CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2021-37417

    Last Modified: 21 Nov 2024

    Zoho ManageEngine ADSelfService Plus version 6103 and prior allows CAPTCHA bypass due to improper parameter validation.

    Published: 30 Aug 2021
    6.1
    Medium

    CVE-2021-37416

    Last Modified: 21 Nov 2024

    Zoho ManageEngine ADSelfService Plus version 6103 and prior is vulnerable to reflected XSS on the loadframe page.

    Published: 30 Aug 2021
    9.8
    Critical

    CVE-2021-33055

    Last Modified: 21 Nov 2024

    Zoho ManageEngine ADSelfService Plus through 6102 allows unauthenticated remote code execution in non-English editions.

    Published: 30 Aug 2021
    5.4
    Medium

    CVE-2021-22021

    Last Modified: 21 Nov 2024

    VMware vRealize Log Insight (8.x prior to 8.4) contains a Cross Site Scripting (XSS) vulnerability due to improper user input validation. An attacker with user privileges may be able to inject a malicious payload via the Log Insight UI which would be executed when the victim accesses the shared dashboard link.

    Published: 30 Aug 2021
    8.1
    High

    CVE-2021-38342

    Last Modified: 21 Nov 2024

    The Nested Pages WordPress plugin <= 3.1.15 was vulnerable to Cross-Site Request Forgery via the `npBulkAction`s and `npBulkEdit` `admin_post` actions, which allowed attackers to trash or permanently purge arbitrary posts as well as changing their status, reassigning their ownership, and editing other metadata.

    Published: 30 Aug 2021
    4.7
    Medium

    CVE-2021-38343

    Last Modified: 21 Nov 2024

    The Nested Pages WordPress plugin <= 3.1.15 was vulnerable to an Open Redirect via the `page` POST parameter in the `npBulkActions`, `npBulkEdit`, `npListingSort`, and `npCategoryFilter` `admin_post` actions.

    Published: 30 Aug 2021
    9.8
    Critical

    CVE-2021-34646

    Last Modified: 5 May 2025

    Versions up to, and including, 5.4.3, of the Booster for WooCommerce WordPress plugin are vulnerable to authentication bypass via the process_email_verification function due to a random token generation weakness in the reset_and_mail_activation_link function found in the ~/includes/class-wcj-emails-verification.php file. This allows attackers to impersonate users and trigger an email address verification for arbitrary accounts, including administrative accounts, and automatically be logged in as that user, including any site administrators. This requires the Email Verification module to be active in the plugin and the Login User After Successful Verification setting to be enabled, which it is by default.

    Published: 30 Aug 2021
    6.4
    Medium

    CVE-2021-34668

    Last Modified: 4 Feb 2026

    The WordPress Real Media Library WordPress plugin is vulnerable to Stored Cross-Site Scripting via the name parameter in the ~/inc/overrides/lite/rest/Folder.php file which allows author-level attackers to inject arbitrary web scripts in folder names, in versions up to and including 4.14.1.

    Published: 30 Aug 2021
    8.1
    High

    CVE-2021-29630

    Last Modified: 21 Nov 2024

    In FreeBSD 13.0-STABLE before n246938-0729ba2f49c9, 12.2-STABLE before r370383, 11.4-STABLE before r370381, 13.0-RELEASE before p4, 12.2-RELEASE before p10, and 11.4-RELEASE before p13, the ggatec daemon does not validate the size of a response before writing it to a fixed-sized buffer allowing a malicious attacker in a privileged network position to overwrite the stack of ggatec and potentially execute arbitrary code.

    Published: 30 Aug 2021
    7.8
    High

    CVE-2021-29631

    Last Modified: 21 Nov 2024

    In FreeBSD 13.0-STABLE before n246941-20f96f215562, 12.2-STABLE before r370400, 11.4-STABLE before r370399, 13.0-RELEASE before p4, 12.2-RELEASE before p10, and 11.4-RELEASE before p13, certain VirtIO-based device models in bhyve failed to handle errors when fetching I/O descriptors. A malicious guest may cause the device model to operate on uninitialized I/O vectors leading to memory corruption, crashing of the bhyve process, and possibly arbitrary code execution in the bhyve process.

    Published: 30 Aug 2021
    7.5
    High

    CVE-2021-27018

    Last Modified: 21 Nov 2024

    The mechanism which performs certificate validation was discovered to have a flaw that resulted in certificates signed by an internal certificate authority to not be properly validated. This issue only affects clients that are configured to utilize Tenable.sc as the vulnerability data source.

    Published: 30 Aug 2021
    4.3
    Medium

    CVE-2021-27019

    Last Modified: 21 Nov 2024

    PuppetDB logging included potentially sensitive system information.

    Published: 30 Aug 2021
    8.8
    High

    CVE-2021-27020

    Last Modified: 21 Nov 2024

    Puppet Enterprise presented a security risk by not sanitizing user input when doing a CSV export.

    Published: 30 Aug 2021
    7.5
    High

    CVE-2021-22025

    Last Modified: 21 Nov 2024

    The vRealize Operations Manager API (8.x prior to 8.5) contains a broken access control vulnerability leading to unauthenticated API access. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can add new nodes to existing vROps cluster.

    Published: 30 Aug 2021
    7.5
    High

    CVE-2021-22026

    Last Modified: 21 Nov 2024

    The vRealize Operations Manager API (8.x prior to 8.5) contains a Server Side Request Forgery in an end point. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack leading to information disclosure.

    Published: 30 Aug 2021
    7.5
    High

    CVE-2021-22027

    Last Modified: 21 Nov 2024

    The vRealize Operations Manager API (8.x prior to 8.5) contains a Server Side Request Forgery in an end point. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack leading to information disclosure.

    Published: 30 Aug 2021
    7.5
    High

    CVE-2021-22024

    Last Modified: 21 Nov 2024

    The vRealize Operations Manager API (8.x prior to 8.5) contains an arbitrary log-file read vulnerability. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can read any log file resulting in sensitive information disclosure.

    Published: 30 Aug 2021
    7.2
    High

    CVE-2021-22023

    Last Modified: 21 Nov 2024

    The vRealize Operations Manager API (8.x prior to 8.5) has insecure object reference vulnerability. A malicious actor with administrative access to vRealize Operations Manager API may be able to modify other users information leading to an account takeover.

    Published: 30 Aug 2021
    4.9
    Medium

    CVE-2021-22022

    Last Modified: 21 Nov 2024

    The vRealize Operations Manager API (8.x prior to 8.5) contains an arbitrary file read vulnerability. A malicious actor with administrative access to vRealize Operations Manager API can read any arbitrary file on server leading to information disclosure.

    Published: 30 Aug 2021
    9.8
    Critical

    CVE-2021-38390

    Last Modified: 21 Nov 2024

    A Blind SQL injection vulnerability exists in the /DataHandler/HandlerEnergyType.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter egyid before using it as part of an SQL query. A remote, unauthenticated attacker can exploit this issue to execute arbitrary code in the context of NT SERVICE\MSSQLSERVER.

    Published: 30 Aug 2021
    9.8
    Critical

    CVE-2021-32983

    Last Modified: 21 Nov 2024

    A Blind SQL injection vulnerability exists in the /DataHandler/Handler_CFG.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter keyword before using it as part of an SQL query. A remote, unauthenticated attacker can exploit this issue to execute arbitrary code in the context of NT SERVICE\MSSQLSERVER.

    Published: 30 Aug 2021
    9.8
    Critical

    CVE-2021-38393

    Last Modified: 21 Nov 2024

    A Blind SQL injection vulnerability exists in the /DataHandler/HandlerAlarmGroup.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter agid before using it as part of an SQL query. A remote, unauthenticated attacker can exploit this issue to execute arbitrary code in the context of NT SERVICE\MSSQLSERVER.

    Published: 30 Aug 2021
    9.8
    Critical

    CVE-2021-38391

    Last Modified: 21 Nov 2024

    A Blind SQL injection vulnerability exists in the /DataHandler/AM/AM_Handler.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter type before using it as part of an SQL query. A remote, unauthenticated attacker can exploit this issue to execute arbitrary code in the context of NT SERVICE\MSSQLSERVER.

    Published: 30 Aug 2021
    4.3
    Medium

    CVE-2021-32991

    Last Modified: 21 Nov 2024

    Delta Electronics DIAEnergie Version 1.7.5 and prior is vulnerable to cross-site request forgery, which may allow an attacker to cause a user to carry out an action unintentionally.

    Published: 30 Aug 2021
    9.8
    Critical

    CVE-2021-32955

    Last Modified: 21 Nov 2024

    Delta Electronics DIAEnergie Version 1.7.5 and prior allows unrestricted file uploads, which may allow an attacker to remotely execute code.

    Published: 30 Aug 2021
    9.8
    Critical

    CVE-2021-32967

    Last Modified: 21 Nov 2024

    Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to add a new administrative user without being authenticated or authorized, which may allow the attacker to log in and use the device with administrative privileges.

    Published: 30 Aug 2021
    5.5
    Medium

    CVE-2021-33003

    Last Modified: 21 Nov 2024

    Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to retrieve passwords in cleartext due to a weak hashing algorithm.

    Published: 30 Aug 2021
    7.8
    High

    CVE-2021-33019

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow vulnerability in Delta Electronics DOPSoft Version 4.00.11 and prior may be exploited by processing a specially crafted project file, which may allow an attacker to execute arbitrary code.

    Published: 30 Aug 2021
    4.6
    Medium

    CVE-2021-3628

    Last Modified: 21 Nov 2024

    OpenKM Community Edition in its 6.3.10 version is vulnerable to authenticated Cross-site scripting (XSS). A remote attacker could exploit this vulnerability by injecting arbitrary code via de uuid parameter.

    Published: 30 Aug 2021
    —
    Unknown

    CVE-2021-21774

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-21773. Reason: This candidate is a reservation duplicate of CVE-2021-21773. Notes: All CVE users should reference CVE-2021-21773 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 30 Aug 2021
    5.4
    Medium

    CVE-2021-29743

    Last Modified: 21 Nov 2024

    IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 201693.

    Published: 30 Aug 2021
    4.9
    Medium

    CVE-2021-29728

    Last Modified: 21 Nov 2024

    IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 201160.

    Published: 30 Aug 2021
    7.5
    High

    CVE-2021-29723

    Last Modified: 21 Nov 2024

    IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-ForceID: 201100.

    Published: 30 Aug 2021
    7.5
    High

    CVE-2021-29722

    Last Modified: 21 Nov 2024

    IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 201095.

    Published: 30 Aug 2021
    8.2
    High

    CVE-2021-27663

    Last Modified: 21 Nov 2024

    A vulnerability in versions 10.1 through 10.5 of Johnson Controls CEM Systems AC2000 allows a remote attacker to access to the system without adequate authorization. This issue affects: Johnson Controls CEM Systems AC2000 10.1; 10.2; 10.3; 10.4; 10.5.

    Published: 30 Aug 2021
    7.8
    High

    CVE-2021-33007

    Last Modified: 21 Nov 2024

    A heap-based buffer overflow in Delta Electronics TPEditor: v1.98.06 and prior may be exploited by processing a specially crafted project file. Successful exploitation of this vulnerability may allow an attacker to execute arbitrary code.

    Published: 30 Aug 2021
    6.1
    Medium

    CVE-2020-18125

    Last Modified: 21 Nov 2024

    A reflected cross-site scripting (XSS) vulnerability in the /plugin/ajax.php component of Indexhibit 2.1.5 allows attackers to execute arbitrary web scripts or HTML.

    Published: 30 Aug 2021
    8.8
    High

    CVE-2020-18121

    Last Modified: 21 Nov 2024

    A configuration issue in Indexhibit 2.1.5 allows authenticated attackers to modify .php files, leading to getshell.

    Published: 30 Aug 2021
    5.7
    Medium

    CVE-2020-18124

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability in Indexhibit 2.1.5 allows attackers to arbitrarily reset account passwords.

    Published: 30 Aug 2021
    6.5
    Medium

    CVE-2020-18123

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability in Indexhibit 2.1.5 allows attackers to arbitrarily delete admin accounts.

    Published: 30 Aug 2021
    5.4
    Medium

    CVE-2020-18126

    Last Modified: 21 Nov 2024

    Multiple stored cross-site scripting (XSS) vulnerabilities in the Sections module of Indexhibit 2.1.5 allows attackers to execute arbitrary web scripts or HTML.

    Published: 30 Aug 2021
    6.5
    Medium

    CVE-2020-18127

    Last Modified: 21 Nov 2024

    An issue in the /config/config.php component of Indexhibit 2.1.5 allows attackers to arbitrarily view files.

    Published: 30 Aug 2021
    6.3
    Medium

    CVE-2021-27909

    Last Modified: 21 Nov 2024

    For Mautic versions prior to 3.3.4/4.0.0, there is an XSS vulnerability on Mautic's password reset page where a vulnerable parameter, "bundle," in the URL could allow an attacker to execute Javascript code. The attacker would be required to convince or trick the target into clicking a password reset URL with the vulnerable parameter utilized.

    Published: 30 Aug 2021
    3.5
    Low

    CVE-2021-27913

    Last Modified: 21 Nov 2024

    The function mt_rand is used to generate session tokens, this function is cryptographically flawed due to its nature being one pseudorandomness, an attacker can take advantage of the cryptographically insecure nature of this function to enumerate session tokens for accounts that are not under his/her control This issue affects: Mautic Mautic versions prior to 3.3.4; versions prior to 4.0.0.

    Published: 30 Aug 2021
    7.1
    High

    CVE-2021-27912

    Last Modified: 21 Nov 2024

    Mautic versions before 3.3.4/4.0.0 are vulnerable to an inline JS XSS attack when viewing Mautic assets by utilizing inline JS in the title and adding a broken image URL as a remote asset. This can only be leveraged by an authenticated user with permission to create or edit assets.

    Published: 30 Aug 2021
    8.3
    High

    CVE-2021-27911

    Last Modified: 21 Nov 2024

    Mautic versions before 3.3.4/4.0.0 are vulnerable to an inline JS XSS attack through the contact's first or last name and triggered when viewing a contact's details page then clicking on the action drop down and hovering over the Campaigns button. Contact first and last name can be populated from different sources such as UI, API, 3rd party syncing, forms, etc.

    Published: 30 Aug 2021
    8.2
    High

    CVE-2021-27910

    Last Modified: 21 Nov 2024

    Insufficient sanitization / filtering allows for arbitrary JavaScript Injection in Mautic using the bounce management callback function. The values submitted in the "error" and "error_related_to" parameters of the POST request of the bounce management callback will be permanently stored and executed once the details page of an affected lead is opened by a Mautic user. An attacker with access to the bounce management callback function (identified with the Mailjet webhook, but it is assumed this will work uniformly across all kinds of webhooks) can inject arbitrary JavaScript Code into the "error" and "error_related_to" parameters of the POST request (POST /mailer/<product / webhook>/callback). It is noted that there is no authentication needed to access this function. The JavaScript Code is stored permanently in the web application and executed every time an authenticated user views the details page of a single contact / lead in Mautic. This means, arbitrary code can be executed to, e.g., steal or tamper with information.

    Published: 30 Aug 2021
    8.8
    High

    CVE-2021-37911

    Last Modified: 21 Nov 2024

    The management interface of BenQ smart wireless conference projector does not properly control user's privilege. Attackers can access any system directory of this device through the interface and execute arbitrary commands if he enters the local subnetwork.

    Published: 30 Aug 2021
    5.4
    Medium

    CVE-2021-24667

    Last Modified: 21 Nov 2024

    A stored cross-site scripting vulnerability has been discovered in : Simply Gallery Blocks with Lightbox (Version – 2.2.0 & below). The vulnerability exists in the Lightbox functionality where a user with low privileges is allowed to execute arbitrary script code within the context of the application. This vulnerability is due to insufficient validation of image parameters in meta data.

    Published: 30 Aug 2021
    5.4
    Medium

    CVE-2021-24665

    Last Modified: 21 Nov 2024

    The WP Video Lightbox WordPress plugin before 1.9.3 does not escape the attributes of its shortcodes, allowing users with a role as low as contributor to perform Cross-Site Scripting attacks

    Published: 30 Aug 2021