CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2021-26588

    Last Modified: 21 Nov 2024

    A potential security vulnerability has been identified in HPE 3PAR StoreServ, HPE Primera Storage and HPE Alletra 9000 Storage array firmware. An unauthenticated user could remotely exploit the low complexity issue to execute code as administrator. This vulnerability impacts completely the confidentiality, integrity, availability of the array. HPE has made the following software updates and mitigation information to resolve the vulnerability in 3PAR, Primera and Alletra 9000 firmware.

    Published: 11 Oct 2021
    7.5
    High

    CVE-2021-27002

    Last Modified: 21 Nov 2024

    NetApp Cloud Manager versions prior to 3.9.10 are susceptible to a vulnerability which could allow a remote unauthenticated attacker to retrieve sensitive data via the web proxy.

    Published: 11 Oct 2021
    9.8
    Critical

    CVE-2021-37123

    Last Modified: 21 Nov 2024

    There is an improper authentication vulnerability in Hero-CT060 before 1.0.0.200. The vulnerability is due to that when an user wants to do certain operation, the software does not insufficiently validate the user's identity. Successful exploit could allow the attacker to do certain operations which the user are supposed not to do.

    Published: 11 Oct 2021
    7.3
    High

    CVE-2021-0583

    Last Modified: 21 Nov 2024

    In onCreate of BluetoothPairingDialog, there is a possible way to enable Bluetooth without user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-182282956

    Published: 11 Oct 2021
    8.8
    High

    CVE-2021-39317

    Last Modified: 14 Feb 2025

    A WordPress plugin and several WordPress themes developed by AccessPress Themes are vulnerable to malicious file uploads via the plugin_offline_installer AJAX action due to a missing capability check in the plugin_offline_installer_callback function found in the /demo-functions.php file or /welcome.php file of the affected products. The complete list of affected products and their versions are below: WordPress Plugin: AccessPress Demo Importer <=1.0.6 WordPress Themes: accesspress-basic <= 3.2.1 accesspress-lite <= 2.92 accesspress-mag <= 2.6.5 accesspress-parallax <= 4.5 accesspress-root <= 2.5 accesspress-store <= 2.4.9 agency-lite <= 1.1.6 arrival <= 1.4.2 bingle <= 1.0.4 bloger <= 1.2.6 brovy <= 1.3 construction-lite <= 1.2.5 doko <= 1.0.27 edict-lite <= 1.1.4 eightlaw-lite <= 2.1.5 eightmedi-lite <= 2.1.8 eight-sec <= 1.1.4 eightstore-lite <= 1.2.5 enlighten <= 1.3.5 fotography <= 2.4.0 opstore <= 1.4.3 parallaxsome <= 1.3.6 punte <= 1.1.2 revolve <= 1.3.1 ripple <= 1.2.0 sakala <= 1.0.4 scrollme <= 2.1.0 storevilla <= 1.4.1 swing-lite <= 1.1.9 the100 <= 1.1.2 the-launcher <= 1.3.2 the-monday <= 1.4.1 ultra-seven <= 1.2.8 uncode-lite <= 1.3.3 vmag <= 1.2.7 vmagazine-lite <= 1.3.5 vmagazine-news <= 1.0.5 wpparallax <= 2.0.6 wp-store <= 1.1.9 zigcy-baby <= 1.0.6 zigcy-cosmetics <= 1.0.5 zigcy-lite <= 2.0.9

    Published: 11 Oct 2021
    7.5
    High

    CVE-2021-27665

    Last Modified: 21 Nov 2024

    An unauthenticated remote user could exploit a potential integer overflow condition in the exacqVision Server with a specially crafted script and cause denial-of-service condition.

    Published: 11 Oct 2021
    9.8
    Critical

    CVE-2021-27664

    Last Modified: 21 Nov 2024

    Under certain configurations an unauthenticated remote user could be given access to credentials stored in the exacqVision Server.

    Published: 11 Oct 2021
    5.4
    Medium

    CVE-2021-40191

    Last Modified: 21 Nov 2024

    Dzzoffice Version 2.02.1 is affected by cross-site scripting (XSS) due to a lack of sanitization of input data at all upload functions in webroot/dzz/attach/Uploader.class.php and return a wrong response in content-type of output data in webroot/dzz/attach/controller.php.

    Published: 11 Oct 2021
    6.1
    Medium

    CVE-2021-40541

    Last Modified: 21 Nov 2024

    PHPFusion 9.03.110 is affected by cross-site scripting (XSS) in the preg patterns filter html tag without "//" in descript() function An authenticated user can trigger XSS by appending "//" in the end of text.

    Published: 11 Oct 2021
    6.1
    Medium

    CVE-2021-40542

    Last Modified: 21 Nov 2024

    Opensis-Classic Version 8.0 is affected by cross-site scripting (XSS). An unauthenticated user can inject and execute JavaScript code through the link_url parameter in Ajax_url_encode.php.

    Published: 11 Oct 2021
    9.8
    Critical

    CVE-2021-40543

    Last Modified: 21 Nov 2024

    Opensis-Classic Version 8.0 is affected by a SQL injection vulnerability due to a lack of sanitization of input data at two parameters $_GET['usrid'] and $_GET['prof_id'] in the PasswordCheck.php file.

    Published: 11 Oct 2021
    8.8
    High

    CVE-2021-29005

    Last Modified: 21 Nov 2024

    Insecure permission of chmod command on rConfig server 3.9.6 exists. After installing rConfig apache user may execute chmod as root without password which may let an attacker with low privilege to gain root access on server.

    Published: 11 Oct 2021
    6.5
    Medium

    CVE-2021-29006

    Last Modified: 21 Nov 2024

    rConfig 3.9.6 is affected by a Local File Disclosure vulnerability. An authenticated user may successfully download any file on the server.

    Published: 11 Oct 2021
    8.8
    High

    CVE-2021-29004

    Last Modified: 21 Nov 2024

    rConfig 3.9.6 is affected by SQL Injection. A user must be authenticated to exploit the vulnerability. If --secure-file-priv in MySQL server is not set and the Mysql server is the same as rConfig, an attacker may successfully upload a webshell to the server and access it remotely.

    Published: 11 Oct 2021
    8.1
    High

    CVE-2021-40884

    Last Modified: 21 Nov 2024

    Projectsend version r1295 is affected by sensitive information disclosure. Because of not checking authorization in ids parameter in files-edit.php and id parameter in process.php function, a user with uploader role can download and edit all files of users in application.

    Published: 11 Oct 2021
    4.8
    Medium

    CVE-2021-24737

    Last Modified: 21 Nov 2024

    The Comments – wpDiscuz WordPress plugin through 7.3.0 does not properly sanitise or escape the Follow and Unfollow messages before outputting them in the page, which could allow high privilege users to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 11 Oct 2021
    5.4
    Medium

    CVE-2021-24720

    Last Modified: 21 Nov 2024

    The GeoDirectory Business Directory WordPress plugin before 2.1.1.3 was vulnerable to Authenticated Stored Cross-Site Scripting (XSS).

    Published: 11 Oct 2021
    6.1
    Medium

    CVE-2021-24719

    Last Modified: 21 Nov 2024

    The Enfold Enfold WordPress theme before 4.8.4 was vulnerable to Reflected Cross-Site Scripting (XSS). The vulnerability is present on Enfold versions previous than 4.8.4 which use Avia Page Builder.

    Published: 11 Oct 2021
    5.4
    Medium

    CVE-2021-24712

    Last Modified: 21 Nov 2024

    The Appointment Hour Booking WordPress plugin before 1.3.17 does not properly sanitize values used when creating new calendars.

    Published: 11 Oct 2021
    8.8
    High

    CVE-2021-24711

    Last Modified: 21 Nov 2024

    The del_reistered_domains AJAX action of the Software License Manager WordPress plugin before 4.5.1 does not have any CSRF checks, and is vulnerable to a CSRF attack

    Published: 11 Oct 2021
    4.8
    Medium

    CVE-2021-24709

    Last Modified: 21 Nov 2024

    The Weather Effect WordPress plugin before 1.3.6 does not properly validate and escape some of its settings (like *_size_leaf, *_flakes_leaf, *_speed) which could lead to Stored Cross-Site Scripting issues

    Published: 11 Oct 2021
    4.8
    Medium

    CVE-2021-24691

    Last Modified: 21 Nov 2024

    The Quiz And Survey Master WordPress plugin before 7.3.2 does not escape the Quiz Url Slug setting before outputting it in some pages, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 11 Oct 2021
    5.4
    Medium

    CVE-2021-24690

    Last Modified: 21 Nov 2024

    The Chained Quiz WordPress plugin before 1.2.7.2 does not properly sanitize or escape inputs in the plugin's settings.

    Published: 11 Oct 2021
    5.4
    Medium

    CVE-2021-24683

    Last Modified: 21 Nov 2024

    The Weather Effect WordPress plugin before 1.3.4 does not have any CSRF checks in place when saving its settings, and do not validate or escape them, which could lead to Stored Cross-Site Scripting issue.

    Published: 11 Oct 2021
    4.8
    Medium

    CVE-2021-24681

    Last Modified: 21 Nov 2024

    The Duplicate Page WordPress plugin through 4.4.2 does not sanitise or escape the Duplicate Post Suffix settings before outputting it, which could allow high privilege users to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 11 Oct 2021
    4.8
    Medium

    CVE-2021-24656

    Last Modified: 21 Nov 2024

    The Simple Social Media Share Buttons WordPress plugin before 3.2.4 does not escape the Share Title settings before outputting it in the frontend pages or posts (depending on the settings used), allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

    Published: 11 Oct 2021
    7.5
    High

    CVE-2021-24651

    Last Modified: 21 Nov 2024

    The Poll Maker WordPress plugin before 3.4.2 allows unauthenticated users to perform SQL injection via the ays_finish_poll AJAX action. While the result is not disclosed in the response, it is possible to use a timing attack to exfiltrate data such as password hash.

    Published: 11 Oct 2021
    5.4
    Medium

    CVE-2021-24577

    Last Modified: 21 Nov 2024

    The Coming soon and Maintenance mode WordPress plugin before 3.5.3 does not properly sanitize inputs submitted by authenticated users when setting adding or modifying coming soon or maintenance mode pages, leading to stored XSS.

    Published: 11 Oct 2021
    5.4
    Medium

    CVE-2021-24576

    Last Modified: 21 Nov 2024

    The Easy Accordion WordPress plugin before 2.0.22 does not properly sanitize inputs when adding new items to an accordion.

    Published: 11 Oct 2021
    6.1
    Medium

    CVE-2021-24563

    Last Modified: 21 Nov 2024

    The Frontend Uploader WordPress plugin through 1.3.2 does not prevent HTML files from being uploaded via its form, allowing unauthenticated user to upload a malicious HTML file containing JavaScript for example, which will be triggered when someone access the file directly

    Published: 11 Oct 2021
    8.8
    High

    CVE-2021-24546

    Last Modified: 21 Nov 2024

    The Gutenberg Block Editor Toolkit – EditorsKit WordPress plugin before 1.31.6 does not sanitise and validate the Conditional Logic of the Custom Visibility settings, allowing users with a role as low contributor to execute Arbitrary PHP code

    Published: 11 Oct 2021
    5.4
    Medium

    CVE-2021-24545

    Last Modified: 21 Nov 2024

    The WP HTML Author Bio WordPress plugin through 1.2.0 does not sanitise the HTML allowed in the Bio of users, allowing them to use malicious JavaScript code, which will be executed when anyone visit a post in the frontend made by such user. As a result, user with a role as low as author could perform Cross-Site Scripting attacks against users, which could potentially lead to privilege escalation when an admin view the related post/s.

    Published: 11 Oct 2021
    6.5
    Medium

    CVE-2021-40886

    Last Modified: 21 Nov 2024

    Projectsend version r1295 is affected by a directory traversal vulnerability. A user with Uploader role can add value `2` for `chunks` parameter to bypass `fileName` sanitization.

    Published: 11 Oct 2021
    9.8
    Critical

    CVE-2021-40887

    Last Modified: 21 Nov 2024

    Projectsend version r1295 is affected by a directory traversal vulnerability. Because of lacking sanitization input for files[] parameter, an attacker can add ../ to move all PHP files or any file on the system that has permissions to /upload/files/ folder.

    Published: 11 Oct 2021
    5.4
    Medium

    CVE-2021-40888

    Last Modified: 21 Nov 2024

    Projectsend version r1295 is affected by Cross Site Scripting (XSS) due to lack of sanitization when echo output data in returnFilesIds() function. A low privilege user can call this function through process.php file and execute scripting code.

    Published: 11 Oct 2021
    9.8
    Critical

    CVE-2021-40889

    Last Modified: 21 Nov 2024

    CMSUno version 1.7.2 is affected by a PHP code execution vulnerability. sauvePass action in {webroot}/uno/central.php file calls to file_put_contents() function to write username in password.php file when a user successfully changed their password. The attacker can inject malicious PHP code into password.php and then use the login function to execute code.

    Published: 11 Oct 2021
    4.7
    Medium

    CVE-2021-20321

    Last Modified: 21 Nov 2024

    A race condition accessing file object in the Linux kernel OverlayFS subsystem was found in the way users do rename in specific way with OverlayFS. A local user could use this flaw to crash the system.

    Published: 11 Oct 2021
    5.3
    Medium

    CVE-2021-35060

    Last Modified: 21 Nov 2024

    /way4acs/enroll in OpenWay WAY4 ACS before 1.2.278-2693 allows unauthenticated attackers to leverage response differences to discover whether a specific payment card number is stored in the system.

    Published: 11 Oct 2021
    6.1
    Medium

    CVE-2021-35059

    Last Modified: 21 Nov 2024

    OpenWay WAY4 ACS before 1.2.278-2693 allows XSS via the /way4acs/enroll action parameter.

    Published: 11 Oct 2021
    7.5
    High

    CVE-2021-41832

    Last Modified: 21 Nov 2024

    It is possible for an attacker to manipulate documents to appear to be signed by a trusted source. All versions of Apache OpenOffice up to 4.1.10 are affected. Users are advised to update to version 4.1.11. See CVE-2021-25635 for the LibreOffice advisory.

    Published: 11 Oct 2021
    5.3
    Medium

    CVE-2021-41831

    Last Modified: 21 Nov 2024

    It is possible for an attacker to manipulate the timestamp of signed documents. All versions of Apache OpenOffice up to 4.1.10 are affected. Users are advised to update to version 4.1.11. See CVE-2021-25634 for the LibreOffice advisory.

    Published: 11 Oct 2021
    7.5
    High

    CVE-2021-41830

    Last Modified: 21 Nov 2024

    It is possible for an attacker to manipulate signed documents and macros to appear to come from a trusted source. All versions of Apache OpenOffice up to 4.1.10 are affected. Users are advised to update to version 4.1.11. See CVE-2021-25633 for the LibreOffice advisory.

    Published: 11 Oct 2021
    8.8
    High

    CVE-2021-41801

    Last Modified: 21 Nov 2024

    The ReplaceText extension through 1.41 for MediaWiki has Incorrect Access Control. When a user is blocked after submitting a replace job, the job is still run, even if it may be run at a later time (due to the job queue backlog)

    Published: 11 Oct 2021
    9.8
    Critical

    CVE-2021-42139

    Last Modified: 21 Nov 2024

    Deno Standard Modules before 0.107.0 allows Code Injection via an untrusted YAML file in certain configurations.

    Published: 11 Oct 2021
    5.3
    Medium

    CVE-2021-42137

    Last Modified: 21 Nov 2024

    An issue was discovered in Zammad before 5.0.1. In some cases, there is improper enforcement of the privilege requirement for viewing a list of tickets that shows title, state, etc.

    Published: 11 Oct 2021
    7.5
    High

    CVE-2021-41055

    Last Modified: 21 Nov 2024

    Gajim 1.2.x and 1.3.x before 1.3.3 allows remote attackers to cause a denial of service (crash) via a crafted XMPP Last Message Correction (XEP-0308) message in multi-user chat, where the message ID equals the correction ID.

    Published: 11 Oct 2021
    6.1
    Medium

    CVE-2021-42134

    Last Modified: 21 Nov 2024

    The Unicorn framework before 0.36.1 for Django allows XSS via a component. NOTE: this issue exists because of an incomplete fix for CVE-2021-42053.

    Published: 11 Oct 2021
    7.1
    High

    CVE-2021-42257

    Last Modified: 21 Nov 2024

    check_smart before 6.9.1 allows unintended drive access by an unprivileged user because it only checks for a substring match of a device path (the /dev/bus substring and a number), aka an unanchored regular expression.

    Published: 11 Oct 2021
    8.1
    High

    CVE-2021-42135

    Last Modified: 21 Nov 2024

    HashiCorp Vault and Vault Enterprise 1.8.x through 1.8.4 may have an unexpected interaction between glob-related policies and the Google Cloud secrets engine. Users may, in some situations, have more privileges than intended, e.g., a user with read permission for the /gcp/roleset/* path may be able to issue Google Cloud service account credentials.

    Published: 11 Oct 2021
    7.5
    High

    CVE-2021-25633

    Last Modified: 21 Nov 2024

    LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to create a digitally signed ODF document, by manipulating the documentsignatures.xml or macrosignatures.xml stream within the document to combine multiple certificate data, which when opened caused LibreOffice to display a validly signed indicator but whose content was unrelated to the signature shown. This issue affects: The Document Foundation LibreOffice 7-0 versions prior to 7.0.6; 7-1 versions prior to 7.1.2.

    Published: 11 Oct 2021