9.8
    Critical

    CVE-2021-42667

    Last Modified: 21 Nov 2024

    A SQL Injection vulnerability exists in Sourcecodester Online Event Booking and Reservation System in PHP in event-management/views. An attacker can leverage this vulnerability in order to manipulate the sql query performed. As a result he can extract sensitive data from the web server and in some cases he can use this vulnerability in order to get a remote code execution on the remote web server.

    Published:5 Nov 2021
    8.8
    High

    CVE-2021-42666

    Last Modified: 21 Nov 2024

    A SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the id parameter to quiz_question.php, which could let a malicious user extract sensitive data from the web server and in some cases use this vulnerability in order to get a remote code execution on the remote web server.

    Published:5 Nov 2021
    9.8
    Critical

    CVE-2021-42665

    Last Modified: 21 Nov 2024

    An SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the login form inside of index.php, which can allow an attacker to bypass authentication.

    Published:5 Nov 2021
    5.4
    Medium

    CVE-2021-42664

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) Vulneraibiilty exists in Sourcecodester Engineers Online Portal in PHP via the (1) Quiz title and (2) quiz description parameters to add_quiz.php. An attacker can leverage this vulnerability in order to run javascript commands on the web server surfers behalf, which can lead to cookie stealing and more.

    Published:5 Nov 2021
    4.3
    Medium

    CVE-2021-42663

    Last Modified: 21 Nov 2024

    An HTML injection vulnerability exists in Sourcecodester Online Event Booking and Reservation System in PHP/MySQL via the msg parameter to /event-management/index.php. An attacker can leverage this vulnerability in order to change the visibility of the website. Once the target user clicks on a given link he will display the content of the HTML code of the attacker's choice.

    Published:5 Nov 2021
    5.4
    Medium

    CVE-2021-42662

    Last Modified: 21 Nov 2024

    A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Online Event Booking and Reservation System in PHP/MySQL via the Holiday reason parameter. An attacker can leverage this vulnerability in order to run javascript commands on the web server surfers behalf, which can lead to cookie stealing and more.

    Published:5 Nov 2021
    9.8
    Critical

    CVE-2021-42580

    Last Modified: 6 Dec 2021

    Sourcecodester Online Learning System 2.0 is vunlerable to sql injection authentication bypass in admin login file (/admin/login.php) and authenticated file upload in (Master.php) file , we can craft these two vunlerablities to get unauthenticated remote command execution.

    Source:djebbaranon
    Published:15 Nov 2021
    8.3
    High

    CVE-2021-42574

    Last Modified: 21 Nov 2024

    An issue was discovered in the Bidirectional Algorithm in the Unicode Specification through 14.0. It permits the visual reordering of characters via control sequences, which can be used to craft source code that renders different logic than the logical ordering of tokens ingested by compilers and interpreters. Adversaries can leverage this to encode source code for compilers accepting Unicode such that targeted vulnerabilities are introduced invisibly to human reviewers. NOTE: the Unicode Consortium offers the following alternative approach to presenting this concern. An issue is noted in the nature of international text that can affect applications that implement support for The Unicode Standard and the Unicode Bidirectional Algorithm (all versions). Due to text display behavior when text includes left-to-right and right-to-left characters, the visual order of tokens may be different from their logical order. Additionally, control characters needed to fully support the requirements of bidirectional text can further obfuscate the logical order of tokens. Unless mitigated, an adversary could craft source code such that the ordering of tokens perceived by human reviewers does not match what will be processed by a compiler/interpreter/etc. The Unicode Consortium has documented this class of vulnerability in its document, Unicode Technical Report #36, Unicode Security Considerations. The Unicode Consortium also provides guidance on mitigations for this class of issues in Unicode Technical Standard #39, Unicode Security Mechanisms, and in Unicode Standard Annex #31, Unicode Identifier and Pattern Syntax. Also, the BIDI specification allows applications to tailor the implementation in ways that can mitigate misleading visual reordering in program text; see HL4 in Unicode Standard Annex #9, Unicode Bidirectional Algorithm.

    Published:1 Nov 2021
    6.1
    Medium

    CVE-2021-42566

    Last Modified: 19 Oct 2021

    myfactory.FMS before 7.1-912 allows XSS via the Error parameter.

    Source:RedTeam Pentesting GmbH
    Published:18 Oct 2021
    6.1
    Medium

    CVE-2021-42565

    Last Modified: 19 Oct 2021

    myfactory.FMS before 7.1-912 allows XSS via the UID parameter.

    Source:RedTeam Pentesting GmbH
    Published:18 Oct 2021
    8.1
    High

    CVE-2021-42562

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.8.1. It does not properly segregate user privileges, resulting in non-admin users having access to read and modify configuration or other components that should only be accessible by admin users.

    Published:12 Jan 2022
    8.8
    High

    CVE-2021-42561

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.8.1. When activated, the Human plugin passes the unsanitized name parameter to a python "os.system" function. This allows attackers to use shell metacharacters (e.g., backticks "``" or dollar parenthesis "$()" ) in order to escape the current command and execute arbitrary shell commands.

    Published:12 Jan 2022
    8.8
    High

    CVE-2021-42560

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.9.0. The Debrief plugin receives base64 encoded "SVG" parameters when generating a PDF document. These SVG documents are parsed in an unsafe manner and can be leveraged for XXE attacks (e.g., File Exfiltration, Server Side Request Forgery, Out of Band Exfiltration, etc.).

    Published:12 Jan 2022
    8.8
    High

    CVE-2021-42559

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.8.1. It contains multiple startup "requirements" that execute commands when starting the server. Because these commands can be changed via the REST API, an authenticated user can insert arbitrary commands that will execute when the server is restarted.

    Published:12 Jan 2022
    6.1
    Medium

    CVE-2021-42558

    Last Modified: 21 Nov 2024

    An issue was discovered in CALDERA 2.8.1. It contains multiple reflected, stored, and self XSS vulnerabilities that may be exploited by authenticated and unauthenticated attackers.

    Published:12 Jan 2022
    5.5
    Medium

    CVE-2021-42556

    Last Modified: 21 Nov 2024

    Rasa X before 0.42.4 allows Directory Traversal during archive extraction. In the functionality that allows a user to load a trained model archive, an attacker has arbitrary write capability within specific directories via a crafted archive file.

    Published:22 Oct 2021
    Unknown

    CVE-2021-42505

    https://github.com/nyambiblaise/MedJed---Barracuda-Drive-insecure-folder-permissions-CVE-2021-42505-or-similar-Walkthrough

    9.8
    Critical

    CVE-2021-42392

    Last Modified: 21 Nov 2024

    The org.h2.util.JdbcUtils.getConnection method of the H2 database takes as parameters the class name of the driver and URL of the database. An attacker may pass a JNDI driver name and a URL leading to a LDAP or RMI servers, causing remote code execution. This can be exploited through various attack vectors, most notably through the H2 Console which leads to unauthenticated remote code execution.

    Published:4 Jan 2022
    8.8
    High

    CVE-2021-42362

    Last Modified: 24 Nov 2021

    The WordPress Popular Posts WordPress plugin is vulnerable to arbitrary file uploads due to insufficient input file type validation found in the ~/src/Image.php file which makes it possible for attackers with contributor level access and above to upload malicious files that can be used to obtain remote code execution, in versions up to and including 5.3.2.

    Source:Simone Cristofaro
    Published:17 Nov 2021
    9.8
    Critical

    CVE-2021-42342

    Last Modified: 21 Nov 2024

    An issue was discovered in GoAhead 4.x and 5.x before 5.1.5. In the file upload filter, user form variables can be passed to CGI scripts without being prefixed with the CGI prefix. This permits tunneling untrusted environment variables into vulnerable CGI scripts.

    Published:14 Oct 2021
    6.7
    Medium

    CVE-2021-42327

    Last Modified: 21 Nov 2024

    dp_link_settings_write in drivers/gpu/drm/amd/display/amdgpu_dm/amdgpu_dm_debugfs.c in the Linux kernel through 5.14.14 allows a heap-based buffer overflow by an attacker who can write a string to the AMD GPU display drivers debug filesystem. There are no checks on size within parse_write_buffer_into_params when it uses the size of copy_from_user to copy a userspace buffer into a 40-byte heap buffer.

    Published:13 Oct 2021
    9.8
    Critical

    CVE-2021-42325

    Last Modified: 8 Nov 2021

    Froxlor through 0.10.29.1 allows SQL injection in Database/Manager/DbManagerMySQL.php via a custom DB name.

    Source:Martin Cernac
    Published:12 Oct 2021
    8.8
    High

    CVE-2021-42321

    Last Modified: 19 Aug 2026

    Microsoft Exchange Server Remote Code Execution Vulnerability

    Published:10 Nov 2021
    7.8
    High

    CVE-2021-42292

    Last Modified: 19 Aug 2026

    Microsoft Excel Security Feature Bypass Vulnerability

    Published:10 Nov 2021
    7.5
    High

    CVE-2021-42287

    Last Modified: 19 Aug 2026

    Active Directory Domain Services Elevation of Privilege Vulnerability

    Published:10 Nov 2021
    7.5
    High

    CVE-2021-42278

    Last Modified: 19 Aug 2026

    Active Directory Domain Services Elevation of Privilege Vulnerability

    Published:10 Nov 2021
    7.5
    High

    CVE-2021-42261

    Last Modified: 21 Nov 2024

    Revisor Video Management System (VMS) before 2.0.0 has a directory traversal vulnerability. Successful exploitation could allow an attacker to traverse the file system to access files or directories that are outside of restricted directory on the remote server. This could lead to the disclosure of sensitive data on the vulnerable server.

    Published:19 Oct 2021
    7.5
    High

    CVE-2021-42260

    Last Modified: 4 Nov 2025

    TinyXML through 2.6.2 has an infinite loop in TiXmlParsingData::Stamp in tinyxmlparser.cpp via the TIXML_UTF_LEAD_0 case. It can be triggered by a crafted XML message and leads to a denial of service.

    Published:11 Oct 2021
    9.8
    Critical

    CVE-2021-42237

    Last Modified: 10 Nov 2025

    Sitecore XP 7.5 Initial Release to Sitecore XP 8.2 Update-7 is vulnerable to an insecure deserialization attack where it is possible to achieve remote command execution on the machine. No authentication or special configuration is required to exploit this vulnerability.

    Published:5 Nov 2021
    4.7
    Medium

    CVE-2021-42205

    Last Modified: 2 May 2025

    ELAN Miniport touchpad Windows driver before 24.21.51.2, as used in PC hardware from multiple manufacturers, allows local users to cause a system crash by sending a certain IOCTL request, because that request is handled twice.

    Published:7 Nov 2022
    7.5
    High

    CVE-2021-42183

    Last Modified: 21 Nov 2024

    MasaCMS 7.2.1 is affected by a path traversal vulnerability in /index.cfm/_api/asset/image/.

    Published:5 May 2022
    7.2
    High

    CVE-2021-42171

    Last Modified: 21 Nov 2024

    Zenario CMS 9.0.54156 is vulnerable to File Upload. The web server can be compromised by uploading and executing a web-shell which can run commands, browse system files, browse local resources, attack other servers, and exploit the local vulnerabilities, and so forth.

    Published:14 Mar 2022
    8.8
    High

    CVE-2021-42165

    Last Modified: 17 May 2022

    MitraStar GPT-2541GNAC-N1 (HGU) 100VNZ0b33 devices allow remote authenticated users to obtain root access by executing command "deviceinfo show file &&/bin/bash" because of incorrect sanitization of parameter "path".

    Source:Leonardo Nicolas Servalli
    Published:3 May 2022
    9
    Critical

    CVE-2021-42136

    Last Modified: 19 Apr 2022

    A stored Cross-Site Scripting (XSS) vulnerability in the Missing Data Codes functionality of REDCap before 11.4.0 allows remote attackers to execute JavaScript code in the client's browser by storing said code as a Missing Data Code value. This can then be leveraged to execute a Cross-Site Request Forgery attack to escalate privileges to administrator.

    Source:Kendrick Lam
    Published:13 Apr 2022
    9.8
    Critical

    CVE-2021-42071

    Last Modified: 15 Oct 2021

    In Visual Tools DVR VX16 4.2.28.0, an unauthenticated attacker can achieve remote command execution via shell metacharacters in the cgi-bin/slogin/login.py User-Agent HTTP header.

    Source:Andrea D\'Ubaldo
    Published:7 Oct 2021
    6.1
    Medium

    CVE-2021-42063

    Last Modified: 21 Nov 2024

    A security vulnerability has been discovered in the SAP Knowledge Warehouse - versions 7.30, 7.31, 7.40, 7.50. The usage of one SAP KW component within a Web browser enables unauthorized attackers to conduct XSS attacks, which might lead to disclose sensitive data.

    Published:14 Dec 2021
    6.7
    Medium

    CVE-2021-42056

    Last Modified: 21 Nov 2024

    Thales Safenet Authentication Client (SAC) for Linux and Windows through 10.7.7 creates insecure temporary hid and lock files allowing a local attacker, through a symlink attack, to overwrite arbitrary files, and potentially achieve arbitrary command execution with high privileges.

    Published:24 Jun 2022
    5.4
    Medium

    CVE-2021-42053

    Last Modified: 8 Oct 2021

    The Unicorn framework through 0.35.3 for Django allows XSS via component.name.

    Source:Raven Security Associates
    Published:7 Oct 2021
    9.8
    Critical

    CVE-2021-42013

    Last Modified: 13 Oct 2021

    It was found that the fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was insufficient. An attacker could use a path traversal attack to map URLs to files outside the directories configured by Alias-like directives. If files outside of these directories are not protected by the usual default configuration "require all denied", these requests can succeed. If CGI scripts are also enabled for these aliased pathes, this could allow for remote code execution. This issue only affects Apache 2.4.49 and Apache 2.4.50 and not earlier versions.

    Source:Lucas Souza
    Published:7 Oct 2021
    7.8
    High

    CVE-2021-42008

    Last Modified: 21 Nov 2024

    The decode_data function in drivers/net/hamradio/6pack.c in the Linux kernel before 5.13.13 has a slab out-of-bounds write. Input from a process that has the CAP_NET_ADMIN capability can lead to root access.

    Published:16 Aug 2021
    4.8
    Medium

    CVE-2021-41962

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the Owner fullname parameter in a Send Service Request in vehicle_service.

    Published:16 Dec 2021
    5.4
    Medium

    CVE-2021-41946

    Last Modified: 21 Nov 2024

    In FiberHome VDSL2 Modem HG150-Ub_V3.0, a stored cross-site scripting (XSS) vulnerability in Parental Control --> Access Time Restriction --> Username field, a user cannot delete the rule due to the XSS.

    Published:18 May 2022
    6.1
    Medium

    CVE-2021-41878

    Last Modified: 15 Oct 2021

    A reflected cross-site scripting (XSS) vulnerability exists in the i-Panel Administration System Version 2.0 that enables a remote attacker to execute arbitrary JavaScript code in the browser-based web console and it is possible to insert a vulnerable malicious button.

    Source:Forster Chiu
    Published:4 Oct 2021
    Unknown

    CVE-2021-41822

    https://github.com/badboycxcc/CVE-2021-41822

    8.8
    High

    CVE-2021-41805

    Last Modified: 21 Nov 2024

    HashiCorp Consul Enterprise before 1.8.17, 1.9.x before 1.9.11, and 1.10.x before 1.10.4 has Incorrect Access Control. An ACL token (with the default operator:write permissions) in one namespace can be used for unintended privilege escalation in a different namespace.

    Published:12 Dec 2021
    7.8
    High

    CVE-2021-41784

    Last Modified: 21 Nov 2024

    Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.

    Published:29 Aug 2022
    7.5
    High

    CVE-2021-41773

    Last Modified: 11 Feb 2022

    A flaw was found in a change made to path normalization in Apache HTTP Server 2.4.49. An attacker could use a path traversal attack to map URLs to files outside the directories configured by Alias-like directives. If files outside of these directories are not protected by the usual default configuration "require all denied", these requests can succeed. If CGI scripts are also enabled for these aliased pathes, this could allow for remote code execution. This issue is known to be exploited in the wild. This issue only affects Apache 2.4.49 and not earlier versions. The fix in Apache HTTP Server 2.4.50 was found to be incomplete, see CVE-2021-42013.

    Source:Lucas Souza
    Published:29 Sept 2021
    Unknown

    CVE-2021-41730

    https://github.com/yezeting/CVE-2021-41730

    Unknown

    CVE-2021-41703

    https://github.com/Yanoro/CVE-2021-41703

    9.8
    Critical

    CVE-2021-41653

    Last Modified: 21 Nov 2024

    The PING function on the TP-Link TL-WR840N EU v5 router with firmware through TL-WR840N(EU)_V5_171211 is vulnerable to remote code execution via a crafted payload in an IP address input field.

    Published:13 Nov 2021