CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2020-4891

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 5.0.0 through 5.0.5.5 and 5.1.0 through 5.1.0.2 uses an inadequate account lockout setting that could allow a local user er to brute force Rest API account credentials. IBM X-Force ID: 190974.

    Published: 16 Mar 2021
    4.4
    Medium

    CVE-2020-4890

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 5.0.0 through 5.0.5.5 and 5.1.0 through 5.1.0.2 could allow a local user with a valid role to the REST API to cause a denial of service due to weak or absense of rate limiting. IBM X-Force ID: 190973.

    Published: 16 Mar 2021
    5.5
    Medium

    CVE-2020-4851

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 5.0.0 through 5.0.5.5 and 5.1.0 through 5.1.0.2 could allow a local user to poison log files which could impact support and development efforts. IBM X-Force ID: 190450.

    Published: 16 Mar 2021
    5.9
    Medium

    CVE-2020-1926

    Last Modified: 13 Feb 2025

    Apache Hive cookie signature verification used a non constant time comparison which is known to be vulnerable to timing attacks. This could allow recovery of another users cookie signature. The issue was addressed in Apache Hive 2.3.8

    Published: 16 Mar 2021
    8.1
    High

    CVE-2021-20305

    Last Modified: 21 Nov 2024

    A flaw was found in Nettle in versions before 3.7.2, where several Nettle signature verification functions (GOST DSA, EDDSA & ECDSA) result in the Elliptic Curve Cryptography point (ECC) multiply function being called with out-of-range scalers, possibly resulting in incorrect results. This flaw allows an attacker to force an invalid signature, causing an assertion failure or possible validation. The highest threat to this vulnerability is to confidentiality, integrity, as well as system availability.

    Published: 16 Mar 2021
    4.7
    Medium

    CVE-2021-28964

    Last Modified: 21 Nov 2024

    A race condition was discovered in get_old_root in fs/btrfs/ctree.c in the Linux kernel through 5.11.8. It allows attackers to cause a denial of service (BUG) because of a lack of locking on an extent buffer before a cloning operation, aka CID-dbcc7d57bffc.

    Published: 16 Mar 2021
    4
    Medium

    CVE-2021-28543

    Last Modified: 21 Nov 2024

    Varnish varnish-modules before 0.17.1 allows remote attackers to cause a denial of service (daemon restart) in some configurations. This does not affect organizations that only install the Varnish Cache product; however, it is common to install both Varnish Cache and varnish-modules. Specifically, an assertion failure or NULL pointer dereference can be triggered in Varnish Cache through the varnish-modules header.append() and header.copy() functions. For some Varnish Configuration Language (VCL) files, this gives remote clients an opportunity to cause a Varnish Cache restart. A restart reduces overall availability and performance due to an increased number of cache misses, and may cause higher load on backend servers.

    Published: 16 Mar 2021
    4.3
    Medium

    CVE-2021-45346

    Last Modified: 21 Nov 2024

    A Memory Leak vulnerability exists in SQLite Project SQLite3 3.35.1 and 3.37.0 via maliciously crafted SQL Queries (made via editing the Database File), it is possible to query a record, and leak subsequent bytes of memory that extend beyond the record, which could let a malicious user obtain sensitive information. NOTE: The developer disputes this as a vulnerability stating that If you give SQLite a corrupted database file and submit a query against the database, it might read parts of the database that you did not intend or expect.

    Published: 16 Mar 2021
    5.5
    Medium

    CVE-2021-3447

    Last Modified: 21 Nov 2024

    A flaw was found in several ansible modules, where parameters containing credentials, such as secrets, were being logged in plain-text on managed nodes, as well as being made visible on the controller node when run in verbose mode. These parameters were not protected by the no_log feature. An attacker can take advantage of this information to steal those credentials, provided when they have access to the log files containing them. The highest threat from this vulnerability is to data confidentiality. This flaw affects Red Hat Ansible Automation Platform in versions before 1.2.2 and Ansible Tower in versions before 3.8.2.

    Published: 16 Mar 2021
    7.3
    High

    CVE-2021-20202

    Last Modified: 21 Nov 2024

    A flaw was found in keycloak. Directories can be created prior to the Java process creating them in the temporary directory, but with wider user permissions, allowing the attacker to have access to the contents that keycloak stores in this directory. The highest threat from this vulnerability is to data confidentiality and integrity.

    Published: 16 Mar 2021
    8.8
    High

    CVE-2021-27230

    Last Modified: 21 Nov 2024

    ExpressionEngine before 5.4.2 and 6.x before 6.0.3 allows PHP Code Injection by certain authenticated users who can leverage Translate::save() to write to an _lang.php file under the system/user/language directory.

    Published: 15 Mar 2021
    4.3
    Medium

    CVE-2021-20283

    Last Modified: 21 Nov 2024

    The web service responsible for fetching other users' enrolled courses did not validate that the requesting user had permission to view that information in each course in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.

    Published: 15 Mar 2021
    5.3
    Medium

    CVE-2021-20282

    Last Modified: 21 Nov 2024

    When creating a user account, it was possible to verify the account without having access to the verification email link/secret in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.

    Published: 15 Mar 2021
    5.3
    Medium

    CVE-2021-20281

    Last Modified: 21 Nov 2024

    It was possible for some users without permission to view other users' full names to do so via the online users block in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.

    Published: 15 Mar 2021
    5.4
    Medium

    CVE-2021-20280

    Last Modified: 21 Nov 2024

    Text-based feedback answers required additional sanitizing to prevent stored XSS and blind SSRF risks in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.

    Published: 15 Mar 2021
    5.4
    Medium

    CVE-2021-20279

    Last Modified: 21 Nov 2024

    The ID number user profile field required additional sanitizing to prevent a stored XSS risk in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.

    Published: 15 Mar 2021
    9.8
    Critical

    CVE-2021-26987

    Last Modified: 21 Nov 2024

    Element Plug-in for vCenter Server incorporates SpringBoot Framework. SpringBoot Framework versions prior to 1.3.2 are susceptible to a vulnerability which when successfully exploited could lead to Remote Code Execution. All versions of Element Plug-in for vCenter Server, Management Services versions prior to 2.17.56 and Management Node versions through 12.2 contain vulnerable versions of SpringBoot Framework.

    Published: 15 Mar 2021
    4.3
    Medium

    CVE-2020-27290

    Last Modified: 21 Nov 2024

    In Hamilton Medical AG,T1-Ventillator versions 2.2.3 and prior, an information disclosure vulnerability in the ventilator allows attackers with physical access to the configuration interface's logs to get valid checksums for tampered configuration files.

    Published: 15 Mar 2021
    4.3
    Medium

    CVE-2020-27282

    Last Modified: 21 Nov 2024

    In Hamilton Medical AG,T1-Ventillator versions 2.2.3 and prior, an XML validation vulnerability in the ventilator allows privileged attackers with physical access to render the device persistently unusable by uploading specially crafted configuration files.

    Published: 15 Mar 2021
    5.2
    Medium

    CVE-2020-27278

    Last Modified: 21 Nov 2024

    In Hamilton Medical AG,T1-Ventillator versions 2.2.3 and prior, hard-coded credentials in the ventilator allow attackers with physical access to obtain admin privileges for the device’s configuration interface.

    Published: 15 Mar 2021
    7.5
    High

    CVE-2021-24029

    Last Modified: 21 Nov 2024

    A packet of death scenario is possible in mvfst via a specially crafted message during a QUIC session, which causes a crash via a failed assertion. Per QUIC specification, this particular message should be treated as a connection error. This issue affects mvfst versions prior to commit a67083ff4b8dcbb7ee2839da6338032030d712b0 and proxygen versions prior to v2021.03.15.00.

    Published: 15 Mar 2021
    6.1
    Medium

    CVE-2021-3150

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability on the Delete Personal Data page in Cryptshare Server before 4.8.0 allows an attacker to inject arbitrary web script or HTML via the user name. The issue is fixed with the version 4.8.1

    Published: 15 Mar 2021
    6.7
    Medium

    CVE-2021-23879

    Last Modified: 21 Nov 2024

    Unquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2 allows local administrators to execute arbitrary code, with higher-level privileges, via execution from a compromised folder. The tool did not enforce and protect the execution path. Local admin privileges are required to place the files in the required location.

    Published: 15 Mar 2021
    8.8
    High

    CVE-2020-29553

    Last Modified: 21 Nov 2024

    The Scheduler in Grav CMS through 1.7.0-rc.17 allows an attacker to execute a system command by tricking an admin into visiting a malicious website (CSRF).

    Published: 15 Mar 2021
    8.1
    High

    CVE-2020-29555

    Last Modified: 21 Nov 2024

    The BackupDelete functionality in Grav CMS through 1.7.0-rc.17 allows an authenticated attacker to delete arbitrary files on the underlying server by exploiting a path-traversal technique. (This vulnerability can also be exploited by an unauthenticated attacker due to a lack of CSRF protection.)

    Published: 15 Mar 2021
    5.5
    Medium

    CVE-2020-29556

    Last Modified: 21 Nov 2024

    The Backup functionality in Grav CMS through 1.7.0-rc.17 allows an authenticated attacker to read arbitrary local files on the underlying server by exploiting a path-traversal technique. (This vulnerability can also be exploited by an unauthenticated attacker due to a lack of CSRF protection.)

    Published: 15 Mar 2021
    8.1
    High

    CVE-2020-24985

    Last Modified: 21 Nov 2024

    An issue was discovered in Quadbase EspressReports ES 7 Update 9. An authenticated user is able to navigate to the MenuPage section of the application, and change the frmsrc parameter value to retrieve and execute external files or payloads.

    Published: 15 Mar 2021
    4.3
    Medium

    CVE-2020-24982

    Last Modified: 21 Nov 2024

    An issue was discovered in Quadbase ExpressDashboard (EDAB) 7 Update 9. It allows CSRF. An attacker may be able to trick an authenticated user into changing the email address associated with their account.

    Published: 15 Mar 2021
    9.6
    Critical

    CVE-2020-28149

    Last Modified: 21 Nov 2024

    myDBR 5.8.3/4262 is affected by: Cross Site Scripting (XSS). The impact is: execute arbitrary code (remote). The component is: CSRF Token. The attack vector is: CSRF token injection to XSS.

    Published: 15 Mar 2021
    6.1
    Medium

    CVE-2021-27949

    Last Modified: 21 Nov 2024

    Cross-site Scripting vulnerability in MyBB before 1.8.26 via Custom moderator tools.

    Published: 15 Mar 2021
    7.2
    High

    CVE-2021-27948

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in MyBB before 1.8.26 via User Groups. (issue 3 of 3).

    Published: 15 Mar 2021
    7.2
    High

    CVE-2021-27947

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in MyBB before 1.8.26 via the Copy Forum feature in Forum Management. (issue 2 of 3).

    Published: 15 Mar 2021
    8.8
    High

    CVE-2021-27946

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in MyBB before 1.8.26 via poll vote count. (issue 1 of 3).

    Published: 15 Mar 2021
    8.8
    High

    CVE-2021-27890

    Last Modified: 21 Nov 2024

    SQL Injection vulnerablity in MyBB before 1.8.26 via theme properties included in theme XML files.

    Published: 15 Mar 2021
    7.8
    High

    CVE-2021-27380

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP4). Affected applications lack proper validation of user-supplied data when parsing PAR files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-12532)

    Published: 15 Mar 2021
    8.8
    High

    CVE-2021-25672

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in Mendix Forgot Password Appstore module (All Versions < V3.2.1). The Forgot Password Marketplace module does not properly control access. An attacker could take over accounts.

    Published: 15 Mar 2021
    5.5
    Medium

    CVE-2021-25673

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SIMATIC S7-PLCSIM V5.4 (All versions). An attacker with local access to the system could cause a Denial-of-Service condition in the application when it is used to open a specially crafted file. As a consequence, the application could enter an infinite loop, become unresponsive and must be restarted to restore the service.

    Published: 15 Mar 2021
    5.5
    Medium

    CVE-2021-25674

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SIMATIC S7-PLCSIM V5.4 (All versions). An attacker with local access to the system could cause a Denial-of-Service condition in the application when it is used to open a specially crafted file. As a consequence, a NULL pointer deference condition could cause the application to terminate unexpectedly and must be restarted to restore the service.

    Published: 15 Mar 2021
    7.8
    High

    CVE-2021-27381

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP3). Affected applications lack proper validation of user-supplied data when parsing PAR files. This could result in an out of bounds read past the end of an allocated structure. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-12534)

    Published: 15 Mar 2021
    7.5
    High

    CVE-2021-25676

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in RUGGEDCOM RM1224 (V6.3), SCALANCE M-800 (V6.3), SCALANCE S615 (V6.3), SCALANCE SC-600 (All Versions >= V2.1 and < V2.1.3). Multiple failed SSH authentication attempts could trigger a temporary Denial-of-Service under certain conditions. When triggered, the device will reboot automatically.

    Published: 15 Mar 2021
    5.5
    Medium

    CVE-2021-25675

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SIMATIC S7-PLCSIM V5.4 (All versions). An attacker with local access to the system could cause a Denial-of-Service condition in the application when it is used to open a specially crafted file. As a consequence, a divide by zero operation could occur and cause the application to terminate unexpectedly and must be restarted to restore the service.

    Published: 15 Mar 2021
    8.8
    High

    CVE-2021-25667

    Last Modified: 2 Jun 2026

    A vulnerability has been identified in RUGGEDCOM RM1224 (All versions >= V4.3 and < V6.4), SCALANCE M-800 (All versions >= V4.3 and < V6.4), SCALANCE S615 (All versions >= V4.3 and < V6.4), SCALANCE SC-600 Family (All versions >= V2.0 and < V2.1.3), SCALANCE XB-200 (All versions < V4.1), SCALANCE XC-200 (All versions < V4.1), SCALANCE XF-200BA (All versions < V4.1), SCALANCE XM400 (All versions < V6.2), SCALANCE XP-200 (All versions < V4.1), SCALANCE XR-300WG (All versions < V4.1), SCALANCE XR500 (All versions < V6.2). Affected devices contain a stack-based buffer overflow vulnerability in the handling of STP BPDU frames that could allow a remote attacker to trigger a denial-of-service condition or potentially remote code execution. Successful exploitation requires the passive listening feature of the device to be active.

    Published: 15 Mar 2021
    5.5
    Medium

    CVE-2020-25236

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in LOGO! 12/24RCE (6ED1052-1MD08-0BA1) (All versions), LOGO! 12/24RCEo (6ED1052-2MD08-0BA1) (All versions), LOGO! 230RCE (6ED1052-1FB08-0BA1) (All versions), LOGO! 230RCEo (6ED1052-2FB08-0BA1) (All versions), LOGO! 24CE (6ED1052-1CC08-0BA1) (All versions), LOGO! 24CEo (6ED1052-2CC08-0BA1) (All versions), LOGO! 24RCE (6ED1052-1HB08-0BA1) (All versions), LOGO! 24RCEo (6ED1052-2HB08-0BA1) (All versions), SIPLUS LOGO! 12/24RCE (6AG1052-1MD08-7BA1) (All versions), SIPLUS LOGO! 12/24RCEo (6AG1052-2MD08-7BA1) (All versions), SIPLUS LOGO! 230RCE (6AG1052-1FB08-7BA1) (All versions), SIPLUS LOGO! 230RCEo (6AG1052-2FB08-7BA1) (All versions), SIPLUS LOGO! 24CE (6AG1052-1CC08-7BA1) (All versions), SIPLUS LOGO! 24CEo (6AG1052-2CC08-7BA1) (All versions), SIPLUS LOGO! 24RCE (6AG1052-1HB08-7BA1) (All versions), SIPLUS LOGO! 24RCEo (6AG1052-2HB08-7BA1) (All versions). The control logic (CL) the LOGO! 8 executes could be manipulated in a way that could cause the device executing the CL to improperly handle the manipulation and crash. After successful execution of the attack, the device needs to be manually reset.

    Published: 15 Mar 2021
    8.8
    High

    CVE-2020-25239

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0). The webserver could allow unauthorized actions via special urls for unpriviledged users. The settings of the UMC authorization server could be changed to add a rogue server by an attacker authenticating with unprivilege user rights.

    Published: 15 Mar 2021
    7.5
    High

    CVE-2020-25241

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SIMATIC MV400 family (All Versions < V7.0.6). The underlying TCP stack of the affected products does not correctly validate the sequence number for incoming TCP RST packages. An attacker could exploit this to terminate arbitrary TCP sessions.

    Published: 15 Mar 2021
    8.8
    High

    CVE-2020-25240

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.0). Unpriviledged users can access services when guessing the url. An attacker could impact availability, integrity and gain information from logs and templates of the service.

    Published: 15 Mar 2021
    7.8
    High

    CVE-2020-28385

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP4). Affected applications lack proper validation of user-supplied data when parsing DFT files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-12049)

    Published: 15 Mar 2021
    5.5
    Medium

    CVE-2020-28387

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP3). When opening a specially crafted SEECTCXML file, the application could disclose arbitrary files to remote attackers. This is because of the passing of specially crafted content to the underlying XML parser without taking proper restrictions such as prohibiting an external dtd. (ZDI-CAN-11923)

    Published: 15 Mar 2021
    6.1
    Medium

    CVE-2021-27889

    Last Modified: 21 Nov 2024

    Cross-site Scripting (XSS) vulnerability in MyBB before 1.8.26 via Nested Auto URL when parsing messages.

    Published: 15 Mar 2021
    3.3
    Low

    CVE-2021-23357

    Last Modified: 21 Nov 2024

    All versions of package github.com/tyktechnologies/tyk/gateway are vulnerable to Directory Traversal via the handleAddOrUpdateApi function. This function is able to delete arbitrary JSON files on the disk where Tyk is running via the management API. The APIID is provided by the user and this value is then used to create a file on disk. If there is a file found with the same name then it will be deleted and then re-created with the contents of the API creation request.

    Published: 15 Mar 2021