CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2017-18113

    Last Modified: 21 Nov 2024

    The DefaultOSWorkflowConfigurator class in Jira Server and Jira Data Center before version 8.18.1 allows remote attackers who can trick a system administrator to import their malicious workflow to execute arbitrary code via a Remote Code Execution (RCE) vulnerability. The vulnerability allowed for various problematic OSWorkflow classes to be used as part of workflows. The fix for this issue blocks usage of unsafe conditions, validators, functions and registers that are build-in into OSWorkflow library and other Jira dependencies. Atlassian-made functions or functions provided by 3rd party plugins are not affected by this fix.

    Published: 2 Aug 2021
    4.8
    Medium

    CVE-2021-24444

    Last Modified: 21 Nov 2024

    The TaxoPress – Create and Manage Taxonomies, Tags, Categories WordPress plugin before 3.0.7.2 does not sanitise its Taxonomy description field, allowing high privilege users to set JavaScript payload in them even when the unfiltered_html capability is disallowed, leading to an authenticated Stored Cross-Site Scripting issue.

    Published: 2 Aug 2021
    4.3
    Medium

    CVE-2021-3622

    Last Modified: 21 Nov 2024

    A flaw was found in the hivex library. This flaw allows an attacker to input a specially crafted Windows Registry (hive) file, which would cause hivex to recursively call the _get_children() function, leading to a stack overflow. The highest threat from this vulnerability is to system availability.

    Published: 2 Aug 2021
    9.8
    Critical

    CVE-2021-32810

    Last Modified: 21 Nov 2024

    crossbeam-deque is a package of work-stealing deques for building task schedulers when programming in Rust. In versions prior to 0.7.4 and 0.8.0, the result of the race condition is that one or more tasks in the worker queue can be popped twice instead of other tasks that are forgotten and never popped. If tasks are allocated on the heap, this can cause double free and a memory leak. If not, this still can cause a logical bug. Crates using `Stealer::steal`, `Stealer::steal_batch`, or `Stealer::steal_batch_and_pop` are affected by this issue. This has been fixed in crossbeam-deque 0.8.1 and 0.7.4.

    Published: 2 Aug 2021
    5.5
    Medium

    CVE-2021-34556

    Last Modified: 21 Nov 2024

    In the Linux kernel through 5.13.7, an unprivileged BPF program can obtain sensitive information from kernel memory via a Speculative Store Bypass side-channel attack because the protection mechanism neglects the possibility of uninitialized memory locations on the BPF stack.

    Published: 1 Aug 2021
    5.5
    Medium

    CVE-2021-35477

    Last Modified: 21 Nov 2024

    In the Linux kernel through 5.13.7, an unprivileged BPF program can obtain sensitive information from kernel memory via a Speculative Store Bypass side-channel attack because a certain preempting store operation does not necessarily occur before a store operation that has an attacker-controlled value.

    Published: 1 Aug 2021
    9.8
    Critical

    CVE-2021-37759

    Last Modified: 21 Nov 2024

    A Session ID leak in the DEBUG log file in Graylog before 4.1.2 allows attackers to escalate privileges (to the access level of the leaked session ID).

    Published: 31 Jul 2021
    9.8
    Critical

    CVE-2021-37760

    Last Modified: 21 Nov 2024

    A Session ID leak in the audit log in Graylog before 4.1.2 allows attackers to escalate privileges (to the access level of the leaked session ID).

    Published: 31 Jul 2021
    5.3
    Medium

    CVE-2021-33617

    Last Modified: 21 Nov 2024

    Zoho ManageEngine Password Manager Pro before 11.2 11200 allows login/AjaxResponse.jsp?RequestType=GetUserDomainName&userName= username enumeration, because the response (to a failed login request) is null only when the username is invalid.

    Published: 31 Jul 2021
    7.5
    High

    CVE-2020-26565

    Last Modified: 21 Nov 2024

    ObjectPlanet Opinio before 7.14 allows Expression Language Injection via the admin/permissionList.do from parameter. This can be used to retrieve possibly sensitive serverInfo data.

    Published: 31 Jul 2021
    6.5
    Medium

    CVE-2020-26564

    Last Modified: 21 Nov 2024

    ObjectPlanet Opinio before 7.15 allows XXE attacks via three steps: modify a .css file to have <!ENTITY content, create a .xml file for a generic survey template (containing a link to this .css file), and import this .xml file at the survey/admin/folderSurvey.do?action=viewImportSurvey['importFile'] URI. The XXE can then be triggered at a admin/preview.do?action=previewSurvey&surveyId= URI.

    Published: 31 Jul 2021
    8.8
    High

    CVE-2020-26806

    Last Modified: 21 Nov 2024

    admin/file.do in ObjectPlanet Opinio before 7.15 allows Unrestricted File Upload of executable JSP files, resulting in remote code execution, because filePath can have directory traversal and fileContent can be valid JSP code.

    Published: 31 Jul 2021
    4.4
    Medium

    CVE-2021-32807

    Last Modified: 21 Nov 2024

    The module `AccessControl` defines security policies for Python code used in restricted code within Zope applications. Restricted code is any code that resides in Zope's object database, such as the contents of `Script (Python)` objects. The policies defined in `AccessControl` severely restrict access to Python modules and only exempt a few that are deemed safe, such as Python's `string` module. However, full access to the `string` module also allows access to the class `Formatter`, which can be overridden and extended within `Script (Python)` in a way that provides access to other unsafe Python libraries. Those unsafe Python libraries can be used for remote code execution. By default, you need to have the admin-level Zope "Manager" role to add or edit `Script (Python)` objects through the web. Only sites that allow untrusted users to add/edit these scripts through the web - which would be a very unusual configuration to begin with - are at risk. The problem has been fixed in AccessControl 4.3 and 5.2. Only AccessControl versions 4 and 5 are vulnerable, and only on Python 3, not Python 2.7. As a workaround, a site administrator can restrict adding/editing `Script (Python)` objects through the web using the standard Zope user/role permission mechanisms. Untrusted users should not be assigned the Zope Manager role and adding/editing these scripts through the web should be restricted to trusted users only. This is the default configuration in Zope.

    Published: 30 Jul 2021
    7.1
    High

    CVE-2021-27495

    Last Modified: 21 Nov 2024

    Ypsomed mylife Cloud, mylife Mobile Application:Ypsomed mylife Cloud,All versions prior to 1.7.2,Ypsomed mylife App,All versions prior to 1.7.5,he Ypsomed mylife Cloud reflects the user password during the login process after redirecting the user from a HTTPS endpoint to a HTTP endpoint.

    Published: 30 Jul 2021
    7.5
    High

    CVE-2021-27491

    Last Modified: 21 Nov 2024

    Ypsomed mylife Cloud, mylife Mobile Application:Ypsomed mylife Cloud,All versions prior to 1.7.2,Ypsomed mylife App,All versions prior to 1.7.5,The Ypsomed mylife Cloud discloses password hashes during the registration process.

    Published: 30 Jul 2021
    5
    Medium

    CVE-2021-34630

    Last Modified: 21 Nov 2024

    In the Pro and Enterprise versions of GTranslate < 2.8.65, the gtranslate_request_uri_var function runs at the top of all pages and echoes out the contents of $_SERVER['REQUEST_URI']. Although this uses addslashes, and most modern browsers automatically URLencode requests, this plugin is still vulnerable to Reflected XSS in older browsers such as Internet Explorer 9 or below, or in cases where an attacker is able to modify the request en route between the client and the server, or in cases where the user is using an atypical browsing solution.

    Published: 30 Jul 2021
    4.3
    Medium

    CVE-2021-34629

    Last Modified: 21 Nov 2024

    The SendGrid WordPress plugin is vulnerable to authorization bypass via the get_ajax_statistics function found in the ~/lib/class-sendgrid-statistics.php file which allows authenticated users to export statistic for a WordPress multi-site main site, in versions up to and including 1.11.8.

    Published: 30 Jul 2021
    6.7
    Medium

    CVE-2021-22521

    Last Modified: 21 Nov 2024

    A privileged escalation vulnerability has been identified in Micro Focus ZENworks Configuration Management, affecting version 2020 Update 1 and all prior versions. The vulnerability could be exploited to gain unauthorized system privileges.

    Published: 30 Jul 2021
    7.5
    High

    CVE-2021-35193

    Last Modified: 21 Nov 2024

    Patterson Application Service in Patterson Eaglesoft 18 through 21 accepts the same certificate authentication across different customers' installations (that have the same software version). This provides remote access to SQL database credentials. (In the normal use of the product, retrieving those credentials only occurs after a username/password authentication step; however, this authentication step is on the client side, and an attacker can develop their own client that skips this step.)

    Published: 30 Jul 2021
    5.3
    Medium

    CVE-2021-29298

    Last Modified: 21 Nov 2024

    Improper Input Validation in Emerson GE Automation Proficy Machine Edition v8.0 allows an attacker to cause a denial of service and application crash via crafted traffic from a Man-in-the-Middle (MITM) attack to the component "FrameworX.exe"in the module "fxVPStatcTcp.dll".

    Published: 30 Jul 2021
    5.3
    Medium

    CVE-2021-29297

    Last Modified: 21 Nov 2024

    Buffer Overflow in Emerson GE Automation Proficy Machine Edition v8.0 allows an attacker to cause a denial of service and application crash via crafted traffic from a Man-in-the-Middle (MITM) attack to the component "FrameworX.exe" in the module "MSVCR100.dll".

    Published: 30 Jul 2021
    6.1
    Medium

    CVE-2021-37746

    Last Modified: 21 Nov 2024

    textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.

    Published: 30 Jul 2021
    9.8
    Critical

    CVE-2021-29781

    Last Modified: 21 Nov 2024

    IBM Partner Engagement Manager 2.0 could allow a remote attacker to execute arbitrary code on the system, caused by an unsafe deserialization flaw. By sending specially-crafted data, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 203091.

    Published: 30 Jul 2021
    8.8
    High

    CVE-2021-29736

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote user to gain elevated privileges on the system. IBM X-Force ID: 201300.

    Published: 30 Jul 2021
    6.1
    Medium

    CVE-2020-26563

    Last Modified: 21 Nov 2024

    ObjectPlanet Opinio before 7.14 allows reflected XSS via the survey/admin/surveyAdmin.do?action=viewSurveyAdmin query string. (There is also stored XSS if input to survey/admin/*.do is accepted from untrusted users.)

    Published: 30 Jul 2021
    5.4
    Medium

    CVE-2021-37743

    Last Modified: 21 Nov 2024

    app/View/GalaxyElements/ajax/index.ctp in MISP 2.4.147 allows Stored XSS when viewing galaxy cluster elements in JSON format.

    Published: 30 Jul 2021
    5.4
    Medium

    CVE-2021-37742

    Last Modified: 21 Nov 2024

    app/View/Elements/GalaxyClusters/view_relation_tree.ctp in MISP 2.4.147 allows Stored XSS when viewing galaxy cluster relationships.

    Published: 30 Jul 2021
    7.5
    High

    CVE-2021-3690

    Last Modified: 21 Nov 2024

    A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw allows an attacker to cause a denial of service. The highest threat from this vulnerability is availability.

    Published: 30 Jul 2021
    7.5
    High

    CVE-2022-27377

    Last Modified: 21 Nov 2024

    MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component Item_func_in::cleanup(), which is exploited via specially crafted SQL statements.

    Published: 30 Jul 2021
    7.8
    High

    CVE-2021-36742

    Last Modified: 31 Oct 2025

    A improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG and Worry-Free Business Security 10.0 SP1 allows a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

    Published: 29 Jul 2021
    8.8
    High

    CVE-2021-36741

    Last Modified: 31 Oct 2025

    An improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG, and Worry-Free Business Security 10.0 SP1 allows a remote attached to upload arbitrary files on affected installations. Please note: an attacker must first obtain the ability to logon to the product�s management console in order to exploit this vulnerability.

    Published: 29 Jul 2021
    4.8
    Medium

    CVE-2021-25273

    Last Modified: 21 Nov 2024

    Stored XSS can execute as administrator in quarantined email detail view in Sophos UTM before version 9.706.

    Published: 29 Jul 2021
    7.5
    High

    CVE-2021-20114

    Last Modified: 21 Nov 2024

    When installed following the default/recommended settings, TCExam <= 14.8.1 allowed unauthenticated users to access the /cache/backup/ directory, which included sensitive database backup files.

    Published: 29 Jul 2021
    5.3
    Medium

    CVE-2021-20113

    Last Modified: 21 Nov 2024

    An exposure of sensitive information vulnerability exists in TCExam <= 14.8.1. If a password reset request was made for an email address that was not registered with a user then we would be presented with an ‘unknown email’ error. If an email is given that is registered with a user then this error will not appear. A malicious actor could abuse this to enumerate the email addresses of

    Published: 29 Jul 2021
    5.4
    Medium

    CVE-2021-20112

    Last Modified: 21 Nov 2024

    A stored cross-site scripting vulnerability exists in TCExam <= 14.8.1. Valid files uploaded via tce_select_mediafile.php with a filename beggining with a period will be rendered as text/html. An attacker with access to tce_select_mediafile.php could upload a malicious javascript payload which would be triggered when another user views the file.

    Published: 29 Jul 2021
    5.4
    Medium

    CVE-2021-20111

    Last Modified: 21 Nov 2024

    A stored cross-site scripting vulnerability exists in TCExam <= 14.8.1. Valid files uploaded via tce_filemanager.php with a filename beggining with a period will be rendered as text/html. An attacker with access to tce_filemanager.php could upload a malicious javascript payload which would be triggered when another user views the file.

    Published: 29 Jul 2021
    6.3
    Medium

    CVE-2021-23418

    Last Modified: 21 Nov 2024

    The package glances before 3.2.1 are vulnerable to XML External Entity (XXE) Injection via the use of Fault to parse untrusted XML data, which is known to be vulnerable to XML attacks.

    Published: 29 Jul 2021
    9.1
    Critical

    CVE-2021-37144

    Last Modified: 21 Nov 2024

    CSZ CMS 1.2.9 is vulnerable to Arbitrary File Deletion. This occurs in PHP when the unlink() function is called and user input might affect portions of or the whole affected parameter, which represents the path of the file to remove, without sufficient sanitization.

    Published: 29 Jul 2021
    9.8
    Critical

    CVE-2021-36624

    Last Modified: 21 Nov 2024

    Sourcecodester Phone Shop Sales Managements System version 1.0 suffers from a remote SQL injection vulnerability that allows for authentication bypass.

    Published: 29 Jul 2021
    8.1
    High

    CVE-2021-36621

    Last Modified: 21 Nov 2024

    Sourcecodester Online Covid Vaccination Scheduler System 1.0 is vulnerable to SQL Injection. The username parameter is vulnerable to time-based SQL injection. Upon successful dumping the admin password hash, an attacker can decrypt and obtain the plain-text password. Hence, the attacker could authenticate as Administrator.

    Published: 29 Jul 2021
    9.8
    Critical

    CVE-2020-18175

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in Metinfo 6.1.3 via a dosafety_emailadd action in basic.php.

    Published: 29 Jul 2021
    5.4
    Medium

    CVE-2020-18158

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in HuCart 5.7.4 via nickname in index.php.

    Published: 29 Jul 2021
    8.8
    High

    CVE-2020-18157

    Last Modified: 21 Nov 2024

    Cross Site Request Forgery (CSRF) vulnerability in MetInfo 6.1.3 via a doaddsave action in admin/index.php.

    Published: 29 Jul 2021
    7.8
    High

    CVE-2021-21546

    Last Modified: 21 Nov 2024

    Dell EMC NetWorker versions 18.x,19.x prior to 19.3.0.4 and 19.4.0.0 contain an Information Disclosure in Log Files vulnerability. A local low-privileged user of the Networker server could potentially exploit this vulnerability to read plain-text credentials from server log files.

    Published: 29 Jul 2021
    9.6
    Critical

    CVE-2021-21538

    Last Modified: 21 Nov 2024

    Dell EMC iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00, contain an improper authentication vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to gain access to the virtual console.

    Published: 29 Jul 2021
    8.8
    High

    CVE-2020-5353

    Last Modified: 21 Nov 2024

    The Dell Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 default configuration for Network File System (NFS) allows access to an 'admin' home directory. An attacker may leverage a spoofed Unique Identifier (UID) over NFS to rewrite sensitive files to gain administrative access to the system.

    Published: 29 Jul 2021
    6.1
    Medium

    CVE-2020-5329

    Last Modified: 21 Nov 2024

    Dell EMC Avamar Server contains an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulnerability to redirect application users to arbitrary web URLs by tricking the victim users to click on maliciously crafted links.

    Published: 29 Jul 2021
    9.8
    Critical

    CVE-2020-21809

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in NukeViet CMS module Shops 4.0.29 and 4.3 via the (1) listid parameter in detail.php and the (2) group_price or groupid parameters in search_result.php.

    Published: 29 Jul 2021
    9.8
    Critical

    CVE-2020-21808

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in NukeViet CMS 4.0.10 - 4.3.07 via:the topicsid parameter in modules/news/admin/addtotopics.php.

    Published: 29 Jul 2021
    6.1
    Medium

    CVE-2020-22765

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in NukeViet cms 4.4.0 via the editor in the News module.

    Published: 29 Jul 2021