CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2020-11836

    Last Modified: 21 Nov 2024

    OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability. The “adb shell getprop ro.vendor.aee.enforcing” or “adb shell getprop ro.vendor.aee.enforcing” return no.

    Published: 5 Feb 2021
    7.5
    High

    CVE-2021-3229

    Last Modified: 21 Nov 2024

    Denial of service in ASUSWRT ASUS RT-AX3000 firmware versions 3.0.0.4.384_10177 and earlier versions allows an attacker to disrupt the use of device setup services via continuous login error.

    Published: 5 Feb 2021
    6
    Medium

    CVE-2021-1072

    Last Modified: 21 Nov 2024

    NVIDIA GeForce Experience, all versions prior to 3.21, contains a vulnerability in GameStream (rxdiag.dll) where an arbitrary file deletion due to improper handling of log files may lead to denial of service.

    Published: 5 Feb 2021
    5.5
    Medium

    CVE-2020-10375

    Last Modified: 21 Nov 2024

    An issue was discovered in New Media Smarty before 9.10. Passwords are stored in the database in an obfuscated format that can be easily reversed. The file data.mdb contains these obfuscated passwords in the second column. NOTE: this is unrelated to the popular Smarty template engine product.

    Published: 5 Feb 2021
    8.1
    High

    CVE-2020-10552

    Last Modified: 21 Nov 2024

    An issue was discovered in Psyprax before 3.2.2. The Firebird database is accessible with the default user sysdba and password masterke after installation. This allows any user to access it and read and modify the contents, including passwords. Local database files can be accessed directly as well.

    Published: 5 Feb 2021
    5.5
    Medium

    CVE-2020-10553

    Last Modified: 21 Nov 2024

    An issue was discovered in Psyprax before 3.2.2. The file %PROGRAMDATA%\Psyprax32\PPScreen.ini contains a hash for the lockscreen (aka screensaver) of the application. If that entry is removed, the lockscreen is no longer displayed and the app is no longer locked. All local users are able to modify that file.

    Published: 5 Feb 2021
    7.5
    High

    CVE-2020-10554

    Last Modified: 21 Nov 2024

    An issue was discovered in Psyprax beforee 3.2.2. Passwords used to encrypt the data are stored in the database in an obfuscated format, which can be easily reverted. For example, the password AAAAAAAA is stored in the database as MMMMMMMM.

    Published: 5 Feb 2021
    9.8
    Critical

    CVE-2020-10857

    Last Modified: 21 Nov 2024

    Zulip Desktop before 5.0.0 improperly uses shell.openExternal and shell.openItem with untrusted content, leading to remote code execution.

    Published: 5 Feb 2021
    5.3
    Medium

    CVE-2020-10858

    Last Modified: 21 Nov 2024

    Zulip Desktop before 5.0.0 allows attackers to perform recording via the webcam and microphone due to a missing permission request handler.

    Published: 5 Feb 2021
    5.5
    Medium

    CVE-2020-9453

    Last Modified: 21 Nov 2024

    In Epson iProjection v2.30, the driver file EMP_MPAU.sys allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402406 and IOCtl 0x9C40240A. (0x9C402402 has only a NULL pointer dereference.) This affects \Device\EMPMPAUIO and \DosDevices\EMPMPAU.

    Published: 5 Feb 2021
    7.8
    High

    CVE-2020-12122

    Last Modified: 21 Nov 2024

    In Max Secure Max Spyware Detector 1.0.0.044, the driver file (MaxProc64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x2200019. (This also extends to the various other products from Max Secure that include MaxProc64.sys.)

    Published: 5 Feb 2021
    6.5
    Medium

    CVE-2020-10234

    Last Modified: 21 Nov 2024

    The AscRegistryFilter.sys kernel driver in IObit Advanced SystemCare 13.2 allows an unprivileged user to send an IOCTL to the device driver. If the user provides a NULL entry for the dwIoControlCode parameter, a kernel panic (aka BSOD) follows. The IOCTL codes can be found in the dispatch function: 0x8001E000, 0x8001E004, 0x8001E008, 0x8001E00C, 0x8001E010, 0x8001E014, 0x8001E020, 0x8001E024, 0x8001E040, 0x8001E044, and 0x8001E048. \DosDevices\AscRegistryFilter and \Device\AscRegistryFilter are affected.

    Published: 5 Feb 2021
    5.5
    Medium

    CVE-2020-9014

    Last Modified: 21 Nov 2024

    In Epson iProjection v2.30, the driver file (EMP_NSAU.sys) allows local users to cause a denial of service (BSOD) via crafted input to the virtual audio device driver with IOCTL 0x9C402402, 0x9C402406, or 0x9C40240A. \Device\EMPNSAUIO and \DosDevices\EMPNSAU are similarly affected.

    Published: 5 Feb 2021
    7.8
    High

    CVE-2020-18750

    Last Modified: 21 Nov 2024

    Buffer overflow in pdf2json 0.69 allows local users to execute arbitrary code by converting a crafted PDF file.

    Published: 5 Feb 2021
    6.1
    Medium

    CVE-2021-26722

    Last Modified: 21 Nov 2024

    LinkedIn Oncall through 1.4.0 allows reflected XSS via /query because of mishandling of the "No results found for" message in the search bar.

    Published: 5 Feb 2021
    5.4
    Medium

    CVE-2021-3258

    Last Modified: 21 Nov 2024

    Question2Answer Q2A Ultimate SEO Version 1.3 is affected by cross-site scripting (XSS), which may lead to arbitrary remote code execution.

    Published: 5 Feb 2021
    6.1
    Medium

    CVE-2020-18737

    Last Modified: 21 Nov 2024

    An issue was discovered in Typora 0.9.67. There is an XSS vulnerability that causes Remote Code Execution.

    Published: 5 Feb 2021
    7.5
    High

    CVE-2021-3382

    Last Modified: 21 Nov 2024

    Stack buffer overflow vulnerability in gitea 1.9.0 through 1.13.1 allows remote attackers to cause a denial of service (crash) via vectors related to a file path.

    Published: 5 Feb 2021
    5.5
    Medium

    CVE-2020-4832

    Last Modified: 21 Nov 2024

    IBM PowerHA 7.2 could allow a local attacker to obtain sensitive information from temporary directories after a discovery failure occurs. IBM X-Force ID: 189969.

    Published: 5 Feb 2021
    6.1
    Medium

    CVE-2021-3333

    Last Modified: 21 Nov 2024

    Opmantek Open-AudIT 4.0.1 is affected by cross-site scripting (XSS). When outputting SQL statements for debugging, a maliciously crafted query can trigger an XSS attack. This attack only succeeds if the user is already logged in to Open-AudIT before they click the malicious link.

    Published: 5 Feb 2021
    9.8
    Critical

    CVE-2021-20623

    Last Modified: 21 Nov 2024

    Video Insight VMS versions prior to 7.8 allows a remote attacker to execute arbitrary code with the system user privilege by sending a specially crafted request.

    Published: 5 Feb 2021
    8.8
    High

    CVE-2021-20652

    Last Modified: 21 Nov 2024

    Cross-site request forgery (CSRF) vulnerability in Name Directory 1.17.4 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.

    Published: 5 Feb 2021
    9.8
    Critical

    CVE-2020-10539

    Last Modified: 21 Nov 2024

    An issue was discovered in Epikur before 20.1.1. The Epikur server contains the checkPasswort() function that, upon user login, checks the submitted password against the user password's MD5 hash stored in the database. It is also compared to a second MD5 hash, which is the same for every user (aka a "Backdoor Password" of 3p1kursupport). If the submitted password matches either one, access is granted.

    Published: 5 Feb 2021
    5.5
    Medium

    CVE-2020-10538

    Last Modified: 21 Nov 2024

    An issue was discovered in Epikur before 20.1.1. It stores the secret passwords of the users as MD5 hashes in the database. MD5 can be brute-forced efficiently and should not be used for such purposes. Additionally, since no salt is used, rainbow tables can speed up the attack.

    Published: 5 Feb 2021
    7.8
    High

    CVE-2020-10537

    Last Modified: 21 Nov 2024

    An issue was discovered in Epikur before 20.1.1. A Glassfish 4.1 server with a default configuration is running on TCP port 4848. No password is required to access it with the administrator account.

    Published: 5 Feb 2021
    5.3
    Medium

    CVE-2020-8807

    Last Modified: 21 Nov 2024

    In Electric Coin Company Zcashd before 2.1.1-1, the time offset between messages could be leveraged to obtain sensitive information about the relationship between a suspected victim's address and an IP address, aka a timing side channel.

    Published: 5 Feb 2021
    7.5
    High

    CVE-2020-8806

    Last Modified: 21 Nov 2024

    Electric Coin Company Zcashd before 2.1.1-1 allows attackers to trigger consensus failure and double spending. A valid chain could be incorrectly rejected because timestamp requirements on block headers were not properly enforced.

    Published: 5 Feb 2021
    8.8
    High

    CVE-2020-35765

    Last Modified: 21 Nov 2024

    doFilter in com.adventnet.appmanager.filter.UriCollector in Zoho ManageEngine Applications Manager through 14930 allows an authenticated SQL Injection via the resourceid parameter to showresource.do.

    Published: 5 Feb 2021
    6.1
    Medium

    CVE-2021-26710

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) issue in the login panel in Redwood Report2Web 4.3.4.5 and 4.5.3 allows remote attackers to inject JavaScript via the signIn.do urll parameter.

    Published: 5 Feb 2021
    5.3
    Medium

    CVE-2021-26711

    Last Modified: 21 Nov 2024

    A frame-injection issue in the online help in Redwood Report2Web 4.3.4.5 allows remote attackers to render an external resource inside a frame via the help/Online_Help/NetHelp/default.htm turl parameter.

    Published: 5 Feb 2021
    9.8
    Critical

    CVE-2021-3311

    Last Modified: 21 Nov 2024

    An issue was discovered in October through build 471. It reactivates an old session ID (which had been invalid after a logout) once a new login occurs. NOTE: this violates the intended Auth/Manager.php authentication behavior but, admittedly, is only relevant if an old session ID is known to an attacker.

    Published: 5 Feb 2021
    3.7
    Low

    CVE-2021-20238

    Last Modified: 21 Nov 2024

    It was found in OpenShift Container Platform 4 that ignition config, served by the Machine Config Server, can be accessed externally from clusters without authentication. The MCS endpoint (port 22623) provides ignition configuration used for bootstrapping Nodes and can include some sensitive data, e.g. registry pull secrets. There are two scenarios where this data can be accessed. The first is on Baremetal, OpenStack, Ovirt, Vsphere and KubeVirt deployments which do not have a separate internal API endpoint and allow access from outside the cluster to port 22623 from the standard OpenShift API Virtual IP address. The second is on cloud deployments when using unsupported network plugins, which do not create iptables rules that prevent to port 22623. In this scenario, the ignition config is exposed to all pods within the cluster and cannot be accessed externally.

    Published: 5 Feb 2021
    5.9
    Medium

    CVE-2021-20251

    Last Modified: 6 Mar 2025

    A flaw was found in samba. A race condition in the password lockout code may lead to the risk of brute force attacks being successful if special conditions are met.

    Published: 5 Feb 2021
    5.9
    Medium

    CVE-2021-21303

    Last Modified: 21 Nov 2024

    Helm is open-source software which is essentially "The Kubernetes Package Manager". Helm is a tool for managing Charts. Charts are packages of pre-configured Kubernetes resources. In Helm from version 3.0 and before version 3.5.2, there a few cases where data loaded from potentially untrusted sources was not properly sanitized. When a SemVer in the `version` field of a chart is invalid, in some cases Helm allows the string to be used "as is" without sanitizing. Helm fails to properly sanitized some fields present on Helm repository `index.yaml` files. Helm does not properly sanitized some fields in the `plugin.yaml` file for plugins In some cases, Helm does not properly sanitize the fields in the `Chart.yaml` file. By exploiting these attack vectors, core maintainers were able to send deceptive information to a terminal screen running the `helm` command, as well as obscure or alter information on the screen. In some cases, we could send codes that terminals used to execute higher-order logic, like clearing a terminal screen. Further, during evaluation, the Helm maintainers discovered a few other fields that were not properly sanitized when read out of repository index files. This fix remedies all such cases, and once again enforces SemVer2 policies on version fields. All users of the Helm 3 should upgrade to the fixed version 3.5.2 or later. Those who use Helm as a library should verify that they either sanitize this data on their own, or use the proper Helm API calls to sanitize the data.

    Published: 5 Feb 2021
    7
    High

    CVE-2021-26708

    Last Modified: 21 Nov 2024

    A local privilege escalation was discovered in the Linux kernel before 5.10.13. Multiple race conditions in the AF_VSOCK implementation are caused by wrong locking in net/vmw_vsock/af_vsock.c. The race conditions were implicitly introduced in the commits that added VSOCK multi-transport support.

    Published: 5 Feb 2021
    6.5
    Medium

    CVE-2020-16048

    Last Modified: 21 Nov 2024

    Out of bounds read in ANGLE allowed a remote attacker to obtain sensitive data via a crafted HTML page.

    Published: 5 Feb 2021
    7.2
    High

    CVE-2021-20206

    Last Modified: 21 Nov 2024

    An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying the plugin to load in the 'type' field in the network configuration, it is possible to use special elements such as "../" separators to reference binaries elsewhere on the system. This flaw allows an attacker to execute other existing binaries other than the cni plugins/types, such as 'reboot'. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

    Published: 5 Feb 2021
    9.8
    Critical

    CVE-2020-18717

    Last Modified: 21 Nov 2024

    SQL Injection in ZZZCMS zzzphp 1.7.1 allows remote attackers to execute arbitrary code due to a lack of parameter filtering in inc/zzz_template.php.

    Published: 4 Feb 2021
    9.8
    Critical

    CVE-2020-18716

    Last Modified: 21 Nov 2024

    SQL Injection in Rockoa v1.8.7 allows remote attackers to gain privileges due to loose filtering of parameters in wordAction.php.

    Published: 4 Feb 2021
    —
    Unknown

    CVE-2020-18715

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 4 Feb 2021
    9.8
    Critical

    CVE-2020-18714

    Last Modified: 21 Nov 2024

    SQL Injection in Rockoa v1.8.7 allows remote attackers to gain privileges due to loose filtering of parameters in wordModel.php's getdata function.

    Published: 4 Feb 2021
    9.8
    Critical

    CVE-2020-18713

    Last Modified: 21 Nov 2024

    SQL Injection in Rockoa v1.8.7 allows remote attackers to gain privileges due to loose filtering of parameters in customerAction.php

    Published: 4 Feb 2021
    7.8
    High

    CVE-2021-25249

    Last Modified: 21 Nov 2024

    An out-of-bounds write information disclosure vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security (10.0 SP1 and Services) could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

    Published: 4 Feb 2021
    5.5
    Medium

    CVE-2021-25248

    Last Modified: 21 Nov 2024

    An out-of-bounds read information disclosure vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security (10.0 SP1 and Services) could allow an attacker to disclose sensitive information about a named pipe. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

    Published: 4 Feb 2021
    6.5
    Medium

    CVE-2021-25246

    Last Modified: 21 Nov 2024

    An improper access control information disclosure vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG SP1, and Worry-Free Business Security could allow an unauthenticated user to create a bogus agent on an affected server that could be used then make valid configuration queries.

    Published: 4 Feb 2021
    5.3
    Medium

    CVE-2021-25244

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain various pieces of configuration informaiton.

    Published: 4 Feb 2021
    5.3
    Medium

    CVE-2021-25245

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain various pieces of settings informaiton.

    Published: 4 Feb 2021
    5.3
    Medium

    CVE-2021-25243

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain patch level information.

    Published: 4 Feb 2021
    5.3
    Medium

    CVE-2021-25241

    Last Modified: 21 Nov 2024

    A server-side request forgery (SSRF) information disclosure vulnerability in Trend Micro Apex One and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to locate online agents via a sweep.

    Published: 4 Feb 2021
    5.3
    Medium

    CVE-2021-25242

    Last Modified: 21 Nov 2024

    An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain version and build information.

    Published: 4 Feb 2021