CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2021-41459

    Last Modified: 21 Nov 2024

    There is a stack buffer overflow in MP4Box v1.0.1 at src/filters/dmx_nhml.c:1008 in the nhmldmx_send_sample() function szXmlFrom parameter which leads to a denial of service vulnerability.

    Published: 1 Oct 2021
    7.5
    High

    CVE-2021-41457

    Last Modified: 21 Nov 2024

    There is a stack buffer overflow in MP4Box 1.1.0 at src/filters/dmx_nhml.c in nhmldmx_init_parsing which leads to a denial of service vulnerability.

    Published: 1 Oct 2021
    7.5
    High

    CVE-2021-41456

    Last Modified: 21 Nov 2024

    There is a stack buffer overflow in MP4Box v1.0.1 at src/filters/dmx_nhml.c:1004 in the nhmldmx_send_sample() function szXmlTo parameter which leads to a denial of service vulnerability.

    Published: 1 Oct 2021
    5.4
    Medium

    CVE-2020-20799

    Last Modified: 21 Nov 2024

    JeeCMS 1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the commentText parameter.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2020-20797

    Last Modified: 21 Nov 2024

    FlameCMS 3.3.5 contains a time-based blind SQL injection vulnerability in /account/register.php.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2020-20796

    Last Modified: 21 Nov 2024

    FlameCMS 3.3.5 contains a SQL injection vulnerability in /master/article.php via the "Id" parameter.

    Published: 30 Sept 2021
    7.2
    High

    CVE-2020-20746

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow in the httpd server on Tenda AC9 V15.03.06.60_EN allows remote attackers to execute arbitrary code or cause a denial of service (DoS) via a crafted POST request to /goform/SetStaticRouteCfg.

    Published: 30 Sept 2021
    6.5
    Medium

    CVE-2021-41324

    Last Modified: 21 Nov 2024

    Directory traversal in the Copy, Move, and Delete features in Pydio Cells 2.2.9 allows remote authenticated users to enumerate personal files (or Cells files belonging to any user) via the nodes parameter (for Copy and Move) or via the Path parameter (for Delete).

    Published: 30 Sept 2021
    5.7
    Medium

    CVE-2021-41101

    Last Modified: 21 Nov 2024

    wire-server is an open-source back end for Wire, a secure collaboration platform. Before version 2.106.0, the CORS ` Access-Control-Allow-Origin ` header set by `nginz` is set for all subdomains of `.wire.com` (including `wire.com`). This means that if somebody were to find an XSS vector in any of the subdomains, they could use it to talk to the Wire API using the user's Cookie. A patch does not exist, but a workaround does. To make sure that a compromise of one subdomain does not yield access to the cookie of another, one may limit the `Access-Control-Allow-Origin` header to apps that actually require the cookie (account-pages, team-settings and the webapp).

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-33583

    Last Modified: 21 Nov 2024

    REINER timeCard 6.05.07 installs a Microsoft SQL Server with an sa password that is hardcoded in the TCServer.jar file.

    Published: 30 Sept 2021
    6.5
    Medium

    CVE-2021-41325

    Last Modified: 21 Nov 2024

    Broken access control for user creation in Pydio Cells 2.2.9 allows remote anonymous users to create standard users via the profile parameter. (In addition, such users can be granted several admin permissions via the Roles parameter.)

    Published: 30 Sept 2021
    6.5
    Medium

    CVE-2021-41323

    Last Modified: 21 Nov 2024

    Directory traversal in the Compress feature in Pydio Cells 2.2.9 allows remote authenticated users to overwrite personal files, or Cells files belonging to any user, via the format parameter.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-41288

    Last Modified: 21 Nov 2024

    Zoho ManageEngine OpManager version 125466 and below is vulnerable to SQL Injection in the getReportData API.

    Published: 30 Sept 2021
    5.4
    Medium

    CVE-2021-35199

    Last Modified: 21 Nov 2024

    NETSCOUT nGeniusONE 6.3.0 build 1196 and earlier allows Stored Cross-Site Scripting (XSS) in UploadFile.

    Published: 30 Sept 2021
    5.4
    Medium

    CVE-2021-35198

    Last Modified: 21 Nov 2024

    NETSCOUT nGeniusONE 6.3.0 build 1004 and earlier allows Stored Cross-Site Scripting (XSS) in the Packet Analysis module.

    Published: 30 Sept 2021
    5.4
    Medium

    CVE-2021-35205

    Last Modified: 21 Nov 2024

    NETSCOUT Systems nGeniusONE version 6.3.0 build 1196 allows URL redirection in redirector.

    Published: 30 Sept 2021
    4.8
    Medium

    CVE-2021-35200

    Last Modified: 21 Nov 2024

    NETSCOUT nGeniusONE 6.3.0 build 1196 allows high-privileged users to achieve Stored Cross-Site Scripting (XSS) in FDSQueryService.

    Published: 30 Sept 2021
    6.5
    Medium

    CVE-2021-35201

    Last Modified: 21 Nov 2024

    NEI in NETSCOUT nGeniusONE 6.3.0 build 1196 allows XML External Entity (XXE) attacks.

    Published: 30 Sept 2021
    4.3
    Medium

    CVE-2021-35202

    Last Modified: 21 Nov 2024

    NETSCOUT Systems nGeniusONE 6.3.0 build 1196 allows Authorization Bypass (to access an endpoint) in FDSQueryService.

    Published: 30 Sept 2021
    5.7
    Medium

    CVE-2021-35203

    Last Modified: 21 Nov 2024

    NETSCOUT Systems nGeniusONE 6.3.0 build 1196 allows Arbitrary File Read operations via the FDSQueryService endpoint.

    Published: 30 Sept 2021
    5.4
    Medium

    CVE-2021-35204

    Last Modified: 21 Nov 2024

    NETSCOUT Systems nGeniusONE 6.3.0 build 1196 allows Reflected Cross-Site Scripting (XSS) in the support endpoint.

    Published: 30 Sept 2021
    7.5
    High

    CVE-2020-20665

    Last Modified: 21 Nov 2024

    rudp v0.6 was discovered to contain a memory leak in the component main.c.

    Published: 30 Sept 2021
    6.5
    Medium

    CVE-2020-20664

    Last Modified: 21 Nov 2024

    libiec_iccp_mod v1.5 contains a segmentation violation in the component server_example1.c.

    Published: 30 Sept 2021
    6.5
    Medium

    CVE-2020-20663

    Last Modified: 21 Nov 2024

    libiec_iccp_mod v1.5 contains a heap-buffer-overflow in the component mms_client_connection.c.

    Published: 30 Sept 2021
    6.5
    Medium

    CVE-2020-20662

    Last Modified: 21 Nov 2024

    libiec_iccp_mod v1.5 contains a heap-buffer-overflow in the component mms_client_example1.c.

    Published: 30 Sept 2021
    7.5
    High

    CVE-2021-29894

    Last Modified: 21 Nov 2024

    IBM Cloud Pak for Security (CP4S) 1.7.0.0, 1.7.1.0, 1.7.2.0, and 1.8.0.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 207320.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-20578

    Last Modified: 21 Nov 2024

    IBM Cloud Pak for Security (CP4S) 1.7.0.0, 1.7.1.0, 1.7.2.0, and 1.8.0.0 could allow an attacker to perform unauthorized actions due to improper or missing authentication controls. IBM X-Force ID: 199282.

    Published: 30 Sept 2021
    6.1
    Medium

    CVE-2021-20554

    Last Modified: 21 Nov 2024

    IBM Sterling Order Management 9.4, 9.5, and 10.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199179.

    Published: 30 Sept 2021
    5.4
    Medium

    CVE-2021-24017

    Last Modified: 21 Nov 2024

    An improper authentication in Fortinet FortiManager version 6.4.3 and below, 6.2.6 and below allows attacker to assign arbitrary Policy and Object modules via crafted requests to the request handler.

    Published: 30 Sept 2021
    3.7
    Low

    CVE-2021-24016

    Last Modified: 21 Nov 2024

    An improper neutralization of formula elements in a csv file in Fortinet FortiManager version 6.4.3 and below, 6.2.7 and below allows attacker to execute arbitrary commands via crafted IPv4 field in policy name, when exported as excel file and opened unsafely on the victim host.

    Published: 30 Sept 2021
    7.5
    High

    CVE-2021-41109

    Last Modified: 21 Nov 2024

    Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to version 4.10.4, for regular (non-LiveQuery) queries, the session token is removed from the response, but for LiveQuery payloads it is currently not. If a user has a LiveQuery subscription on the `Parse.User` class, all session tokens created during user sign-ups will be broadcast as part of the LiveQuery payload. A patch in version 4.10.4 removes session tokens from the LiveQuery payload. As a workaround, set `user.acl(new Parse.ACL())` in a beforeSave trigger to make the user private already on sign-up.

    Published: 30 Sept 2021
    3.3
    Low

    CVE-2021-21089

    Last Modified: 21 Nov 2024

    Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by an out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to locally escalate privileges in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

    Published: 30 Sept 2021
    —
    Unknown

    CVE-2021-41720

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 30 Sept 2021
    9.1
    Critical

    CVE-2021-41729

    Last Modified: 21 Nov 2024

    BaiCloud-cms v2.5.7 is affected by an arbitrary file deletion vulnerability, which allows an attacker to delete arbitrary files on the server through /user/ppsave.php.

    Published: 30 Sept 2021
    7.3
    High

    CVE-2021-41302

    Last Modified: 21 Nov 2024

    ECOA BAS controller stores sensitive data (backup exports) in clear-text, thus the unauthenticated attacker can remotely query user password and obtain user’s privilege.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-41301

    Last Modified: 21 Nov 2024

    ECOA BAS controller is vulnerable to configuration disclosure when direct object reference is made to the specific files using an HTTP GET request. This will enable the unauthenticated attacker to remotely disclose sensitive information and help her in authentication bypass, privilege escalation and full system access.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-41300

    Last Modified: 21 Nov 2024

    ECOA BAS controller’s special page displays user account and passwords in plain text, thus unauthenticated attackers can access the page and obtain privilege with full functionality.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-41299

    Last Modified: 21 Nov 2024

    ECOA BAS controller is vulnerable to hard-coded credentials within its Linux distribution image, thus remote attackers can obtain administrator’s privilege without logging in.

    Published: 30 Sept 2021
    8.8
    High

    CVE-2021-41298

    Last Modified: 21 Nov 2024

    ECOA BAS controller is vulnerable to insecure direct object references that occur when the application provides direct access to objects based on user-supplied input. As a result of this vulnerability, attackers with general user's privilege can remotely bypass authorization and access the hidden resources in the system and execute privileged functionalities.

    Published: 30 Sept 2021
    8.8
    High

    CVE-2021-41297

    Last Modified: 21 Nov 2024

    ECOA BAS controller is vulnerable to weak access control mechanism allowing authenticated user to remotely escalate privileges by disclosing credentials of administrative accounts in plain-text.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-41296

    Last Modified: 21 Nov 2024

    ECOA BAS controller uses weak set of default administrative credentials that can be easily guessed in remote password attacks and gain full control of the system.

    Published: 30 Sept 2021
    8.8
    High

    CVE-2021-41295

    Last Modified: 21 Nov 2024

    ECOA BAS controller has a Cross-Site Request Forgery vulnerability, thus authenticated attacker can remotely place a forged request at a malicious web page and execute CRUD commands (GET, POST, PUT, DELETE) to perform arbitrary operations in the system.

    Published: 30 Sept 2021
    9.1
    Critical

    CVE-2021-41294

    Last Modified: 21 Nov 2024

    ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files deletion. Using the specific GET parameter, unauthenticated attackers can remotely delete arbitrary files on the affected device and cause denial of service scenario.

    Published: 30 Sept 2021
    7.5
    High

    CVE-2021-41293

    Last Modified: 21 Nov 2024

    ECOA BAS controller suffers from a path traversal vulnerability, causing arbitrary files disclosure. Using the specific POST parameter, unauthenticated attackers can remotely disclose arbitrary files on the affected device and disclose sensitive and system information.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-41292

    Last Modified: 21 Nov 2024

    ECOA BAS controller suffers from an authentication bypass vulnerability. An unauthenticated attacker through cookie poisoning can remotely bypass authentication and disclose sensitive information and circumvent physical access controls in smart homes and buildings and manipulate HVAC.

    Published: 30 Sept 2021
    7.5
    High

    CVE-2021-41291

    Last Modified: 21 Nov 2024

    ECOA BAS controller suffers from a path traversal content disclosure vulnerability. Using the GET parameter in File Manager, unauthenticated attackers can remotely disclose directory content on the affected device.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-41290

    Last Modified: 21 Nov 2024

    ECOA BAS controller suffers from an arbitrary file write and path traversal vulnerability. Using the POST parameters, unauthenticated attackers can remotely set arbitrary values for location and content type and gain the possibility to execute arbitrary code on the affected device.

    Published: 30 Sept 2021
    9.8
    Critical

    CVE-2021-41616

    Last Modified: 23 Apr 2025

    Apache DB DdlUtils 1.0 included a BinaryObjectsHelper that was intended for use when migrating database data with a SQL data type of BINARY, VARBINARY, LONGVARBINARY, or BLOB between databases using the ddlutils features. The BinaryObjectsHelper class was insecure and used ObjectInputStream.readObject without validating that the input data was safe to deserialize. Please note that DdlUtils is no longer being actively developed. To address the insecurity of the BinaryObjectHelper class, the following changes to DdlUtils have been made: (1) BinaryObjectsHelper.java has been deleted from the DdlUtils source repository and the DdlUtils feature of propagating data of SQL binary types is therefore no longer present in DdlUtils; (2) The ddlutils-1.0 release has been removed from the Apache Release Distribution Infrastructure; (3) The DdlUtils web site has been updated to indicate that DdlUtils is now available only as source code, not as a packaged release.

    Published: 30 Sept 2021
    6.1
    Medium

    CVE-2021-25963

    Last Modified: 30 Apr 2025

    In Shuup, versions 1.6.0 through 2.10.8 are vulnerable to reflected Cross-Site Scripting (XSS) that allows execution of arbitrary javascript code on a victim browser. This vulnerability exists due to the error page contents not escaped.

    Published: 30 Sept 2021
    7.5
    High

    CVE-2021-41827

    Last Modified: 21 Nov 2024

    Zoho ManageEngine Remote Access Plus before 10.1.2121.1 has hardcoded credentials for read-only access. The credentials are in the source code that corresponds to the DCBackupRestore JAR archive.

    Published: 30 Sept 2021