CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2021-27390

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in JT2Go (All versions < V13.1.0.3), Teamcenter Visualization (All versions < V13.1.0.3). The TIFF_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing TIFF files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-13131)

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2020-26136

    Last Modified: 21 Nov 2024

    In SilverStripe through 4.6.0-rc1, GraphQL doesn't honour MFA (multi-factor authentication) when using basic authentication.

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2021-22216

    Last Modified: 21 Nov 2024

    A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker to cause uncontrolled resource consumption with a very long issue or merge request description

    Published: 8 Jun 2021
    6.1
    Medium

    CVE-2021-22220

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting all versions starting with 13.10. GitLab was vulnerable to a stored XSS in blob viewer of notebooks.

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2020-28713

    Last Modified: 21 Nov 2024

    Incorrect access control in push notification service in Night Owl Smart Doorbell FW version 20190505 allows remote users to send push notification events via an exposed PNS server. A remote attacker can passively record push notification events which are sent over an insecure web request. The web service does not authenticate requests, and allows attackers to send an indefinite amount of motion or doorbell events to a user's mobile application by either replaying or deliberately crafting false events.

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2021-22221

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting all versions starting from 12.9.0 before 13.10.5, all versions starting from 13.11.0 before 13.11.5, all versions starting from 13.12.0 before 13.12.2. Insufficient expired password validation in various operations allow user to maintain limited access after their password expired

    Published: 8 Jun 2021
    8.6
    High

    CVE-2021-26474

    Last Modified: 21 Nov 2024

    Various Vembu products allow an attacker to execute a (non-blind) http-only Cross Site Request Forgery (Other products or versions of products in this family may be affected too.)

    Published: 8 Jun 2021
    9.8
    Critical

    CVE-2021-26473

    Last Modified: 21 Nov 2024

    In VembuBDR before 4.2.0.1 and VembuOffsiteDR before 4.2.0.1 the http API located at /sgwebservice_o.php action logFilePath allows an attacker to write arbitrary files in the context of the web server process. These files can then be executed remotely by calling the file via the web server.

    Published: 8 Jun 2021
    4.4
    Medium

    CVE-2021-22219

    Last Modified: 21 Nov 2024

    All versions of GitLab CE/EE starting from 9.5 before 13.10.5, all versions starting from 13.11 before 13.11.5, and all versions starting from 13.12 before 13.12.2 allow a high privilege user to obtain sensitive information from log files because the sensitive information was not correctly registered for log masking.

    Published: 8 Jun 2021
    10
    Critical

    CVE-2021-26472

    Last Modified: 21 Nov 2024

    In VembuBDR before 4.2.0.1 and VembuOffsiteDR before 4.2.0.1 installed on Windows, the http API located at /consumerweb/secure/download.php. Using this command argument an unauthenticated attacker can execute arbitrary OS commands with SYSTEM privileges.

    Published: 8 Jun 2021
    9.8
    Critical

    CVE-2021-26471

    Last Modified: 21 Nov 2024

    In VembuBDR before 4.2.0.1 and VembuOffsiteDR before 4.2.0.1, the http API located at /sgwebservice_o.php accepts a command argument. Using this command argument an unauthenticated attacker can execute arbitrary shell commands.

    Published: 8 Jun 2021
    4.7
    Medium

    CVE-2021-32658

    Last Modified: 21 Nov 2024

    Nextcloud Android is the Android client for the Nextcloud open source home cloud system. Due to a timeout issue the Android client may not properly clean all sensitive data on account removal. This could include sensitive key material such as the End-to-End encryption keys. It is recommended that the Nextcloud Android App is upgraded to 3.16.1

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2021-22217

    Last Modified: 21 Nov 2024

    A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker to cause uncontrolled resource consumption with a specially crafted issue or merge request

    Published: 8 Jun 2021
    7.1
    High

    CVE-2021-21559

    Last Modified: 21 Nov 2024

    Dell EMC NetWorker, versions 18.x, 19.1.x, 19.2.x 19.3.x, 19.4, and 19.4.0.1 contain an Improper Certificate Validation vulnerability in the client (NetWorker Management Console) components which uses SSL encrypted connection in order to communicate with the application server. An unauthenticated attacker in the same network collision domain as the NetWorker Management Console client could potentially exploit this vulnerability to perform man-in-the-middle attacks to intercept and tamper the traffic between the client and the application server.

    Published: 8 Jun 2021
    8.2
    High

    CVE-2021-21558

    Last Modified: 21 Nov 2024

    Dell EMC NetWorker, 18.x, 19.1.x, 19.2.x 19.3.x, 19.4 and 19.4.0.1, contains an Information Disclosure vulnerability. A local administrator of the gstd system may potentially exploit this vulnerability to read LDAP credentials from local logs and use the stolen credentials to make changes to the network domain.

    Published: 8 Jun 2021
    8.8
    High

    CVE-2021-22213

    Last Modified: 21 Nov 2024

    A cross-site leak vulnerability in the OAuth flow of all versions of GitLab CE/EE since 7.10 allowed an attacker to leak an OAuth access token by getting the victim to visit a malicious page with Safari

    Published: 8 Jun 2021
    9.8
    Critical

    CVE-2021-28293

    Last Modified: 21 Nov 2024

    Seceon aiSIEM before 6.3.2 (build 585) is prone to an unauthenticated account takeover vulnerability in the Forgot Password feature. The lack of correct configuration leads to recovery of the password reset link generated via the password reset functionality, and thus an unauthenticated attacker can set an arbitrary password for any user.

    Published: 8 Jun 2021
    4.8
    Medium

    CVE-2020-25817

    Last Modified: 21 Nov 2024

    SilverStripe through 4.6.0-rc1 has an XXE Vulnerability in CSSContentParser. A developer utility meant for parsing HTML within unit tests can be vulnerable to XML External Entity (XXE) attacks. When this developer utility is misused for purposes involving external or user submitted data in custom project code, it can lead to vulnerabilities such as XSS on HTML output rendered through this custom code. This is now mitigated by disabling external entities during parsing. (The correct CVE ID year is 2020 [CVE-2020-25817, not CVE-2021-25817]).

    Published: 8 Jun 2021
    8.8
    High

    CVE-2021-32674

    Last Modified: 21 Nov 2024

    Zope is an open-source web application server. This advisory extends the previous advisory at https://github.com/zopefoundation/Zope/security/advisories/GHSA-5pr9-v234-jw36 with additional cases of TAL expression traversal vulnerabilities. Most Python modules are not available for using in TAL expressions that you can add through-the-web, for example in Zope Page Templates. This restriction avoids file system access, for example via the 'os' module. But some of the untrusted modules are available indirectly through Python modules that are available for direct use. By default, you need to have the Manager role to add or edit Zope Page Templates through the web. Only sites that allow untrusted users to add/edit Zope Page Templates through the web are at risk. The problem has been fixed in Zope 5.2.1 and 4.6.1. The workaround is the same as for https://github.com/zopefoundation/Zope/security/advisories/GHSA-5pr9-v234-jw36: A site administrator can restrict adding/editing Zope Page Templates through the web using the standard Zope user/role permission mechanisms. Untrusted users should not be assigned the Zope Manager role and adding/editing Zope Page Templates through the web should be restricted to trusted users only.

    Published: 8 Jun 2021
    5.3
    Medium

    CVE-2020-26138

    Last Modified: 21 Nov 2024

    In SilverStripe through 4.6.0-rc1, a FormField with square brackets in the field name skips validation.

    Published: 8 Jun 2021
    5.9
    Medium

    CVE-2021-31957

    Last Modified: 21 Nov 2024

    ASP.NET Core Denial of Service Vulnerability

    Published: 8 Jun 2021
    8.8
    High

    CVE-2021-32673

    Last Modified: 21 Nov 2024

    reg-keygen-git-hash-plugin is a reg-suit plugin to detect the snapshot key to be compare with using Git commit hash. reg-keygen-git-hash-plugin through and including 0.10.15 allow remote attackers to execute of arbitrary commands. Upgrade to version 0.10.16 or later to resolve this issue.

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2020-24511

    Last Modified: 21 Nov 2024

    Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

    Published: 8 Jun 2021
    3.3
    Low

    CVE-2020-24512

    Last Modified: 21 Nov 2024

    Observable timing discrepancy in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

    Published: 8 Jun 2021
    8.8
    High

    CVE-2020-24489

    Last Modified: 21 Nov 2024

    Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2020-24513

    Last Modified: 21 Nov 2024

    Domain-bypass transient execution vulnerability in some Intel Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

    Published: 8 Jun 2021
    6
    Medium

    CVE-2021-32015

    Last Modified: 21 Nov 2024

    In Nuvoton NPCT75x TPM 1.2 firmware 7.4.0.0, a local authenticated malicious user with high privileges could potentially gain unauthorized access to TPM non-volatile memory. NOTE: Upgrading to firmware version 7.4.0.1 will mitigate against the vulnerability, but version 7.4.0.1 is not TCG or Common Criteria (CC) certified. Nuvoton recommends that users apply the NPCT75x TPM 1.2 firmware update.

    Published: 8 Jun 2021
    7.5
    High

    CVE-2021-22215

    Last Modified: 21 Nov 2024

    An information disclosure vulnerability in GitLab EE versions 13.11 and later allowed a project owner to leak information about the members' on-call rotations in other projects

    Published: 8 Jun 2021
    5.3
    Medium

    CVE-2021-33190

    Last Modified: 21 Nov 2024

    In Apache APISIX Dashboard version 2.6, we changed the default value of listen host to 0.0.0.0 in order to facilitate users to configure external network access. In the IP allowed list restriction, a risky function was used for the IP acquisition, which made it possible to bypass the network limit. At the same time, the default account and password are fixed.Ultimately these factors lead to the issue of security risks. This issue is fixed in APISIX Dashboard 2.6.1

    Published: 8 Jun 2021
    2.6
    Low

    CVE-2021-22218

    Last Modified: 21 Nov 2024

    All versions of GitLab CE/EE starting from 12.8 before 13.10.5, all versions starting from 13.11 before 13.11.5, and all versions starting from 13.12 before 13.12.2 were affected by an issue in the handling of x509 certificates that could be used to spoof author of signed commits.

    Published: 8 Jun 2021
    6.8
    Medium

    CVE-2021-22214

    Last Modified: 21 Nov 2024

    When requests to the internal network for webhooks are enabled, a server-side request forgery vulnerability in GitLab CE/EE affecting all versions starting from 10.5 was possible to exploit for an unauthenticated attacker even on a GitLab instance where registration is limited

    Published: 8 Jun 2021
    7.5
    High

    CVE-2021-33176

    Last Modified: 21 Nov 2024

    VerneMQ MQTT Broker versions prior to 1.12.0 are vulnerable to a denial of service attack as a result of excessive memory consumption due to the handling of untrusted inputs. These inputs cause the message broker to consume large amounts of memory, resulting in the application being terminated by the operating system.

    Published: 8 Jun 2021
    7.5
    High

    CVE-2021-33175

    Last Modified: 21 Nov 2024

    EMQ X Broker versions prior to 4.2.8 are vulnerable to a denial of service attack as a result of excessive memory consumption due to the handling of untrusted inputs. These inputs cause the message broker to consume large amounts of memory, resulting in the application being terminated by the operating system.

    Published: 8 Jun 2021
    7.8
    High

    CVE-2021-34280

    Last Modified: 21 Nov 2024

    Polaris Office v9.103.83.44230 is affected by a Uninitialized Pointer Vulnerability in PolarisOffice.exe and EngineDLL.dll that may cause a Remote Code Execution. To exploit the vulnerability, someone must open a crafted PDF file.

    Published: 8 Jun 2021
    5.3
    Medium

    CVE-2021-30357

    Last Modified: 21 Nov 2024

    SSL Network Extender Client for Linux before build 800008302 reveals part of the contents of the configuration file supplied, which allows partially disclosing files to which the user did not have access.

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2021-22550

    Last Modified: 21 Nov 2024

    An attacker can modify the pointers in enclave memory to overwrite arbitrary memory addresses within the secure enclave. It is recommended to update past 0.6.3 or git commit https://github.com/google/asylo/commit/a47ef55db2337d29de19c50cd29b0deb2871d31c

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2021-22549

    Last Modified: 21 Nov 2024

    An attacker can modify the address to point to trusted memory to overwrite arbitrary trusted memory. It is recommended to update past 0.6.2 or git commit https://github.com/google/asylo/commit/53ed5d8fd8118ced1466e509606dd2f473707a5c

    Published: 8 Jun 2021
    6.5
    Medium

    CVE-2021-22548

    Last Modified: 21 Nov 2024

    An attacker can change the pointer to untrusted memory to point to trusted memory region which causes copying trusted memory to trusted memory, if the latter is later copied out, it allows for reading of memory regions from the trusted region. It is recommended to update past 0.6.2 or git commit https://github.com/google/asylo/commit/53ed5d8fd8118ced1466e509606dd2f473707a5c

    Published: 8 Jun 2021
    7.5
    High

    CVE-2020-26515

    Last Modified: 21 Nov 2024

    An insufficiently protected credentials issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. The remember-me cookie (CB_LOGIN) issued by the application contains the encrypted user's credentials. However, due to a bug in the application code, those credentials are encrypted using a NULL encryption key.

    Published: 8 Jun 2021
    4.8
    Medium

    CVE-2020-26517

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. It is possible to perform XSS attacks through using the WebDAV functionality to upload files to a project (Authn users), using the users import functionality (Admin only), and changing the login text in the application configuration (Admin only).

    Published: 8 Jun 2021
    5.4
    Medium

    CVE-2021-32106

    Last Modified: 21 Nov 2024

    In ICEcoder 8.0 allows, a reflected XSS vulnerability was identified in the multipe-results.php page due to insufficient sanitization of the _GET['replace'] variable. As a result, arbitrary Javascript code can get executed.

    Published: 8 Jun 2021
    8.8
    High

    CVE-2020-26516

    Last Modified: 21 Nov 2024

    A CSRF issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. Requests sent to the server that trigger actions do not contain a CSRF token and can therefore be entirely predicted allowing attackers to cause the victim's browser to execute undesired actions in the web application through crafted requests.

    Published: 8 Jun 2021
    4
    Medium

    CVE-2021-22212

    Last Modified: 21 Nov 2024

    ntpkeygen can generate keys that ntpd fails to parse. NTPsec 1.2.0 allows ntpkeygen to generate keys with '#' characters. ntpd then either pads, shortens the key, or fails to load these keys entirely, depending on the key type and the placement of the '#'. This results in the administrator not being able to use the keys as expected or the keys are shorter than expected and easier to brute-force, possibly resulting in MITM attacks between ntp clients and ntp servers. For short AES128 keys, ntpd generates a warning that it is padding them.

    Published: 8 Jun 2021
    6.1
    Medium

    CVE-2021-31738

    Last Modified: 21 Nov 2024

    Adiscon LogAnalyzer 4.1.10 and 4.1.11 allow login.php XSS.

    Published: 8 Jun 2021
    5.3
    Medium

    CVE-2021-23392

    Last Modified: 21 Nov 2024

    The package locutus before 2.0.15 are vulnerable to Regular Expression Denial of Service (ReDoS) via the gopher_parsedir function.

    Published: 8 Jun 2021
    8
    High

    CVE-2021-3589

    Last Modified: 21 Nov 2024

    An authorization flaw was found in Foreman Ansible. An authenticated attacker with certain permissions to create and run Ansible jobs can access hosts through job templates. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

    Published: 8 Jun 2021
    8.8
    High

    CVE-2021-3590

    Last Modified: 21 Nov 2024

    A flaw was found in Foreman project. A credential leak was identified which will expose Azure Compute Profile password through JSON of the API output. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

    Published: 8 Jun 2021
    5.7
    Medium

    CVE-2021-0129

    Last Modified: 21 Nov 2024

    Improper access control in BlueZ may allow an authenticated user to potentially enable information disclosure via adjacent access.

    Published: 8 Jun 2021
    7.2
    High

    CVE-2021-28811

    Last Modified: 21 Nov 2024

    If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands. Roon Labs has already fixed this vulnerability in the following versions: Roon Server 2021-05-18 and later

    Published: 8 Jun 2021
    7.5
    High

    CVE-2021-28810

    Last Modified: 21 Nov 2024

    If exploited, this vulnerability allows an attacker to access resources which are not otherwise accessible without proper authentication. Roon Labs has already fixed this vulnerability in the following versions: Roon Server 2021-05-18 and later

    Published: 8 Jun 2021