CVE Feed

    Dashboard / CVE

    2.6
    Low

    CVE-2021-21301

    Last Modified: 21 Nov 2024

    Wire is an open-source collaboration platform. In Wire for iOS (iPhone and iPad) before version 3.75 there is a vulnerability where the video capture isn't stopped in a scenario where a user first has their camera enabled and then disables it. It's a privacy issue because video is streamed to the call when the user believes it is disabled. It impacts all users in video calls. This is fixed in version 3.75.

    Published: 11 Feb 2021
    4.8
    Medium

    CVE-2021-21299

    Last Modified: 21 Nov 2024

    hyper is an open-source HTTP library for Rust (crates.io). In hyper from version 0.12.0 and before versions 0.13.10 and 0.14.3 there is a vulnerability that can enable a request smuggling attack. The HTTP server code had a flaw that incorrectly understands some requests with multiple transfer-encoding headers to have a chunked payload, when it should have been rejected as illegal. This combined with an upstream HTTP proxy that understands the request payload boundary differently can result in "request smuggling" or "desync attacks". To determine if vulnerable, all these things must be true: 1) Using hyper as an HTTP server (the client is not affected), 2) Using HTTP/1.1 (HTTP/2 does not use transfer-encoding), 3) Using a vulnerable HTTP proxy upstream to hyper. If an upstream proxy correctly rejects the illegal transfer-encoding headers, the desync attack cannot succeed. If there is no proxy upstream of hyper, hyper cannot start the desync attack, as the client will repair the headers before forwarding. This is fixed in versions 0.14.3 and 0.13.10. As a workaround one can take the following options: 1) Reject requests that contain a `transfer-encoding` header, 2) Ensure any upstream proxy handles `transfer-encoding` correctly.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2020-25493

    Last Modified: 21 Nov 2024

    Oclean Mobile Application 2.1.2 communicates with an external website using HTTP so it is possible to eavesdrop the network traffic. The content of HTTP payload is encrypted using XOR with a hardcoded key, which allows for the possibility to decode the traffic.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2021-20405

    Last Modified: 21 Nov 2024

    IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user to perform unauthorized activities due to improper encoding of output. IBM X-Force ID: 196183.

    Published: 11 Feb 2021
    5.3
    Medium

    CVE-2021-20404

    Last Modified: 21 Nov 2024

    IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user on the network to cause a denial of service due to an invalid cookie value that could prevent future logins. IBM X-Force ID: 196078.

    Published: 11 Feb 2021
    8.8
    High

    CVE-2021-20403

    Last Modified: 21 Nov 2024

    IBM Security Verify Information Queue 1.0.6 and 1.0.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.

    Published: 11 Feb 2021
    2.7
    Low

    CVE-2021-20402

    Last Modified: 21 Nov 2024

    IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 196076.

    Published: 11 Feb 2021
    5.4
    Medium

    CVE-2020-4768

    Last Modified: 21 Nov 2024

    IBM Case Manager 5.2 and 5.3 and IBM Business Automation Workflow 18.0, 19.0, and 20.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 188907.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2021-27191

    Last Modified: 21 Nov 2024

    The get-ip-range package before 4.0.0 for Node.js is vulnerable to denial of service (DoS) if the range is untrusted input. An attacker could send a large range (such as 128.0.0.0/1) that causes resource exhaustion.

    Published: 11 Feb 2021
    7.3
    High

    CVE-2020-8027

    Last Modified: 21 Nov 2024

    A Insecure Temporary File vulnerability in openldap2 of SUSE Linux Enterprise Server 15-LTSS, SUSE Linux Enterprise Server for SAP 15; openSUSE Leap 15.1, openSUSE Leap 15.2 allows local attackers to overwrite arbitrary files and gain access to the openldap2 configuration This issue affects: SUSE Linux Enterprise Server 15-LTSS openldap2 versions prior to 2.4.46-9.37.1. SUSE Linux Enterprise Server for SAP 15 openldap2 versions prior to 2.4.46-9.37.1. openSUSE Leap 15.1 openldap2 versions prior to 2.4.46-lp151.10.18.1. openSUSE Leap 15.2 openldap2 versions prior to 2.4.46-lp152.14.9.1.

    Published: 11 Feb 2021
    9.8
    Critical

    CVE-2021-22652

    Last Modified: 21 Nov 2024

    Access to the Advantech iView versions prior to v5.7.03.6112 configuration are missing authentication, which may allow an unauthorized attacker to change the configuration and obtain code execution.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2021-22656

    Last Modified: 21 Nov 2024

    Advantech iView versions prior to v5.7.03.6112 are vulnerable to directory traversal, which may allow an attacker to read sensitive files.

    Published: 11 Feb 2021
    9.8
    Critical

    CVE-2021-22658

    Last Modified: 21 Nov 2024

    Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an attacker to escalate privileges to 'Administrator'.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2021-22654

    Last Modified: 21 Nov 2024

    Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an unauthorized attacker to disclose information.

    Published: 11 Feb 2021
    3.6
    Low

    CVE-2020-8030

    Last Modified: 21 Nov 2024

    A Insecure Temporary File vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to leak the bootstrapToken or modify the configuration file before it is processed, leading to arbitrary modifications of the machine/cluster.

    Published: 11 Feb 2021
    2.9
    Low

    CVE-2020-8029

    Last Modified: 21 Nov 2024

    A Incorrect Permission Assignment for Critical Resource vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to gain access to the kublet key. This issue affects: SUSE CaaS Platform 4.5 skuba versions prior to https://github.com/SUSE/skuba/pull/1416.

    Published: 11 Feb 2021
    5.5
    Medium

    CVE-2021-25688

    Last Modified: 21 Nov 2024

    Under certain conditions, Teradici PCoIP Agents for Windows prior to version 20.10.0 and Teradici PCoIP Agents for Linux prior to version 21.01.0 may log parts of a user's password in the application logs.

    Published: 11 Feb 2021
    9.8
    Critical

    CVE-2021-25689

    Last Modified: 21 Nov 2024

    An out of bounds write in Teradici PCoIP soft client versions prior to version 20.10.1 could allow an attacker to remotely execute code.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2021-25690

    Last Modified: 21 Nov 2024

    A null pointer dereference in Teradici PCoIP Soft Client versions prior to 20.07.3 could allow an attacker to crash the software.

    Published: 11 Feb 2021
    6.5
    Medium

    CVE-2020-13186

    Last Modified: 21 Nov 2024

    An Anti CSRF mechanism was discovered missing in the Teradici Cloud Access Connector v31 and earlier in a specific web form, which allowed an attacker with knowledge of both a machineID and user GUID to modify data if a user clicked a malicious link.

    Published: 11 Feb 2021
    6.5
    Medium

    CVE-2020-13185

    Last Modified: 21 Nov 2024

    Certain web application pages in the authenticated section of the Teradici Cloud Access Connector prior to v18 were accessible without the need to specify authentication tokens, which allowed an attacker in the ability to execute sensitive functions without credentials.

    Published: 11 Feb 2021
    6.3
    Medium

    CVE-2020-8031

    Last Modified: 21 Nov 2024

    A Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Open Build Service allows remote attackers to store JS code in markdown that is not properly escaped, impacting confidentiality and integrity. This issue affects: Open Build Service versions prior to 2.10.8.

    Published: 11 Feb 2021
    —
    Unknown

    CVE-2021-23334

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 11 Feb 2021
    7.5
    High

    CVE-2021-23335

    Last Modified: 21 Nov 2024

    All versions of package is-user-valid are vulnerable to LDAP Injection which can lead to either authentication bypass or information exposure.

    Published: 11 Feb 2021
    6.7
    Medium

    CVE-2021-20335

    Last Modified: 21 Nov 2024

    For MongoDB Ops Manager versions prior to and including 4.2.24 with multiple OM application servers, that have SSL turned on for their MongoDB processes, the upgrade to MongoDB Ops Manager versions prior to and including 4.4.12 triggers a bug where Automation thinks SSL is being turned off, and can disable SSL temporarily for members of the cluster. This issue is temporary and eventually corrects itself after MongoDB Ops Manager instances have finished upgrading to MongoDB Ops Manager 4.4. In addition, customers must be running with clientCertificateMode=OPTIONAL / allowConnectionsWithoutCertificates=true to be impacted*.* Customers upgrading from Ops Manager 4.2.X to 4.2.24 and finally to Ops Manager 4.4.13+ are unaffected by this issue.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2021-27184

    Last Modified: 21 Nov 2024

    Pelco Digital Sentry Server 7.18.72.11464 has an XML External Entity vulnerability (exploitable via the DTD parameter entities technique), resulting in disclosure and retrieval of arbitrary data on the affected node via an out-of-band (OOB) attack. The vulnerability is triggered when input passed to the XML parser is not sanitized while parsing the ControlPointCacheShare.xml file (in a %APPDATA%\Pelco directory) when DSControlPoint.exe is executed.

    Published: 11 Feb 2021
    7.8
    High

    CVE-2019-19005

    Last Modified: 21 Nov 2024

    A bitmap double free in main.c in autotrace 0.31.1 allows attackers to cause an unspecified impact via a malformed bitmap image. This may occur after the use-after-free in CVE-2017-9182.

    Published: 11 Feb 2021
    3.3
    Low

    CVE-2019-19004

    Last Modified: 21 Nov 2024

    A biWidth*biBitCnt integer overflow in input-bmp.c in autotrace 0.31.1 allows attackers to provide an unexpected input value to malloc via a malformed bitmap image.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2021-22880

    Last Modified: 21 Nov 2024

    The PostgreSQL adapter in Active Record before 6.1.2.1, 6.0.3.5, 5.2.4.5 suffers from a regular expression denial of service (REDoS) vulnerability. Carefully crafted input can cause the input validation in the `money` type of the PostgreSQL adapter in Active Record to spend too much time in a regular expression, resulting in the potential for a DoS attack. This only impacts Rails applications that are using PostgreSQL along with money type columns that take user input.

    Published: 11 Feb 2021
    4.7
    Medium

    CVE-2021-24032

    Last Modified: 21 Nov 2024

    Beginning in v1.4.1 and prior to v1.4.9, due to an incomplete fix for CVE-2021-24031, the Zstandard command-line utility created output files with default permissions and restricted those permissions immediately afterwards. Output files could therefore momentarily be readable or writable to unintended parties.

    Published: 11 Feb 2021
    5.5
    Medium

    CVE-2021-24031

    Last Modified: 21 Nov 2024

    In the Zstandard command-line utility prior to v1.4.1, output files were created with default permissions. Correct file permissions (matching the input) would only be set at completion time. Output files could therefore be readable or writable to unintended parties.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2021-27292

    Last Modified: 21 Nov 2024

    ua-parser-js >= 0.7.14, fixed in 0.7.24, uses a regular expression which is vulnerable to denial of service. If an attacker sends a malicious User-Agent header, ua-parser-js will get stuck processing it for an extended period of time.

    Published: 11 Feb 2021
    7.5
    High

    CVE-2020-13949

    Last Modified: 21 Nov 2024

    In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service.

    Published: 11 Feb 2021
    4.3
    Medium

    CVE-2021-20229

    Last Modified: 21 Nov 2024

    A flaw was found in PostgreSQL in versions before 13.2. This flaw allows a user with SELECT privilege on one column to craft a special query that returns all columns of the table. The highest threat from this vulnerability is to confidentiality.

    Published: 11 Feb 2021
    4.3
    Medium

    CVE-2021-3393

    Last Modified: 21 Nov 2024

    An information leak was discovered in postgresql in versions before 13.2, before 12.6 and before 11.11. A user having UPDATE permission but not SELECT permission to a particular column could craft queries which, under some circumstances, might disclose values from that column in error messages. An attacker could use this flaw to obtain information stored in a column they are allowed to write but not read.

    Published: 11 Feb 2021
    6.1
    Medium

    CVE-2021-22881

    Last Modified: 21 Nov 2024

    The Host Authorization middleware in Action Pack before 6.1.2.1, 6.0.3.5 suffers from an open redirect vulnerability. Specially crafted `Host` headers in combination with certain "allowed host" formats can cause the Host Authorization middleware in Action Pack to redirect users to a malicious website. Impacted applications will have allowed hosts with a leading dot. When an allowed host contains a leading dot, a specially crafted `Host` header can be used to redirect to a malicious website.

    Published: 11 Feb 2021
    8.8
    High

    CVE-2020-27874

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tencent WeChat 7.0.18. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the WXAM Decoder. The issue results from the lack of proper validation of user-supplied data, which can result in a memory access past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-11580.

    Published: 10 Feb 2021
    7.2
    High

    CVE-2020-27871

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to create arbitrary files on affected installations of SolarWinds Orion Platform 2020.2.1. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within VulnerabilitySettings.aspx. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-11902.

    Published: 10 Feb 2021
    6.5
    Medium

    CVE-2020-27870

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to disclose sensitive information on affected installations of SolarWinds Orion Platform 2020.2.1. Authentication is required to exploit this vulnerability. The specific flaw exists within ExportToPDF.aspx. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to disclose information in the context of SYSTEM. Was ZDI-CAN-11917.

    Published: 10 Feb 2021
    7.2
    High

    CVE-2021-25251

    Last Modified: 21 Nov 2024

    The Trend Micro Security 2020 and 2021 families of consumer products are vulnerable to a code injection vulnerability which could allow an attacker to disable the program's password protection and disable protection. An attacker must already have administrator privileges on the machine to exploit this vulnerability.

    Published: 10 Feb 2021
    6.1
    Medium

    CVE-2020-24842

    Last Modified: 21 Nov 2024

    PNPSCADA 2.200816204020 allows cross-site scripting (XSS), which can execute arbitrary JavaScript in the victim's browser.

    Published: 10 Feb 2021
    7.8
    High

    CVE-2020-28595

    Last Modified: 21 Nov 2024

    An out-of-bounds write vulnerability exists in the Obj.cpp load_obj() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856). A specially crafted obj file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 10 Feb 2021
    7.8
    High

    CVE-2020-28596

    Last Modified: 21 Nov 2024

    A stack-based buffer overflow vulnerability exists in the Objparser::objparse() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856). A specially crafted obj file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 10 Feb 2021
    8.8
    High

    CVE-2020-13572

    Last Modified: 21 Nov 2024

    A heap overflow vulnerability exists in the way the GIF parser decodes LZW compressed streams in Accusoft ImageGear 19.8. A specially crafted malformed file can trigger a heap overflow, which can result in arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 10 Feb 2021
    8.8
    High

    CVE-2020-13561

    Last Modified: 21 Nov 2024

    An out-of-bounds write vulnerability exists in the TIFF parser of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 10 Feb 2021
    8.8
    High

    CVE-2020-13571

    Last Modified: 21 Nov 2024

    An out-of-bounds write vulnerability exists in the SGI RLE decompression functionality of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 10 Feb 2021
    8.8
    High

    CVE-2020-13585

    Last Modified: 21 Nov 2024

    An out-of-bounds write vulnerability exists in the PSD Header processing functionality of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 10 Feb 2021
    7.8
    High

    CVE-2020-27250

    Last Modified: 21 Nov 2024

    In SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 (Revision 1014), a specially crafted document can cause the document parser to copy data from a particular record type into a static-sized buffer within an object that is smaller than the size used for the copy, which will cause a heap-based buffer overflow at Version/Instance 0x0005 and 0x0016. An attacker can entice the victim to open a document to trigger this vulnerability.

    Published: 10 Feb 2021
    7.5
    High

    CVE-2020-13583

    Last Modified: 21 Nov 2024

    A denial-of-service vulnerability exists in the HTTP Server functionality of Micrium uC-HTTP 3.01.00. A specially crafted HTTP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 10 Feb 2021
    7.8
    High

    CVE-2020-13581

    Last Modified: 21 Nov 2024

    In SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 (Revision 1014), a specially crafted document can cause the document parser to copy data from a particular record type into a buffer that is smaller than the size used for the copy which will cause a heap-based buffer overflow. An attacker can entice the victim to open a document to trigger this vulnerability.

    Published: 10 Feb 2021