CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2021-34348

    Last Modified: 21 Nov 2024

    A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210803 and later

    Published: 27 Sept 2021
    3.1
    Low

    CVE-2021-23445

    Last Modified: 21 Nov 2024

    This affects the package datatables.net before 1.11.3. If an array is passed to the HTML escape entities function it would not have its contents escaped.

    Published: 27 Sept 2021
    7.5
    High

    CVE-2021-31606

    Last Modified: 21 Nov 2024

    furlongm openvpn-monitor through 1.1.3 allows Authorization Bypass to disconnect arbitrary clients.

    Published: 27 Sept 2021
    5.4
    Medium

    CVE-2021-3830

    Last Modified: 21 Nov 2024

    btcpayserver is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

    Published: 26 Sept 2021
    7
    High

    CVE-2021-41617

    Last Modified: 12 May 2026

    sshd in OpenSSH 6.2 through 8.x before 8.8, when certain non-default configurations are used, allows privilege escalation because supplemental groups are not initialized as expected. Helper programs for AuthorizedKeysCommand and AuthorizedPrincipalsCommand may run with privileges associated with group memberships of the sshd process, if the configuration specifies running the command as a different user.

    Published: 26 Sept 2021
    7.5
    High

    CVE-2021-41098

    Last Modified: 21 Nov 2024

    Nokogiri is a Rubygem providing HTML, XML, SAX, and Reader parsers with XPath and CSS selector support. In Nokogiri v1.12.4 and earlier, on JRuby only, the SAX parser resolves external entities by default. Users of Nokogiri on JRuby who parse untrusted documents using any of these classes are affected: Nokogiri::XML::SAX::Parse, Nokogiri::HTML4::SAX::Parser or its alias Nokogiri::HTML::SAX::Parser, Nokogiri::XML::SAX::PushParser, and Nokogiri::HTML4::SAX::PushParser or its alias Nokogiri::HTML::SAX::PushParser. JRuby users should upgrade to Nokogiri v1.12.5 or later to receive a patch for this issue. There are no workarounds available for v1.12.4 or earlier. CRuby users are not affected.

    Published: 26 Sept 2021
    7.5
    High

    CVE-2020-19861

    Last Modified: 21 Nov 2024

    When a zone file in ldns 1.7.1 is parsed, the function ldns_nsec3_salt_data is too trusted for the length value obtained from the zone file. When the memcpy is copied, the 0xfe - ldns_rdf_size(salt_rdf) byte data can be copied, causing heap overflow information leakage.

    Published: 26 Sept 2021
    5.5
    Medium

    CVE-2021-21742

    Last Modified: 21 Nov 2024

    There is an information leak vulnerability in the message service app of a ZTE mobile phone. Due to improper parameter settings, attackers could use this vulnerability to obtain some sensitive information of users by accessing specific pages.

    Published: 24 Sept 2021
    8.1
    High

    CVE-2020-20514

    Last Modified: 21 Nov 2024

    A Cross-Site Request Forgery (CSRF) in Maccms v10 via admin.php/admin/admin/del/ids/<id>.html allows authenticated attackers to delete all users.

    Published: 24 Sept 2021
    6.1
    Medium

    CVE-2020-20508

    Last Modified: 21 Nov 2024

    Shopkit v2.7 contains a reflective cross-site scripting (XSS) vulnerability in the /account/register component, which allows attackers to hijack user credentials via a crafted payload in the E-Mail text field.

    Published: 24 Sept 2021
    7.1
    High

    CVE-2016-6556

    Last Modified: 21 Nov 2024

    OpenNMS version 18.0.1 and prior are vulnerable to a stored XSS issue due to insufficient filtering of SNMP agent supplied data. By creating a malicious SNMP 'sysName' or 'sysContact' response, an attacker can store an XSS payload which will trigger when a user of the web UI views the data. This issue was fixed in version 18.0.2, released on September 20, 2016.

    Published: 24 Sept 2021
    7.1
    High

    CVE-2016-6555

    Last Modified: 21 Nov 2024

    OpenNMS version 18.0.1 and prior are vulnerable to a stored XSS issue due to insufficient filtering of SNMP trap supplied data. By creating a malicious SNMP trap, an attacker can store an XSS payload which will trigger when a user of the web UI views the events list page. This issue was fixed in version 18.0.2, released on September 20, 2016.

    Published: 24 Sept 2021
    7.5
    High

    CVE-2021-40655

    Last Modified: 10 Nov 2025

    An informtion disclosure issue exists in D-LINK-DIR-605 B2 Firmware Version : 2.01MT. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page

    Published: 24 Sept 2021
    6.5
    Medium

    CVE-2021-40654

    Last Modified: 21 Nov 2024

    An information disclosure issue exist in D-LINK-DIR-615 B2 2.01mt. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page

    Published: 24 Sept 2021
    8
    High

    CVE-2021-41504

    Last Modified: 21 Nov 2024

    An Elevated Privileges issue exists in D-Link DCS-5000L v1.05 and DCS-932L v2.17 and older. The use of the digest-authentication for the devices command interface may allow further attack vectors that may compromise the cameras configuration and allow malicious users on the LAN to access the device. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

    Published: 24 Sept 2021
    8
    High

    CVE-2021-41503

    Last Modified: 21 Nov 2024

    DCS-5000L v1.05 and DCS-932L v2.17 and older are affecged by Incorrect Acess Control. The use of the basic authentication for the devices command interface allows attack vectors that may compromise the cameras configuration and allow malicious users on the LAN to access the device. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

    Published: 24 Sept 2021
    7.8
    High

    CVE-2021-2464

    Last Modified: 21 Nov 2024

    Vulnerability in Oracle Linux (component: OSwatcher). Supported versions that are affected are 7 and 8. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Linux executes to compromise Oracle Linux. Successful attacks of this vulnerability can result in takeover of Oracle Linux. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).

    Published: 24 Sept 2021
    6.1
    Medium

    CVE-2021-39246

    Last Modified: 21 Nov 2024

    Tor Browser through 10.5.6 and 11.x through 11.0a4 allows a correlation attack that can compromise the privacy of visits to v2 onion addresses. Exact timestamps of these onion-service visits are logged locally, and an attacker might be able to compare them to timestamp data collected by the destination server (or collected by a rogue site within the Tor network).

    Published: 24 Sept 2021
    4.3
    Medium

    CVE-2021-22868

    Last Modified: 21 Nov 2024

    A path traversal vulnerability was identified in GitHub Enterprise Server that could be exploited when building a GitHub Pages site. User-controlled configuration options used by GitHub Pages were not sufficiently restricted and made it possible to read files on the GitHub Enterprise Server instance. To exploit this vulnerability, an attacker would need permission to create and build a GitHub Pages site on the GitHub Enterprise Server instance. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.1.8 and was fixed in 3.1.8, 3.0.16, and 2.22.22. This vulnerability was reported via the GitHub Bug Bounty program. This is the result of an incomplete fix for CVE-2021-22867.

    Published: 24 Sept 2021
    9.8
    Critical

    CVE-2021-22869

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in GitHub Enterprise Server allowed a workflow job to execute in a self-hosted runner group it should not have had access to. This affects customers using self-hosted runner groups for access control. A repository with access to one enterprise runner group could access all of the enterprise runner groups within the organization because of improper authentication checks during the request. This could cause code to be run unintentionally by the incorrect runner group. This vulnerability affected GitHub Enterprise Server versions from 3.0.0 to 3.0.15 and 3.1.0 to 3.1.7 and was fixed in 3.0.16 and 3.1.8 releases.

    Published: 24 Sept 2021
    —
    Unknown

    CVE-2021-35313

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 24 Sept 2021
    7.8
    High

    CVE-2021-28130

    Last Modified: 21 Nov 2024

    Dr.Web Firewall 12.5.2.4160 on Windows incorrectly restricts applications signed by Dr.Web. A DLL for a custom payload within a legitimate binary (e.g., frwl_svc.exe) bypasses firewall filters.

    Published: 24 Sept 2021
    8.8
    High

    CVE-2021-40309

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability exists in the Take Attendance functionality of OS4Ed's OpenSIS 8.0. allows an attacker to inject their own SQL query. The cp_id_miss_attn parameter from TakeAttendance.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request as a user with access to "Take Attendance" functionality to trigger this vulnerability.

    Published: 24 Sept 2021
    5.4
    Medium

    CVE-2021-40310

    Last Modified: 21 Nov 2024

    OpenSIS Community Edition version 8.0 is affected by a cross-site scripting (XSS) vulnerability in the TakeAttendance.php via the cp_id_miss_attn parameter.

    Published: 24 Sept 2021
    7.2
    High

    CVE-2021-40099

    Last Modified: 21 Nov 2024

    An issue was discovered in Concrete CMS through 8.5.5. Fetching the update json scheme over HTTP leads to remote code execution.

    Published: 24 Sept 2021
    5.4
    Medium

    CVE-2021-40100

    Last Modified: 21 Nov 2024

    An issue was discovered in Concrete CMS through 8.5.5. Stored XSS can occur in Conversations when the Active Conversation Editor is set to Rich Text.

    Published: 24 Sept 2021
    9.1
    Critical

    CVE-2021-40102

    Last Modified: 21 Nov 2024

    An issue was discovered in Concrete CMS through 8.5.5. Arbitrary File deletion can occur via PHAR deserialization in is_dir (PHP Object Injection associated with the __wakeup magic method).

    Published: 24 Sept 2021
    7.5
    High

    CVE-2021-41586

    Last Modified: 21 Nov 2024

    In Gradle Enterprise before 2021.1.3, an attacker with the ability to perform SSRF attacks can potentially reset the system user password.

    Published: 24 Sept 2021
    7.5
    High

    CVE-2021-41587

    Last Modified: 21 Nov 2024

    In Gradle Enterprise before 2021.1.3, an attacker with the ability to perform SSRF attacks can potentially discover credentials for other resources.

    Published: 24 Sept 2021
    8.1
    High

    CVE-2021-41588

    Last Modified: 21 Nov 2024

    In Gradle Enterprise before 2021.1.3, a crafted request can trigger deserialization of arbitrary unsafe Java objects. The attacker must have the encryption and signing keys.

    Published: 24 Sept 2021
    7.5
    High

    CVE-2021-41584

    Last Modified: 21 Nov 2024

    Gradle Enterprise before 2021.1.3 can allow unauthorized viewing of a response (information disclosure of possibly sensitive build/configuration details) via a crafted HTTP request with the X-Gradle-Enterprise-Ajax-Request header.

    Published: 24 Sept 2021
    5.3
    Medium

    CVE-2021-31923

    Last Modified: 21 Nov 2024

    Ping Identity PingAccess before 5.3.3 allows HTTP request smuggling via header manipulation.

    Published: 24 Sept 2021
    6.5
    Medium

    CVE-2021-41583

    Last Modified: 21 Nov 2024

    vpn-user-portal (aka eduVPN or Let's Connect!) before 2.3.14, as packaged for Debian 10, Debian 11, and Fedora, allows remote authenticated users to obtain OS filesystem access, because of the interaction of QR codes with an exec that uses the -r option. This can be leveraged to obtain additional VPN access.

    Published: 24 Sept 2021
    5.5
    Medium

    CVE-2021-41581

    Last Modified: 21 Nov 2024

    x509_constraints_parse_mailbox in lib/libcrypto/x509/x509_constraints.c in LibreSSL through 3.4.0 has a stack-based buffer over-read. When the input exceeds DOMAIN_PART_MAX_LEN, the buffer lacks '\0' termination.

    Published: 24 Sept 2021
    —
    Unknown

    CVE-2021-41574

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn. Further investigation showed that it was not a vulnerability. Notes: none.

    Published: 24 Sept 2021
    —
    Unknown

    CVE-2021-41575

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn. Further investigation showed that it was not a vulnerability. Notes: none.

    Published: 24 Sept 2021
    5.5
    Medium

    CVE-2021-43389

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.14.15. There is an array-index-out-of-bounds flaw in the detach_capi_ctr function in drivers/isdn/capi/kcapi.c.

    Published: 24 Sept 2021
    —
    Unknown

    CVE-2021-41576

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn. Further investigation showed that it was not a vulnerability. Notes: none.

    Published: 24 Sept 2021
    8
    High

    CVE-2021-41088

    Last Modified: 21 Nov 2024

    Elvish is a programming language and interactive shell, combined into one package. In versions prior to 0.14.0 Elvish's web UI backend (started by `elvish -web`) hosts an endpoint that allows executing the code sent from the web UI. The backend does not check the origin of requests correctly. As a result, if the user has the web UI backend open and visits a compromised or malicious website, the website can send arbitrary code to the endpoint in localhost. All Elvish releases from 0.14.0 onward no longer include the the web UI, although it is still possible for the user to build a version from source that includes the web UI. The issue can be patched for previous versions by removing the web UI (found in web, pkg/web or pkg/prog/web, depending on the exact version).

    Published: 23 Sept 2021
    8.8
    High

    CVE-2020-19951

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) in /controller/pay.class.php of YzmCMS v5.5 allows attackers to access sensitive components of the application.

    Published: 23 Sept 2021
    4.8
    Medium

    CVE-2020-19950

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in the /banner/add.html component of YzmCMS v5.3 allows attackers to execute arbitrary web scripts or HTML.

    Published: 23 Sept 2021
    4.8
    Medium

    CVE-2020-19949

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in the /link/add.html component of YzmCMS v5.3 allows attackers to execute arbitrary web scripts or HTML.

    Published: 23 Sept 2021
    5.4
    Medium

    CVE-2021-38877

    Last Modified: 21 Nov 2024

    IBM Jazz for Service Management 1.1.3.10 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 208405.

    Published: 23 Sept 2021
    5.4
    Medium

    CVE-2021-29905

    Last Modified: 21 Nov 2024

    IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 207616.

    Published: 23 Sept 2021
    5.5
    Medium

    CVE-2021-29904

    Last Modified: 21 Nov 2024

    IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI displays user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 207610.

    Published: 23 Sept 2021
    5.4
    Medium

    CVE-2021-29833

    Last Modified: 21 Nov 2024

    IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204825.

    Published: 23 Sept 2021
    5.4
    Medium

    CVE-2021-29832

    Last Modified: 21 Nov 2024

    IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204824.

    Published: 23 Sept 2021
    6.5
    Medium

    CVE-2021-29816

    Last Modified: 21 Nov 2024

    IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 204341.

    Published: 23 Sept 2021
    5.4
    Medium

    CVE-2021-29815

    Last Modified: 21 Nov 2024

    IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204340.

    Published: 23 Sept 2021
    5.4
    Medium

    CVE-2021-29814

    Last Modified: 21 Nov 2024

    IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204334.

    Published: 23 Sept 2021