Critical · CVSS 9.8
In VembuBDR before 4.2.0.1 and VembuOffsiteDR before 4.2.0.1, the http API located at /sgwebservice_o.php accepts a command argument. Using this command argument an unauthenticated attacker can execute arbitrary shell commands.
Published Jun 8, 2021 · Updated Sep 16, 2024
Medium · CVSS 5.3
Improper sanitization of path in default RouteNotFoundError view in com.vaadin:flow-server versions 1.0.0 through 1.0.14 (Vaadin 10.0.0 through 10.0.18), 1.1.0 prior to 2.0.0 (Vaadin 11 prior to 14), 2.0.0 through 2.6.1 (Vaadin 14.0.0 through 14.6.1), and 3.0.0 through 6.0.9 (Vaadin 15.0.0 through 19.0.8) allows network attacker to enumerate all available routes via crafted HTTP request when application is running in production mode and no custom handler for NotFoundException is provided.
Published Jun 24, 2021 · Updated Sep 16, 2024
High · CVSS 7.5
An attacker can craft a specific IdaPro *.i64 file that will cause the BinDiff plugin to load an invalid memory offset. This can allow the attacker to control the instruction pointer and execute arbitrary code. It is recommended to upgrade BinDiff 7
Published Jun 29, 2021 · Updated Sep 16, 2024
Critical · CVSS 9.9
Improper privilege management vulnerability in cgi component in Synology Download Station before 3.8.16-3566 allows remote authenticated users to execute arbitrary code via unspecified vectors.
Published Jun 18, 2021 · Updated Sep 16, 2024
Medium · CVSS 5.4
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 194595.
Published Jun 2, 2021 · Updated Sep 16, 2024
Unknown · CVSS Not scored
Improper Input Validation vulnerability in a particular configuration setting field of Hitachi Energy TXpert Hub CoreTec 4 product, allows an attacker with access to an authorized user with ADMIN or ENGINEER role rights to inject an OS command that is executed by the system. This issue affects: Hitachi Energy TXpert Hub CoreTec 4 version 2.0.0; 2.0.1; 2.1.0; 2.1.1; 2.1.2; 2.1.3; 2.2.0; 2.2.1.
Published Jun 7, 2022 · Updated Sep 16, 2024
Medium · CVSS 6.5
User credentials stored in a recoverable format within Fidelis Network and Deception CommandPost. In the event that an attacker gains access to the CommandPost, these values could be decoded and used to login to the application. The vulnerability is present in Fidelis Network and Deception versions prior to 9.3.3. This vulnerability has been addressed in version 9.3.3 and subsequent versions.
Published Jun 25, 2021 · Updated Sep 16, 2024
High · CVSS 7.8
There is a race condition in the 'replaced executable' detection that, with the correct local configuration, allow an attacker to execute arbitrary code as root.
Published Jun 3, 2024 · Updated Aug 19, 2024
Unknown · CVSS Not scored
Cross Site Scripting (XSS) vulnerability in sourcecodester School File Management System 1.0 via the Lastname parameter to the Update Account form in student_profile.php.
Published Jun 23, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The 10Web Photo Gallery plugin through 1.5.69 for WordPress allows XSS via theme_id for bwg_frontend_data. NOTE: other parameters are covered by CVE-2021-24291, CVE-2021-25041, and CVE-2021-31693.
Published Jun 7, 2023 · Updated Aug 4, 2024
Unknown · CVSS Not scored
python-ldap before 3.4.0 is vulnerable to a denial of service when ldap.schema is used for untrusted schema definitions, because of a regular expression denial of service (ReDoS) flaw in the LDAP schema parser. By sending crafted regex input, a remote authenticated attacker could exploit this vulnerability to cause a denial of service condition.
Published Jun 18, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Vulnerability of residual files not being deleted after an update in the ChinaDRM module. Successful exploitation of this vulnerability may affect availability.
Published Jun 13, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
HwSEServiceAPP has a vulnerability in permission management. Successful exploitation of this vulnerability may cause disclosure of the Card Production Life Cycle (CPLC) information.
Published Jun 13, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The PPM reader in libjpeg-turbo through 2.0.90 mishandles use of tjLoadImage for loading a 16-bit binary PPM file into a grayscale buffer and loading a 16-bit binary PGM file into an RGB buffer. This is related to a heap-based buffer overflow in the get_word_rgb_row function in rdppm.c.
Published Jun 18, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The video framework has an out-of-bounds memory read/write vulnerability. Successful exploitation of this vulnerability may affect system availability.
Published Jun 13, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The Device Manager has a vulnerability in multi-device interaction. Successful exploitation of this vulnerability may affect data integrity.
Published Jun 13, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Arbitrary File Deletion vulnerability in XOS-Shop xos_shop_system 1.0.9 via current_manufacturer_image parameter to /shop/admin/categories.php
Published Jun 16, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
NetScout nGeniusONE 6.3.2 allows Java RMI Code Execution.
Published Jun 2, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
NetScout nGeniusONE 6.3.2 allows an XML External Entity (XXE) attack.
Published Jun 2, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
NetScout nGeniusONE 6.3.2 allows Arbitrary File Upload by a privileged user.
Published Jun 2, 2022 · Updated Aug 4, 2024
Medium · CVSS 4.3
TruDesk Help Desk/Ticketing Solution v1.1.11 is vulnerable to a Cross-Site Request Forgery (CSRF) attack which would allow an attacker to restart the server, causing a DoS attack. The attacker must craft a webpage that would perform a GET request to the /api/v1/admin/restart endpoint, then the victim (who has sufficient privileges), would visit the page and the server restart would begin. The attacker must know the full URL that TruDesk is on in order to craft the webpage.
Published Jun 24, 2024 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A Privilege Escalation vulnerability exists in Sourcecodester Money Transfer Management System 1.0, which allows a remote malicious user to gain elevated privileges to the Admin role via any URL.
Published Jun 10, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
GUnet Open eClass (aka openeclass) before 3.12.2 allows XSS via the modules/auth/formuser.php auth parameter.
Published Jun 11, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A Command Injection vulnerability in httpd web server (setup.cgi) in SerComm h500s, FW: lowi-h500s-v3.4.22 allows logged in administrators to arbitrary OS commands as root in the device via the connection_type parameter of the statussupport_diagnostic_tracing.json endpoint.
Published Jun 1, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A Cross Site Request Forgery (CSRF) vulnerability exists in TheDayLightStudio Fuel CMS 1.5.0 via a POST call to /fuel/sitevariables/delete/4.
Published Jun 10, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Riverbed AppResponse 11.8.0, 11.8.5, 11.8.5a, 11.9.0, 11.9.0a, 11.10.0, 11.11.0, 11.11.0a, 11.11.1, 11.11.1a, 11.11.5, and 11.11.5a (when configured to use local, RADIUS, or TACACS authentication) logs usernames and passwords if either is entered incorrectly. If a user enters an incorrect username and/or password when logging into the WebUI, these attempted credentials are included in an error message that is logged in the WebUI log file. A log entry does not appear if the username and password provided correctly match a valid set of credentials. This also does not happen if AppResponse is configured to use SAML authentication. The WebUI log file is included in subsequent diagnostic system dumps that are generated. (Only users with Full Control access to the System Configuration permission can generate system dumps. By default, only System Administrators have Full Control access to the System Configuration permission.)
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in function NTPSyncWithHost of the file system.so which can control hostTime to attack.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can obtain sensitive information (wifikey, etc.) without authorization.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in function setLanguageCfg of the file global.so which can control langType to attack.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can obtain sensitive information (wifikey, wifiname, etc.) without authorization.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in function setDeviceName of the file global.so which can control thedeviceName to attack.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can start telnet without authorization because the default username and password exists in the firmware.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can obtain sensitive information (wifikey, etc.) without authorization through getSysStatusCfg.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in function setDeviceMac of the file global.so which can control deviceName to attack.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In TOTOLINK EX1200T V4.1.2cu.5215, an attacker can bypass login by sending a specific request through formLoginAuth.htm.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
TOTOLINK EX1200T V4.1.2cu.5215 contains an information disclosure vulnerability where an attacker can get the apmib configuration file without authorization, and usernames and passwords can be found in the decoded file.
Published Jun 3, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
FlatCore-CMS 2.0.9 has a cross-site scripting (XSS) vulnerability in pages.edit.php through meta tags and content sections.
Published Jun 6, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Thales Safenet Authentication Client (SAC) for Linux and Windows through 10.7.7 creates insecure temporary hid and lock files allowing a local attacker, through a symlink attack, to overwrite arbitrary files, and potentially achieve arbitrary command execution with high privileges.
Published Jun 24, 2022 · Updated Aug 4, 2024
High · CVSS 7.7
A misconfiguration of RSA in PingID Mac Login prior to 1.1 is vulnerable to pre-computed dictionary attacks, leading to an offline MFA bypass.
Published Jun 30, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Webkul krayin crm before 1.2.2 is vulnerable to Cross Site Scripting (XSS).
Published Jun 21, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A blind SQL injection vulnerability in search form in TeamMate+ Audit version 28.0.19.0 allows any authenticated user to create malicious SQL injections, which can result in complete database compromise, gaining information about other users, unauthorized access to audit data etc.
Published Jun 6, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
dynamicMarkt <= 3.10 is affected by SQL injection in the kat1 parameter of index.php.
Published Jun 10, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The authentication checks of the MELAG FTP Server in version 2.2.0.4 are incomplete, which allows a remote attacker to access local files only by using a valid username.
Published Jun 24, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SQL injection vulnerabilities exist in Wuzhicms v4.1.0 which allows attackers to execute arbitrary SQL commands via the $keyValue parameter in /coreframe/app/pay/admin/index.php
Published Jun 16, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Church Management System version 1.0 is affected by a SQL anjection vulnerability through creating a user with a PHP file as an avatar image, which is accessible through the /uploads directory. This can lead to RCE on the web server by uploading a PHP webshell.
Published Jun 13, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
MELAG FTP Server 2.2.0.4 stores unencrpyted passwords of FTP users in a local configuration file.
Published Jun 24, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In the SEOmatic plugin up to 3.4.11 for Craft CMS 3, it is possible for unauthenticated attackers to perform a Server-Side Template Injection, allowing for remote code execution.
Published Jun 12, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
There is a stack-overflow at ecma-helpers.c:326 in ecma_get_lex_env_type in JerryScript 2.4.0
Published Jun 20, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
When installed as Windows service MELAG FTP Server 2.2.0.4 is run as SYSTEM user, which grants remote attackers to abuse misconfigurations or vulnerabilities with administrative access over the entire host system.
Published Jun 24, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
There is a heap-use-after-free at ecma-helpers-string.c:1940 in ecma_compare_ecma_non_direct_strings in JerryScript 2.4.0
Published Jun 20, 2022 · Updated Aug 4, 2024