High · CVSS 7.8
Possible buffer overflow due to improper validation of array index while processing external DIAG command in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published Jun 14, 2022 · Updated Aug 4, 2024
High · CVSS 7.5
Improper memory allocation during counter check DLM handling can lead to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
Published Jun 14, 2022 · Updated Aug 4, 2024
Critical · CVSS 9.8
Possible buffer overflow due to improper validation of SSID length received from beacon or probe response during an IBSS session in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
Published Jun 14, 2022 · Updated Aug 4, 2024
High · CVSS 7.5
Possible null pointer access due to improper validation of system information message to be processed in Snapdragon Industrial IOT, Snapdragon Mobile
Published Jun 14, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The blockchain node in FISCO-BCOS V2.7.2 may have a bug when dealing with unformatted packet and lead to a crash. A malicious node can send a packet continuously. The packet is in an incorrect format and cannot be decoded by the node correctly. As a result, the node may consume the memory sustainably and crash. More details are shown at: https://github.com/FISCO-BCOS/FISCO-BCOS/issues/1951
Published Jun 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Cross site scripting (XSS) vulnerability in Ice Hrm 29.0.0.OS, allows attackers to execute arbitrary code via the parameters to the /app/ endpoint.
Published Jun 22, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Istio (1.8.x, 1.9.0-1.9.5 and 1.10.0-1.10.1) contains a remotely exploitable vulnerability where credentials specified in the Gateway and DestinationRule credentialName field can be accessed from different namespaces.
Published Jun 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
CheckSec Canopy before 3.5.2 allows XSS attacks against the login page via the LOGIN_PAGE_DISCLAIMER parameter.
Published Jun 18, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Valine 1.4.14 allows remote attackers to cause a denial of service (application outage) by supplying a ua (aka User-Agent) value that only specifies the product and version.
Published Jun 16, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an Olm encrypted room key backup from the homeserver) because olm_pk_decrypt has a stack-based buffer overflow. Remote code execution might be possible for some nonstandard build configurations.
Published Jun 16, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Quassel through 0.13.1, when --require-ssl is enabled, launches without SSL or TLS support if a usable X.509 certificate is not found on the local system.
Published Jun 17, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
TeamViewer before 14.7.48644 on Windows loads untrusted DLLs in certain situations.
Published Jun 16, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
net/can/bcm.c in the Linux kernel through 5.12.10 allows local users to obtain sensitive information from kernel stack memory because parts of a data structure are uninitialized.
Published Jun 14, 2021 · Updated Aug 4, 2024
Critical · CVSS 10
Thycotic Password Reset Server before 5.3.0 allows credential disclosure.
Published Jun 11, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in EXCELLENT INFOTEK CORPORATION (EIC) E-document System 3.0. A remote attacker can use kw/auth/bbs/asp/get_user_email_info_bbs.asp to obtain the contact information (name and e-mail address) of everyone in the entire organization. This information can allow remote attackers to perform social engineering or brute force attacks against the system login page.
Published Jun 16, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Receita Federal IRPF 2021 1.7 allows a man-in-the-middle attack against the update feature.
Published Jun 12, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An unauthenticated attacker with physical access to a computer with NetSetMan Pro before 5.0 installed, that has the pre-logon profile switch button within the Windows logon screen enabled, is able to drop to an administrative shell and execute arbitrary commands as SYSTEM via the "save log to file" feature. To accomplish this, the attacker can navigate to cmd.exe.
Published Jun 10, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-005. Hashing is mishandled for certain retrieval of circuit data. Consequently. an attacker can trigger the use of an attacker-chosen circuit ID to cause algorithm inefficiency.
Published Jun 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-003. An attacker can forge RELAY_END or RELAY_RESOLVED to bypass the intended access control for ending a stream.
Published Jun 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
XScreenSaver 5.45 can be bypassed if the machine has more than ten disconnectable video outputs. A buffer overflow in update_screen_layout() allows an attacker to bypass the standard screen lock authentication mechanism by crashing XScreenSaver. The attacker must physically disconnect many video outputs.
Published Jun 10, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OpenDMARC 1.4.1 and 1.4.1.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a multi-value From header field.
Published Jun 10, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-006. The v3 onion service descriptor parsing allows out-of-bounds memory access, and a client crash, via a crafted onion service descriptor
Published Jun 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in CubeCoders AMP before 2.1.1.8. A lack of validation of the Java Version setting means that an unintended executable path can be set. The result is that high-privileged users can trigger code execution.
Published Jun 10, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Sonatype Nexus Repository Manager 3.x before 3.31.0 allows a remote authenticated attacker to get a list of blob files and read the content of a blob file (via a GET request) without having been granted access.
Published Jun 17, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Advantech WebAccess 8.4.2 and 8.4.4 allows XSS via the username column of the bwRoot.asp page of WADashboard.
Published Jun 11, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
PHPMailer before 6.5.0 on Windows allows remote code execution if lang_path is untrusted data and has a UNC pathname.
Published Jun 16, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
PRTG Network Monitor 20.1.55.1775 allows /editsettings CSRF for user account creation.
Published Jun 10, 2021 · Updated Aug 4, 2024
High · CVSS 7
Bootloader contains a vulnerability in NVIDIA MB2 where potential heap overflow might cause corruption of the heap metadata, which might lead to arbitrary code execution, denial of service, and information disclosure during secure boot.
Published Jun 30, 2021 · Updated Aug 4, 2024
High · CVSS 7.7
Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 11 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to information disclosure, denial of service, or escalation of privileges.
Published Jun 30, 2021 · Updated Aug 4, 2024
Medium · CVSS 6.7
Trusty TLK contains a vulnerability in the NVIDIA TLK kernel’s tz_map_shared_mem function where an integer overflow on the size parameter causes the request buffer and the logging buffer to overflow, allowing writes to arbitrary addresses within the kernel.
Published Jun 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In Eclipse BIRT versions 4.8.0 and earlier, an attacker can use query parameters to create a JSP file which is accessible from remote (current BIRT viewer dir) to inject JSP code into the running instance.
Published Jun 25, 2021 · Updated Aug 4, 2024
Medium · CVSS 5.3
Trusty contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of an integer overflow through a specific SMC call that is triggered by the user, which may lead to denial of service.
Published Jun 22, 2021 · Updated Aug 4, 2024
High · CVSS 7.7
Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 10 is missing. The length of an I/O buffer parameter is not checked, which might lead to memory corruption.
Published Jun 30, 2021 · Updated Aug 4, 2024
Medium · CVSS 4.2
Trusty contains a vulnerability in the NVIDIA OTE protocol that is present in all TAs. An incorrect message stream deserialization allows an attacker to use the malicious CA that is run by the user to cause the buffer overflow, which may lead to information disclosure and data modification.
Published Jun 22, 2021 · Updated Aug 4, 2024
Low · CVSS 2.9
For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, if an exception is thrown from the SessionListener#sessionDestroyed() method, then the session ID is not invalidated in the session ID manager. On deployments with clustered sessions and multiple contexts this can result in a session not being invalidated. This can result in an application used on a shared computer being left logged in.
Published Jun 22, 2021 · Updated Aug 4, 2024
Medium · CVSS 5.3
Trusty contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of an integer overflow through a specific SMC call that is triggered by the user, which may lead to denial of service.
Published Jun 22, 2021 · Updated Aug 4, 2024
Low · CVSS 3.9
Trusty TLK contains a vulnerability in its access permission settings where it does not properly restrict access to a resource from a user with local privileges, which might lead to limited information disclosure, a low risk of modifcations to data, and limited denial of service.
Published Jun 22, 2021 · Updated Aug 4, 2024
Medium · CVSS 6.7
Trusty TLK contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of an integer overflow on the size parameter of the tz_map_shared_mem function, which might lead to denial of service, information disclosure, or data tampering.
Published Jun 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The thefuck (aka The Fuck) package before 3.31 for Python allows Path Traversal that leads to arbitrary file deletion via the "undo archive operation" feature.
Published Jun 10, 2021 · Updated Aug 4, 2024
Medium · CVSS 5
Trusty contains a vulnerability in NVIDIA OTE protocol message parsing code, which is present in all the TAs. An incorrect bounds check can allow a local user through a malicious client to access memory from the heap in the TrustZone, which may lead to information disclosure.
Published Jun 21, 2021 · Updated Aug 4, 2024
Medium · CVSS 4.2
Trusty contains a vulnerability in TSEC TA which deserializes the incoming messages even though the TSEC TA does not expose any command. This vulnerability might allow an attacker to exploit the deserializer to impact code execution, causing information disclosure.
Published Jun 22, 2021 · Updated Aug 4, 2024
Low · CVSS 3
Bootloader contains a vulnerability in access permission settings where unauthorized software may be able to overwrite NVIDIA MB2 code, which would result in limited denial of service.
Published Jun 22, 2021 · Updated Aug 4, 2024
Medium · CVSS 6.3
Trusty TLK contains a vulnerability in the NVIDIA TLK kernel where an integer overflow in the calloc size calculation can cause the multiplication of count and size can overflow, which might lead to heap overflows.
Published Jun 21, 2021 · Updated Aug 4, 2024
High · CVSS 7.7
Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 5 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to denial of service, escalation of privileges, and information disclosure.
Published Jun 30, 2021 · Updated Aug 4, 2024
Medium · CVSS 6.3
The ARM TrustZone Technology on which Trusty is based on contains a vulnerability in access permission settings where the portion of the DRAM reserved for TrustZone is identity-mapped by TLK with read, write, and execute permissions, which gives write access to kernel code and data that is otherwise mapped read only.
Published Jun 21, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Accela Civic Platform through 20.1 allows ssoAdapter/logoutAction.do successURL XSS. NOTE: the vendor states "there are configurable security flags and we are unable to reproduce them with the available information.
Published Jun 9, 2021 · Updated Aug 4, 2024
Medium · CVSS 6.3
Bootloader contains a vulnerability in NVIDIA TegraBoot where a potential heap overflow might allow an attacker to control all the RAM after the heap block, leading to denial of service or code execution.
Published Jun 21, 2021 · Updated Aug 4, 2024
Medium · CVSS 4.4
Trusty TLK contains a vulnerability in the NVIDIA TLK kernel where an integer overflow in the tz_map_shared_mem function can bypass boundary checks, which might lead to denial of service.
Published Jun 22, 2021 · Updated Aug 4, 2024
High · CVSS 7.7
Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 9 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to escalation of privileges, information disclosure, and denial of service.
Published Jun 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The Refined GitHub browser extension before 21.6.8 might allow XSS via a link in a document. NOTE: github.com sends Content-Security-Policy headers to, in general, address XSS and other concerns.
Published Jun 9, 2021 · Updated Aug 4, 2024