CVE Feed

    Dashboard / CVE

    3.2
    Low

    CVE-2021-42754

    Last Modified: 21 Nov 2024

    An improper control of generation of code vulnerability [CWE-94] in FortiClientMacOS versions 7.0.0 and below and 6.4.5 and below may allow an authenticated attacker to hijack the MacOS camera without the user permission via the malicious dylib file.

    Published: 2 Nov 2021
    8.8
    High

    CVE-2021-36184

    Last Modified: 21 Nov 2024

    A improper neutralization of Special Elements used in an SQL Command ('SQL Injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to disclosure device, users and database information via crafted HTTP requests.

    Published: 2 Nov 2021
    8.8
    High

    CVE-2021-36185

    Last Modified: 21 Nov 2024

    A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests.

    Published: 2 Nov 2021
    7.4
    High

    CVE-2021-36183

    Last Modified: 21 Nov 2024

    An improper authorization vulnerability [CWE-285] in FortiClient for Windows versions 7.0.1 and below and 6.4.2 and below may allow a local unprivileged attacker to escalate their privileges to SYSTEM via the named pipe responsible for Forticlient updates.

    Published: 2 Nov 2021
    8.8
    High

    CVE-2021-36186

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow in Fortinet FortiWeb version 6.4.0, version 6.3.15 and below, 6.2.5 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests

    Published: 2 Nov 2021
    5.3
    Medium

    CVE-2021-36187

    Last Modified: 21 Nov 2024

    A uncontrolled resource consumption in Fortinet FortiWeb version 6.4.0, version 6.3.15 and below, 6.2.5 and below allows attacker to cause a denial of service for webserver daemon via crafted HTTP requests

    Published: 2 Nov 2021
    5.5
    Medium

    CVE-2021-41023

    Last Modified: 21 Nov 2024

    A unprotected storage of credentials in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows an authenticated user to disclosure agent password due to plaintext credential storage in log files

    Published: 2 Nov 2021
    7.8
    High

    CVE-2021-41022

    Last Modified: 21 Nov 2024

    A improper privilege management in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows attacker to execute privileged code or commands via powershell scripts

    Published: 2 Nov 2021
    4.3
    Medium

    CVE-2021-36174

    Last Modified: 21 Nov 2024

    A memory allocation with excessive size value vulnerability in the license verification function of FortiPortal before 6.0.6 may allow an attacker to perform a denial of service attack via specially crafted license blobs.

    Published: 2 Nov 2021
    6.1
    Medium

    CVE-2021-36176

    Last Modified: 21 Nov 2024

    Multiple uncontrolled resource consumption vulnerabilities in the web interface of FortiPortal before 6.0.6 may allow a single low-privileged user to induce a denial of service via multiple HTTP requests.

    Published: 2 Nov 2021
    8.6
    High

    CVE-2021-41238

    Last Modified: 21 Nov 2024

    Hangfire is an open source system to perform background job processing in a .NET or .NET Core applications. No Windows Service or separate process required. Dashboard UI in Hangfire.Core uses authorization filters to protect it from showing sensitive data to unauthorized users. By default when no custom authorization filters specified, `LocalRequestsOnlyAuthorizationFilter` filter is being used to allow only local requests and prohibit all the remote requests to provide sensible, protected by default settings. However due to the recent changes, in version 1.7.25 no authorization filters are used by default, allowing remote requests to succeed. If you are using `UseHangfireDashboard` method with default `DashboardOptions.Authorization` property value, then your installation is impacted. If any other authorization filter is specified in the `DashboardOptions.Authorization` property, the you are not impacted. Patched versions (1.7.26) are available both on Nuget.org and as a tagged release on the github repo. Default authorization rules now prohibit remote requests by default again by including the `LocalRequestsOnlyAuthorizationFilter` filter to the default settings. Please upgrade to the newest version in order to mitigate the issue. For users who are unable to upgrade it is possible to mitigate the issue by using the `LocalRequestsOnlyAuthorizationFilter` explicitly when configuring the Dashboard UI.

    Published: 2 Nov 2021
    6.5
    Medium

    CVE-2021-32595

    Last Modified: 21 Nov 2024

    Multiple uncontrolled resource consumption vulnerabilities in the web interface of FortiPortal before 6.0.6 may allow a single low-privileged user to induce a denial of service via multiple HTTP requests.

    Published: 2 Nov 2021
    4.1
    Medium

    CVE-2020-12814

    Last Modified: 21 Nov 2024

    A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiAnalyzer version 6.0.6 and below, version 6.4.4 allows attacker to execute unauthorized code or commands via specifically crafted requests to the web GUI.

    Published: 2 Nov 2021
    8.1
    High

    CVE-2021-41232

    Last Modified: 21 Nov 2024

    Thunderdome is an open source agile planning poker tool in the theme of Battling for points. In affected versions there is an LDAP injection vulnerability which affects instances with LDAP authentication enabled. The provided username is not properly escaped. This issue has been patched in version 1.16.3. If users are unable to update they should disable the LDAP feature if in use.

    Published: 2 Nov 2021
    6.3
    Medium

    CVE-2021-26107

    Last Modified: 21 Nov 2024

    An improper access control vulnerability [CWE-284] in FortiManager versions 6.4.4 and 6.4.5 may allow an authenticated attacker with a restricted user profile to modify the VPN tunnel status of other VDOMs using VPN Manager.

    Published: 2 Nov 2021
    4.1
    Medium

    CVE-2020-15940

    Last Modified: 21 Nov 2024

    An improper neutralization of input vulnerability [CWE-79] in FortiClientEMS versions 6.4.1 and below and 6.2.9 and below may allow a remote authenticated attacker to inject malicious script/tags via the name parameter of various sections of the server.

    Published: 2 Nov 2021
    9.6
    Critical

    CVE-2020-23754

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in infusions/member_poll_panel/poll_admin.php in PHP-Fusion 9.03.50, allows attackers to execute arbitrary code, via the polls feature.

    Published: 2 Nov 2021
    9.6
    Critical

    CVE-2020-23719

    Last Modified: 21 Nov 2024

    Cross site scripting (XSS) vulnerability in application/controllers/AdminController.php in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the bbsmeta parameter.

    Published: 2 Nov 2021
    9.6
    Critical

    CVE-2020-23718

    Last Modified: 21 Nov 2024

    Cross site scripting (XSS) vulnerability in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the route parameter to index.php.

    Published: 2 Nov 2021
    8.8
    High

    CVE-2020-23686

    Last Modified: 21 Nov 2024

    Cross site request forgery (CSRF) vulnerability in AyaCMS 3.1.2 allows attackers to change an administrators password or other unspecified impacts.

    Published: 2 Nov 2021
    9.8
    Critical

    CVE-2020-23685

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in 188Jianzhan v2.1.0, allows attackers to execute arbitrary code and gain escalated privileges, via the username parameter to login.php.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2020-21574

    Last Modified: 21 Nov 2024

    Buffer overflow vulnerability in YotsuyaNight c-http v0.1.0, allows attackers to cause a denial of service via a long url request which is passed to the delimitedread function.

    Published: 2 Nov 2021
    5.5
    Medium

    CVE-2020-21573

    Last Modified: 21 Nov 2024

    An issue was discoverered in in abhijitnathwani image-processing v0.1.0, allows local attackers to cause a denial of service via a crafted image file.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2020-21572

    Last Modified: 21 Nov 2024

    Buffer overflow vulnerability in function src_parser_trans_stage_1_2_3 trgil gilcc before commit 803969389ca9c06237075a7f8eeb1a19e6651759, allows attackers to cause a denial of service.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2020-20658

    Last Modified: 21 Nov 2024

    Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denail of service when trying to calloc an unexpectiedly large space.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2020-20657

    Last Modified: 21 Nov 2024

    Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denial of service via an unexpected packet while trying to connect.

    Published: 2 Nov 2021
    9.8
    Critical

    CVE-2020-18440

    Last Modified: 21 Nov 2024

    Buffer overflow vulnerability in framework/init.php in qinggan phpok 5.1, allows attackers to execute arbitrary code.

    Published: 2 Nov 2021
    9.1
    Critical

    CVE-2020-18439

    Last Modified: 21 Nov 2024

    An issue was discoverered in in function edit_save_f in framework/admin/tpl_control.php in qinggan phpok 5.1, allows attackers to write arbitrary files or get a shell.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2020-18438

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in qinggan phpok 5.1, allows attackers to disclose sensitive information, via the title parameter to admin.php.

    Published: 2 Nov 2021
    3.5
    Low

    CVE-2021-41019

    Last Modified: 21 Nov 2024

    An improper validation of certificate with host mismatch [CWE-297] vulnerability in FortiOS versions 6.4.6 and below may allow the connection to a malicious LDAP server via options in GUI, leading to disclosure of sensitive information, such as AD credentials.

    Published: 2 Nov 2021
    4.3
    Medium

    CVE-2021-36172

    Last Modified: 21 Nov 2024

    An improper restriction of XML external entity reference vulnerability in the parser of XML responses of FortiPortal before 6.0.6 may allow an attacker who controls the producer of XML reports consumed by FortiPortal to trigger a denial of service or read arbitrary files from the underlying file system by means of specifically crafted XML documents.

    Published: 2 Nov 2021
    3.1
    Low

    CVE-2021-36181

    Last Modified: 21 Nov 2024

    A concurrent execution using shared resource with improper Synchronization vulnerability ('Race Condition') in the customer database interface of FortiPortal before 6.0.6 may allow an authenticated, low-privilege user to bring the underlying database data into an inconsistent state via specific coordination of web requests.

    Published: 2 Nov 2021
    9.1
    Critical

    CVE-2021-38948

    Last Modified: 21 Nov 2024

    IBM InfoSphere Information Server 11.7 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 211402.

    Published: 2 Nov 2021
    8.8
    High

    CVE-2021-29888

    Last Modified: 21 Nov 2024

    IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 207123.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2021-29875

    Last Modified: 21 Nov 2024

    IBM InfoSphere Information Server 11.7 could allow an attacker to obtain sensitive information due to a insecure third party domain access vulnerability. IBM X-Force ID: 206572.

    Published: 2 Nov 2021
    5.4
    Medium

    CVE-2021-29771

    Last Modified: 21 Nov 2024

    IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

    Published: 2 Nov 2021
    5.4
    Medium

    CVE-2021-29738

    Last Modified: 21 Nov 2024

    IBM InfoSphere Data Flow Designer (IBM InfoSphere Information Server 11.7 ) is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 201302.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2021-29737

    Last Modified: 21 Nov 2024

    IBM InfoSphere Data Flow Designer Engine (IBM InfoSphere Information Server 11.7 ) component has improper validation of the REST API server certificate. IBM X-Force ID: 201301.

    Published: 2 Nov 2021
    9.8
    Critical

    CVE-2021-36794

    Last Modified: 21 Nov 2024

    In Siren Investigate before 11.1.4, when enabling the cluster feature of the Siren Alert application, TLS verifications are disabled globally in the Siren Investigate main process.

    Published: 2 Nov 2021
    4.3
    Medium

    CVE-2021-42568

    Last Modified: 21 Nov 2024

    Sonatype Nexus Repository Manager 3.x through 3.35.0 allows attackers to access the SSL Certificates Loading function via a low-privileged account.

    Published: 2 Nov 2021
    7.8
    High

    CVE-2021-36925

    Last Modified: 21 Nov 2024

    RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users to achieve an arbitrary read or write operation from/to physical memory (leading to Escalation of Privileges, Denial of Service, Code Execution, and Information Disclosure) via a crafted Device IO Control packet to a device.

    Published: 2 Nov 2021
    7.8
    High

    CVE-2021-36924

    Last Modified: 21 Nov 2024

    RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users to achieve a pool overflow (leading to Escalation of Privileges, Denial of Service, and Code Execution) via a crafted Device IO Control packet to a device.

    Published: 2 Nov 2021
    7.8
    High

    CVE-2021-36923

    Last Modified: 21 Nov 2024

    RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users to achieve unauthorized access to USB device privileged IN and OUT instructions (leading to Escalation of Privileges, Denial of Service, Code Execution, and Information Disclosure) via a crafted Device IO Control packet to a device.

    Published: 2 Nov 2021
    7.8
    High

    CVE-2021-36922

    Last Modified: 21 Nov 2024

    RtsUpx.sys in Realtek RtsUpx USB Utility Driver for Camera/Hub/Audio through 1.14.0.0 allows local low-privileged users to achieve unauthorized access to USB devices (Escalation of Privileges, Denial of Service, Code Execution, and Information Disclosure) via a crafted Device IO Control packet to a device.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2021-42763

    Last Modified: 21 Nov 2024

    Couchbase Server before 6.6.3 and 7.x before 7.0.2 stores Sensitive Information in Cleartext. The issue occurs when the cluster manager forwards a HTTP request from the pluggable UI (query workbench etc) to the specific service. In the backtrace, the Basic Auth Header included in the HTTP request, has the "@" user credentials of the node processing the UI request.

    Published: 2 Nov 2021
    7.5
    High

    CVE-2021-37842

    Last Modified: 21 Nov 2024

    metakv in Couchbase Server 7.0.0 uses Cleartext for Storage of Sensitive Information. Remote Cluster XDCR credentials can get leaked in debug logs. Config key tombstone purging was added in Couchbase Server 7.0.0. This issue happens when a config key, which is being logged, has a tombstone purger time-stamp attached to it.

    Published: 2 Nov 2021
    5.5
    Medium

    CVE-2021-27722

    Last Modified: 21 Nov 2024

    An issue was discovered in Nsasoft US LLC SpotAuditor 5.3.5. The program can be crashed by entering 300 bytes char data into the "Key" or "Name" field while registering.

    Published: 2 Nov 2021
    6.1
    Medium

    CVE-2020-35249

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in ElkarBackup 1.3.3, allows attackers to execute arbitrary code via the name parameter to the add client feature.

    Published: 2 Nov 2021
    —
    Unknown

    CVE-2021-27723

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 2 Nov 2021
    5.4
    Medium

    CVE-2020-27406

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in DynPG 4.9.1, allows authenticated attackers to execute arbitrary code via the groupname.

    Published: 2 Nov 2021