CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2021-3817

    Last Modified: 21 Nov 2024

    wbce_cms is vulnerable to Improper Neutralization of Special Elements used in an SQL Command

    Published: 9 Dec 2021
    5.4
    Medium

    CVE-2021-43068

    Last Modified: 21 Nov 2024

    A improper authentication in Fortinet FortiAuthenticator version 6.4.0 allows user to bypass the second factor of authentication via a RADIUS login portal.

    Published: 9 Dec 2021
    4.3
    Medium

    CVE-2021-36167

    Last Modified: 21 Nov 2024

    An improper authorization vulnerabiltiy [CWE-285] in FortiClient Windows versions 7.0.0 and 6.4.6 and below and 6.2.8 and below may allow an unauthenticated attacker to bypass the webfilter control via modifying the session-id paramater.

    Published: 9 Dec 2021
    6.7
    Medium

    CVE-2021-42759

    Last Modified: 21 Nov 2024

    A violation of secure design principles in Fortinet Meru AP version 8.6.1 and below, version 8.5.5 and below allows attacker to execute unauthorized code or commands via crafted cli commands.

    Published: 9 Dec 2021
    8.8
    High

    CVE-2021-43071

    Last Modified: 21 Nov 2024

    A heap-based buffer overflow in Fortinet FortiWeb version 6.4.1 and 6.4.0, version 6.3.15 and below, version 6.2.6 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests to the LogReport API controller.

    Published: 9 Dec 2021
    7.8
    High

    CVE-2021-43065

    Last Modified: 21 Nov 2024

    A incorrect permission assignment for critical resource in Fortinet FortiNAC version 9.2.0, version 9.1.3 and below, version 8.8.9 and below allows attacker to gain higher privileges via the access to sensitive system data.

    Published: 9 Dec 2021
    6.8
    Medium

    CVE-2021-36189

    Last Modified: 21 Nov 2024

    A missing encryption of sensitive data in Fortinet FortiClientEMS version 7.0.1 and below, version 6.4.4 and below allows attacker to information disclosure via inspecting browser decrypted data

    Published: 9 Dec 2021
    4.4
    Medium

    CVE-2021-43204

    Last Modified: 21 Nov 2024

    A improper control of a resource through its lifetime in Fortinet FortiClientWindows version 6.4.1 and 6.4.0, version 6.2.9 and below, version 6.0.10 and below allows attacker to cause a complete denial of service of its components via changes of directory access permissions.

    Published: 9 Dec 2021
    5.3
    Medium

    CVE-2021-43410

    Last Modified: 21 Nov 2024

    Apache Airavata Django Portal allows CRLF log injection because of lack of escaping log statements. In particular, some HTTP request parameters are logged without first being escaped. Versions affected: master branch before commit 3c5d8c7 [1] of airavata-django-portal [1] https://github.com/apache/airavata-django-portal/commit/3c5d8c72bfc3eb0af8693a655a5d60f9273f8170

    Published: 9 Dec 2021
    8.8
    High

    CVE-2021-36194

    Last Modified: 21 Nov 2024

    Multiple stack-based buffer overflows in the API controllers of FortiWeb 6.4.1, 6.4.0, and 6.3.0 through 6.3.15 may allow an authenticated attacker to achieve arbitrary code execution via specially crafted requests.

    Published: 9 Dec 2021
    —
    Unknown

    CVE-2021-44457

    Last Modified: 4 Sept 2025

    This is unused.

    Published: 9 Dec 2021
    —
    Unknown

    CVE-2021-43351

    Last Modified: 4 Sept 2025

    This is unused.

    Published: 9 Dec 2021
    —
    Unknown

    CVE-2021-23145

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 9 Dec 2021
    —
    Unknown

    CVE-2021-26946

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2021. Notes: none.

    Published: 9 Dec 2021
    6.5
    Medium

    CVE-2021-43797

    Last Modified: 21 Nov 2024

    Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performance protocol servers & clients. Netty prior to version 4.1.71.Final skips control chars when they are present at the beginning / end of the header name. It should instead fail fast as these are not allowed by the spec and could lead to HTTP request smuggling. Failing to do the validation might cause netty to "sanitize" header names before it forward these to another remote system when used as proxy. This remote system can't see the invalid usage anymore, and therefore does not do the validation itself. Users should upgrade to version 4.1.71.Final.

    Published: 9 Dec 2021
    7.5
    High

    CVE-2021-44716

    Last Modified: 21 Nov 2024

    net/http in Go before 1.16.12 and 1.17.x before 1.17.5 allows uncontrolled memory consumption in the header canonicalization cache via HTTP/2 requests.

    Published: 9 Dec 2021
    4.8
    Medium

    CVE-2021-44717

    Last Modified: 21 Nov 2024

    Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network connection as a consequence of erroneous closing of file descriptor 0 after file-descriptor exhaustion.

    Published: 9 Dec 2021
    5.5
    Medium

    CVE-2021-45095

    Last Modified: 21 Nov 2024

    pep_sock_accept in net/phonet/pep.c in the Linux kernel through 5.15.8 has a refcount leak.

    Published: 9 Dec 2021
    7.8
    High

    CVE-2021-43811

    Last Modified: 21 Nov 2024

    Sockeye is an open-source sequence-to-sequence framework for Neural Machine Translation built on PyTorch. Sockeye uses YAML to store model and data configurations on disk. Versions below 2.3.24 use unsafe YAML loading, which can be made to execute arbitrary code embedded in config files. An attacker can add malicious code to the config file of a trained model and attempt to convince users to download and run it. If users run the model, the embedded code will run locally. The issue is fixed in version 2.3.24.

    Published: 8 Dec 2021
    7.3
    High

    CVE-2021-21957

    Last Modified: 21 Nov 2024

    A privilege escalation vulnerability exists in the Remote Server functionality of Dream Report ODS Remote Connector 20.2.16900.0. A specially-crafted command injection can lead to elevated capabilities. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 8 Dec 2021
    10
    Critical

    CVE-2021-21950

    Last Modified: 21 Nov 2024

    An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h in function recv_server_device_response_msg_process. A specially-crafted network packet can lead to code execution.

    Published: 8 Dec 2021
    10
    Critical

    CVE-2021-21951

    Last Modified: 21 Nov 2024

    An out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h in function read_udp_push_config_file. A specially-crafted network packet can lead to code execution.

    Published: 8 Dec 2021
    6.1
    Medium

    CVE-2021-43530

    Last Modified: 21 Nov 2024

    A Universal XSS vulnerability was present in Firefox for Android resulting from improper sanitization when processing a URL scanned from a QR code. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 94.

    Published: 8 Dec 2021
    4.3
    Medium

    CVE-2021-43531

    Last Modified: 21 Nov 2024

    When a user loaded a Web Extensions context menu, the Web Extension could access the post-redirect URL of the element clicked. If the Web Extension lacked the WebRequest permission for the hosts involved in the redirect, this would be a same-origin-violation leaking data the Web Extension should have access to. This was fixed to provide the pre-redirect URL. This is related to CVE-2021-43532 but in the context of Web Extensions. This vulnerability affects Firefox < 94.

    Published: 8 Dec 2021
    6.1
    Medium

    CVE-2021-43532

    Last Modified: 21 Nov 2024

    The 'Copy Image Link' context menu action would copy the final image URL after redirects. By embedding an image that triggered authentication flows - in conjunction with a Content Security Policy that stopped a redirection chain in the middle - the final image URL could be one that contained an authentication token used to takeover a user account. If a website tricked a user into copy and pasting the image link back to the page, the page would be able to steal the authentication tokens. This was fixed by making the action return the original URL, before any redirects. This vulnerability affects Firefox < 94.

    Published: 8 Dec 2021
    4.3
    Medium

    CVE-2021-43533

    Last Modified: 21 Nov 2024

    When parsing internationalized domain names, high bits of the characters in the URLs were sometimes stripped, resulting in inconsistencies that could lead to user confusion or attacks such as phishing. This vulnerability affects Firefox < 94.

    Published: 8 Dec 2021
    6.5
    Medium

    CVE-2021-43540

    Last Modified: 21 Nov 2024

    WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that would not have been uninstalled with the extension. This vulnerability affects Firefox < 95.

    Published: 8 Dec 2021
    6.1
    Medium

    CVE-2021-43544

    Last Modified: 21 Nov 2024

    When receiving a URL through a SEND intent, Firefox would have searched for the text, but subsequent usages of the address bar might have caused the URL to load unintentionally, which could lead to XSS and spoofing attacks. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 95.

    Published: 8 Dec 2021
    7.2
    High

    CVE-2021-23862

    Last Modified: 21 Nov 2024

    A crafted configuration packet sent by an authenticated administrative user can be used to execute arbitrary commands in system context. This issue also affects installations of the VRM, DIVAR IP, BVMS with VRM installed, the VIDEOJET decoder (VJD-7513 and VJD-8000).

    Published: 8 Dec 2021
    6.5
    Medium

    CVE-2021-23861

    Last Modified: 21 Nov 2024

    By executing a special command, an user with administrative rights can get access to extended debug functionality on the VRM allowing an impact on integrity or availability of the installed software. This issue also affects installations of the DIVAR IP and BVMS with VRM installed.

    Published: 8 Dec 2021
    5
    Medium

    CVE-2021-23860

    Last Modified: 21 Nov 2024

    An error in a page handler of the VRM may lead to a reflected cross site scripting (XSS) in the web-based interface. To exploit this vulnerability an attack must be able to modify the HTTP header that is sent. This issue also affects installations of the DIVAR IP and BVMS with VRM installed.

    Published: 8 Dec 2021
    9.1
    Critical

    CVE-2021-23859

    Last Modified: 21 Nov 2024

    An unauthenticated attacker is able to send a special HTTP request, that causes a service to crash. In case of a standalone VRM or BVMS with VRM installation this crash also opens the possibility to send further unauthenticated commands to the service. On some products the interface is only local accessible lowering the CVSS base score. For a list of modified CVSS scores, please see the official Bosch Advisory Appendix chapter Modified CVSS Scores for CVE-2021-23859

    Published: 8 Dec 2021
    7.8
    High

    CVE-2021-37941

    Last Modified: 21 Nov 2024

    A local privilege escalation issue was found with the APM Java agent, where a user on the system could attach a malicious file to an application running with the APM Java agent. Using this vector, a malicious or compromised user account could use the agent to run commands at a higher level of permissions than they possess. This vulnerability affects users that have set up the agent via the attacher cli 3, the attach API 2, as well as users that have enabled the profiling_inferred_spans_enabled option

    Published: 8 Dec 2021
    6.1
    Medium

    CVE-2021-36718

    Last Modified: 21 Nov 2024

    SYNEL - eharmonynew / Synel Reports - The attacker can log in to the system with default credentials and export a report of eharmony system with sensetive data (Employee name, Employee ID number, Working hours etc') The vulnerabilety has been addressed and fixed on version 11. Default credentials , Security miscommunication , Sensetive data exposure vulnerability in Synel Reports of SYNEL eharmonynew, Synel Reports allows an attacker to log into the system with default credentials. This issue affects: SYNEL eharmonynew, Synel Reports 8.0.2 version 11 and prior versions.

    Published: 8 Dec 2021
    8.8
    High

    CVE-2021-36719

    Last Modified: 21 Nov 2024

    PineApp - Mail Secure - The attacker must be logged in as a user to the Pineapp system. The attacker exploits the vulnerable nicUpload.php file to upload a malicious file,Thus taking over the server and running remote code.

    Published: 8 Dec 2021
    6.1
    Medium

    CVE-2021-36720

    Last Modified: 21 Nov 2024

    PineApp - Mail Secure - Attacker sending a request to :/blocking.php?url=<script>alert(1)</script> and stealing cookies .

    Published: 8 Dec 2021
    8.8
    High

    CVE-2021-41017

    Last Modified: 21 Nov 2024

    Multiple heap-based buffer overflow vulnerabilities in some web API controllers of FortiWeb 6.4.1, 6.4.0, and 6.3.0 through 6.3.15 may allow a remote authenticated attacker to execute arbitrary code or commands via specifically crafted HTTP requests.

    Published: 8 Dec 2021
    7.3
    High

    CVE-2021-41025

    Last Modified: 21 Nov 2024

    Multiple vulnerabilities in the authentication mechanism of confd in FortiWeb versions 6.4.1, 6.4.0, 6.3.0 through 6.3.15, 6.2.0 through 6.2.6, 6.1.0 through 6.1.2, 6.0.0 thorugh 6.0.7, including an instance of concurrent execution using shared resource with improper synchronization and one of authentication bypass by capture-replay, may allow a remote unauthenticated attacker to circumvent the authentication process and authenticate as a legitimate cluster peer.

    Published: 8 Dec 2021
    8
    High

    CVE-2021-36173

    Last Modified: 21 Nov 2024

    A heap-based buffer overflow in the firmware signature verification function of FortiOS versions 7.0.1, 7.0.0, 6.4.0 through 6.4.6, 6.2.0 through 6.2.9, and 6.0.0 through 6.0.13 may allow an attacker to execute arbitrary code via specially crafted installation images.

    Published: 8 Dec 2021
    9.8
    Critical

    CVE-2020-27416

    Last Modified: 21 Nov 2024

    Mahavitaran android application 7.50 and prior are affected by account takeover due to improper OTP validation, allows remote attackers to control a users account.

    Published: 8 Dec 2021
    7.5
    High

    CVE-2021-43399

    Last Modified: 21 Nov 2024

    The Yubico YubiHSM YubiHSM2 library 2021.08, included in the yubihsm-shell project, does not properly validate the length of some operations including SSH signing requests, and some data operations received from a YubiHSM 2 device.

    Published: 8 Dec 2021
    7.1
    High

    CVE-2021-43978

    Last Modified: 30 May 2025

    Allegro WIndows 3.3.4152.0, embeds software administrator database credentials into its binary files, which allows users to access and modify data using the same credentials.

    Published: 8 Dec 2021
    4.2
    Medium

    CVE-2021-36195

    Last Modified: 21 Nov 2024

    Multiple command injection vulnerabilities in the command line interpreter of FortiWeb versions 6.4.1, 6.4.0, 6.3.0 through 6.3.15, 6.2.0 through 6.2.6, and 6.1.0 through 6.1.2 may allow an authenticated attacker to execute arbitrary commands on the underlying system shell via specially crafted command arguments.

    Published: 8 Dec 2021
    5.4
    Medium

    CVE-2021-41030

    Last Modified: 21 Nov 2024

    An authentication bypass by capture-replay vulnerability [CWE-294] in FortiClient EMS versions 7.0.1 and below and 6.4.4 and below may allow an unauthenticated attacker to impersonate an existing user by intercepting and re-using valid SAML authentication messages.

    Published: 8 Dec 2021
    7.8
    High

    CVE-2021-41021

    Last Modified: 21 Nov 2024

    A privilege escalation vulnerability in FortiNAC versions 8.8.8 and below and 9.1.2 and below may allow an admin user to escalate the privileges to root via the sudo command.

    Published: 8 Dec 2021
    9.8
    Critical

    CVE-2021-41063

    Last Modified: 21 Nov 2024

    SQL injection vulnerability was discovered in Aanderaa GeoView Webservice prior to version 2.1.3 that could allow an unauthenticated attackers to execute arbitrary commands.

    Published: 8 Dec 2021
    9.8
    Critical

    CVE-2021-27860

    Last Modified: 24 Oct 2025

    A vulnerability in the web management interface of FatPipe WARP, IPVPN, and MPVPN software prior to versions 10.1.2r60p92 and 10.2.2r44p1 allows a remote, unauthenticated attacker to upload a file to any location on the filesystem. The FatPipe advisory identifier for this vulnerability is FPSA006.

    Published: 8 Dec 2021
    6.5
    Medium

    CVE-2021-41090

    Last Modified: 21 Nov 2024

    Grafana Agent is a telemetry collector for sending metrics, logs, and trace data to the opinionated Grafana observability stack. Prior to versions 0.20.1 and 0.21.2, inline secrets defined within a metrics instance config are exposed in plaintext over two endpoints: metrics instance configs defined in the base YAML file are exposed at `/-/config` and metrics instance configs defined for the scraping service are exposed at `/agent/api/v1/configs/:key`. Inline secrets will be exposed to anyone being able to reach these endpoints. If HTTPS with client authentication is not configured, these endpoints are accessible to unauthenticated users. Secrets found in these sections are used for delivering metrics to a Prometheus Remote Write system, authenticating against a system for discovering Prometheus targets, and authenticating against a system for collecting metrics. This does not apply for non-inlined secrets, such as `*_file` based secrets. This issue is patched in Grafana Agent versions 0.20.1 and 0.21.2. A few workarounds are available. Users who cannot upgrade should use non-inline secrets where possible. Users may also desire to restrict API access to Grafana Agent with some combination of restricting the network interfaces Grafana Agent listens on through `http_listen_address` in the `server` block, configuring Grafana Agent to use HTTPS with client authentication, and/or using firewall rules to restrict external access to Grafana Agent's API.

    Published: 8 Dec 2021
    9.8
    Critical

    CVE-2021-3815

    Last Modified: 21 Nov 2024

    utils.js is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

    Published: 8 Dec 2021
    7.1
    High

    CVE-2021-42110

    Last Modified: 30 May 2025

    An issue was discovered in Allegro Windows (formerly Popsy Windows) before 3.3.4156.1. A standard user can escalate privileges to SYSTEM if the FTP module is installed, because of DLL hijacking.

    Published: 8 Dec 2021