CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2021-0428

    Last Modified: 21 Nov 2024

    In getSimSerialNumber of TelephonyManager.java, there is a possible way to read a trackable identifier due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-173421434

    Published: 13 Apr 2021
    7.8
    High

    CVE-2021-0445

    Last Modified: 21 Nov 2024

    In start of WelcomeActivity.java, there is a possible residual profile due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-9Android ID: A-172322502

    Published: 13 Apr 2021
    7.3
    High

    CVE-2021-0446

    Last Modified: 21 Nov 2024

    In ImportVCardActivity, there is a possible way to bypass user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-172252122

    Published: 13 Apr 2021
    8
    High

    CVE-2021-0433

    Last Modified: 21 Nov 2024

    In onCreate of DeviceChooserActivity.java, there is a possible way to bypass user consent when pairing a Bluetooth device due to a tapjacking/overlay attack. This could lead to local escalation of privilege and pairing malicious devices with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-171221090

    Published: 13 Apr 2021
    4.7
    Medium

    CVE-2021-0443

    Last Modified: 21 Nov 2024

    In several functions of ScreenshotHelper.java and related files, there is a possible incorrectly saved screenshot due to a race condition. This could lead to local information disclosure across user profiles with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-170474245

    Published: 13 Apr 2021
    7.8
    High

    CVE-2021-0438

    Last Modified: 21 Nov 2024

    In several functions of InputDispatcher.cpp, WindowManagerService.java, and related files, there is a possible tapjacking attack due to an incorrect FLAG_OBSCURED value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10Android ID: A-152064592

    Published: 13 Apr 2021
    7.8
    High

    CVE-2021-21784

    Last Modified: 21 Nov 2024

    An out-of-bounds write vulnerability exists in the JPG format SOF marker processing of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 13 Apr 2021
    6.5
    Medium

    CVE-2020-28590

    Last Modified: 21 Nov 2024

    An out-of-bounds read vulnerability exists in the Obj File TriangleMesh::TriangleMesh() functionality of Slic3r libslic3r 1.3.0 and Master Commit 92abbc42. A specially crafted obj file could lead to information disclosure. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 13 Apr 2021
    8
    High

    CVE-2021-23280

    Last Modified: 21 Nov 2024

    Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated arbitrary file upload vulnerability. IPM’s maps_srv.js allows an attacker to upload a malicious NodeJS file using uploadBackgroud action. An attacker can upload a malicious code or execute any command using a specially crafted packet to exploit the vulnerability.

    Published: 13 Apr 2021
    8.3
    High

    CVE-2021-23277

    Last Modified: 21 Nov 2024

    Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated eval injection vulnerability. The software does not neutralize code syntax from users before using in the dynamic evaluation call in loadUserFile function under scripts/libs/utils.js. Successful exploitation can allow attackers to control the input to the function and execute attacker controlled commands.

    Published: 13 Apr 2021
    10
    Critical

    CVE-2021-23281

    Last Modified: 21 Nov 2024

    Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated remote code execution vulnerability. IPM software does not sanitize the date provided via coverterCheckList action in meta_driver_srv.js class. Attackers can send a specially crafted packet to make IPM connect to rouge SNMP server and execute attacker-controlled code.

    Published: 13 Apr 2021
    8
    High

    CVE-2021-23279

    Last Modified: 21 Nov 2024

    Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated arbitrary file delete vulnerability induced due to improper input validation in meta_driver_srv.js class with saveDriverData action using invalidated driverID. An attacker can send specially crafted packets to delete the files on the system where IPM software is installed.

    Published: 13 Apr 2021
    7.1
    High

    CVE-2021-23276

    Last Modified: 21 Nov 2024

    Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated SQL injection. A malicious user can send a specially crafted packet to exploit the vulnerability. Successful exploitation of this vulnerability can allow attackers to add users in the data base.

    Published: 13 Apr 2021
    8.7
    High

    CVE-2021-23278

    Last Modified: 21 Nov 2024

    Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated arbitrary file delete vulnerability induced due to improper input validation at server/maps_srv.js with action removeBackground and server/node_upgrade_srv.js with action removeFirmware. An attacker can send specially crafted packets to delete the files on the system where IPM software is installed.

    Published: 13 Apr 2021
    9.1
    Critical

    CVE-2021-21399

    Last Modified: 21 Nov 2024

    Ampache is a web based audio/video streaming application and file manager. Versions prior to 4.4.1 allow unauthenticated access to Ampache using the subsonic API. To successfully make the attack you must use a username that is not part of the site to bypass the auth checks. For more details and workaround guidance see the referenced GitHub security advisory.

    Published: 13 Apr 2021
    5.4
    Medium

    CVE-2021-29436

    Last Modified: 21 Nov 2024

    Anuko Time Tracker is an open source, web-based time tracking application written in PHP. In Time Tracker before version 1.19.27.5431 a Cross site request forgery (CSRF) vulnerability existed. The nature of CSRF is that a logged on user may be tricked by social engineering to click on an attacker-provided form that executes an unintended action such as changing user password. The vulnerability is fixed in Time Tracker version 1.19.27.5431. Upgrade is recommended. If upgrade is not practical, introduce ttMitigateCSRF() function in /WEB-INF/lib/common.php.lib using the latest available code and call it from ttAccessAllowed().

    Published: 13 Apr 2021
    8.1
    High

    CVE-2021-29435

    Last Modified: 21 Nov 2024

    trestle-auth is an authentication plugin for the Trestle admin framework. A vulnerability in trestle-auth versions 0.4.0 and 0.4.1 allows an attacker to create a form that will bypass Rails' built-in CSRF protection when submitted by a victim with a trestle-auth admin session. This potentially allows an attacker to alter protected data, including admin account credentials. The vulnerability has been fixed in trestle-auth 0.4.2 released to RubyGems.

    Published: 13 Apr 2021
    4.9
    Medium

    CVE-2021-28973

    Last Modified: 21 Nov 2024

    The XML Import functionality of the Administration console in Perforce Helix ALM 2020.3.1 Build 22 accepts XML input data that is parsed by insecurely configured software components, leading to XXE attacks.

    Published: 13 Apr 2021
    5.3
    Medium

    CVE-2021-29997

    Last Modified: 21 Nov 2024

    An issue was discovered in Wind River VxWorks 7 before 21.03. A specially crafted packet may lead to buffer over-read on IKE.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2021-29999

    Last Modified: 21 Nov 2024

    An issue was discovered in Wind River VxWorks through 6.8. There is a possible stack overflow in dhcp server.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2021-29998

    Last Modified: 21 Nov 2024

    An issue was discovered in Wind River VxWorks before 6.5. There is a possible heap overflow in dhcp client.

    Published: 13 Apr 2021
    4.4
    Medium

    CVE-2021-23372

    Last Modified: 21 Nov 2024

    All versions of package mongo-express are vulnerable to Denial of Service (DoS) when exporting an empty collection as CSV, due to an unhandled exception, leading to a crash.

    Published: 13 Apr 2021
    6.5
    Medium

    CVE-2021-21729

    Last Modified: 21 Nov 2024

    Some ZTE products have CSRF vulnerability. Because some pages lack CSRF random value verification, attackers could perform illegal authorization operations by constructing messages.This affects: ZXHN H168N V3.5.0_EG1T5_TE, V2.5.5, ZXHN H108N V2.5.5_BTMT1

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2021-21730

    Last Modified: 21 Nov 2024

    A ZTE product is impacted by improper access control vulnerability. The attacker could exploit this vulnerability to access CLI by brute force attacks.This affects: ZXHN H168N V3.5.0_TY.T6

    Published: 13 Apr 2021
    8.1
    High

    CVE-2021-21731

    Last Modified: 28 Jan 2025

    A CSRF vulnerability exists in the management page of a ZTE product.The vulnerability is caused because the management page does not fully verify whether the request comes from a trusted user. The attacker could submit a malicious request to the affected device to delete the data. This affects: ZXCLOUD iRAI All versions up to KVM-ProductV6.03.04

    Published: 13 Apr 2021
    8.8
    High

    CVE-2020-13568

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in phpGACL 3.3.7. A specially crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability in admin/edit_group.php, when the POST parameter action is “Submit”, the POST parameter parent_id leads to a SQL injection.

    Published: 13 Apr 2021
    8.8
    High

    CVE-2020-13566

    Last Modified: 21 Nov 2024

    SQL injection vulnerabilities exist in phpGACL 3.3.7. A specially crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability In admin/edit_group.php, when the POST parameter action is “Delete”, the POST parameter delete_group leads to a SQL injection.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2020-27227

    Last Modified: 21 Nov 2024

    An exploitable unatuhenticated command injection exists in the OpenClinic GA 5.173.3. Specially crafted web requests can cause commands to be executed on the server. An attacker can send a web request with parameters containing specific parameter to trigger this vulnerability, potentially allowing exfiltration of the database, user credentials and compromise underlying operating system.

    Published: 13 Apr 2021
    7.8
    High

    CVE-2020-27228

    Last Modified: 21 Nov 2024

    An incorrect default permissions vulnerability exists in the installation functionality of OpenClinic GA 5.173.3. Overwriting the binary can result in privilege escalation. An attacker can replace a file to exploit this vulnerability.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2020-27236

    Last Modified: 21 Nov 2024

    An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3 in the compnomenclature parameter. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2020-27235

    Last Modified: 21 Nov 2024

    An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3 in the description parameter. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2020-27234

    Last Modified: 21 Nov 2024

    An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3 in the serviceUID parameter. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2020-27233

    Last Modified: 21 Nov 2024

    An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3 in the supplierUID parameter. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 13 Apr 2021
    7.8
    High

    CVE-2021-3472

    Last Modified: 21 Nov 2024

    A flaw was found in xorg-x11-server in versions before 1.20.11. An integer underflow can occur in xserver which can lead to a local privilege escalation. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2021-22505

    Last Modified: 21 Nov 2024

    Escalation of privileges vulnerability in Micro Focus Operations Agent, affects versions 12.0x, 12.10, 12.11, 12.12, 12.14 and 12.15. The vulnerability could be exploited to escalate privileges and execute code under the account of the Operations Agent.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2021-30176

    Last Modified: 21 Nov 2024

    The ZEROF Expert pro/2.0 application for mobile devices allows SQL Injection via the Authorization header to the /v2/devices/add endpoint.

    Published: 13 Apr 2021
    —
    Unknown

    CVE-2021-28421

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-21417. Reason: This candidate is a duplicate of CVE-2021-21417. Notes: All CVE users should reference CVE-2021-21417 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2021-30175

    Last Modified: 21 Nov 2024

    ZEROF Web Server 1.0 (April 2021) allows SQL Injection via the /HandleEvent endpoint for the login page.

    Published: 13 Apr 2021
    7.8
    High

    CVE-2021-28647

    Last Modified: 21 Nov 2024

    Trend Micro Password Manager version 5 (Consumer) is vulnerable to a DLL Hijacking vulnerability which could allow an attacker to inject a malicious DLL file during the installation progress and could execute a malicious program each time a user installs a program.

    Published: 13 Apr 2021
    5.5
    Medium

    CVE-2021-28646

    Last Modified: 21 Nov 2024

    An insecure file permissions vulnerability in Trend Micro Apex One, Apex One as a Service and OfficeScan XG SP1 could allow a local attacker to take control of a specific log file on affected installations.

    Published: 13 Apr 2021
    7.8
    High

    CVE-2021-28645

    Last Modified: 21 Nov 2024

    An incorrect permission assignment vulnerability in Trend Micro Apex One, Apex One as a Service and OfficeScan XG SP1 could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

    Published: 13 Apr 2021
    7.8
    High

    CVE-2021-25253

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service and OfficeScan XG SP1 on a resource used by the service could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

    Published: 13 Apr 2021
    7.8
    High

    CVE-2021-25250

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service and OfficeScan XG SP1 on a sensitive file could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

    Published: 13 Apr 2021
    7.1
    High

    CVE-2021-3501

    Last Modified: 21 Nov 2024

    A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata, in the KVM API, is mapped to an array index, which can be updated by a user process at anytime which could lead to an out-of-bounds write. The highest threat from this vulnerability is to data integrity and system availability.

    Published: 13 Apr 2021
    4.3
    Medium

    CVE-2021-28938

    Last Modified: 21 Nov 2024

    Siren Federate before 6.8.14-10.3.9, 6.9.x through 7.6.x before 7.6.2-20.2, 7.7.x through 7.9.x before 7.9.3-21.6, 7.10.x before 7.10.2-22.2, and 7.11.x before 7.11.2-23.0 can leak user information across thread contexts. This occurs in opportunistic circumstances when there is concurrent query execution by a low-privilege user and a high-privilege user. The former query might run with the latter query's privileges.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2021-29003

    Last Modified: 21 Nov 2024

    Genexis PLATINUM 4410 2.1 P4410-V2-1.28 devices allow remote attackers to execute arbitrary code via shell metacharacters to sys_config_valid.xgi, as demonstrated by the sys_config_valid.xgi?exeshell=%60telnetd%20%26%60 URI.

    Published: 13 Apr 2021
    8.8
    High

    CVE-2021-29054

    Last Modified: 21 Nov 2024

    Certain Papoo products are affected by: Cross Site Request Forgery (CSRF) in the admin interface. This affects Papoo CMS Light through 21.02 and Papoo CMS Pro through 6.0.1. The impact is: gain privileges (remote).

    Published: 13 Apr 2021
    5.4
    Medium

    CVE-2021-30637

    Last Modified: 21 Nov 2024

    htmly 2.8.0 allows stored XSS via the blog title, Tagline, or Description to config.html.php.

    Published: 13 Apr 2021
    9.8
    Critical

    CVE-2021-30503

    Last Modified: 21 Nov 2024

    The unofficial GLSL Linting extension before 1.4.0 for Visual Studio Code allows remote code execution via a crafted glslangValidatorPath in the workspace configuration.

    Published: 13 Apr 2021
    7.1
    High

    CVE-2021-4156

    Last Modified: 11 Dec 2025

    An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds read that would most likely cause a crash but could potentially leak memory information that could be used in further exploitation of other flaws.

    Published: 13 Apr 2021