CVE Feed

    Dashboard / CVE

    6.7
    Medium

    CVE-2021-1449

    Last Modified: 21 Nov 2024

    A vulnerability in the boot logic of Cisco Access Points Software could allow an authenticated, local attacker to execute unsigned code at boot time. The vulnerability is due to an improper check that is performed by the area of code that manages system startup processes. An attacker could exploit this vulnerability by modifying a specific file that is stored on the system, which would allow the attacker to bypass existing protections. A successful exploit could allow the attacker to execute unsigned code at boot time and bypass the software image verification check part of the secure boot process of an affected device. Note: To exploit this vulnerability, the attacker would need to have access to the development shell (devshell) on the device.

    Published: 24 Mar 2021
    8.6
    High

    CVE-2021-1446

    Last Modified: 21 Nov 2024

    A vulnerability in the DNS application layer gateway (ALG) functionality used by Network Address Translation (NAT) in Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to a logic error that occurs when an affected device inspects certain DNS packets. An attacker could exploit this vulnerability by sending crafted DNS packets through an affected device that is performing NAT for DNS packets. A successful exploit could allow an attacker to cause the device to reload, resulting in a denial of service (DoS) condition on an affected device. The vulnerability can be exploited only by traffic that is sent through an affected device via IPv4 packets. The vulnerability cannot be exploited via IPv6 traffic.

    Published: 24 Mar 2021
    5.5
    Medium

    CVE-2021-1443

    Last Modified: 21 Nov 2024

    A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrary code with root privileges on the underlying operating system of an affected device. The vulnerability exists because the affected software improperly sanitizes values that are parsed from a specific configuration file. An attacker could exploit this vulnerability by tampering with a specific configuration file and then sending an API call. A successful exploit could allow the attacker to inject arbitrary code that would be executed on the underlying operating system of the affected device. To exploit this vulnerability, the attacker would need to have a privileged set of credentials to the device.

    Published: 24 Mar 2021
    6.7
    Medium

    CVE-2021-1441

    Last Modified: 21 Nov 2024

    A vulnerability in the hardware initialization routines of Cisco IOS XE Software for Cisco 1100 Series Industrial Integrated Services Routers and Cisco ESR6300 Embedded Series Routers could allow an authenticated, local attacker to execute unsigned code at system boot time. This vulnerability is due to incorrect validations of parameters passed to a diagnostic script that is executed when the device boots up. An attacker could exploit this vulnerability by tampering with an executable file stored on a device. A successful exploit could allow the attacker to execute unsigned code at boot time and bypass the software image verification check part of the secure boot process of an affected device. To exploit this vulnerability, the attacker would need administrative level credentials (level 15) on the device.

    Published: 24 Mar 2021
    7.8
    High

    CVE-2021-1442

    Last Modified: 21 Nov 2024

    A vulnerability in a diagnostic command for the Plug-and-Play (PnP) subsystem of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privileges to the level of an Administrator user (level 15) on an affected device. The vulnerability is due to insufficient protection of sensitive information. An attacker with low privileges could exploit this vulnerability by issuing the diagnostic CLI show pnp profile when a specific PnP listener is enabled on the device. A successful exploit could allow the attacker to obtain a privileged authentication token. This token can be used to send crafted PnP messages and execute privileged commands on the targeted system.

    Published: 24 Mar 2021
    7.4
    High

    CVE-2021-1439

    Last Modified: 21 Nov 2024

    A vulnerability in the multicast DNS (mDNS) gateway feature of Cisco Aironet Series Access Points Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input validation of incoming mDNS traffic. An attacker could exploit this vulnerability by sending a crafted mDNS packet to an affected device through a wireless network that is configured in FlexConnect local switching mode or through a wired network on a configured mDNS VLAN. A successful exploit could allow the attacker to cause the access point (AP) to reboot, resulting in a DoS condition.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2021-1437

    Last Modified: 21 Nov 2024

    A vulnerability in the FlexConnect Upgrade feature of Cisco Aironet Series Access Points Software could allow an unauthenticated, remote attacker to obtain confidential information from an affected device. This vulnerability is due to an unrestricted Trivial File Transfer Protocol (TFTP) configuration. An attacker could exploit this vulnerability by sending a specific TFTP request to an affected device. A successful exploit could allow the attacker to download any file from the filesystem of the affected access point (AP).

    Published: 24 Mar 2021
    4.4
    Medium

    CVE-2021-1436

    Last Modified: 21 Nov 2024

    A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to conduct path traversal attacks and obtain read access to sensitive files on an affected system. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to an affected system. A successful exploit could allow the attacker to view arbitrary files on the affected system.

    Published: 24 Mar 2021
    7.2
    High

    CVE-2021-1435

    Last Modified: 16 Dec 2025

    A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to inject arbitrary commands that can be executed as the root user. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted request to the web UI of an affected device with arbitrary commands injected into a portion of the request. A successful exploit could allow the attacker to execute arbitrary commands as the root user.

    Published: 24 Mar 2021
    4.4
    Medium

    CVE-2021-1434

    Last Modified: 21 Nov 2024

    A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file system. This vulnerability is due to insufficient validation of the parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing that command with specific parameters. A successful exploit could allow the attacker to overwrite the content of any arbitrary file that resides on the underlying host file system.

    Published: 24 Mar 2021
    8.1
    High

    CVE-2021-1433

    Last Modified: 21 Nov 2024

    A vulnerability in the vDaemon process in Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to cause a buffer overflow on an affected device. This vulnerability is due to insufficient bounds checking when the device processes traffic. An attacker could exploit this vulnerability by sending crafted traffic to the device. The attacker must have a man-in-the-middle position between Cisco vManage and an associated device that is running an affected version of Cisco IOS XE SD-WAN Software. An exploit could allow the attacker to conduct a controllable buffer overflow attack (and possibly execute arbitrary commands as the root user) or cause a device reload, resulting in a denial of service (DoS) condition.

    Published: 24 Mar 2021
    7.3
    High

    CVE-2021-1432

    Last Modified: 21 Nov 2024

    A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system as the root user. The attacker must be authenticated on the affected device as a low-privileged user to exploit this vulnerability. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by injecting arbitrary commands to a file as a lower-privileged user. The commands are then executed on the device by the root user. A successful exploit could allow the attacker to execute arbitrary commands as the root user.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2021-1431

    Last Modified: 21 Nov 2024

    A vulnerability in the vDaemon process of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to cause a device to reload, resulting a denial of service (DoS) condition. This vulnerability is due to insufficient handling of malformed packets. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.

    Published: 24 Mar 2021
    4.3
    Medium

    CVE-2021-22169

    Last Modified: 21 Nov 2024

    An issue was identified in GitLab EE 13.4 or later which leaked internal IP address via error messages.

    Published: 24 Mar 2021
    5
    Medium

    CVE-2021-22178

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting all versions starting from 13.2. Gitlab was vulnerable to SRRF attack through the Prometheus integration.

    Published: 24 Mar 2021
    3.5
    Low

    CVE-2021-22193

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting all versions starting with 7.1. A member of a private group was able to validate the use of a specific name for private project.

    Published: 24 Mar 2021
    6.5
    Medium

    CVE-2020-15809

    Last Modified: 21 Nov 2024

    spxmanage on certain SpinetiX devices allows requests that access unintended resources because of SSRF and Path Traversal. This affects HMP350, HMP300, and DiVA through 4.5.2-1.0.36229; HMP400 and HMP400W through 4.5.2-1.0.2-1eb2ffbd; and DSOS through 4.5.2-1.0.2-1eb2ffbd.

    Published: 24 Mar 2021
    5.4
    Medium

    CVE-2021-22179

    Last Modified: 21 Nov 2024

    A vulnerability was discovered in GitLab versions before 12.2. GitLab was vulnerable to a SSRF attack through the Outbound Requests feature.

    Published: 24 Mar 2021
    4.3
    Medium

    CVE-2021-22176

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting all versions starting with 3.0.1. Improper access control allows demoted project members to access details on authored merge requests

    Published: 24 Mar 2021
    4.9
    Medium

    CVE-2021-22186

    Last Modified: 21 Nov 2024

    An authorization issue in GitLab CE/EE version 9.4 and up allowed a group maintainer to modify group CI/CD variables which should be restricted to group owners

    Published: 24 Mar 2021
    5.4
    Medium

    CVE-2021-22185

    Last Modified: 21 Nov 2024

    Insufficient input sanitization in wikis in GitLab version 13.8 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted commit to a wiki

    Published: 24 Mar 2021
    9.9
    Critical

    CVE-2021-22192

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2 allowing unauthorized authenticated users to execute arbitrary code on the server.

    Published: 24 Mar 2021
    8.8
    High

    CVE-2020-7839

    Last Modified: 21 Nov 2024

    In MaEPSBroker 2.5.0.31 and prior, a command injection vulnerability caused by improper input validation checks when parsing brokerCommand parameter.

    Published: 24 Mar 2021
    9.8
    Critical

    CVE-2020-35337

    Last Modified: 21 Nov 2024

    ThinkSAAS before 3.38 contains a SQL injection vulnerability through app/topic/action/admin/topic.php via the title parameter, which allows remote attackers to execute arbitrary SQL commands.

    Published: 24 Mar 2021
    9.6
    Critical

    CVE-2020-36283

    Last Modified: 21 Nov 2024

    HID OMNIKEY 5427 and OMNIKEY 5127 readers are vulnerable to CSRF when using the EEM driver (Ethernet Emulation Mode). By persuading an authenticated user to visit a malicious Web site, a remote attacker could send a malformed HTTP request to upload a configuration file to the device. An attacker could exploit this vulnerability to perform cross-site scripting attacks, Web cache poisoning, and other malicious activities.

    Published: 24 Mar 2021
    5.4
    Medium

    CVE-2021-29002

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability in Plone CMS 5.2.3 exists in site-controlpanel via the "form.widgets.site_title" parameter.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2020-5015

    Last Modified: 21 Nov 2024

    IBM Elastic Storage System 6.0.0 through 6.0.1.2 and IBM Elastic Storage Server 5.3.0 through 5.3.6.2 could allow a remote attacker to cause a denial of service by sending malformed UDP requests. IBM X-Force ID: 193486.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2021-28362

    Last Modified: 21 Nov 2024

    An issue was discovered in Contiki through 3.0. When sending an ICMPv6 error message because of invalid extension header options in an incoming IPv6 packet, there is an attempt to remove the RPL extension headers. Because the packet length and the extension header length are unchecked (with respect to the available data) at this stage, and these variables are susceptible to integer underflow, it is possible to construct an invalid extension header that will cause memory corruption issues and lead to a Denial-of-Service condition. This is related to rpl-ext-header.c.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2021-27320

    Last Modified: 21 Nov 2024

    Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malicious SQL queries via firstname parameter.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2021-27319

    Last Modified: 21 Nov 2024

    Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malicious SQL queries via email parameter.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2021-27316

    Last Modified: 21 Nov 2024

    Blind SQL injection in contactus.php in doctor appointment system 1.0 allows an unauthenticated attacker to insert malicious SQL queries via lastname parameter.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2021-27315

    Last Modified: 21 Nov 2024

    Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malicious SQL queries via the comment parameter.

    Published: 24 Mar 2021
    4.8
    Medium

    CVE-2021-29033

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Bitweaver version 3.1.0 allows remote attackers to inject JavaScript via the /users/admin/edit_group.php URI.

    Published: 24 Mar 2021
    4.8
    Medium

    CVE-2021-29032

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Bitweaver version 3.1.0 allows remote attackers to inject JavaScript via the /users/preferences.php URI.

    Published: 24 Mar 2021
    4.8
    Medium

    CVE-2021-29031

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Bitweaver version 3.1.0 allows remote attackers to inject JavaScript via the /users/admin/users_import.php URI.

    Published: 24 Mar 2021
    4.8
    Medium

    CVE-2021-29030

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Bitweaver version 3.1.0 allows remote attackers to inject JavaScript via the /users/admin/index.php URI.

    Published: 24 Mar 2021
    4.8
    Medium

    CVE-2021-29029

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Bitweaver version 3.1.0 allows remote attackers to inject JavaScript via the /users/edit_personal_page.php URI.

    Published: 24 Mar 2021
    4.8
    Medium

    CVE-2021-29028

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Bitweaver version 3.1.0 allows remote attackers to inject JavaScript via the /users/admin/user_activity.php URI.

    Published: 24 Mar 2021
    4.8
    Medium

    CVE-2021-29027

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Bitweaver version 3.1.0 allows remote attackers to inject JavaScript via the /users/index.php URI.

    Published: 24 Mar 2021
    4.8
    Medium

    CVE-2021-29026

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Bitweaver version 3.1.0 allows remote attackers to inject JavaScript via the /users/admin/permissions.php URI.

    Published: 24 Mar 2021
    4.8
    Medium

    CVE-2021-29025

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Bitweaver version 3.1.0 allows remote attackers to inject JavaScript via the /users/my_images.php URI.

    Published: 24 Mar 2021
    5.5
    Medium

    CVE-2021-29133

    Last Modified: 21 Nov 2024

    Lack of verification in haserl, a component of Alpine Linux Configuration Framework, before 0.9.36 allows local users to read the contents of any file on the filesystem.

    Published: 24 Mar 2021
    9.8
    Critical

    CVE-2021-28967

    Last Modified: 8 Jul 2025

    The unofficial MATLAB extension before 2.0.1 for Visual Studio Code allows attackers to execute arbitrary code via a crafted workspace because of lint configuration settings.

    Published: 24 Mar 2021
    5.5
    Medium

    CVE-2021-29338

    Last Modified: 3 Nov 2025

    Integer Overflow in OpenJPEG v2.4.0 allows remote attackers to crash the application, causing a Denial of Service (DoS). This occurs when the attacker uses the command line option "-ImgDir" on a directory that contains 1048576 files.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2021-20277

    Last Modified: 21 Nov 2024

    A flaw was found in Samba's libldb. Multiple, consecutive leading spaces in an LDAP attribute can lead to an out-of-bounds memory write, leading to a crash of the LDAP server process handling the request. The highest threat from this vulnerability is to system availability.

    Published: 24 Mar 2021
    7.5
    High

    CVE-2020-27840

    Last Modified: 21 Nov 2024

    A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause invalid DN strings with spaces to instead write a zero-byte into out-of-bounds memory, resulting in a crash. The highest threat from this vulnerability is to system availability.

    Published: 24 Mar 2021
    3.5
    Low

    CVE-2021-45486

    Last Modified: 21 Nov 2024

    In the IPv4 implementation in the Linux kernel before 5.12.4, net/ipv4/route.c has an information leak because the hash table is very small.

    Published: 24 Mar 2021
    9.8
    Critical

    CVE-2020-1946

    Last Modified: 13 Feb 2025

    In Apache SpamAssassin before 3.4.5, malicious rule configuration (.cf) files can be configured to run system commands without any output or errors. With this, exploits can be injected in a number of scenarios. In addition to upgrading to SA version 3.4.5, users should only use update channels or 3rd party .cf files from trusted places.

    Published: 24 Mar 2021
    7.7
    High

    CVE-2021-21380

    Last Modified: 21 Nov 2024

    XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected versions of XWiki Platform (and only those with the Ratings API installed), the Rating Script Service expose an API to perform SQL requests without escaping the from and where search arguments. This might lead to an SQL script injection quite easily for any user having Script rights on XWiki. The problem has been patched in XWiki 12.9RC1. The only workaround besides upgrading XWiki would be to uninstall the Ratings API in XWiki from the Extension Manager.

    Published: 23 Mar 2021
    —
    Unknown

    CVE-2020-13612

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 23 Mar 2021