CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2021-32633

    Last Modified: 21 Nov 2024

    Zope is an open-source web application server. In Zope versions prior to 4.6 and 5.2, users can access untrusted modules indirectly through Python modules that are available for direct use. By default, only users with the Manager role can add or edit Zope Page Templates through the web, but sites that allow untrusted users to add/edit Zope Page Templates through the web are at risk from this vulnerability. The problem has been fixed in Zope 5.2 and 4.6. As a workaround, a site administrator can restrict adding/editing Zope Page Templates through the web using the standard Zope user/role permission mechanisms. Untrusted users should not be assigned the Zope Manager role and adding/editing Zope Page Templates through the web should be restricted to trusted users only.

    Published: 21 May 2021
    5.7
    Medium

    CVE-2020-27211

    Last Modified: 21 Nov 2024

    Nordic Semiconductor nRF52840 devices through 2020-10-19 have improper protection against physical side channels. The flash read-out protection (APPROTECT) can be bypassed by injecting a fault during the boot phase.

    Published: 21 May 2021
    7
    High

    CVE-2020-27212

    Last Modified: 21 Nov 2024

    STMicroelectronics STM32L4 devices through 2020-10-19 have incorrect access control. The flash read-out protection (RDP) can be degraded from RDP level 2 (no access via debug interface) to level 1 (limited access via debug interface) by injecting a fault during the boot phase.

    Published: 21 May 2021
    6.1
    Medium

    CVE-2021-29414

    Last Modified: 21 Nov 2024

    STMicroelectronics STM32L4 devices through 2021-03-29 have incorrect physical access control.

    Published: 21 May 2021
    5.5
    Medium

    CVE-2021-29415

    Last Modified: 21 Nov 2024

    The elliptic curve cryptography (ECC) hardware accelerator, part of the ARM® TrustZone® CryptoCell 310, contained in the NordicSemiconductor nRF52840 through 2021-03-29 has a non-constant time ECDSA implemenation. This allows an adversary to recover the private ECC key used during an ECDSA operation.

    Published: 21 May 2021
    6.8
    Medium

    CVE-2020-27208

    Last Modified: 21 Nov 2024

    The flash read-out protection (RDP) level is not enforced during the device initialization phase of the SoloKeys Solo 4.0.0 & Somu and the Nitrokey FIDO2 token. This allows an adversary to downgrade the RDP level and access secrets such as private ECC keys from SRAM via the debug interface.

    Published: 21 May 2021
    9.8
    Critical

    CVE-2020-12061

    Last Modified: 21 Nov 2024

    An issue was discovered in Nitrokey FIDO U2F firmware through 1.1. Communication between the microcontroller and the secure element transmits credentials in plain. This allows an adversary to eavesdrop the communication and derive the secrets stored in the microcontroller. As a result, the attacker is able to arbitrarily manipulate the firmware of the microcontroller.

    Published: 21 May 2021
    7.5
    High

    CVE-2021-32032

    Last Modified: 8 Jun 2026

    In Trusted Firmware-M through 1.3.0, cleaning up the memory allocated for a multi-part cryptographic operation (in the event of a failure) can prevent the abort() operation in the associated cryptographic library from freeing internal resources, causing a memory leak.

    Published: 21 May 2021
    8.8
    High

    CVE-2021-28798

    Last Modified: 21 Nov 2024

    A relative path traversal vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability allows attackers to modify files that impact system integrity. QNAP have already fixed this vulnerability in the following versions: QTS 4.5.2.1630 Build 20210406 and later QTS 4.3.6.1663 Build 20210504 and later QTS 4.3.3.1624 Build 20210416 and later QuTS hero h4.5.2.1638 Build 20210414 and later QNAP NAS running QTS 4.5.3 are not affected.

    Published: 21 May 2021
    8.8
    High

    CVE-2021-31439

    Last Modified: 14 Jan 2025

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Synology DiskStation Manager. Authentication is not required to exploit this vulnerablity. The specific flaw exists within the processing of DSI structures in Netatalk. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-12326.

    Published: 21 May 2021
    7.5
    High

    CVE-2021-33502

    Last Modified: 21 Nov 2024

    The normalize-url package before 4.5.1, 5.x before 5.3.1, and 6.x before 6.0.1 for Node.js has a ReDoS (regular expression denial of service) issue because it has exponential performance for data: URLs.

    Published: 21 May 2021
    3.3
    Low

    CVE-2021-38205

    Last Modified: 21 Nov 2024

    drivers/net/ethernet/xilinx/xilinx_emaclite.c in the Linux kernel before 5.13.3 makes it easier for attackers to defeat an ASLR protection mechanism because it prints a kernel pointer (i.e., the real IOMEM pointer).

    Published: 21 May 2021
    7
    High

    CVE-2021-31440

    Last Modified: 21 Nov 2024

    This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel 5.11.15. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of eBPF programs. The issue results from the lack of proper validation of user-supplied eBPF programs prior to executing them. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the kernel. Was ZDI-CAN-13661.

    Published: 21 May 2021
    5.3
    Medium

    CVE-2021-33197

    Last Modified: 21 Nov 2024

    In Go before 1.15.13 and 1.16.x before 1.16.5, some configurations of ReverseProxy (from net/http/httputil) result in a situation where an attacker is able to drop arbitrary headers.

    Published: 21 May 2021
    9.8
    Critical

    CVE-2021-33574

    Last Modified: 21 Nov 2024

    The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes object (passed through its struct sigevent parameter) after it has been freed by the caller, leading to a denial of service (application crash) or possibly unspecified other impact.

    Published: 21 May 2021
    7.5
    High

    CVE-2020-27209

    Last Modified: 21 Nov 2024

    The ECDSA operation of the micro-ecc library 1.0 is vulnerable to simple power analysis attacks which allows an adversary to extract the private ECC key.

    Published: 20 May 2021
    7.5
    High

    CVE-2020-18220

    Last Modified: 21 Nov 2024

    Weak Encoding for Password in DoraCMS v2.1.1 and earlier allows attackers to obtain sensitive information as it does not use a random salt or IV for its AES-CBC encryption, causes password encrypted for users to be susceptible to dictionary attacks.

    Published: 20 May 2021
    6.5
    Medium

    CVE-2021-22339

    Last Modified: 21 Nov 2024

    There is a denial of service vulnerability in some versions of ManageOne. In specific scenarios, due to the insufficient verification of the parameter, an attacker may craft some specific parameter. Successful exploit may cause some services abnormal.

    Published: 20 May 2021
    8.8
    High

    CVE-2021-33477

    Last Modified: 21 Nov 2024

    rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (potentially remote) code execution because of improper handling of certain escape sequences (ESC G Q). A response is terminated by a newline.

    Published: 20 May 2021
    5.3
    Medium

    CVE-2021-22409

    Last Modified: 21 Nov 2024

    There is a denial of service vulnerability in some versions of ManageOne. There is a logic error in the implementation of a function of a module. When the service pressure is heavy, there is a low probability that an exception may occur. Successful exploit may cause some services abnormal.

    Published: 20 May 2021
    6.1
    Medium

    CVE-2021-27956

    Last Modified: 21 Nov 2024

    Zoho ManageEngine ADSelfService Plus before 6104 allows stored XSS on the /webclient/index.html#/directory-search user search page via the e-mail address field.

    Published: 20 May 2021
    6.1
    Medium

    CVE-2020-21345

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in Halo 1.1.3 via post publish components in the manage panel, which lets a remote malicious user execute arbitrary code.

    Published: 20 May 2021
    9.6
    Critical

    CVE-2021-32630

    Last Modified: 21 Nov 2024

    Admidio is a free, open source user management system for websites of organizations and groups. In Admidio before version 4.0.4, there is an authenticated RCE via .phar file upload. A php web shell can be uploaded via the Documents & Files upload feature. Someone with upload permissions could rename the php shell with a .phar extension, visit the file, triggering the payload for a reverse/bind shell. This can be mitigated by excluding a .phar file extension to be uploaded (like you did with .php .phtml .php5 etc). The vulnerability is patched in version 4.0.4.

    Published: 20 May 2021
    2.4
    Low

    CVE-2021-32632

    Last Modified: 21 Nov 2024

    Pajbot is a Twitch chat bot. Pajbot versions prior to 1.52 are vulnerable to cross-site request forgery (CSRF). Hosters of the bot should upgrade to `v1.52` or `stable` to install the patch or, as a workaround, can add one modern dependency.

    Published: 20 May 2021
    8.1
    High

    CVE-2020-21057

    Last Modified: 21 Nov 2024

    Directory Traversal vulnerability in FusionPBX 4.5.7, which allows a remote malicious user to delete folders on the system via the folder variable to app/edit/folderdelete.php.

    Published: 20 May 2021
    4.3
    Medium

    CVE-2020-21056

    Last Modified: 21 Nov 2024

    Directory Traversal vulnerability exists in FusionPBX 4.5.7, which allows a remote malicious user to create folders via the folder variale to app\edit\foldernew.php.

    Published: 20 May 2021
    6.5
    Medium

    CVE-2020-21055

    Last Modified: 21 Nov 2024

    A Directory Traversal vulnerability exists in FusionPBX 4.5.7 allows malicoius users to rename any file of the system.via the (1) folder, (2) filename, and (3) newfilename variables in app\edit\filerename.php.

    Published: 20 May 2021
    5.4
    Medium

    CVE-2021-3313

    Last Modified: 21 Nov 2024

    Plone CMS until version 5.2.4 has a stored Cross-Site Scripting (XSS) vulnerability in the user fullname property and the file upload functionality. The user's input data is not properly encoded when being echoed back to the user. This data can be interpreted as executable code by the browser and allows an attacker to execute JavaScript in the context of the victim's browser if the victim opens a vulnerable page containing an XSS payload.

    Published: 20 May 2021
    6.1
    Medium

    CVE-2020-21054

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in FusionPBX 4.5.7 allows remote malicious users to inject arbitrary web script or HTML via an unsanitized "f" variable in app\vars\vars_textarea.php.

    Published: 20 May 2021
    7.5
    High

    CVE-2020-35580

    Last Modified: 21 Nov 2024

    A local file inclusion vulnerability in the FileServlet in all SearchBlox before 9.2.2 allows remote, unauthenticated users to read arbitrary files from the operating system via a /searchblox/servlet/FileServlet?col=url= request. Additionally, this may be used to read the contents of the SearchBlox configuration file (e.g., searchblox/WEB-INF/config.xml), which contains both the Super Admin's API key and the base64 encoded SHA1 password hashes of other SearchBlox users.

    Published: 20 May 2021
    7.5
    High

    CVE-2021-27432

    Last Modified: 21 Nov 2024

    OPC Foundation UA .NET Standard versions prior to 1.4.365.48 and OPC UA .NET Legacy are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow.

    Published: 20 May 2021
    5.9
    Medium

    CVE-2021-29692

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 200253.

    Published: 20 May 2021
    7.5
    High

    CVE-2021-29691

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 7.0.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 200252.

    Published: 20 May 2021
    7.5
    High

    CVE-2021-29688

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 200102.

    Published: 20 May 2021
    5.3
    Medium

    CVE-2021-29687

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 7.0.2 could allow a remote user to enumerate usernames due to a difference of responses from valid and invalid login attempts. IBM X-Force ID: 200018

    Published: 20 May 2021
    8.8
    High

    CVE-2021-29686

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 7.0.2 could allow an authenticated user to bypass security and perform actions that they should not have access to. IBM X-Force ID: 200015

    Published: 20 May 2021
    6.5
    Medium

    CVE-2021-29683

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 7.0.2 stores user credentials in plain clear text which can be read by an authenticated user. IBM X-Force ID: 199998.

    Published: 20 May 2021
    5.3
    Medium

    CVE-2021-29682

    Last Modified: 21 Nov 2024

    IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 199997

    Published: 20 May 2021
    7.5
    High

    CVE-2020-4850

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 1.1.1.0 through 1.1.8.4 Transparent Cloud Tiering could allow a remote attacker to obtain sensitive information, caused by the leftover files after configuration. IBM X-Force ID: 190298.

    Published: 20 May 2021
    4.8
    Medium

    CVE-2021-25933

    Last Modified: 30 Apr 2025

    In OpenNMS Horizon, versions opennms-1-0-stable through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation-2015.1.0-1 through meridian-foundation-2019.1.18-1; meridian-foundation-2020.1.0-1 through meridian-foundation-2020.1.6-1 are vulnerable to Stored Cross-Site Scripting, since the function `validateFormInput()` performs improper validation checks on the input sent to the `groupName` and `groupComment` parameters. Due to this flaw, an authenticated attacker could inject arbitrary script and trick other admin users into downloading malicious files which can cause severe damage to the organization using opennms.

    Published: 20 May 2021
    8.8
    High

    CVE-2021-25931

    Last Modified: 30 Apr 2025

    In OpenNMS Horizon, versions opennms-1-0-stable through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation-2015.1.0-1 through meridian-foundation-2019.1.18-1; meridian-foundation-2020.1.0-1 through meridian-foundation-2020.1.6-1 are vulnerable to CSRF, due to no CSRF protection at `/opennms/admin/userGroupView/users/updateUser`. This flaw allows assigning `ROLE_ADMIN` security role to a normal user. Using this flaw, an attacker can trick the admin user to assign administrator privileges to a normal user by enticing him to click upon an attacker-controlled website.

    Published: 20 May 2021
    6.1
    Medium

    CVE-2020-21053

    Last Modified: 21 Nov 2024

    Cross Site Scriptiong (XSS) vulnerability exists in FusionPBX 4.5.7 allows remote malicious users to inject arbitrary web script or HTML via an unsanitized "query_string" variable in app\devices\device_imports.php.

    Published: 20 May 2021
    4.8
    Medium

    CVE-2021-25929

    Last Modified: 30 Apr 2025

    In OpenNMS Horizon, versions opennms-1-0-stable through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation-2015.1.0-1 through meridian-foundation-2019.1.18-1; meridian-foundation-2020.1.0-1 through meridian-foundation-2020.1.6-1 are vulnerable to Stored Cross-Site Scripting since there is no validation on the input being sent to the `name` parameter in `noticeWizard` endpoint. Due to this flaw an authenticated attacker could inject arbitrary script and trick other admin users into downloading malicious files.

    Published: 20 May 2021
    4.3
    Medium

    CVE-2021-25930

    Last Modified: 30 Apr 2025

    In OpenNMS Horizon, versions opennms-1-0-stable through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation-2015.1.0-1 through meridian-foundation-2019.1.18-1; meridian-foundation-2020.1.0-1 through meridian-foundation-2020.1.6-1 are vulnerable to CSRF, due to no CSRF protection, and since there is no validation of an existing user name while renaming a user. As a result, privileges of the renamed user are being overwritten by the old user and the old user is being deleted from the user list.

    Published: 20 May 2021
    7.5
    High

    CVE-2021-27434

    Last Modified: 21 Nov 2024

    Products with Unified Automation .NET based OPC UA Client/Server SDK Bundle: Versions V3.0.7 and prior (.NET 4.5, 4.0, and 3.5 Framework versions only) are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow.

    Published: 20 May 2021
    7.8
    High

    CVE-2021-3438

    Last Modified: 21 Nov 2024

    A potential buffer overflow in the software drivers for certain HP LaserJet products and Samsung product printers could lead to an escalation of privilege.

    Published: 20 May 2021
    8.8
    High

    CVE-2021-28112

    Last Modified: 21 Nov 2024

    Draeger X-Dock Firmware before 03.00.13 has Active Debug Code on a debug port, leading to remote code execution by an authenticated attacker.

    Published: 20 May 2021
    8.8
    High

    CVE-2021-28111

    Last Modified: 21 Nov 2024

    Draeger X-Dock Firmware before 03.00.13 has Hard-Coded Credentials, leading to remote code execution by an authenticated attacker.

    Published: 20 May 2021
    6.8
    Medium

    CVE-2020-24395

    Last Modified: 21 Nov 2024

    The USB firmware update script of homee Brain Cube v2 (2.28.2 and 2.28.4) devices allows an attacker with physical access to install compromised firmware. This occurs because of insufficient validation of the firmware image file and can lead to code execution on the device.

    Published: 20 May 2021
    7.5
    High

    CVE-2020-24396

    Last Modified: 21 Nov 2024

    homee Brain Cube v2 (2.28.2 and 2.28.4) devices have sensitive SSH keys within downloadable and unencrypted firmware images. This allows remote attackers to use the support server as a SOCKS proxy.

    Published: 20 May 2021