Unknown · CVSS Not scored
DedeCMS V5.7 SP2 contains a CSRF vulnerability that allows a remote attacker to send a malicious request to to the web manager allowing remote code execution.
Published May 14, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
The Patient Portal of OpenEMR 5.0.2.1 is affected by a incorrect access control system in portal/patient/_machine_config.php. To exploit the vulnerability, an unauthenticated attacker can register an account, bypassing the permission check of this portal's API. Then, the attacker can then manipulate and read data of every registered patient.
Published May 7, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
HashiCorp vault-action (aka Vault GitHub Action) before 2.2.0 allows attackers to obtain sensitive information from log files because a multi-line secret was not correctly registered with GitHub Actions for log masking.
Published May 7, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Firely/Incendi Spark before 1.5.5-r4 lacks Content-Disposition headers in certain situations, which may cause crafted files to be delivered to clients such that they are rendered directly in a victim's web browser.
Published May 14, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
A SQL injection vulnerability in the pandora_console component of Artica Pandora FMS 742 allows an unauthenticated attacker to upgrade his unprivileged session via the /include/chart_generator.php session_id parameter, leading to a login bypass.
Published May 7, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Primary Source Verification in VerityStream MSOW Solutions before 3.1.1 allows an anonymous internet user to discover Social Security Number (SSN) values via a brute-force attack on a (sometimes hidden) search field, because the last four SSN digits are part of the supported combination of search selectors. This discloses doctors' and nurses' social security numbers and PII.
Published May 6, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Hexagon G!nius Auskunftsportal before 5.0.0.0 allows SQL injection via the GiPWorkflow/Service/DownloadPublicFile id parameter.
Published May 14, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
JPA Server in HAPI FHIR before 5.4.0 allows a user to deny service (e.g., disable access to the database after the attack stops) via history requests. This occurs because of a SELECT COUNT statement that requires a full index scan, with an accompanying large amount of server resources if there are many simultaneous history requests.
Published May 10, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
The dashboard component of StackLift LocalStack 0.12.6 allows attackers to inject arbitrary shell commands via the functionName parameter.
Published May 7, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Re-Logic Terraria before 1.4.2.3 performs Insecure Deserialization.
Published May 24, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
MapServer before 7.0.8, 7.1.x and 7.2.x before 7.2.3, 7.3.x and 7.4.x before 7.4.5, and 7.5.x and 7.6.x before 7.6.3 does not properly enforce the MS_MAP_NO_PATH and MS_MAP_PATTERN restrictions that are intended to control the locations from which a mapfile may be loaded (with MapServer CGI).
Published May 5, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
A Cross-site scripting (XSS) vulnerability exists in StackLift LocalStack 0.12.6.
Published May 7, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered on Zebra (formerly Motorola Solutions) Fixed RFID Reader FX9500 devices. An unauthenticated attacker can upload arbitrary files to the filesystem that can then be accessed through the web interface. This can lead to information disclosure and code execution. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
The kernel in Amazon Web Services FreeRTOS before 10.4.3 has insufficient bounds checking during management of heap memory.
Published May 3, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Cyrus IMAP before 3.2.7, and 3.3.x and 3.4.x before 3.4.1, allows remote authenticated users to bypass intended access restrictions on server annotations and consequently cause replication to stall.
Published May 10, 2021 · Updated Aug 3, 2024
Medium · CVSS 5.6
Inadequate Encryption Strength vulnerability in TLS stack of Secomea SiteManager, LinkManager, GateManager may facilitate man in the middle attacks. This issue affects: Secomea SiteManager All versions prior to 9.7. Secomea LinkManager versions prior to 9.7. Secomea GateManager versions prior to 9.7.
Published May 4, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In Django 2.2 before 2.2.22, 3.1 before 3.1.10, and 3.2 before 3.2.2 (with Python 3.9.5+), URLValidator does not prohibit newlines and tabs (unless the URLField form field is used). If an application uses values with newlines in an HTTP response, header injection can occur. Django itself is unaffected because HttpResponse prohibits newlines in HTTP headers.
Published May 6, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In Trusted Firmware-M through 1.3.0, cleaning up the memory allocated for a multi-part cryptographic operation (in the event of a failure) can prevent the abort() operation in the associated cryptographic library from freeing internal resources, causing a memory leak.
Published May 21, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered in the algorithmica crate through 2021-03-07 for Rust. There is a double free in merge_sort::merge().
Published May 3, 2021 · Updated Aug 3, 2024
High · CVSS 7.4
Microsoft Accessibility Insights for Web Information Disclosure Vulnerability
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Yubico pam-u2f before 1.1.1 has a logic issue that, depending on the pam-u2f configuration and the application used, could lead to a local PIN bypass. This issue does not allow user presence (touch) or cryptographic signature verification to be bypassed, so an attacker would still need to physically possess and interact with the YubiKey or another enrolled authenticator. If pam-u2f is configured to require PIN authentication, and the application using pam-u2f allows the user to submit NULL as the PIN, pam-u2f will attempt to perform a FIDO2 authentication without PIN. If this authentication is successful, the PIN requirement is bypassed.
Published May 25, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An HTTP Request Smuggling vulnerability in Pulse Secure Virtual Traffic Manager before 21.1 could allow an attacker to smuggle an HTTP request through an HTTP/2 Header. This vulnerability is resolved in 21.1, 20.3R1, 20.2R1, 20.1R2, 19.2R4, and 18.2R3.
Published May 14, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Istio before 1.8.6 and 1.9.x before 1.9.5 has a remotely exploitable vulnerability where an HTTP request path with multiple slashes or escaped slash characters (%2F or %5C) could potentially bypass an Istio authorization policy when path based authorization rules are used.
Published May 27, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Persistent cross-site scripting (XSS) in the web interface of Concerto through 2.3.6 allows an unauthenticated remote attacker to introduce arbitrary JavaScript by injecting an XSS payload into the First Name or Last Name parameter upon registration. When a privileged user attempts to delete the account, the XSS payload will be executed.
Published May 19, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.3, argument injection leading to remote code execution was possible.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.3, account takeover was potentially possible during a password reset.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.4, OS command injection leading to remote code execution was possible.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.2, permission checks for changing TeamCity plugins were implemented improperly.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Bitcoin Core 0.12.0 through 0.21.1 does not properly implement the replacement policy specified in BIP125, which makes it easier for attackers to trigger a loss of funds, or a denial of service attack against downstream projects such as Lightning network nodes. An unconfirmed child transaction with nSequence = 0xff_ff_ff_ff, spending an unconfirmed parent with nSequence <= 0xff_ff_ff_fd, should be replaceable because there is inherited signaling by the child transaction. However, the actual PreChecks implementation does not enforce this. Instead, mempool rejects the replacement attempt of the unconfirmed child transaction.
Published May 13, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.3, stored XSS was possible on several pages.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains YouTrack before 2021.1.9819, a pull request's title was sanitized insufficiently, leading to XSS.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Multiple path traversal vulnerabilities exist in smbserver.py in Impacket through 0.9.22. An attacker that connects to a running smbserver instance can list and write to arbitrary files via ../ directory traversal. This could potentially be abused to achieve arbitrary code execution by replacing /etc/shadow or an SSH authorized key.
Published May 5, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.3, information disclosure via SSRF was possible.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.2, audit logs were not sufficient when an administrator uploaded a file.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
A flaw was found in tripleo-ansible version as shipped in Red Hat Openstack 16.1. The Ansible log file is readable to all users during stack update and creation. The highest threat from this vulnerability is to data confidentiality.
Published May 6, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains Code With Me bundled to the compatible IDE versions before 2021.1, a client could open a browser on a host.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.3, reflected XSS was possible on several pages.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.2, XSS was potentially possible on the test history page.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An out-of-bounds (OOB) memory write flaw was found in list_devices in drivers/md/dm-ioctl.c in the Multi-device driver module in the Linux kernel before 5.12. A bound check failure allows an attacker with special user (CAP_SYS_ADMIN) privilege to gain access to out-of-bounds memory leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to system availability.
Published May 6, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains YouTrack before 2020.6.6600, access control during the exporting of issues was implemented improperly.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.3, insufficient checks of the redirect_uri were made during GitHub SSO token exchange.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains WebStorm before 2021.1, code execution without user confirmation was possible for untrusted projects.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In Progress MOVEit Transfer before 2021.0 (13.0), a SQL injection vulnerability has been found in the MOVEit Transfer web app that could allow an authenticated attacker to gain unauthorized access to MOVEit Transfer's database. Depending on the database engine being used (MySQL, Microsoft SQL Server, or Azure SQL), an attacker may be able to infer information about the structure and contents of the database in addition to executing SQL statements that alter or destroy database elements. This is in MOVEit.DMZ.WebApp in SILHuman.vb.
Published May 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains TeamCity before 2020.2.4 on Windows, arbitrary code execution on TeamCity Server was possible.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains Code With Me bundled to the compatible IDEs before version 2021.1, the client could execute code in read-only mode.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains YouTrack before 2020.6.8801, information disclosure in an issue preview was possible.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains WebStorm before 2021.1, HTTP requests were used instead of HTTPS.
Published May 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
kernel/bpf/verifier.c in the Linux kernel through 5.12.1 performs undesirable speculative loads, leading to disclosure of stack content via side-channel attacks, aka CID-801c6058d14a. The specific concern is not protecting the BPF stack area against speculative loads. Also, the BPF stack can contain uninitialized data that might represent sensitive information previously operated on by the kernel.
Published May 6, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An SSRF issue in Open Distro for Elasticsearch (ODFE) before 1.13.1.0 allows an existing privileged user to enumerate listening services or interact with configured resources via HTTP requests exceeding the Alerting plugin's intended scope.
Published May 6, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In JetBrains Hub before 2021.1.13079, two-factor authentication wasn't enabled properly for the All Users group.
Published May 11, 2021 · Updated Aug 3, 2024