorization checks for an authenticated user, which could lead to escalation of privileges.

    Published: 14 Dec 2021
    7.3
    High

    CVE-2021-41065

    Last Modified: 21 Nov 2024

    An issue was discovered in Listary through 6. An attacker can create a \\.\pipe\Listary.listaryService named pipe and wait for a privileged user to open a session on the Listary installed host. Listary will automatically access the named pipe and the attacker will be able to duplicate the victim's token to impersonate him. This exploit is valid in certain Windows versions (Microsoft has patched the issue in later Windows 10 builds).

    Published: 14 Dec 2021
    7.5
    High

    CVE-2021-41066

    Last Modified: 21 Nov 2024

    An issue was discovered in Listary through 6. When Listary is configured as admin, Listary will not ask for permissions again if a user tries to access files on the system from Listary itself (it will bypass UAC protection; there is no privilege validation of the current user that runs via Listary).

    Published: 14 Dec 2021
    7.5
    High

    CVE-2021-41067

    Last Modified: 21 Nov 2024

    An issue was discovered in Listary through 6. Improper implementation of the update process leads to the download of software updates with a /check-update HTTP-based connection. This can be exploited with MITM techniques. Together with the lack of package validation, it can lead to manipulation of update packages that can cause an installation of malicious content.

    Published: 14 Dec 2021
    5.5
    Medium

    CVE-2021-3836

    Last Modified: 21 Nov 2024

    dbeaver is vulnerable to Improper Restriction of XML External Entity Reference

    Published: 14 Dec 2021
    7.4
    High

    CVE-2021-44549

    Last Modified: 21 Nov 2024

    Apache Sling Commons Messaging Mail provides a simple layer on top of JavaMail/Jakarta Mail for OSGi to send mails via SMTPS. To reduce the risk of "man in the middle" attacks additional server identity checks must be performed when accessing mail servers. For compatibility reasons these additional checks are disabled by default in JavaMail/Jakarta Mail. The SimpleMailService in Apache Sling Commons Messaging Mail 1.0 lacks an option to enable these checks for the shared mail session. A user could enable these checks nevertheless by accessing the session via the message created by SimpleMessageBuilder and setting the property mail.smtps.ssl.checkserveridentity to true. Apache Sling Commons Messaging Mail 2.0 adds support for enabling server identity checks and these checks are enabled by default. - https://javaee.github.io/javamail/docs/SSLNOTES.txt - https://javaee.github.io/javamail/docs/api/com/sun/mail/smtp/package-summary.html - https://github.com/eclipse-ee4j/mail/issues/429

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-4007

    Last Modified: 21 Nov 2024

    Rapid7 Insight Agent, versions 3.0.1 to 3.1.2.34, suffer from a local privilege escalation due to an uncontrolled DLL search path. Specifically, when Insight Agent versions 3.0.1 to 3.1.2.34 start, the Python interpreter attempts to load python3.dll at "C:\DLLs\python3.dll," which normally is writable by locally authenticated users. Because of this, a malicious local user could use Insight Agent's startup conditions to elevate to SYSTEM privileges. This issue was fixed in Rapid7 Insight Agent 3.1.2.35. This vulnerability is a regression of CVE-2019-5629.

    Published: 14 Dec 2021
    6.1
    Medium

    CVE-2021-4107

    Last Modified: 21 Nov 2024

    yetiforcecrm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

    Published: 14 Dec 2021
    5.4
    Medium

    CVE-2021-42051

    Last Modified: 21 Nov 2024

    An issue was discovered in AbanteCart before 1.3.2. Any low-privileged user with file-upload permissions can upload a malicious SVG document that contains an XSS payload.

    Published: 14 Dec 2021
    9.8
    Critical

    CVE-2021-44949

    Last Modified: 21 Nov 2024

    glFusion CMS 1.7.9 is affected by an access control vulnerability via /public_html/users.php.

    Published: 14 Dec 2021
    6.1
    Medium

    CVE-2021-42050

    Last Modified: 21 Nov 2024

    An issue was discovered in AbanteCart before 1.3.2. It allows DOM Based XSS.

    Published: 14 Dec 2021
    4.4
    Medium

    CVE-2021-36721

    Last Modified: 21 Nov 2024

    Sysaid API User Enumeration - Attacker sending requests to specific api path without any authorization before 21.3.60 version could get users names from the LDAP server.

    Published: 14 Dec 2021
    9.1
    Critical

    CVE-2021-45015

    Last Modified: 21 Nov 2024

    taocms 3.0.2 is vulnerable to arbitrary file deletion via taocms\include\Model\file.php from line 60 to line 72.

    Published: 14 Dec 2021
    9.8
    Critical

    CVE-2021-45014

    Last Modified: 21 Nov 2024

    There is an upload sql injection vulnerability in the background of taocms 3.0.2 in parameter id:action=cms&ctrl=update&id=26

    Published: 14 Dec 2021
    9.8
    Critical

    CVE-2021-44538

    Last Modified: 21 Nov 2024

    The olm_session_describe function in Matrix libolm before 3.2.7 is vulnerable to a buffer overflow. The Olm session object represents a cryptographic channel between two parties. Therefore, its state is partially controllable by the remote party of the channel. Attackers can construct a crafted sequence of messages to manipulate the state of the receiver's session in such a way that, for some buffer sizes, a buffer overflow happens on a call to olm_session_describe. Furthermore, safe buffer sizes were undocumented. The overflow content is partially controllable by the attacker and limited to ASCII spaces and digits. The known affected products are Element Web And SchildiChat Web.

    Published: 14 Dec 2021
    8.8
    High

    CVE-2021-3376

    Last Modified: 21 Nov 2024

    An issue was discovered in Cuppa CMS Versions Before 31 Jan 2021 allows authenticated attackers to gain escalated privileges via a crafted POST request using the user_group_id_field parameter.

    Published: 14 Dec 2021
    5.3
    Medium

    CVE-2021-44937

    Last Modified: 21 Nov 2024

    glFusion CMS v1.7.9 is affected by an arbitrary user registration vulnerability in /public_html/users.php. An attacker can register with the mailbox of any user. When users want to register, they will find that the mailbox has been occupied.

    Published: 14 Dec 2021
    9.8
    Critical

    CVE-2021-44524

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All versions < V1.6.284.0). Affected applications insufficiently limit the access to the internal user authentication service. This could allow an unauthenticated remote attacker to trigger several actions on behalf of valid user accounts.

    Published: 14 Dec 2021
    9.1
    Critical

    CVE-2021-44523

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All versions < V1.6.284.0). Affected applications insufficiently limit the access to the internal activity feed database. This could allow an unauthenticated remote attacker to read, modify or delete activity feed entries.

    Published: 14 Dec 2021
    7.5
    High

    CVE-2021-44522

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SiPass integrated V2.76 (All versions), SiPass integrated V2.80 (All versions), SiPass integrated V2.85 (All versions), Siveillance Identity V1.5 (All versions), Siveillance Identity V1.6 (All versions < V1.6.284.0). Affected applications insufficiently limit the access to the internal message broker system. This could allow an unauthenticated remote attacker to subscribe to arbitrary message queues.

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44450

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V12.8.1.1), JTTK (All versions < V10.8.1.1). JTTK library in affected products is vulnerable to an out of bounds read past the end of an allocated buffer when parsing JT files. An attacker could leverage this vulnerability to leak information in the context of the current process. (ZDI-CAN-15055, ZDI-CAN-14915, ZDI-CAN-14865)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44449

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V12.8.1.1), JTTK (All versions < V10.8.1.1). JTTK library in affected products contains an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14830)

    Published: 14 Dec 2021
    3.3
    Low

    CVE-2021-44448

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.0.3.0), JTTK (All versions < V11.0.3.0). JTTK library in affected products is vulnerable to an out of bounds read past the end of an allocated buffer when parsing JT files. An attacker could leverage this vulnerability to leak information in the context of the current process. (ZDI-CAN-14843, ZDI-CAN-15051)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44447

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.0.3.0), JTTK (All versions < V11.0.3.0). JTTK library in affected products contains a use-after-free vulnerability that could be triggered while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-14911)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44445

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products contains an out of bounds write past the fixed-length heap-based buffer while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-15054)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44446

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.0.3.0), JTTK (All versions < V11.0.3.0). JTTK library in affected products contains an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14828, ZDI-CAN-14898)

    Published: 14 Dec 2021
    3.3
    Low

    CVE-2021-44444

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds read past the end of an allocated buffer when parsing specially crafted JT files. An attacker could leverage this vulnerability to leak information in the context of the current process. (ZDI-CAN-15052)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44443

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products contains an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-15039)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44442

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products contains an out of bounds write past the fixed-length heap-based buffer while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14995)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44441

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products contains an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14913)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44440

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to memory corruption condition while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-14912)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44439

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds read past the end of an allocated buffer when parsing specially crafted JT files. An attacker could leverage this vulnerability to leak information in the context of the current process. (ZDI-CAN-14908)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44438

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14907)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44437

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14906)

    Published: 14 Dec 2021
    3.3
    Low

    CVE-2021-44436

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds read past the end of an allocated buffer when parsing specially crafted JT files. An attacker could leverage this vulnerability to leak information in the context of the current process. (ZDI-CAN-14905)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44434

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14902, ZDI-CAN-14866)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44435

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to stack based buffer overflow while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-14903)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44433

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products contains a use after free vulnerability that could be triggered while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-14900)

    Published: 14 Dec 2021
    7.8
    High

    CVE-2021-44432

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products is vulnerable to stack based buffer overflow while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-14845)

    Published: 14 Dec 2021