CVE Feed

    Dashboard / CVE

    6.3
    Medium

    CVE-2021-41289

    Last Modified: 21 Nov 2024

    ASUS P453UJ contains the Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability. With a general user’s permission, local attackers can modify the BIOS by replacing or filling in the content of the designated Memory DataBuffer, which causing a failure of integrity verification and further resulting in a failure to boot.

    Published: 15 Nov 2021
    7.5
    High

    CVE-2021-43620

    Last Modified: 21 Nov 2024

    An issue was discovered in the fruity crate through 0.2.0 for Rust. Security-relevant validation of filename extensions is plausibly affected. Methods of NSString for conversion to a string may return a partial result. Because they call CStr::from_ptr on a pointer to the string buffer, the string is terminated at the first '\0' byte, which might not be the end of the string.

    Published: 15 Nov 2021
    5.3
    Medium

    CVE-2021-21707

    Last Modified: 21 Nov 2024

    In PHP versions 7.3.x below 7.3.33, 7.4.x below 7.4.26 and 8.0.x below 8.0.13, certain XML parsing functions, like simplexml_load_file(), URL-decode the filename passed to them. If that filename contains URL-encoded NUL character, this may cause the function to interpret this as the end of the filename, thus interpreting the filename differently from what the user intended, which may lead it to reading a different file than intended.

    Published: 15 Nov 2021
    7.8
    High

    CVE-2021-3962

    Last Modified: 21 Nov 2024

    A flaw was found in ImageMagick where it did not properly sanitize certain input before using it to invoke convert processes. This flaw allows an attacker to create a specially crafted image that leads to a use-after-free vulnerability when processed by ImageMagick. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

    Published: 15 Nov 2021
    7.5
    High

    CVE-2021-41817

    Last Modified: 21 Nov 2024

    Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.

    Published: 15 Nov 2021
    6.7
    Medium

    CVE-2021-0157

    Last Modified: 21 Nov 2024

    Insufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 15 Nov 2021
    4.1
    Medium

    CVE-2021-4001

    Last Modified: 21 Nov 2024

    A race condition was found in the Linux kernel's ebpf verifier between bpf_map_update_elem and bpf_map_freeze due to a missing lock in kernel/bpf/syscall.c. In this flaw, a local user with a special privilege (cap_sys_admin or cap_bpf) can modify the frozen mapped address space. This flaw affects kernel versions prior to 5.16 rc2.

    Published: 15 Nov 2021
    6.7
    Medium

    CVE-2021-43975

    Last Modified: 21 Nov 2024

    In the Linux kernel through 5.15.2, hw_atl_utils_fw_rpc_wait in drivers/net/ethernet/aquantia/atlantic/hw_atl/hw_atl_utils.c allows an attacker (who can introduce a crafted device) to trigger an out-of-bounds write via a crafted length value.

    Published: 15 Nov 2021
    6.7
    Medium

    CVE-2021-0158

    Last Modified: 21 Nov 2024

    Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 15 Nov 2021
    7.8
    High

    CVE-2023-1252

    Last Modified: 23 Apr 2025

    A use-after-free flaw was found in the Linux kernel’s Ext4 File System in how a user triggers several file operations simultaneously with the overlay FS usage. This flaw allows a local user to crash or potentially escalate their privileges on the system. Only if patch 9a2544037600 ("ovl: fix use after free in struct ovl_aio_req") not applied yet, the kernel could be affected.

    Published: 15 Nov 2021
    9.1
    Critical

    CVE-2021-41244

    Last Modified: 21 Nov 2024

    Grafana is an open-source platform for monitoring and observability. In affected versions when the fine-grained access control beta feature is enabled and there is more than one organization in the Grafana instance admins are able to access users from other organizations. Grafana 8.0 introduced a mechanism which allowed users with the Organization Admin role to list, add, remove, and update users’ roles in other organizations in which they are not an admin. With fine-grained access control enabled, organization admins can list, add, remove and update users' roles in another organization, where they do not have organization admin role. All installations between v8.0 and v8.2.3 that have fine-grained access control beta enabled and more than one organization should be upgraded as soon as possible. If you cannot upgrade, you should turn off the fine-grained access control using a feature flag.

    Published: 15 Nov 2021
    7.5
    High

    CVE-2021-43618

    Last Modified: 21 Nov 2024

    GNU Multiple Precision Arithmetic Library (GMP) through 6.2.1 has an mpz/inp_raw.c integer overflow and resultant buffer overflow via crafted input, leading to a segmentation fault on 32-bit platforms.

    Published: 15 Nov 2021
    9.8
    Critical

    CVE-2021-43272

    Last Modified: 21 Nov 2024

    An improper handling of exceptional conditions vulnerability exists in Open Design Alliance ODA Viewer sample before 2022.11. ODA Viewer continues to process invalid or malicious DWF files instead of stopping upon an exception. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43280

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow vulnerability exists in the DWF file reading procedure in Open Design Alliance Drawings SDK before 2022.8. The issue results from the lack of proper validation of the length of user-supplied data before copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43390

    Last Modified: 21 Nov 2024

    An Out-of-Bounds Write vulnerability exists when reading a DGN file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists within the parsing of DGN files. Crafted data in a DGN file and lack of proper validation of input data can trigger a write operation past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43279

    Last Modified: 21 Nov 2024

    An out-of-bounds write vulnerability exists in the U3D file reading procedure in Open Design Alliance PRC SDK before 2022.10. Crafted data in a U3D file can trigger a write past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process.

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43278

    Last Modified: 21 Nov 2024

    An Out-of-bounds Read vulnerability exists in the OBJ file reading procedure in Open Design Alliance Drawings SDK before 2022.11. The lack of validating the input length can trigger a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43277

    Last Modified: 21 Nov 2024

    An out-of-bounds read vulnerability exists in the U3D file reading procedure in Open Design Alliance PRC SDK before 2022.10. Crafted data in a U3D file can trigger a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process.

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43276

    Last Modified: 21 Nov 2024

    An Out-of-bounds Read vulnerability exists in Open Design Alliance ODA Viewer before 2022.8. Crafted data in a DWF file can trigger a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43275

    Last Modified: 21 Nov 2024

    A Use After Free vulnerability exists in the DGN file reading procedure in Open Design Alliance Drawings SDK before 2022.8. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43274

    Last Modified: 21 Nov 2024

    A Use After Free Vulnerability exists in the Open Design Alliance Drawings SDK before 2022.11. The specific flaw exists within the parsing of DWF files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process.

    Published: 14 Nov 2021
    3.3
    Low

    CVE-2021-43273

    Last Modified: 21 Nov 2024

    An Out-of-bounds Read vulnerability exists in the DGN file reading procedure in Open Design Alliance Drawings SDK before 2022.11. Crafted data in a DGN file and lack of verification of input data can trigger a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published: 14 Nov 2021
    7.1
    High

    CVE-2021-41057

    Last Modified: 21 Nov 2024

    In WIBU CodeMeter Runtime before 7.30a, creating a crafted CmDongles symbolic link will overwrite the linked file without checking permissions.

    Published: 14 Nov 2021
    8.8
    High

    CVE-2021-26795

    Last Modified: 21 Nov 2024

    A SQL Injection vulnerability in /appliance/shiftmgn.php in TalariaX sendQuick Alert Plus Server Admin 4.3 before 8HF11 allows attackers to obtain sensitive information via a Roster Time to Roster Management.

    Published: 14 Nov 2021
    9.8
    Critical

    CVE-2020-16152

    Last Modified: 21 Nov 2024

    The NetConfig UI administrative interface in Extreme Networks ExtremeWireless Aerohive HiveOS and IQ Engine through 10.0r8a allows attackers to execute PHP code as the root user via remote HTTP requests that insert this code into a log file and then traverse to that file.

    Published: 14 Nov 2021
    6.1
    Medium

    CVE-2020-14424

    Last Modified: 21 Nov 2024

    Cacti before 1.2.18 allows remote attackers to trigger XSS via template import for the midwinter theme.

    Published: 14 Nov 2021
    9.8
    Critical

    CVE-2021-43617

    Last Modified: 21 Nov 2024

    Laravel Framework through 8.70.2 does not sufficiently block the upload of executable PHP content because Illuminate/Validation/Concerns/ValidatesAttributes.php lacks a check for .phar files, which are handled as application/x-httpd-php on systems based on Debian. NOTE: this CVE Record is for Laravel Framework, and is unrelated to any reports concerning incorrectly written user applications for image upload.

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43391

    Last Modified: 21 Nov 2024

    An Out-of-Bounds Read vulnerability exists when reading a DXF file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists within the parsing of DXF files. Crafted data in a DXF file (an invalid dash counter in line types) can trigger a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published: 14 Nov 2021
    7.8
    High

    CVE-2021-43336

    Last Modified: 21 Nov 2024

    An Out-of-Bounds Write vulnerability exists when reading a DXF or DWG file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists within the parsing of DXF and DWG files. Crafted data in a DXF or DWG file (an invalid number of properties) can trigger a write operation past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process.

    Published: 14 Nov 2021
    9.8
    Critical

    CVE-2021-41653

    Last Modified: 21 Nov 2024

    The PING function on the TP-Link TL-WR840N EU v5 router with firmware through TL-WR840N(EU)_V5_171211 is vulnerable to remote code execution via a crafted payload in an IP address input field.

    Published: 13 Nov 2021
    6.5
    Medium

    CVE-2021-3683

    Last Modified: 21 Nov 2024

    showdoc is vulnerable to Cross-Site Request Forgery (CSRF)

    Published: 13 Nov 2021
    5.4
    Medium

    CVE-2021-3775

    Last Modified: 21 Nov 2024

    showdoc is vulnerable to Cross-Site Request Forgery (CSRF)

    Published: 13 Nov 2021
    5.4
    Medium

    CVE-2021-3776

    Last Modified: 21 Nov 2024

    showdoc is vulnerable to Cross-Site Request Forgery (CSRF)

    Published: 13 Nov 2021
    5.7
    Medium

    CVE-2021-3915

    Last Modified: 21 Nov 2024

    bookstack is vulnerable to Unrestricted Upload of File with Dangerous Type

    Published: 13 Nov 2021
    4.3
    Medium

    CVE-2021-3921

    Last Modified: 21 Nov 2024

    firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)

    Published: 13 Nov 2021
    4.3
    Medium

    CVE-2021-3931

    Last Modified: 21 Nov 2024

    snipe-it is vulnerable to Cross-Site Request Forgery (CSRF)

    Published: 13 Nov 2021
    4.3
    Medium

    CVE-2021-3932

    Last Modified: 21 Nov 2024

    twill is vulnerable to Cross-Site Request Forgery (CSRF)

    Published: 13 Nov 2021
    5.4
    Medium

    CVE-2021-3938

    Last Modified: 21 Nov 2024

    snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

    Published: 13 Nov 2021
    6.1
    Medium

    CVE-2021-3945

    Last Modified: 21 Nov 2024

    django-helpdesk is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

    Published: 13 Nov 2021
    8.1
    High

    CVE-2021-38684

    Last Modified: 21 Nov 2024

    A stack buffer overflow vulnerability has been reported to affect QNAP NAS running Multimedia Console. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following versions of Multimedia Console: Multimedia Console 1.4.3 ( 2021/10/05 ) and later Multimedia Console 1.5.3 ( 2021/10/05 ) and later

    Published: 13 Nov 2021
    6.9
    Medium

    CVE-2021-34357

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QmailAgent. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions of QmailAgent: QmailAgent 3.0.2 ( 2021/08/25 ) and later

    Published: 13 Nov 2021
    7.1
    High

    CVE-2021-4090

    Last Modified: 25 Aug 2026

    An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4_decode_bitmap4 in fs/nfsd/nfs4xdr.c. In this flaw, a local attacker with user privilege may gain access to out-of-bounds memory, leading to a system integrity and confidentiality threat.

    Published: 13 Nov 2021
    7.5
    High

    CVE-2021-36325

    Last Modified: 21 Nov 2024

    Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

    Published: 12 Nov 2021
    7.5
    High

    CVE-2021-36324

    Last Modified: 21 Nov 2024

    Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

    Published: 12 Nov 2021
    7.5
    High

    CVE-2021-36323

    Last Modified: 21 Nov 2024

    Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

    Published: 12 Nov 2021
    6.8
    Medium

    CVE-2021-36315

    Last Modified: 21 Nov 2024

    Dell EMC PowerScale Nodes contain a hardware design flaw. This may allow a local unauthenticated user to escalate privileges. This also affects Compliance mode and for Compliance mode clusters, is a critical vulnerability. Dell EMC recommends applying the workaround at your earliest opportunity.

    Published: 12 Nov 2021
    6.5
    Medium

    CVE-2021-36305

    Last Modified: 21 Nov 2024

    Dell PowerScale OneFS contains an Unsynchronized Access to Shared Data in a Multithreaded Context in SMB CA handling. An authenticated user of SMB on a cluster with CA could potentially exploit this vulnerability, leading to a denial of service over SMB.

    Published: 12 Nov 2021
    7.5
    High

    CVE-2021-21528

    Last Modified: 21 Nov 2024

    Dell EMC PowerScale OneFS versions 9.1.0, 9.2.0.x, 9.2.1.x contain an Exposure of Information through Directory Listing vulnerability. This vulnerability is triggered when upgrading from a previous versions.

    Published: 12 Nov 2021
    6.7
    Medium

    CVE-2021-3843

    Last Modified: 21 Nov 2024

    A potential vulnerability in the SMI function to access EEPROM in some ThinkPad models may allow an attacker with local access and elevated privileges to execute arbitrary code.

    Published: 12 Nov 2021
    8.8
    High

    CVE-2021-3840

    Last Modified: 21 Nov 2024

    A dependency confusion vulnerability was reported in the Antilles open-source software prior to version 1.0.1 that could allow for remote code execution during installation due to a package listed in requirements.txt not existing in the public package index (PyPi). MITRE classifies this weakness as an Uncontrolled Search Path Element (CWE-427) in which a private package dependency may be replaced by an unauthorized package of the same name published to a well-known public repository such as PyPi. The configuration has been updated to only install components built by Antilles, removing all other public package indexes. Additionally, the antilles-tools dependency has been published to PyPi.

    Published: 12 Nov 2021