CVE Feed

    Dashboard / CVE

    6.7
    Medium

    CVE-2021-0625

    Last Modified: 21 Nov 2024

    In ccu, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05594996; Issue ID: ALPS05594996.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0618

    Last Modified: 21 Nov 2024

    In ape extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561394; Issue ID: ALPS05561394.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0617

    Last Modified: 21 Nov 2024

    In ape extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561391; Issue ID: ALPS05561391.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0616

    Last Modified: 21 Nov 2024

    In ape extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561389; Issue ID: ALPS05561389.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0615

    Last Modified: 21 Nov 2024

    In flv extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561369; Issue ID: ALPS05561369.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0614

    Last Modified: 21 Nov 2024

    In asf extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05495528; Issue ID: ALPS05495528.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0613

    Last Modified: 21 Nov 2024

    In asf extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05489178; Issue ID: ALPS05489178.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0414

    Last Modified: 21 Nov 2024

    In flv extractor, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561384; Issue ID: ALPS05561384.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0413

    Last Modified: 21 Nov 2024

    In flv extractor, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561379; Issue ID: ALPS05561379.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0412

    Last Modified: 21 Nov 2024

    In flv extractor, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561366; Issue ID: ALPS05561366.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0411

    Last Modified: 21 Nov 2024

    In flv extractor, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561362; Issue ID: ALPS05561362.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0410

    Last Modified: 21 Nov 2024

    In flv extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561360; Issue ID: ALPS05561360.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-0409

    Last Modified: 21 Nov 2024

    In flv extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05561359; Issue ID: ALPS05561359.

    Published: 25 Oct 2021
    5.4
    Medium

    CVE-2021-25977

    Last Modified: 30 Apr 2025

    In PiranhaCMS, versions 7.0.0 to 9.1.1 are vulnerable to stored XSS due to the page title improperly sanitized. By creating a page with a specially crafted page title, a low privileged user can trigger arbitrary JavaScript execution.

    Published: 25 Oct 2021
    3.9
    Low

    CVE-2020-14264

    Last Modified: 21 Nov 2024

    "HCL Traveler Companion is vulnerable to an iOS weak cryptographic process vulnerability via the included MobileIron AppConnect SDK"

    Published: 25 Oct 2021
    6.7
    Medium

    CVE-2021-35231

    Last Modified: 21 Nov 2024

    As a result of an unquoted service path vulnerability present in the Kiwi Syslog Server Installation Wizard, a local attacker could gain escalated privileges by inserting an executable into the path of the affected service or uninstall entry. Example vulnerable path: "Computer\HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Kiwi Syslog Server\Parameters\Application".

    Published: 25 Oct 2021
    9.8
    Critical

    CVE-2021-40865

    Last Modified: 21 Nov 2024

    An Unsafe Deserialization vulnerability exists in the worker services of the Apache Storm supervisor server allowing pre-auth Remote Code Execution (RCE). Apache Storm 2.2.x users should upgrade to version 2.2.1 or 2.3.0. Apache Storm 2.1.x users should upgrade to version 2.1.1. Apache Storm 1.x users should upgrade to version 1.2.4

    Published: 25 Oct 2021
    9.8
    Critical

    CVE-2021-38294

    Last Modified: 21 Nov 2024

    A Command Injection vulnerability exists in the getTopologyHistory service of the Apache Storm 2.x prior to 2.2.1 and Apache Storm 1.x prior to 1.2.4. A specially crafted thrift request to the Nimbus server allows Remote Code Execution (RCE) prior to authentication.

    Published: 25 Oct 2021
    4.8
    Medium

    CVE-2021-40526

    Last Modified: 21 Nov 2024

    Incorrect calculation of buffer size vulnerability in Peleton TTR01 up to and including PTV55G allows a remote attacker to trigger a Denial of Service attack through the GymKit daemon process by exploiting a heap overflow in the network server handling the Apple GymKit communication. This can lead to an Apple MFI device not being able to authenticate with the Peleton Bike

    Published: 25 Oct 2021
    8.6
    High

    CVE-2021-40527

    Last Modified: 21 Nov 2024

    Exposure of senstive information to an unauthorised actor in the "com.onepeloton.erlich" mobile application up to and including version 1.7.22 allows a remote attacker to access developer files stored in an AWS S3 bucket, by reading credentials stored in plain text within the mobile application.

    Published: 25 Oct 2021
    9.8
    Critical

    CVE-2021-40371

    Last Modified: 21 Nov 2024

    Gridpro Request Management for Windows Azure Pack before 2.0.7912 allows Directory Traversal for remote code execution, as demonstrated by ..\\ in a scriptName JSON value to ServiceManagerTenant/GetVisibilityMap.

    Published: 25 Oct 2021
    6.5
    Medium

    CVE-2021-41184

    Last Modified: 25 Aug 2026

    jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of the `of` option of the `.position()` util from untrusted sources may execute untrusted code. The issue is fixed in jQuery UI 1.13.0. Any string value passed to the `of` option is now treated as a CSS selector. A workaround is to not accept the value of the `of` option from untrusted sources.

    Published: 25 Oct 2021
    6.5
    Medium

    CVE-2021-41183

    Last Modified: 25 Aug 2026

    jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of various `*Text` options of the Datepicker widget from untrusted sources may execute untrusted code. The issue is fixed in jQuery UI 1.13.0. The values passed to various `*Text` options are now always treated as pure text, not HTML. A workaround is to not accept the value of the `*Text` options from untrusted sources.

    Published: 25 Oct 2021
    6.5
    Medium

    CVE-2021-41182

    Last Modified: 25 Aug 2026

    jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of the `altField` option of the Datepicker widget from untrusted sources may execute untrusted code. The issue is fixed in jQuery UI 1.13.0. Any string value passed to the `altField` option is now treated as a CSS selector. A workaround is to not accept the value of the `altField` option from untrusted sources.

    Published: 25 Oct 2021
    5.5
    Medium

    CVE-2021-43056

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel for powerpc before 5.14.15. It allows a malicious KVM guest to crash the host, when the host is running on Power8, due to an arch/powerpc/kvm/book3s_hv_rmhandlers.S implementation bug in the handling of the SRR1 register values.

    Published: 25 Oct 2021
    6.7
    Medium

    CVE-2021-34981

    Last Modified: 14 Aug 2025

    Linux Kernel Bluetooth CMTP Module Double Free Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to execute high-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the CMTP module. The issue results from the lack of validating the existence of an object prior to performing further free operations on the object. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the kernel. Was ZDI-CAN-11977.

    Published: 25 Oct 2021
    7.8
    High

    CVE-2021-3903

    Last Modified: 21 Nov 2024

    vim is vulnerable to Heap-based Buffer Overflow

    Published: 24 Oct 2021
    9.8
    Critical

    CVE-2021-42258

    Last Modified: 10 Nov 2025

    BQE BillQuick Web Suite 2018 through 2021 before 22.0.9.1 allows SQL injection for unauthenticated remote code execution, as exploited in the wild in October 2021 for ransomware installation. SQL injection can, for example, use the txtID (aka username) parameter. Successful exploitation can include the ability to execute arbitrary code as MSSQLSERVER$ via xp_cmdshell.

    Published: 22 Oct 2021
    5.4
    Medium

    CVE-2020-23039

    Last Modified: 21 Nov 2024

    Folder Lock v3.4.5 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the Create Folder function under the 'create' module. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload as a path or folder name.

    Published: 22 Oct 2021
    7.5
    High

    CVE-2020-23040

    Last Modified: 21 Nov 2024

    Sky File v2.1.0 contains a directory traversal vulnerability in the FTP server which allows attackers to access sensitive data and files via 'null' path commands.

    Published: 22 Oct 2021
    7.5
    High

    CVE-2020-23038

    Last Modified: 21 Nov 2024

    Swift File Transfer Mobile v1.1.2 and below was discovered to contain an information disclosure vulnerability in the path parameter. This vulnerability is exploited via an error caused by including non-existent path environment variables.

    Published: 22 Oct 2021
    9.8
    Critical

    CVE-2020-23037

    Last Modified: 21 Nov 2024

    Portable Ltd Playable v9.18 contains a code injection vulnerability in the filename parameter, which allows attackers to execute arbitrary web scripts or HTML via a crafted POST request.

    Published: 22 Oct 2021
    5.9
    Medium

    CVE-2020-23036

    Last Modified: 21 Nov 2024

    MEDIA NAVI Inc SMACom v1.2 was discovered to contain an insecure session validation vulnerability in the session handling of the `password` authentication parameter of the wifi photo transfer module. This vulnerability allows attackers with network access privileges or on public wifi networks to read the authentication credentials and follow-up requests containing the user password via a man in the middle attack.

    Published: 22 Oct 2021
    6.1
    Medium

    CVE-2020-23042

    Last Modified: 21 Nov 2024

    Dropouts Technologies LLP Super Backup v2.0.5 was discovered to contain a cross-site scripting (XSS) vulnerability in the path parameter of the `list` and `download` module. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted GET request.

    Published: 22 Oct 2021
    6.1
    Medium

    CVE-2020-23041

    Last Modified: 21 Nov 2024

    Dropouts Technologies LLP Air Share v1.2 was discovered to contain a cross-site scripting (XSS) vulnerability in the path parameter of the `list` and `download` exception-handling. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted GET request.

    Published: 22 Oct 2021
    8.8
    High

    CVE-2020-23043

    Last Modified: 21 Nov 2024

    Tran Tu Air Sender v1.0.2 was discovered to contain an arbitrary file upload vulnerability in the upload module. This vulnerability allows attackers to execute arbitrary code via a crafted file.

    Published: 22 Oct 2021
    5.4
    Medium

    CVE-2020-23044

    Last Modified: 21 Nov 2024

    DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_pic_view.php via the `activepath`, `keyword`, `tag`, `fmdo=x&filename`, `CKEditor` and `CKEditorFuncNum` parameters.

    Published: 22 Oct 2021
    7.2
    High

    CVE-2020-23045

    Last Modified: 21 Nov 2024

    Macrob7 Macs Framework Content Management System - 1.14f was discovered to contain a SQL injection vulnerability via the 'roleId' parameter of the `editRole` and `deletUser` modules.

    Published: 22 Oct 2021
    6.1
    Medium

    CVE-2020-23046

    Last Modified: 21 Nov 2024

    DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component tpl.php via the `filename`, `mid`, `userid`, and `templet' parameters.

    Published: 22 Oct 2021
    6.1
    Medium

    CVE-2020-23048

    Last Modified: 21 Nov 2024

    SeedDMS Content Management System v6.0.7 contains a persistent cross-site scripting (XSS) vulnerability in the component AddEvent.php via the name and comment parameters.

    Published: 22 Oct 2021
    6.1
    Medium

    CVE-2020-23047

    Last Modified: 21 Nov 2024

    Macrob7 Macs Framework Content Management System - 1.14f was discovered to contain a cross-site scripting (XSS) vulnerability in the search input field of the search module.

    Published: 22 Oct 2021
    5.4
    Medium

    CVE-2020-23049

    Last Modified: 21 Nov 2024

    Fork CMS Content Management System v5.8.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the `Displayname` field when using the `Add`, `Edit` or `Register' functions. This vulnerability allows attackers to execute arbitrary web scripts or HTML.

    Published: 22 Oct 2021
    6.1
    Medium

    CVE-2020-23051

    Last Modified: 21 Nov 2024

    Phpgurukul User Registration & User Management System v2.0 was discovered to contain multiple stored cross-site scripting (XSS) vulnerabilities via the firstname and lastname parameters of the registration form & loginsystem input fields.

    Published: 22 Oct 2021
    8
    High

    CVE-2020-23050

    Last Modified: 21 Nov 2024

    TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a HTML injection vulnerability in the userFirstName parameter of the user account input field. This vulnerability allows attackers to execute phishing attacks, external redirects, and arbitrary code.

    Published: 22 Oct 2021
    5.4
    Medium

    CVE-2020-23052

    Last Modified: 21 Nov 2024

    Catalyst IT Ltd Mahara CMS v19.10.2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component groupfiles.php via the Number (Nombre) and Description (Descripción) parameters.

    Published: 22 Oct 2021
    6.1
    Medium

    CVE-2020-23054

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in NSK User Agent String Switcher Service v0.3.5 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the user agent input field.

    Published: 22 Oct 2021
    5.4
    Medium

    CVE-2020-23055

    Last Modified: 21 Nov 2024

    ANCOM WLAN Controller (Wireless Series & Hotspot) WLC-1000 & WLC-4006 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the /authen/start/ module via the userid and password parameters.

    Published: 22 Oct 2021
    4.6
    Medium

    CVE-2020-23058

    Last Modified: 21 Nov 2024

    An issue in the authentication mechanism in Nong Ge File Explorer v1.4 unauthenticated allows to access sensitive data.

    Published: 22 Oct 2021
    7.5
    High

    CVE-2020-23061

    Last Modified: 21 Nov 2024

    Dropouts Technologies LLP Super Backup v2.0.5 was discovered to contain an issue in the path parameter of the `list` and `download` module which allows attackers to perform a directory traversal via a change to the path variable to request the local list command.

    Published: 22 Oct 2021
    7.1
    High

    CVE-2020-23060

    Last Modified: 21 Nov 2024

    Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. This vulnerability allows attackers to escalate local process privileges via a crafted ef2 file.

    Published: 22 Oct 2021