CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2020-20642

    Last Modified: 21 Nov 2024

    Cross Site Request Forgery (CSRF) vulnerability exists in EyouCMS 1.3.6 that can add an htm page to execute the js code via login.php?m=admin&c=Filemanager&a=newfile&lang=cn.

    Published: 19 Aug 2021
    9.8
    Critical

    CVE-2021-39302

    Last Modified: 21 Nov 2024

    MISP 2.4.148, in certain configurations, allows SQL injection via the app/Model/Log.php $conditions['org'] value.

    Published: 19 Aug 2021
    6.1
    Medium

    CVE-2020-18748

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) in Typora v0.9.65 allows attackers to execute arbitrary code via mathjax syntax due to a mathjax configuration error in the mathematical formula blocks. This is a different vulnerability from CVE-2020-18221.

    Published: 19 Aug 2021
    —
    Unknown

    CVE-2013-0344

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2013. Notes: none

    Published: 19 Aug 2021
    —
    Unknown

    CVE-2013-1791

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2013. Notes: none

    Published: 19 Aug 2021
    —
    Unknown

    CVE-2013-1837

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 19 Aug 2021
    6.4
    Medium

    CVE-2021-29280

    Last Modified: 21 Nov 2024

    In TP-Link Wireless N Router WR840N an ARP poisoning attack can cause buffer overflow

    Published: 19 Aug 2021
    8.8
    High

    CVE-2021-34645

    Last Modified: 5 May 2025

    The Shopping Cart & eCommerce Store WordPress plugin is vulnerable to Cross-Site Request Forgery via the save_currency_settings function found in the ~/admin/inc/wp_easycart_admin_initial_setup.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 5.1.0.

    Published: 19 Aug 2021
    4.3
    Medium

    CVE-2021-31868

    Last Modified: 21 Nov 2024

    Rapid7 Nexpose version 6.6.95 and earlier allows authenticated users of the Security Console to view and edit any ticket in the legacy ticketing feature, regardless of the assignment of the ticket. This issue was resolved in version 6.6.96, released on August 4, 2021.

    Published: 19 Aug 2021
    4.8
    Medium

    CVE-2021-27822

    Last Modified: 21 Nov 2024

    A persistent cross site scripting (XSS) vulnerability in the Add Categories module of Vehicle Parking Management System 1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the Category field.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2021-37698

    Last Modified: 3 Nov 2025

    Icinga is a monitoring system which checks the availability of network resources, notifies users of outages, and generates performance data for reporting. In versions 2.5.0 through 2.13.0, ElasticsearchWriter, GelfWriter, InfluxdbWriter and Influxdb2Writer do not verify the server's certificate despite a certificate authority being specified. Icinga 2 instances which connect to any of the mentioned time series databases (TSDBs) using TLS over a spoofable infrastructure should immediately upgrade to version 2.13.1, 2.12.6, or 2.11.11 to patch the issue. Such instances should also change the credentials (if any) used by the TSDB writer feature to authenticate against the TSDB. There are no workarounds aside from upgrading.

    Published: 19 Aug 2021
    5.4
    Medium

    CVE-2021-28002

    Last Modified: 21 Nov 2024

    A persistent cross-site scripting vulnerability was discovered in the Excerpt parameter in Textpattern CMS 4.9.0 which allows remote attackers to execute arbitrary code via a crafted payload entered into the URL field. The vulnerability is triggered by users visiting the 'Articles' page.

    Published: 19 Aug 2021
    5.4
    Medium

    CVE-2021-28001

    Last Modified: 21 Nov 2024

    A cross-site scripting vulnerability was discovered in the Comments parameter in Textpattern CMS 4.8.4 which allows remote attackers to execute arbitrary code via a crafted payload entered into the URL field. The vulnerability is triggered by users visiting https://site.com/articles/welcome-to-your-site#comments-head.

    Published: 19 Aug 2021
    4.8
    Medium

    CVE-2021-28000

    Last Modified: 21 Nov 2024

    A persistent cross-site scripting vulnerability was discovered in Local Services Search Engine Management System Project 1.0 which allows remote attackers to execute arbitrary code via crafted payloads entered into the Name and Address fields.

    Published: 19 Aug 2021
    4.9
    Medium

    CVE-2021-27999

    Last Modified: 21 Nov 2024

    A SQL injection vulnerability was discovered in the editid parameter in Local Services Search Engine Management System Project 1.0. This vulnerability gives admin users the ability to dump all data from the database.

    Published: 19 Aug 2021
    8.8
    High

    CVE-2021-39273

    Last Modified: 21 Nov 2024

    In XeroSecurity Sn1per 9.0 (free version), insecure permissions (0777) are set upon application execution, allowing an unprivileged user to modify the application, modules, and configuration files. This leads to arbitrary code execution with root privileges.

    Published: 19 Aug 2021
    9.8
    Critical

    CVE-2021-39274

    Last Modified: 21 Nov 2024

    In XeroSecurity Sn1per 9.0 (free version), insecure directory permissions (0777) are set during installation, allowing an unprivileged user to modify the main application and the application configuration file. This results in arbitrary code execution with root privileges.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2021-31401

    Last Modified: 21 Nov 2024

    An issue was discovered in tcp_rcv() in nptcp.c in HCC embedded InterNiche 4.0.1. The TCP header processing code doesn't sanitize the value of the IP total length field (header length + data length). With a crafted IP packet, an integer overflow occurs whenever the value of the IP data length is calculated by subtracting the length of the header from the total length of the IP packet.

    Published: 19 Aug 2021
    9.1
    Critical

    CVE-2020-35685

    Last Modified: 21 Nov 2024

    An issue was discovered in HCC Nichestack 3.0. The code that generates Initial Sequence Numbers (ISNs) for TCP connections derives the ISN from an insufficiently random source. As a result, an attacker may be able to determine the ISN of current and future TCP connections and either hijack existing ones or spoof future ones. (Proper ISN generation should aim to follow at least the specifications outlined in RFC 6528.)

    Published: 19 Aug 2021
    7.5
    High

    CVE-2020-35684

    Last Modified: 21 Nov 2024

    An issue was discovered in HCC Nichestack 3.0. The code that parses TCP packets relies on an unchecked value of the IP payload size (extracted from the IP header) to compute the length of the TCP payload within the TCP checksum computation function. When the IP payload size is set to be smaller than the size of the IP header, the TCP checksum computation function may read out of bounds (a low-impact write-out-of-bounds is also possible).

    Published: 19 Aug 2021
    7.5
    High

    CVE-2020-35683

    Last Modified: 21 Nov 2024

    An issue was discovered in HCC Nichestack 3.0. The code that parses ICMP packets relies on an unchecked value of the IP payload size (extracted from the IP header) to compute the ICMP checksum. When the IP payload size is set to be smaller than the size of the IP header, the ICMP checksum computation function may read out of bounds, causing a Denial-of-Service.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2021-36762

    Last Modified: 21 Nov 2024

    An issue was discovered in HCC Embedded InterNiche NicheStack through 4.3. The tfshnd():tftpsrv.c TFTP packet processing function doesn't ensure that a filename is adequately '\0' terminated; therefore, a subsequent call to strlen for the filename might read out of bounds of the protocol packet buffer (if no '\0' byte exists within a reasonable range).

    Published: 19 Aug 2021
    7.5
    High

    CVE-2021-27565

    Last Modified: 21 Nov 2024

    The web server in InterNiche NicheStack through 4.0.1 allows remote attackers to cause a denial of service (infinite loop and networking outage) via an unexpected valid HTTP request such as OPTIONS. This occurs because the HTTP request handler enters a miscoded wbs_loop() debugger hook.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2021-31400

    Last Modified: 21 Nov 2024

    An issue was discovered in tcp_pulloutofband() in tcp_in.c in HCC embedded InterNiche 4.0.1. The TCP out-of-band urgent-data processing function invokes a panic function if the pointer to the end of the out-of-band data points outside of the TCP segment's data. If the panic function hadn't a trap invocation removed, it will enter an infinite loop and therefore cause DoS (continuous loop or a device reset).

    Published: 19 Aug 2021
    7.5
    High

    CVE-2021-31228

    Last Modified: 21 Nov 2024

    An issue was discovered in HCC embedded InterNiche 4.0.1. This vulnerability allows the attacker to predict a DNS query's source port in order to send forged DNS response packets that will be accepted as valid answers to the DNS client's requests (without sniffing the specific request). Data is predictable because it is based on the time of day, and has too few bits.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2021-31227

    Last Modified: 21 Nov 2024

    An issue was discovered in HCC embedded InterNiche 4.0.1. A potential heap buffer overflow exists in the code that parses the HTTP POST request, due to an incorrect signed integer comparison. This vulnerability requires the attacker to send a malformed HTTP packet with a negative Content-Length, which bypasses the size checks and results in a large heap overflow in the wbs_multidata buffer copy.

    Published: 19 Aug 2021
    9.8
    Critical

    CVE-2021-31226

    Last Modified: 21 Nov 2024

    An issue was discovered in HCC embedded InterNiche 4.0.1. A potential heap buffer overflow exists in the code that parses the HTTP POST request, due to lack of size validation. This vulnerability requires the attacker to send a crafted HTTP POST request with a URI longer than 50 bytes. This leads to a heap overflow in wbs_post() via an strcpy() call.

    Published: 19 Aug 2021
    7.8
    High

    CVE-2021-31338

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.0 SP1). Affected devices allow to modify configuration settings over an unauthenticated channel. This could allow a local attacker to escalate privileges and execute own code on the device.

    Published: 19 Aug 2021
    6.5
    Medium

    CVE-2020-18899

    Last Modified: 21 Nov 2024

    An uncontrolled memory allocation in DataBufdata(subBox.length-sizeof(box)) function of Exiv2 0.27 allows attackers to cause a denial of service (DOS) via a crafted input.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-32091

    Last Modified: 21 Nov 2024

    MariaDB v10.7 was discovered to contain an use-after-poison in in __interceptor_memset at /libsanitizer/sanitizer_common/sanitizer_common_interceptors.inc.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-32082

    Last Modified: 21 Nov 2024

    MariaDB v10.5 to v10.7 was discovered to contain an assertion failure at table->get_ref_count() == 0 in dict0dict.cc.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-32084

    Last Modified: 21 Nov 2024

    MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault via the component sub_select.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-32085

    Last Modified: 21 Nov 2024

    MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault via the component Item_func_in::cleanup/Item::cleanup_processor.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-32086

    Last Modified: 21 Nov 2024

    MariaDB v10.4 to v10.8 was discovered to contain a segmentation fault via the component Item_field::fix_outer_field.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-32089

    Last Modified: 21 Nov 2024

    MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.

    Published: 19 Aug 2021
    6.5
    Medium

    CVE-2021-37750

    Last Modified: 21 Nov 2024

    The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field.

    Published: 19 Aug 2021
    6.5
    Medium

    CVE-2020-18898

    Last Modified: 21 Nov 2024

    A stack exhaustion issue in the printIFDStructure function of Exiv2 0.27 allows remote attackers to cause a denial of service (DOS) via a crafted file.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-27378

    Last Modified: 21 Nov 2024

    An issue in the component Create_tmp_table::finalize of MariaDB Server v10.7 and below was discovered to allow attackers to cause a Denial of Service (DoS) via specially crafted SQL statements.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-27382

    Last Modified: 21 Nov 2024

    MariaDB Server v10.7 and below was discovered to contain a segmentation fault via the component Item_field::used_tables/update_depend_map_for_order.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-32081

    Last Modified: 21 Nov 2024

    MariaDB v10.4 to v10.7 was discovered to contain an use-after-poison in prepare_inplace_add_virtual at /storage/innobase/handler/handler0alter.cc.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-32087

    Last Modified: 21 Nov 2024

    MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault via the component Item_args::walk_args.

    Published: 19 Aug 2021
    7.5
    High

    CVE-2022-32088

    Last Modified: 21 Nov 2024

    MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault via the component Exec_time_tracker::get_loops/Filesort_tracker::report_use/filesort.

    Published: 19 Aug 2021
    5.8
    Medium

    CVE-2021-32602

    Last Modified: 21 Nov 2024

    An improper neutralization of input during web page generation vulnerability (CWE-79) in FortiPortal GUI 6.0.4 and below, 5.3.6 and below, 5.2.6 and below, 5.1.2 and below, 5.0.3 and below, 4.2.2 and below, 4.1.2 and below, 4.0.4 and below may allow a remote and unauthenticated attacker to perform an XSS attack via sending a crafted request with an invalid lang parameter or with an invalid org.springframework.web.servlet.i18n.CookieLocaleResolver.LOCALE value.

    Published: 18 Aug 2021
    7.8
    High

    CVE-2021-24038

    Last Modified: 21 Nov 2024

    Due to a bug with management of handles in OVRServiceLauncher.exe, an attacker could expose a privileged process handle to an unprivileged process, leading to local privilege escalation. This issue affects Oculus Desktop versions after 1.39 and prior to 31.1.0.67.507.

    Published: 18 Aug 2021
    4.8
    Medium

    CVE-2021-39138

    Last Modified: 21 Nov 2024

    Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Developers can use the REST API to signup users and also allow users to login anonymously. Prior to version 4.5.1, when an anonymous user is first signed up using REST, the server creates session incorrectly. Particularly, the `authProvider` field in `_Session` class under `createdWith` shows the user logged in creating a password. If a developer later depends on the `createdWith` field to provide a different level of access between a password user and anonymous user, the server incorrectly classified the session type as being created with a `password`. The server does not currently use `createdWith` to make decisions about internal functions, so if a developer is not using `createdWith` directly, they are not affected. The vulnerability only affects users who depend on `createdWith` by using it directly. The issue is patched in Parse Server version 4.5.1. As a workaround, do not use the `createdWith` Session field to make decisions if one allows anonymous login.

    Published: 18 Aug 2021
    9.8
    Critical

    CVE-2021-32588

    Last Modified: 21 Nov 2024

    A use of hard-coded credentials (CWE-798) vulnerability in FortiPortal versions 5.2.5 and below, 5.3.5 and below, 6.0.4 and below, versions 5.1.x and 5.0.x may allow a remote and unauthenticated attacker to execute unauthorized commands as root by uploading and deploying malicious web application archive files using the default hard-coded Tomcat Manager username and password.

    Published: 18 Aug 2021
    8.8
    High

    CVE-2020-22345

    Last Modified: 21 Nov 2024

    /graphStatus/displayServiceStatus.php in Centreon 19.10.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the RRDdatabase_path parameter.

    Published: 18 Aug 2021
    7.8
    High

    CVE-2021-34745

    Last Modified: 21 Nov 2024

    A vulnerability in the AppDynamics .NET Agent for Windows could allow an attacker to leverage an authenticated, local user account to gain SYSTEM privileges. This vulnerability is due to the .NET Agent Coordinator Service executing code with SYSTEM privileges. An attacker with local access to a device that is running the vulnerable agent could create a custom process that would be launched with those SYSTEM privileges. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system. This vulnerability is fixed in AppDynamics .NET Agent Release 21.7.

    Published: 18 Aug 2021
    5.8
    Medium

    CVE-2021-34749

    Last Modified: 26 Nov 2024

    A vulnerability in Server Name Identification (SNI) request filtering of Cisco Web Security Appliance (WSA), Cisco Firepower Threat Defense (FTD), and the Snort detection engine could allow an unauthenticated, remote attacker to bypass filtering technology on an affected device and exfiltrate data from a compromised host. This vulnerability is due to inadequate filtering of the SSL handshake. An attacker could exploit this vulnerability by using data from the SSL client hello packet to communicate with an external server. A successful exploit could allow the attacker to execute a command-and-control attack on a compromised host and perform additional data exfiltration attacks.

    Published: 18 Aug 2021
    6.5
    Medium

    CVE-2021-34734

    Last Modified: 21 Nov 2024

    A vulnerability in the Link Layer Discovery Protocol (LLDP) implementation for the Cisco Video Surveillance 7000 Series IP Cameras firmware could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper management of memory resources, referred to as a double free. An attacker could exploit this vulnerability by sending crafted LLDP packets to an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. Note: LLDP is a Layer 2 protocol. To exploit these vulnerabilities, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).

    Published: 18 Aug 2021