CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2020-25562

    Last Modified: 21 Nov 2024

    In SapphireIMS 5.0, there is no CSRF token present in the entire application. This can lead to CSRF vulnerabilities in critical application forms like account resent.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2020-25561

    Last Modified: 21 Nov 2024

    SapphireIMS 5 utilized default sapphire:ims credentials to connect the client to server. This credential is saved in ServerConf.config file in the client.

    Published: 11 Aug 2021
    9.8
    Critical

    CVE-2020-25560

    Last Modified: 21 Nov 2024

    In SapphireIMS 5.0, it is possible to use the hardcoded credential in clients (username: sapphire, password: ims) and gain access to the portal. Once the access is available, the attacker can inject malicious OS commands on “ping”, “traceroute” and “snmp” functions and execute code on the server. We also observed the same is true if the JSESSIONID is completely removed.

    Published: 11 Aug 2021
    7.5
    High

    CVE-2017-16632

    Last Modified: 21 Nov 2024

    In SapphireIMS 4097_1, the password in the database is stored in Base64 format.

    Published: 11 Aug 2021
    6.5
    Medium

    CVE-2017-16631

    Last Modified: 21 Nov 2024

    In SapphireIMS 4097_1, a guest user is able to change the password of an administrative user by utilizing an Insecure Direct Object Reference (IDOR) in the "Account Password Reset" functionality.

    Published: 11 Aug 2021
    8.8
    High

    CVE-2017-16630

    Last Modified: 21 Nov 2024

    In SapphireIMS 4097_1, a guest user can create a local administrator account on any system that has SapphireIMS installed, because of an Insecure Direct Object Reference (IDOR) in the local user creation function.

    Published: 11 Aug 2021
    7.5
    High

    CVE-2017-16629

    Last Modified: 21 Nov 2024

    In SapphireIMS 4097_1, it is possible to guess the registered/active usernames of the software from the errors it gives out for each type of user on the Login form. For "Incorrect User" - it gives an error "The application failed to identify the user. Please contact administrator for help." For "Correct User and Incorrect Password" - it gives an error "Authentication failed. Please login again."

    Published: 11 Aug 2021
    5.5
    Medium

    CVE-2021-32440

    Last Modified: 21 Nov 2024

    The Media_RewriteODFrame function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2021-32439

    Last Modified: 21 Nov 2024

    Buffer overflow in the stbl_AppendSize function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file.

    Published: 11 Aug 2021
    5.5
    Medium

    CVE-2021-32438

    Last Modified: 21 Nov 2024

    The gf_media_export_filters function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.

    Published: 11 Aug 2021
    5.5
    Medium

    CVE-2021-32437

    Last Modified: 21 Nov 2024

    The gf_hinter_finalize function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.

    Published: 11 Aug 2021
    —
    Unknown

    CVE-2021-33791

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability

    Published: 11 Aug 2021
    9.8
    Critical

    CVE-2021-33793

    Last Modified: 21 Nov 2024

    Foxit Reader before 10.1.4 and PhantomPDF before 10.1.4 have an out-of-bounds write because the Cross-Reference table is mishandled during Office document conversion.

    Published: 11 Aug 2021
    9.1
    Critical

    CVE-2021-33794

    Last Modified: 21 Nov 2024

    Foxit Reader before 10.1.4 and PhantomPDF before 10.1.4 allow information disclosure or an application crash after mishandling the Tab key during XFA form interaction.

    Published: 11 Aug 2021
    8.8
    High

    CVE-2020-21976

    Last Modified: 21 Nov 2024

    An arbitrary file upload in the <input type="file" name="user_image"> component of NewsOne CMS v1.1.0 allows attackers to webshell and execute arbitrary commands.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2021-38085

    Last Modified: 21 Nov 2024

    The Canon TR150 print driver through 3.71.2.10 is vulnerable to a privilege escalation issue. During the add printer process, a local attacker can overwrite CNMurGE.dll and, if timed properly, the overwritten DLL will be loaded into a SYSTEM process resulting in escalation of privileges. This occurs because the driver drops a world-writable DLL into a CanonBJ %PROGRAMDATA% location that gets loaded by printisolationhost (a system process).

    Published: 11 Aug 2021
    5.6
    Medium

    CVE-2021-23421

    Last Modified: 21 Nov 2024

    All versions of package merge-change are vulnerable to Prototype Pollution via the utils.set function.

    Published: 11 Aug 2021
    8.7
    High

    CVE-2021-37694

    Last Modified: 21 Nov 2024

    @asyncapi/java-spring-cloud-stream-template generates a Spring Cloud Stream (SCSt) microservice. In versions prior to 0.7.0 arbitrary code injection was possible when an attacker controls the AsyncAPI document. An example is provided in GHSA-xj6r-2jpm-qvxp. There are no mitigations available and all users are advised to update.

    Published: 11 Aug 2021
    8.8
    High

    CVE-2021-3050

    Last Modified: 21 Nov 2024

    An OS command injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator to execute arbitrary OS commands to escalate privileges. This issue impacts: PAN-OS 9.0 version 9.0.10 through PAN-OS 9.0.14; PAN-OS 9.1 version 9.1.4 through PAN-OS 9.1.10; PAN-OS 10.0 version 10.0.7 and earlier PAN-OS 10.0 versions; PAN-OS 10.1 version 10.1.0 through PAN-OS 10.1.1. Prisma Access firewalls and firewalls running PAN-OS 8.1 versions are not impacted by this issue.

    Published: 11 Aug 2021
    5.9
    Medium

    CVE-2021-3048

    Last Modified: 21 Nov 2024

    Certain invalid URL entries contained in an External Dynamic List (EDL) cause the Device Server daemon (devsrvr) to stop responding. This condition causes subsequent commits on the firewall to fail and prevents administrators from performing commits and configuration changes even though the firewall remains otherwise functional. If the firewall then restarts, it results in a denial-of-service (DoS) condition and the firewall stops processing traffic. This issue impacts: PAN-OS 9.0 versions earlier than PAN-OS 9.0.14; PAN-OS 9.1 versions earlier than PAN-OS 9.1.9; PAN-OS 10.0 versions earlier than PAN-OS 10.0.5. PAN-OS 8.1 and PAN-OS 10.1 versions are not impacted.

    Published: 11 Aug 2021
    4.2
    Medium

    CVE-2021-3047

    Last Modified: 21 Nov 2024

    A cryptographically weak pseudo-random number generator (PRNG) is used during authentication to the Palo Alto Networks PAN-OS web interface. This enables an authenticated attacker, with the capability to observe their own authentication secrets over a long duration on the PAN-OS appliance, to impersonate another authenticated web interface administrator's session. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.19; PAN-OS 9.0 versions earlier than PAN-OS 9.0.14; PAN-OS 9.1 versions earlier than PAN-OS 9.1.10; PAN-OS 10.0 versions earlier than PAN-OS 10.0.4. PAN-OS 10.1 versions are not impacted.

    Published: 11 Aug 2021
    6.8
    Medium

    CVE-2021-3046

    Last Modified: 21 Nov 2024

    An improper authentication vulnerability exists in Palo Alto Networks PAN-OS software that enables a SAML authenticated attacker to impersonate any other user in the GlobalProtect Portal and GlobalProtect Gateway when they are configured to use SAML authentication. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.19; PAN-OS 9.0 versions earlier than PAN-OS 9.0.14; PAN-OS 9.1 versions earlier than PAN-OS 9.1.9; PAN-OS 10.0 versions earlier than PAN-OS 10.0.5. PAN-OS 10.1 versions are not impacted.

    Published: 11 Aug 2021
    4.9
    Medium

    CVE-2021-3045

    Last Modified: 21 Nov 2024

    An OS command argument injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator to read any arbitrary file from the file system. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.19; PAN-OS 9.0 versions earlier than PAN-OS 9.0.14; PAN-OS 9.1 versions earlier than PAN-OS 9.1.10. PAN-OS 10.0 and later versions are not impacted.

    Published: 11 Aug 2021
    7.5
    High

    CVE-2021-20427

    Last Modified: 21 Nov 2024

    IBM Security Guardium 11.2 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 196314.

    Published: 11 Aug 2021
    4.3
    Medium

    CVE-2021-20420

    Last Modified: 21 Nov 2024

    IBM Security Guardium 11.2 could disclose sensitive information due to reliance on untrusted inputs that could aid in further attacks against the system. IBM X-Force ID: 196281.

    Published: 11 Aug 2021
    9.8
    Critical

    CVE-2021-20418

    Last Modified: 21 Nov 2024

    IBM Security Guardium 11.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 196279.

    Published: 11 Aug 2021
    5.9
    Medium

    CVE-2021-38543

    Last Modified: 21 Nov 2024

    TP-Link UE330 USB splitter devices through 2021-08-09, in certain specific use cases in which the device supplies power to audio-output equipment, allow remote attackers to recover speech signals from an LED on the device, via a telescope and an electro-optical sensor, aka a "Glowworm" attack. We assume that the USB splitter supplies power to some speakers. The power indicator LED of the USB splitter is connected directly to the power line, as a result, the intensity of the USB splitter's power indicator LED is correlative to its power consumption. The sound played by the connected speakers affects the USB splitter's power consumption and as a result is also correlative to the light intensity of the LED. By analyzing measurements obtained from an electro-optical sensor directed at the power indicator LED of the USB splitter, we can recover the sound played by the connected speakers.

    Published: 11 Aug 2021
    5.9
    Medium

    CVE-2021-38544

    Last Modified: 21 Nov 2024

    Sony SRS-XB33 and SRS-XB43 devices through 2021-08-09 allow remote attackers to recover speech signals from an LED on the device, via a telescope and an electro-optical sensor, aka a "Glowworm" attack. The power indicator LED of the speakers is connected directly to the power line, as a result, the intensity of a device's power indicator LED is correlative to the power consumption. The sound played by the speakers affects their power consumption and as a result is also correlative to the light intensity of the LEDs. By analyzing measurements obtained from an electro-optical sensor directed at the power indicator LEDs of the speakers, we can recover the sound played by them.

    Published: 11 Aug 2021
    5.9
    Medium

    CVE-2021-38545

    Last Modified: 21 Nov 2024

    Raspberry Pi 3 B+ and 4 B devices through 2021-08-09, in certain specific use cases in which the device supplies power to audio-output equipment, allow remote attackers to recover speech signals from an LED on the device, via a telescope and an electro-optical sensor, aka a "Glowworm" attack. We assume that the Raspberry Pi supplies power to some speakers. The power indicator LED of the Raspberry Pi is connected directly to the power line, as a result, the intensity of a device's power indicator LED is correlative to the power consumption. The sound played by the speakers affects the Raspberry Pi's power consumption and as a result is also correlative to the light intensity of the LED. By analyzing measurements obtained from an electro-optical sensor directed at the power indicator LED of the Raspberry Pi, we can recover the sound played by the speakers.

    Published: 11 Aug 2021
    5.9
    Medium

    CVE-2021-38546

    Last Modified: 21 Nov 2024

    CREATIVE Pebble devices through 2021-08-09 allow remote attackers to recover speech signals from an LED on the device, via a telescope and an electro-optical sensor, aka a "Glowworm" attack. The power indicator LED of the speakers is connected directly to the power line, as a result, the intensity of a device's power indicator LED is correlative to the power consumption. The sound played by the speakers affects their power consumption and as a result is also correlative to the light intensity of the LEDs. By analyzing measurements obtained from an electro-optical sensor directed at the power indicator LEDs of the speakers, we can recover the sound played by them.

    Published: 11 Aug 2021
    5.9
    Medium

    CVE-2021-38547

    Last Modified: 21 Nov 2024

    Logitech Z120 and S120 speakers through 2021-08-09 allow remote attackers to recover speech signals from an LED on the device, via a telescope and an electro-optical sensor, aka a "Glowworm" attack. The power indicator LED of the speakers is connected directly to the power line, as a result, the intensity of a device's power indicator LED is correlative to the power consumption. The sound played by the speakers affects their power consumption and as a result is also correlative to the light intensity of the LEDs. By analyzing measurements obtained from an electro-optical sensor directed at the power indicator LEDs of the speakers, we can recover the sound played by them.

    Published: 11 Aug 2021
    5.9
    Medium

    CVE-2021-38548

    Last Modified: 21 Nov 2024

    JBL Go 2 devices through 2021-08-09 allow remote attackers to recover speech signals from an LED on the device, via a telescope and an electro-optical sensor, aka a "Glowworm" attack. The power indicator LED of the speakers is connected directly to the power line, as a result, the intensity of a device's power indicator LED is correlative to the power consumption. The sound played by the speakers affects their power consumption and as a result is also correlative to the light intensity of the LEDs. By analyzing measurements obtained from an electro-optical sensor directed at the power indicator LEDs of the speakers, we can recover the sound played by them.

    Published: 11 Aug 2021
    5.9
    Medium

    CVE-2021-38549

    Last Modified: 21 Nov 2024

    MIRACASE MHUB500 USB splitters through 2021-08-09, in certain specific use cases in which the device supplies power to audio-output equipment, allow remote attackers to recover speech signals from an LED on the device, via a telescope and an electro-optical sensor, aka a "Glowworm" attack. We assume that the USB splitter supplies power to some speakers. The power indicator LED of the USB splitter is connected directly to the power line, as a result, the intensity of the USB splitter's power indicator LED is correlative to its power consumption. The sound played by the connected speakers affects the USB splitter's power consumption and as a result is also correlative to the light intensity of the LED. By analyzing measurements obtained from an electro-optical sensor directed at the power indicator LED of the USB splitter, we can recover the sound played by the connected speakers.

    Published: 11 Aug 2021
    6.1
    Medium

    CVE-2021-34640

    Last Modified: 23 May 2025

    The Securimage-WP-Fixed WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['PHP_SELF'] in the ~/securimage-wp.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 3.5.4.

    Published: 11 Aug 2021
    9.1
    Critical

    CVE-2019-25052

    Last Modified: 5 Jun 2026

    In Linaro OP-TEE before 3.7.0, by using inconsistent or malformed data, it is possible to call update and final cryptographic functions directly, causing a crash that could leak sensitive information.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2021-0196

    Last Modified: 21 Nov 2024

    Improper access control in kernel mode driver for some Intel(R) NUC 9 Extreme Laptop Kits before version 2.2.0.20 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2021-0160

    Last Modified: 21 Nov 2024

    Uncontrolled search path in some Intel(R) NUC Pro Chassis Element AverMedia Capture Card drivers before version 3.0.64.143 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 11 Aug 2021
    4.4
    Medium

    CVE-2021-0083

    Last Modified: 21 Nov 2024

    Improper input validation in some Intel(R) Optane(TM) PMem versions before versions 1.2.0.5446 or 2.2.0.1547 may allow a privileged user to potentially enable denial of service via local access.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2021-0062

    Last Modified: 21 Nov 2024

    Improper input validation in some Intel(R) Graphics Drivers before version 27.20.100.8935 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 11 Aug 2021
    5.5
    Medium

    CVE-2021-0012

    Last Modified: 21 Nov 2024

    Use after free in some Intel(R) Graphics Driver before version 27.20.100.8336, 15.45.33.5164, and 15.40.47.5166 may allow an authenticated user to potentially enable denial of service via local access.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2021-0061

    Last Modified: 21 Nov 2024

    Improper initialization in some Intel(R) Graphics Driver before version 27.20.100.9030 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 11 Aug 2021
    6.5
    Medium

    CVE-2021-0009

    Last Modified: 21 Nov 2024

    Out-of-bounds read in the firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

    Published: 11 Aug 2021
    4.4
    Medium

    CVE-2021-0008

    Last Modified: 21 Nov 2024

    Uncontrolled resource consumption in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow privileged user to potentially enable denial of service via local access.

    Published: 11 Aug 2021
    4.4
    Medium

    CVE-2021-0007

    Last Modified: 21 Nov 2024

    Uncaught exception in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.1.0 may allow a privileged attacker to potentially enable denial of service via local access.

    Published: 11 Aug 2021
    4.4
    Medium

    CVE-2021-0006

    Last Modified: 21 Nov 2024

    Improper conditions check in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.4.0 may allow a privileged user to potentially enable denial of service via local access.

    Published: 11 Aug 2021
    4.4
    Medium

    CVE-2021-0005

    Last Modified: 21 Nov 2024

    Uncaught exception in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow a privileged user to potentially enable denial of service via local access.

    Published: 11 Aug 2021
    4.4
    Medium

    CVE-2021-0004

    Last Modified: 21 Nov 2024

    Improper buffer restrictions in the firmware of Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow a privileged user to potentially enable denial of service via local access.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2021-32939

    Last Modified: 21 Nov 2024

    FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to an out-of-bounds write while processing project files, allowing an attacker to craft a project file that may permit arbitrary code execution.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2021-32947

    Last Modified: 21 Nov 2024

    FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code.

    Published: 11 Aug 2021
    7.8
    High

    CVE-2021-32931

    Last Modified: 21 Nov 2024

    An uninitialized pointer in FATEK Automation FvDesigner, Versions 1.5.88 and prior may be exploited while the application is processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.

    Published: 11 Aug 2021