CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2021-24698

    Last Modified: 21 Nov 2024

    The Simple Download Monitor WordPress plugin before 3.9.6 allows users with a role as low as Contributor to remove thumbnails from downloads they do not own, even if they cannot normally edit the download.

    Published: 8 Nov 2021
    6.1
    Medium

    CVE-2021-24697

    Last Modified: 21 Nov 2024

    The Simple Download Monitor WordPress plugin before 3.9.5 does not escape the 1) sdm_active_tab GET parameter and 2) sdm_stats_start_date/sdm_stats_end_date POST parameters before outputting them back in attributes, leading to Reflected Cross-Site Scripting issues

    Published: 8 Nov 2021
    7.5
    High

    CVE-2021-24695

    Last Modified: 21 Nov 2024

    The Simple Download Monitor WordPress plugin before 3.9.6 saves logs in a predictable location, and does not have any authentication or authorisation in place to prevent unauthenticated users to download and read the logs containing Sensitive Information such as IP Addresses and Usernames

    Published: 8 Nov 2021
    9
    Critical

    CVE-2021-24693

    Last Modified: 21 Nov 2024

    The Simple Download Monitor WordPress plugin before 3.9.5 does not escape the "File Thumbnail" post meta before outputting it in some pages, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks. Given the that XSS is triggered even when the Download is in a review state, contributor could make JavaScript code execute in a context of a reviewer such as admin and make them create a rogue admin account, or install a malicious plugin

    Published: 8 Nov 2021
    6.5
    Medium

    CVE-2021-24674

    Last Modified: 21 Nov 2024

    The Genie WP Favicon WordPress plugin through 0.5.2 does not have CSRF in place when updating the favicon, which could allow attackers to make a logged in admin change it via a CSRF attack

    Published: 8 Nov 2021
    8.8
    High

    CVE-2021-24669

    Last Modified: 21 Nov 2024

    The MAZ Loader – Preloader Builder for WordPress plugin before 1.3.3 does not validate or escape the loader_id parameter of the mzldr shortcode, which allows users with a role as low as Contributor to perform SQL injection.

    Published: 8 Nov 2021
    4.8
    Medium

    CVE-2021-24664

    Last Modified: 21 Nov 2024

    The School Management System – WPSchoolPress WordPress plugin before 2.1.17 sanitise some fields using sanitize_text_field() but does not escape them before outputting in attributes, resulting in Stored Cross-Site Scripting issues.

    Published: 8 Nov 2021
    8.1
    High

    CVE-2021-24647

    Last Modified: 21 Nov 2024

    The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.1.7.6 has a flaw in the social login implementation, allowing unauthenticated attacker to login as any user on the site by only knowing their user ID or username

    Published: 8 Nov 2021
    4.8
    Medium

    CVE-2021-24646

    Last Modified: 21 Nov 2024

    The Booking.com Banner Creator WordPress plugin before 1.4.3 does not properly sanitize inputs when creating banners, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 8 Nov 2021
    4.8
    Medium

    CVE-2021-24645

    Last Modified: 21 Nov 2024

    The Booking.com Product Helper WordPress plugin before 1.0.2 does not sanitize and escape Product Code when creating Product Shortcode, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 8 Nov 2021
    8.8
    High

    CVE-2021-24631

    Last Modified: 21 Nov 2024

    The Unlimited PopUps WordPress plugin through 4.5.3 does not sanitise or escape the did GET parameter before using it in a SQL statement, available to users as low as editor, leading to an authenticated SQL Injection

    Published: 8 Nov 2021
    8.8
    High

    CVE-2021-24630

    Last Modified: 21 Nov 2024

    The Schreikasten WordPress plugin through 0.14.18 does not sanitise or escape the id GET parameter before using it in SQL statements in the comments dashboard from various actions, leading to authenticated SQL Injections which can be exploited by users as low as author

    Published: 8 Nov 2021
    7.2
    High

    CVE-2021-24629

    Last Modified: 21 Nov 2024

    The Post Content XMLRPC WordPress plugin through 1.0 does not sanitise or escape multiple GET/POST parameters before using them in SQL statements in the admin dashboard, leading to an authenticated SQL Injections

    Published: 8 Nov 2021
    7.2
    High

    CVE-2021-24628

    Last Modified: 21 Nov 2024

    The Wow Forms WordPress plugin through 3.1.3 does not sanitise or escape a 'did' GET parameter before using it in a SQL statement, when deleting a form in the admin dashboard, leading to an authenticated SQL injection

    Published: 8 Nov 2021
    7.2
    High

    CVE-2021-24627

    Last Modified: 21 Nov 2024

    The G Auto-Hyperlink WordPress plugin through 1.0.1 does not sanitise or escape an 'id' GET parameter before using it in a SQL statement, to select data to be displayed in the admin dashboard, leading to an authenticated SQL injection

    Published: 8 Nov 2021
    8.8
    High

    CVE-2021-24626

    Last Modified: 21 Nov 2024

    The Chameleon CSS WordPress plugin through 1.2 does not have any CSRF and capability checks in all its AJAX calls, allowing any authenticated user, such as subscriber to call them and perform unauthorised actions. One of AJAX call, remove_css, also does not sanitise or escape the css_id POST parameter before using it in a SQL statement, leading to a SQL Injection

    Published: 8 Nov 2021
    7.2
    High

    CVE-2021-24625

    Last Modified: 21 Nov 2024

    The SpiderCatalog WordPress plugin through 1.7.3 does not sanitise or escape the 'parent' and 'ordering' parameters from the admin dashboard before using them in a SQL statement, leading to a SQL injection when adding a category

    Published: 8 Nov 2021
    4.8
    Medium

    CVE-2021-24616

    Last Modified: 21 Nov 2024

    The AddToAny Share Buttons WordPress plugin before 1.7.48 does not escape its Image URL button setting, which could lead allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 8 Nov 2021
    4.8
    Medium

    CVE-2021-24607

    Last Modified: 21 Nov 2024

    The Storefront Footer Text WordPress plugin through 1.0.1 does not sanitize and escape the "Footer Credit Text" added to pages, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered-html capability is disallowed.

    Published: 8 Nov 2021
    4.8
    Medium

    CVE-2021-24594

    Last Modified: 21 Nov 2024

    The Translate WordPress – Google Language Translator WordPress plugin before 6.0.12 does not sanitise and escape some of its settings before outputting it in various pages, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 8 Nov 2021
    8.8
    High

    CVE-2021-24575

    Last Modified: 21 Nov 2024

    The School Management System – WPSchoolPress WordPress plugin before 2.1.10 does not properly sanitize or use prepared statements before using POST variable in SQL queries, leading to SQL injection in multiple actions available to various authenticated users, from simple subscribers/students to teachers and above.

    Published: 8 Nov 2021
    7.2
    High

    CVE-2021-24537

    Last Modified: 21 Nov 2024

    The Similar Posts WordPress plugin through 3.1.5 allow high privilege users to execute arbitrary PHP code in an hardened environment (ie with DISALLOW_FILE_EDIT, DISALLOW_FILE_MODS and DISALLOW_UNFILTERED_HTML set to true) via the 'widget_rrm_similar_posts_condition' widget setting of the plugin.

    Published: 8 Nov 2021
    6.5
    Medium

    CVE-2021-29843

    Last Modified: 21 Nov 2024

    IBM MQ 9.1 LTS, 9.1 CD, 9.2 LTS, and 9.2CD is vulnerable to a denial of service attack caused by an issue processing message properties. IBM X-Force ID: 205203.

    Published: 8 Nov 2021
    5.4
    Medium

    CVE-2021-29735

    Last Modified: 21 Nov 2024

    IBM Security Guardium 10.5, 10.6, 11.0, 11.1, 11.2, and 11.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

    Published: 8 Nov 2021
    5.9
    Medium

    CVE-2020-4160

    Last Modified: 21 Nov 2024

    IBM QRadar Network Security 5.4.0 and 5.5.0 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 174340.

    Published: 8 Nov 2021
    5.4
    Medium

    CVE-2020-4153

    Last Modified: 21 Nov 2024

    IBM QRadar Network Security 5.4.0 and 5.5.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 174269.

    Published: 8 Nov 2021
    5.9
    Medium

    CVE-2020-4152

    Last Modified: 21 Nov 2024

    IBM QRadar Network Security 5.4.0 and 5.5.0 transmits sensitive or security-critical data in cleartext in a communication channel that can be obtained using man in the middle techniques. IBM X-Force ID: 17467.

    Published: 8 Nov 2021
    6.1
    Medium

    CVE-2021-42770

    Last Modified: 21 Nov 2024

    A Cross-site scripting (XSS) vulnerability was discovered in OPNsense before 21.7.4 via the LDAP attribute return in the authentication tester.

    Published: 8 Nov 2021
    9.8
    Critical

    CVE-2021-28024

    Last Modified: 21 Nov 2024

    Unauthorized system access in the login form in ServiceTonic Helpdesk software version < 9.0.35937 allows attacker to login without using a password.

    Published: 8 Nov 2021
    9.8
    Critical

    CVE-2021-28023

    Last Modified: 21 Nov 2024

    Arbitrary file upload in Service import feature in ServiceTonic Helpdesk software version < 9.0.35937 allows a malicious user to execute JSP code by uploading a zip that extracts files in relative paths.

    Published: 8 Nov 2021
    7.5
    High

    CVE-2021-28022

    Last Modified: 21 Nov 2024

    Blind SQL injection in the login form in ServiceTonic Helpdesk software < 9.0.35937 allows attacker to exfiltrate information via specially crafted HQL-compatible time-based SQL queries.

    Published: 8 Nov 2021
    9.8
    Critical

    CVE-2021-25979

    Last Modified: 30 Apr 2025

    Apostrophe CMS versions prior to 3.3.1 did not invalidate existing login sessions when disabling a user account or changing the password, creating a situation in which a device compromised by a third party could not be locked out by those means. As a mitigation for older releases the user account in question can be archived (3.x) or moved to the trash (2.x and earlier) which does disable the existing session.

    Published: 8 Nov 2021
    7.5
    High

    CVE-2021-39182

    Last Modified: 21 Nov 2024

    EnroCrypt is a Python module for encryption and hashing. Prior to version 1.1.4, EnroCrypt used the MD5 hashing algorithm in the hashing file. Beginners who are unfamiliar with hashes can face problems as MD5 is considered an insecure hashing algorithm. The vulnerability is patched in v1.1.4 of the product. As a workaround, users can remove the `MD5` hashing function from the file `hashing.py`.

    Published: 8 Nov 2021
    6.1
    Medium

    CVE-2021-41733

    Last Modified: 21 Nov 2024

    Oppia 3.1.4 does not verify that certain URLs are valid before navigating to them.

    Published: 8 Nov 2021
    6.5
    Medium

    CVE-2021-22051

    Last Modified: 21 Nov 2024

    Applications using Spring Cloud Gateway are vulnerable to specifically crafted requests that could make an extra request on downstream services. Users of affected versions should apply the following mitigation: 3.0.x users should upgrade to 3.0.5+, 2.2.x users should upgrade to 2.2.10.RELEASE or newer.

    Published: 8 Nov 2021
    5.5
    Medium

    CVE-2021-37850

    Last Modified: 21 Nov 2024

    ESET was made aware of a vulnerability in its consumer and business products for macOS that enables a user logged on to the system to stop the ESET daemon, effectively disabling the protection of the ESET security product until a system reboot.

    Published: 8 Nov 2021
    5.3
    Medium

    CVE-2021-32483

    Last Modified: 21 Nov 2024

    Cloudera Manager 7.2.4 has Incorrect Access Control, allowing Escalation of Privileges to view the restricted Dashboard.

    Published: 8 Nov 2021
    9.8
    Critical

    CVE-2021-30132

    Last Modified: 21 Nov 2024

    Cloudera Manager 7.2.4 has Incorrect Access Control, allowing Escalation of Privileges.

    Published: 8 Nov 2021
    6.1
    Medium

    CVE-2021-29243

    Last Modified: 21 Nov 2024

    Cloudera Manager 5.x, 6.x, 7.1.x, 7.2.x, and 7.3.x allows XSS.

    Published: 8 Nov 2021
    6.1
    Medium

    CVE-2021-32482

    Last Modified: 21 Nov 2024

    Cloudera Manager 5.x, 6.x, 7.1.x, 7.2.x, and 7.3.x allows XSS via the path parameter.

    Published: 8 Nov 2021
    6.1
    Medium

    CVE-2021-29994

    Last Modified: 21 Nov 2024

    Cloudera Hue 4.6.0 allows XSS.

    Published: 8 Nov 2021
    6.1
    Medium

    CVE-2021-32481

    Last Modified: 21 Nov 2024

    Cloudera Hue 4.6.0 allows XSS via the type parameter.

    Published: 8 Nov 2021
    7.5
    High

    CVE-2021-42370

    Last Modified: 21 Nov 2024

    A password mismanagement situation exists in XoruX LPAR2RRD and STOR2RRD before 7.30 because cleartext information is present in HTML password input fields in the device properties. (Viewing the passwords requires configuring a web browser to display HTML password input fields.)

    Published: 8 Nov 2021
    9.8
    Critical

    CVE-2021-42371

    Last Modified: 21 Nov 2024

    lpar2rrd is a hardcoded system account in XoruX LPAR2RRD and STOR2RRD before 7.30.

    Published: 8 Nov 2021
    8.8
    High

    CVE-2021-42372

    Last Modified: 21 Nov 2024

    A shell command injection in the HW Events SNMP community in XoruX LPAR2RRD and STOR2RRD before 7.30 allows authenticated remote attackers to execute arbitrary shell commands as the user running the service.

    Published: 8 Nov 2021
    6.1
    Medium

    CVE-2021-42078

    Last Modified: 21 Nov 2024

    PHP Event Calendar through 2021-11-04 allows persistent cross-site scripting (XSS), as demonstrated by the /server/ajax/events_manager.php title parameter. This can be exploited by an adversary in multiple ways, e.g., to perform actions on the page in the context of other users, or to deface the site.

    Published: 8 Nov 2021
    9.8
    Critical

    CVE-2021-42077

    Last Modified: 21 Nov 2024

    PHP Event Calendar before 2021-09-03 allows SQL injection, as demonstrated by the /server/ajax/user_manager.php username parameter. This can be used to execute SQL statements directly on the database, allowing an adversary in some cases to completely compromise the database system. It can also be used to bypass the login form.

    Published: 8 Nov 2021
    7.5
    High

    CVE-2021-42076

    Last Modified: 21 Nov 2024

    An issue was discovered in Barrier before 2.3.4. An attacker can cause memory exhaustion in the barriers component (aka the server-side implementation of Barrier) and barrierc by sending long TCP messages.

    Published: 8 Nov 2021
    7.5
    High

    CVE-2021-42075

    Last Modified: 21 Nov 2024

    An issue was discovered in Barrier before 2.3.4. The barriers component (aka the server-side implementation of Barrier) does not correctly close file descriptors for established TCP connections. An unauthenticated remote attacker can thus cause file descriptor exhaustion in the server process, leading to denial of service.

    Published: 8 Nov 2021
    7.5
    High

    CVE-2021-42074

    Last Modified: 21 Nov 2024

    An issue was discovered in Barrier before 2.3.4. An unauthenticated attacker can cause a segmentation fault in the barriers component (aka the server-side implementation of Barrier) by quickly opening and closing TCP connections while sending a Hello message for each TCP session.

    Published: 8 Nov 2021