CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2021-34639

    Last Modified: 21 Mar 2025

    Authenticated File Upload in WordPress Download Manager <= 3.1.24 allows authenticated (Author+) users to upload files with a double extension, e.g. "payload.php.png" which is executable in some configurations. This issue affects: WordPress Download Manager version 3.1.24 and prior versions.

    Published: 5 Aug 2021
    6.5
    Medium

    CVE-2021-22920

    Last Modified: 21 Nov 2024

    A vulnerability has been discovered in Citrix ADC (formerly known as NetScaler ADC) and Citrix Gateway (formerly known as NetScaler Gateway), and Citrix SD-WAN WANOP Edition models 4000-WO, 4100-WO, 5000-WO, and 5100-WO. These vulnerabilities, if exploited, could lead to a phishing attack through a SAML authentication hijack to steal a valid user session.

    Published: 5 Aug 2021
    7.5
    High

    CVE-2021-22919

    Last Modified: 21 Nov 2024

    A vulnerability has been discovered in Citrix ADC (formerly known as NetScaler ADC) and Citrix Gateway (formerly known as NetScaler Gateway), and Citrix SD-WAN WANOP Edition models 4000-WO, 4100-WO, 5000-WO, and 5100-WO. These vulnerabilities, if exploited, could lead to the limited available disk space on the appliances being fully consumed.

    Published: 5 Aug 2021
    8.1
    High

    CVE-2021-22927

    Last Modified: 21 Nov 2024

    A session fixation vulnerability exists in Citrix ADC and Citrix Gateway 13.0-82.45 when configured SAML service provider that could allow an attacker to hijack a session.

    Published: 5 Aug 2021
    7.8
    High

    CVE-2021-22928

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in Citrix Virtual Apps and Desktops that could, if exploited, allow a user of a Windows VDA that has either Citrix Profile Management or Citrix Profile Management WMI Plugin installed to escalate their privilege level on that Windows VDA to SYSTEM.

    Published: 5 Aug 2021
    8.1
    High

    CVE-2021-37632

    Last Modified: 21 Nov 2024

    SuperMartijn642's Config Lib is a library used by a number of mods for the game Minecraft. The versions of SuperMartijn642's Config Lib between 1.0.4 and 1.0.8 are affected by a vulnerability and can be exploited on both servers and clients. Using SuperMartijn642's Config Lib, servers will send a packet to clients with the server's config values. In order to read `enum` values from the packet data, `ObjectInputStream#readObject` is used. `ObjectInputStream#readObject` will instantiate a class based on the input data. Since, the packet data is not validated before `ObjectInputStream#readObject` is called, an attacker can instantiate any class by sending a malicious packet. If a suitable class is found, the vulnerability can lead to a number of exploits, including remote code execution. Although the vulnerable packet is typically only send from server to client, it can theoretically also be send from client to server. This means both clients and servers running SuperMartijn642's Config Lib between 1.0.4 and 1.0.8 are vulnerable. The vulnerability has been patched in SuperMartijn642's Config lib 1.0.9. Both, players and server owners, should update to 1.0.9 or higher.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-34633

    Last Modified: 21 Nov 2024

    The Youtube Feeder WordPress plugin is vulnerable to Cross-Site Request Forgery via the printAdminPage function found in the ~/youtube-feeder.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 2.0.1.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-34634

    Last Modified: 21 Nov 2024

    The Nifty Newsletters WordPress plugin is vulnerable to Cross-Site Request Forgery via the sola_nl_wp_head function found in the ~/sola-newsletters.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 4.0.23.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-21893

    Last Modified: 21 Nov 2024

    A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.0.0.49893. A specially crafted PDF document can trigger the reuse of previously freed memory, which can lead to arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-21831

    Last Modified: 21 Nov 2024

    A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 10.1.3.37598. A specially crafted PDF document can trigger the reuse of previously freed memory, which can lead to arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially crafted, malicious site if the browser plugin extension is enabled.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-21870

    Last Modified: 21 Nov 2024

    A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 10.1.4.37651. A specially crafted PDF document can trigger the reuse of previously free memory, which can lead to arbitrary code execution. An attacker needs to trick the user into opening a malicious file or site to trigger this vulnerability if the browser plugin extension is enabled.

    Published: 5 Aug 2021
    5.5
    Medium

    CVE-2021-21785

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists in the IOCTL 0x9c40a148 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220. A specially crafted I/O request packet (IRP) can lead to a disclosure of sensitive information. An attacker can send a malicious IRP to trigger this vulnerability.

    Published: 5 Aug 2021
    5.5
    Medium

    CVE-2021-21792

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests. A specially crafted I/O request packet (IRP) can lead to privileged reads in the context of a driver which can result in sensitive information disclosure from the kernel. The IN instruction can read four bytes from the given I/O device, potentially leaking sensitive device data to unprivileged users.

    Published: 5 Aug 2021
    5.5
    Medium

    CVE-2021-21791

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests. A specially crafted I/O request packet (IRP) can lead to privileged reads in the context of a driver which can result in sensitive information disclosure from the kernel. The IN instruction can read two bytes from the given I/O device, potentially leaking sensitive device data to unprivileged users.

    Published: 5 Aug 2021
    5.5
    Medium

    CVE-2021-21790

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests. A specially crafted I/O request packet (IRP) can lead to privileged reads in the context of a driver which can result in sensitive information disclosure from the kernel. The IN instruction can read two bytes from the given I/O device, potentially leaking sensitive device data to unprivileged users.

    Published: 5 Aug 2021
    9.8
    Critical

    CVE-2021-21805

    Last Modified: 21 Nov 2024

    An OS Command Injection vulnerability exists in the ping.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A specially crafted HTTP request can lead to arbitrary OS command execution. An attacker can send a crafted HTTP request to trigger this vulnerability.

    Published: 5 Aug 2021
    7.8
    High

    CVE-2021-21863

    Last Modified: 21 Nov 2024

    A unsafe deserialization vulnerability exists in the ComponentModel Profile.FromFile() functionality of CODESYS GmbH CODESYS Development System 3.5.16 and 3.5.17. A specially crafted file can lead to arbitrary command execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 5 Aug 2021
    6.1
    Medium

    CVE-2021-21738

    Last Modified: 21 Nov 2024

    ZTE's big video business platform has two reflective cross-site scripting (XSS) vulnerabilities. Due to insufficient input verification, the attacker could implement XSS attacks by tampering with the parameters, to affect the operations of valid users. This affects: <ZXIPTV><ZXIPTV-EAS_PV5.06.04.09>

    Published: 5 Aug 2021
    4.6
    Medium

    CVE-2021-21739

    Last Modified: 21 Nov 2024

    A ZTE's product of the transport network access layer has a security vulnerability. Because the system does not sufficiently verify the data reliability, attackers could replace an authenticated optical module on the equipment with an unauthenticated one, bypassing system authentication and detection, thus affecting signal transmission. This affects: <ZXCTN 6120H><V5.10.00B24>

    Published: 5 Aug 2021
    9.8
    Critical

    CVE-2021-29971

    Last Modified: 21 Nov 2024

    If a user had granted a permission to a webpage and saved that grant, any webpage running on the same host - irrespective of scheme or port - would be granted that permission. *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 90.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-29972

    Last Modified: 21 Nov 2024

    A use-after-free vulnerability was found via testing, and traced to an out-of-date Cairo library. Updating the library resolved the issue, and may have remediated other, unknown security vulnerabilities as well. This vulnerability affects Firefox < 90.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-29973

    Last Modified: 21 Nov 2024

    Password autofill was enabled without user interaction on insecure websites on Firefox for Android. This was corrected to require user interaction with the page before a user's password would be entered by the browser's autofill functionality *This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 90.

    Published: 5 Aug 2021
    4.3
    Medium

    CVE-2021-29974

    Last Modified: 21 Nov 2024

    When network partitioning was enabled, e.g. as a result of Enhanced Tracking Protection settings, a TLS error page would allow the user to override an error on a domain which had specified HTTP Strict Transport Security (which implies that the error should not be override-able.) This issue did not affect the network connections, and they were correctly upgraded to HTTPS automatically. This vulnerability affects Firefox < 90.

    Published: 5 Aug 2021
    6.5
    Medium

    CVE-2021-29975

    Last Modified: 21 Nov 2024

    Through a series of DOM manipulations, a message, over which the attacker had control of the text but not HTML or formatting, could be overlaid on top of another domain (with the new domain correctly shown in the address bar) resulting in possible user confusion. This vulnerability affects Firefox < 90.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-29977

    Last Modified: 21 Nov 2024

    Mozilla developers reported memory safety bugs present in Firefox 89. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 90.

    Published: 5 Aug 2021
    9.8
    Critical

    CVE-2021-29978

    Last Modified: 21 Nov 2024

    Multiple low security issues were discovered and fixed in a security audit of Mozilla VPN 2.x branch as part of a 3rd party security audit. This vulnerability affects Mozilla VPN < 2.3.

    Published: 5 Aug 2021
    5.3
    Medium

    CVE-2021-25448

    Last Modified: 21 Nov 2024

    Improper access control vulnerability in Smart Touch Call prior to version 1.0.0.5 allows arbitrary webpage loading in webview.

    Published: 5 Aug 2021
    5.3
    Medium

    CVE-2021-25447

    Last Modified: 21 Nov 2024

    Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause local file inclusion in webview.

    Published: 5 Aug 2021
    5.3
    Medium

    CVE-2021-25446

    Last Modified: 21 Nov 2024

    Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause arbitrary webpage loading in webview.

    Published: 5 Aug 2021
    5.3
    Medium

    CVE-2021-25445

    Last Modified: 21 Nov 2024

    Unprotected component vulnerability in Samsung Internet prior to version 14.2 allows untrusted application to access internal files in Samsung Internet.

    Published: 5 Aug 2021
    5.5
    Medium

    CVE-2021-25444

    Last Modified: 21 Nov 2024

    An IV reuse vulnerability in keymaster prior to SMR AUG-2021 Release 1 allows decryption of custom keyblob with privileged process.

    Published: 5 Aug 2021
    5.3
    Medium

    CVE-2021-25443

    Last Modified: 21 Nov 2024

    A use after free vulnerability in conn_gadget driver prior to SMR AUG-2021 Release 1 allows malicious action by an attacker.

    Published: 5 Aug 2021
    7.1
    High

    CVE-2021-37859

    Last Modified: 21 Nov 2024

    Fixed a bypass for a reflected cross-site scripting vulnerability affecting OAuth-enabled instances of Mattermost.

    Published: 5 Aug 2021
    3.5
    Low

    CVE-2021-33597

    Last Modified: 21 Nov 2024

    A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the SAVAPI component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-34631

    Last Modified: 21 Nov 2024

    The NewsPlugin WordPress plugin is vulnerable to Cross-Site Request Forgery via the handle_save_style function found in the ~/news-plugin.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 1.0.18.

    Published: 5 Aug 2021
    9.8
    Critical

    CVE-2021-34371

    Last Modified: 21 Nov 2024

    Neo4j through 3.4.18 (with the shell server enabled) exposes an RMI service that arbitrarily deserializes Java objects, e.g., through setSessionVariable. An attacker can abuse this for remote code execution because there are dependencies with exploitable gadget chains.

    Published: 5 Aug 2021
    8.8
    High

    CVE-2021-37614

    Last Modified: 21 Nov 2024

    In certain Progress MOVEit Transfer versions before 2021.0.3 (aka 13.0.3), SQL injection in the MOVEit Transfer web application could allow an authenticated remote attacker to gain access to the database. Depending on the database engine being used (MySQL, Microsoft SQL Server, or Azure SQL), an attacker may be able to infer information about the structure and contents of the database, or execute SQL statements that alter or delete database elements, via crafted strings sent to unique MOVEit Transfer transaction types. The fixed versions are 2019.0.7 (11.0.7), 2019.1.6 (11.1.6), 2019.2.3 (11.2.3), 2020.0.6 (12.0.6), 2020.1.5 (12.1.5), and 2021.0.3 (13.0.3).

    Published: 5 Aug 2021
    8.7
    High

    CVE-2021-22241

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab CE/EE affecting all versions starting from 14.0. It was possible to exploit a stored cross-site-scripting via a specifically crafted default branch name.

    Published: 5 Aug 2021
    3.5
    Low

    CVE-2021-33596

    Last Modified: 21 Nov 2024

    Showing the legitimate URL in the address bar while loading the content from other domain. This makes the user believe that the content is served by a legit domain. Exploiting the vulnerability requires the user to click on a specially crafted, seemingly legitimate URL containing an embedded malicious redirect while using F-Secure Safe Browser for iOS.

    Published: 5 Aug 2021
    4.2
    Medium

    CVE-2021-22240

    Last Modified: 21 Nov 2024

    Improper access control in GitLab EE versions 13.11.6, 13.12.6, and 14.0.2 allows users to be created via single sign on despite user cap being enabled

    Published: 5 Aug 2021
    7.5
    High

    CVE-2021-23849

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based interface allows an unauthenticated remote attacker to trigger actions on an affected system on behalf of another user (CSRF - Cross Site Request Forgery). This requires the victim to be tricked into clicking a malicious link or opening a malicious website while being logged in into the camera.

    Published: 5 Aug 2021
    7.8
    High

    CVE-2021-32577

    Last Modified: 21 Nov 2024

    Acronis True Image prior to 2021 Update 5 for Windows allowed local privilege escalation due to insecure folder permissions.

    Published: 5 Aug 2021
    8.1
    High

    CVE-2021-32581

    Last Modified: 21 Nov 2024

    Acronis True Image prior to 2021 Update 4 for Windows, Acronis True Image prior to 2021 Update 5 for Mac, Acronis Agent prior to build 26653, Acronis Cyber Protect prior to build 27009 did not implement SSL certificate validation.

    Published: 5 Aug 2021
    7.8
    High

    CVE-2021-32578

    Last Modified: 21 Nov 2024

    Acronis True Image prior to 2021 Update 4 for Windows allowed local privilege escalation due to improper soft link handling (issue 2 of 2).

    Published: 5 Aug 2021
    5.5
    Medium

    CVE-2021-36584

    Last Modified: 21 Nov 2024

    An issue was discovered in GPAC 1.0.1. There is a heap-based buffer overflow in the function gp_rtp_builder_do_tx3g function in ietf/rtp_pck_3gpp.c, as demonstrated by MP4Box. This can cause a denial of service (DOS).

    Published: 5 Aug 2021
    6.5
    Medium

    CVE-2021-35307

    Last Modified: 21 Nov 2024

    An issue was discovered in Bento4 through v1.6.0-636. A NULL pointer dereference exists in the AP4_DescriptorFinder::Test component located in /Core/Ap4Descriptor.h. It allows an attacker to cause a denial of service (DOS).

    Published: 5 Aug 2021
    6.5
    Medium

    CVE-2021-35306

    Last Modified: 21 Nov 2024

    An issue was discovered in Bento4 through v1.6.0-636. A NULL pointer dereference exists in the function AP4_StszAtom::WriteFields located in Ap4StszAtom.cpp. It allows an attacker to cause a denial of service (DOS).

    Published: 5 Aug 2021
    7.8
    High

    CVE-2021-32576

    Last Modified: 21 Nov 2024

    Acronis True Image prior to 2021 Update 4 for Windows allowed local privilege escalation due to improper soft link handling (issue 1 of 2).

    Published: 5 Aug 2021
    7.8
    High

    CVE-2021-32580

    Last Modified: 21 Nov 2024

    Acronis True Image prior to 2021 Update 4 for Windows allowed local privilege escalation due to DLL hijacking.

    Published: 5 Aug 2021
    7.8
    High

    CVE-2021-32579

    Last Modified: 21 Nov 2024

    Acronis True Image prior to 2021 Update 4 for Windows and Acronis True Image prior to 2021 Update 5 for macOS allowed an unauthenticated attacker (who has a local code execution ability) to tamper with the micro-service API.

    Published: 5 Aug 2021