CVE Feed

    Dashboard / CVE

    8.6
    High

    CVE-2021-21280

    Last Modified: 21 Nov 2024

    Contiki-NG is an open-source, cross-platform operating system for internet of things devices. It is possible to cause an out-of-bounds write in versions of Contiki-NG prior to 4.6 when transmitting a 6LoWPAN packet with a chain of extension headers. Unfortunately, the written header is not checked to be within the available space, thereby making it possible to write outside the buffer. The problem has been patched in Contiki-NG 4.6. Users can apply the patch for this vulnerability out-of-band as a workaround.

    Published: 18 Jun 2021
    7
    High

    CVE-2021-21281

    Last Modified: 21 Nov 2024

    Contiki-NG is an open-source, cross-platform operating system for internet of things devices. A buffer overflow vulnerability exists in Contiki-NG versions prior to 4.6. After establishing a TCP socket using the tcp-socket library, it is possible for the remote end to send a packet with a data offset that is unvalidated. The problem has been patched in Contiki-NG 4.6. Users can apply the patch for this vulnerability out-of-band as a workaround.

    Published: 18 Jun 2021
    8.6
    High

    CVE-2021-21282

    Last Modified: 21 Nov 2024

    Contiki-NG is an open-source, cross-platform operating system for internet of things devices. In versions prior to 4.5, buffer overflow can be triggered by an input packet when using either of Contiki-NG's two RPL implementations in source-routing mode. The problem has been patched in Contiki-NG 4.5. Users can apply the patch for this vulnerability out-of-band as a workaround.

    Published: 18 Jun 2021
    3.7
    Low

    CVE-2021-32696

    Last Modified: 21 Nov 2024

    The npm package "striptags" is an implementation of PHP's strip_tags in Typescript. In striptags before version 3.2.0, a type-confusion vulnerability can cause `striptags` to concatenate unsanitized strings when an array-like object is passed in as the `html` parameter. This can be abused by an attacker who can control the shape of their input, e.g. if query parameters are passed directly into the function. This can lead to a XSS.

    Published: 18 Jun 2021
    7.5
    High

    CVE-2021-33824

    Last Modified: 21 Nov 2024

    An issue was discovered on MOXA Mgate MB3180 Version 2.1 Build 18113012. Attackers can use slowhttptest tool to send incomplete HTTP request, which could make server keep waiting for the packet to finish the connection, until its resource exhausted. Then the web server is denial-of-service.

    Published: 18 Jun 2021
    7.5
    High

    CVE-2021-33823

    Last Modified: 21 Nov 2024

    An issue was discovered on MOXA Mgate MB3180 Version 2.1 Build 18113012. Attacker could send a huge amount of TCP SYN packet to make web service's resource exhausted. Then the web server is denial-of-service.

    Published: 18 Jun 2021
    7.5
    High

    CVE-2021-33822

    Last Modified: 21 Nov 2024

    An issue was discovered on 4GEE ROUTER HH70VB Version HH70_E1_02.00_22. Attackers can use slowhttptest tool to send incomplete HTTP request, which could make server keep waiting for the packet to finish the connection, until its resource exhausted. Then the web server is denial-of-service.

    Published: 18 Jun 2021
    7.5
    High

    CVE-2021-33818

    Last Modified: 21 Nov 2024

    An issue was discovered in UniFi Protect G3 FLEX Camera Version UVC.v4.30.0.67. Attackers can use slowhttptest tool to send incomplete HTTP request, which could make server keep waiting for the packet to finish the connection, until its resource exhausted. Then the web server is denial-of-service.

    Published: 18 Jun 2021
    7.5
    High

    CVE-2021-33820

    Last Modified: 21 Nov 2024

    An issue was discovered in UniFi Protect G3 FLEX Camera Version UVC.v4.30.0.67.Attacker could send a huge amount of TCP SYN packet to make web service's resource exhausted. Then the web server is denial-of-service.

    Published: 18 Jun 2021
    —
    Unknown

    CVE-2005-2795

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 18 Jun 2021
    9.8
    Critical

    CVE-2021-3604

    Last Modified: 21 Nov 2024

    Secure 8 (Evalos) does not validate user input data correctly, allowing a remote attacker to perform a Blind SQL Injection. An attacker could exploit this vulnerability in order to extract information of users and administrator accounts stored in the database.

    Published: 18 Jun 2021
    —
    Unknown

    CVE-2018-14639

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 18 Jun 2021
    6.5
    Medium

    CVE-2021-32954

    Last Modified: 21 Nov 2024

    Advantech WebAccess/SCADA Versions 9.0.1 and prior is vulnerable to a directory traversal, which may allow an attacker to remotely read arbitrary files on the file system.

    Published: 18 Jun 2021
    6.1
    Medium

    CVE-2021-32956

    Last Modified: 21 Nov 2024

    Advantech WebAccess/SCADA Versions 9.0.1 and prior is vulnerable to redirection, which may allow an attacker to send a maliciously crafted URL that could result in redirecting a user to a malicious webpage.

    Published: 18 Jun 2021
    8.8
    High

    CVE-2021-23846

    Last Modified: 21 Nov 2024

    When using http protocol, the user password is transmitted as a clear text parameter for which it is possible to be obtained by an attacker through a MITM attack. This will be fixed starting from Firmware version 3.11.5, which will be released on the 30th of June, 2021.

    Published: 18 Jun 2021
    8
    High

    CVE-2021-23845

    Last Modified: 21 Nov 2024

    This vulnerability could allow an attacker to hijack a session while a user is logged in the configuration web page. This vulnerability was discovered by a security researcher in B426 and found during internal product tests in B426-CN/B429-CN, and B426-M and has been fixed already starting from version 3.08 on, which was released on June 2019.

    Published: 18 Jun 2021
    5.5
    Medium

    CVE-2021-21997

    Last Modified: 21 Nov 2024

    VMware Tools for Windows (11.x.y prior to 11.3.0) contains a denial-of-service vulnerability in the VM3DMP driver. A malicious actor with local user privileges in the Windows guest operating system, where VMware Tools is installed, can trigger a PANIC in the VM3DMP driver leading to a denial-of-service condition in the Windows guest operating system.

    Published: 18 Jun 2021
    —
    Unknown

    CVE-2007-3733

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 18 Jun 2021
    —
    Unknown

    CVE-2005-0394

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 18 Jun 2021
    6.1
    Medium

    CVE-2021-26835

    Last Modified: 21 Nov 2024

    No filtering of cross-site scripting (XSS) payloads in the markdown-editor in Zettlr 1.8.7 allows attackers to perform remote code execution via a crafted file.

    Published: 18 Jun 2021
    5.4
    Medium

    CVE-2021-26834

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability exists in Znote 0.5.2. An attacker can insert payloads, and the code execution will happen immediately on markdown view mode.

    Published: 18 Jun 2021
    4.8
    Medium

    CVE-2021-34815

    Last Modified: 21 Nov 2024

    CheckSec Canopy before 3.5.2 allows XSS attacks against the login page via the LOGIN_PAGE_DISCLAIMER parameter.

    Published: 18 Jun 2021
    5.3
    Medium

    CVE-2021-33577

    Last Modified: 21 Nov 2024

    An issue was discovered in Cleo LexiCom 5.5.0.0. The requirement for the sender of an AS2 message to identify themselves (via encryption and signing of the message) can be bypassed by changing the Content-Type of the message to text/plain.

    Published: 18 Jun 2021
    9.8
    Critical

    CVE-2021-33576

    Last Modified: 21 Nov 2024

    An issue was discovered in Cleo LexiCom 5.5.0.0. Within the AS2 message, the sender can specify a filename. This filename can include path-traversal characters, allowing the file to be written to an arbitrary location on disk.

    Published: 18 Jun 2021
    5.4
    Medium

    CVE-2021-33347

    Last Modified: 21 Nov 2024

    An issue was discovered in JPress v3.3.0 and below. There are XSS vulnerabilities in the template module and tag management module. If you log in to the background by means of weak password, the storage XSS vulnerability can occur.

    Published: 18 Jun 2021
    6.1
    Medium

    CVE-2021-32536

    Last Modified: 21 Nov 2024

    The login page in the MCUsystem does not filter with special characters, which allows remote attackers can inject JavaScript without privilege and thus perform reflected XSS attacks.

    Published: 18 Jun 2021
    9.8
    Critical

    CVE-2021-21669

    Last Modified: 21 Nov 2024

    Jenkins Generic Webhook Trigger Plugin 1.72 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

    Published: 18 Jun 2021
    5.8
    Medium

    CVE-2021-34808

    Last Modified: 21 Nov 2024

    Server-Side Request Forgery (SSRF) vulnerability in cgi component in Synology Media Server before 1.8.3-2881 allows remote attackers to access intranet resources via unspecified vectors.

    Published: 18 Jun 2021
    9.9
    Critical

    CVE-2021-34809

    Last Modified: 21 Nov 2024

    Improper neutralization of special elements used in a command ('Command Injection') vulnerability in task management component in Synology Download Station before 3.8.16-3566 allows remote authenticated users to execute arbitrary code via unspecified vectors.

    Published: 18 Jun 2021
    9.9
    Critical

    CVE-2021-34810

    Last Modified: 21 Nov 2024

    Improper privilege management vulnerability in cgi component in Synology Download Station before 3.8.16-3566 allows remote authenticated users to execute arbitrary code via unspecified vectors.

    Published: 18 Jun 2021
    5
    Medium

    CVE-2021-34811

    Last Modified: 21 Nov 2024

    Server-Side Request Forgery (SSRF) vulnerability in task management component in Synology Download Station before 3.8.16-3566 allows remote authenticated users to access intranet resources via unspecified vectors.

    Published: 18 Jun 2021
    5.8
    Medium

    CVE-2021-34812

    Last Modified: 21 Nov 2024

    Use of hard-coded credentials vulnerability in php component in Synology Calendar before 2.4.0-0761 allows remote attackers to obtain sensitive information via unspecified vectors.

    Published: 18 Jun 2021
    7.5
    High

    CVE-2021-38207

    Last Modified: 21 Nov 2024

    drivers/net/ethernet/xilinx/ll_temac_main.c in the Linux kernel before 5.12.13 allows remote attackers to cause a denial of service (buffer overflow and lockup) by sending heavy network traffic for about ten minutes.

    Published: 18 Jun 2021
    5.5
    Medium

    CVE-2021-38200

    Last Modified: 21 Nov 2024

    arch/powerpc/perf/core-book3s.c in the Linux kernel before 5.12.13, on systems with perf_event_paranoid=-1 and no specific PMU driver support registered, allows local users to cause a denial of service (perf_instruction_pointer NULL pointer dereference and OOPS) via a "perf record" command.

    Published: 18 Jun 2021
    4.3
    Medium

    CVE-2021-34553

    Last Modified: 21 Nov 2024

    Sonatype Nexus Repository Manager 3.x before 3.31.0 allows a remote authenticated attacker to get a list of blob files and read the content of a blob file (via a GET request) without having been granted access.

    Published: 17 Jun 2021
    6.8
    Medium

    CVE-2021-32693

    Last Modified: 21 Nov 2024

    Symfony is a PHP framework for web and console applications and a set of reusable PHP components. A vulnerability related to firewall authentication is in Symfony starting with version 5.3.0 and prior to 5.3.2. When an application defines multiple firewalls, the token authenticated by one of the firewalls was available for all other firewalls. This could be abused when the application defines different providers for each part of the application, in such a situation, a user authenticated on a part of the application could be considered authenticated on the rest of the application. Starting in version 5.3.2, a patch ensures that the authenticated token is only available for the firewall that generates it.

    Published: 17 Jun 2021
    6.1
    Medium

    CVE-2021-32426

    Last Modified: 21 Nov 2024

    In TrendNet TW100-S4W1CA 2.3.32, it is possible to inject arbitrary JavaScript into the router's web interface via the "echo" command.

    Published: 17 Jun 2021
    8.8
    High

    CVE-2021-32424

    Last Modified: 21 Nov 2024

    In TrendNet TW100-S4W1CA 2.3.32, due to a lack of proper session controls, a threat actor could make unauthorized changes to an affected router via a specially crafted web page. If an authenticated user were to interact with a malicious web page it could allow for a complete takeover of the router.

    Published: 17 Jun 2021
    4.1
    Medium

    CVE-2021-32694

    Last Modified: 21 Nov 2024

    Nextcloud Android app is the Android client for Nextcloud. In versions prior to 3.15.1, a malicious application on the same device is possible to crash the Nextcloud Android Client due to an uncaught exception. The vulnerability is patched in version 3.15.1.

    Published: 17 Jun 2021
    3.9
    Low

    CVE-2021-32695

    Last Modified: 21 Nov 2024

    Nextcloud Android app is the Android client for Nextcloud. In versions prior to 3.16.1, a malicious app on the same device could have gotten access to the shared preferences of the Nextcloud Android application. This required user-interaction as a victim had to initiate the sharing flow and choose the malicious app. The shared preferences contain some limited private data such as push tokens and the account name. The vulnerability is patched in version 3.16.1.

    Published: 17 Jun 2021
    6.1
    Medium

    CVE-2021-33557

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in manage_custom_field_edit_page.php in MantisBT before 2.25.2. Unescaped output of the return parameter allows an attacker to inject code into a hidden input field.

    Published: 17 Jun 2021
    5.4
    Medium

    CVE-2021-32681

    Last Modified: 21 Nov 2024

    Wagtail is an open source content management system built on Django. A cross-site scripting vulnerability exists in versions 2.13-2.13.1, versions 2.12-2.12.4, and versions prior to 2.11.8. When the `{% include_block %}` template tag is used to output the value of a plain-text StreamField block (`CharBlock`, `TextBlock` or a similar user-defined block derived from `FieldBlock`), and that block does not specify a template for rendering, the tag output is not properly escaped as HTML. This could allow users to insert arbitrary HTML or scripting. This vulnerability is only exploitable by users with the ability to author StreamField content (i.e. users with 'editor' access to the Wagtail admin). Patched versions have been released as Wagtail 2.11.8 (for the LTS 2.11 branch), Wagtail 2.12.5, and Wagtail 2.13.2 (for the current 2.13 branch). As a workaround, site implementors who are unable to upgrade to a current supported version should audit their use of `{% include_block %}` to ensure it is not used to output `CharBlock` / `TextBlock` values with no associated template. Note that this only applies where `{% include_block %}` is used directly on that block (uses of `include_block` on a block _containing_ a CharBlock / TextBlock, such as a StructBlock, are unaffected). In these cases, the tag can be replaced with Django's `{{ ... }}` syntax - e.g. `{% include_block my_title_block %}` becomes `{{ my_title_block }}`.

    Published: 17 Jun 2021
    5.6
    Medium

    CVE-2021-23396

    Last Modified: 21 Nov 2024

    All versions of package lutils are vulnerable to Prototype Pollution via the main (merge) function.

    Published: 17 Jun 2021
    6.1
    Medium

    CVE-2020-35373

    Last Modified: 21 Nov 2024

    In Fiyo CMS 2.0.6.1, the 'tag' parameter results in an unauthenticated XSS attack.

    Published: 17 Jun 2021
    7.1
    High

    CVE-2021-29706

    Last Modified: 21 Nov 2024

    IBM AIX 7.1 could allow a non-privileged local user to exploit a vulnerability in the trace facility to expose sensitive information or cause a denial of service. IBM X-Force ID: 200663.

    Published: 17 Jun 2021
    5.4
    Medium

    CVE-2020-19202

    Last Modified: 21 Nov 2024

    An authenticated Stored XSS (Cross-site Scripting) exists in the "captive.cgi" Captive Portal via the "Title of Login Page" text box or "TITLE" parameter in IPFire 2.21 (x86_64) - Core Update 130. It allows an authenticated WebGUI user with privileges to execute Stored Cross-site Scripting in the Captive Portal page.

    Published: 17 Jun 2021
    9.8
    Critical

    CVE-2013-20002

    Last Modified: 21 Nov 2024

    Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-content/themes/elemin/themify/themify-ajax.php file.

    Published: 17 Jun 2021
    9.8
    Critical

    CVE-2020-25414

    Last Modified: 21 Nov 2024

    A local file inclusion vulnerability was discovered in the captcha function in Monstra 3.0.4 which allows remote attackers to execute arbitrary PHP code.

    Published: 17 Jun 2021
    7.5
    High

    CVE-2021-34825

    Last Modified: 21 Nov 2024

    Quassel through 0.13.1, when --require-ssl is enabled, launches without SSL or TLS support if a usable X.509 certificate is not found on the local system.

    Published: 17 Jun 2021
    4.3
    Medium

    CVE-2021-31818

    Last Modified: 21 Nov 2024

    Affected versions of Octopus Server are prone to an authenticated SQL injection vulnerability in the Events REST API because user supplied data in the API request isn’t parameterised correctly. Exploiting this vulnerability could allow unauthorised access to database tables.

    Published: 17 Jun 2021