High · CVSS 7.7
Trusty contains a vulnerability in all trusted applications (TAs) where the stack cookie was not randomized, which might result in stack-based buffer overflow, leading to denial of service, escalation of privileges, and information disclosure.
Published Jun 30, 2021 · Updated Aug 4, 2024
Low · CVSS 1.9
Bootloader contains a vulnerability in NVIDIA MB2, which may cause free-the-wrong-heap, which may lead to limited denial of service.
Published Jun 22, 2021 · Updated Aug 4, 2024
Medium · CVSS 6.3
Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow could cause memory corruption, which might lead to denial of service or code execution.
Published Jun 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
portlets/contact/ref/refContactDetail.do in Accela Civic Platform through 20.1 allows remote attackers to obtain sensitive information via a modified contactSeqNumber value. NOTE: the vendor states "the information that is being queried is authorized for an authenticated user of that application, so we consider this not applicable.
Published Jun 9, 2021 · Updated Aug 4, 2024
Medium · CVSS 6.3
Trusty TLK contains a vulnerability in the NVIDIA TLK kernel where an integer overflow in the calculation of a length could lead to a heap overflow.
Published Jun 30, 2021 · Updated Aug 4, 2024
High · CVSS 8.2
Trusty (the trusted OS produced by NVIDIA for Jetson devices) driver contains a vulnerability in the NVIDIA OTE protocol message parsing code where an integer overflow in a malloc() size calculation leads to a buffer overflow on the heap, which might result in information disclosure, escalation of privileges, and denial of service.
Published Jun 22, 2021 · Updated Aug 4, 2024
Medium · CVSS 6.4
Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow might lead to denial of service or escalation of privileges.
Published Jun 30, 2021 · Updated Aug 4, 2024
High · CVSS 7.9
Trusty trusted Linux kernel (TLK) contains a vulnerability in the NVIDIA TLK kernel where a lack of heap hardening could cause heap overflows, which might lead to information disclosure and denial of service.
Published Jun 30, 2021 · Updated Aug 4, 2024
High · CVSS 7.7
Trusty contains a vulnerability in command handlers where the length of input buffers is not verified. This vulnerability can cause memory corruption, which may lead to information disclosure, escalation of privileges, and denial of service.
Published Jun 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A stored cross site scripting (XSS) vulnerability was discovered in Ice Hrm 29.0.0.OS which allows attackers to execute arbitrary web scripts or HTML via a crafted file uploaded into the Document Management tab. The exploit is triggered when a user visits the upload location of the crafted file.
Published Jun 22, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Polaris Office v9.103.83.44230 is affected by a Uninitialized Pointer Vulnerability in PolarisOffice.exe and EngineDLL.dll that may cause a Remote Code Execution. To exploit the vulnerability, someone must open a crafted PDF file.
Published Jun 8, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Umbraco CMS before 7.15.7 is vulnerable to Open Redirection due to insufficient url sanitization on booting.aspx.
Published Jun 28, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OS Command Injection vulnerability in bbultman gitsome through 0.2.3 allows attackers to execute arbitrary commands via a crafted tag name of the target git repository.
Published Jun 1, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Bandai Namco FromSoftware Dark Souls III allows remote attackers to execute arbitrary code.
Published Jun 15, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Divide-by-zero bug in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file.
Published Jun 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Google-it is a Node.js package which allows its users to send search queries to Google and receive the results in a JSON format. When using the 'Open in browser' option in versions up to 1.6.2, google-it will unsafely concat the result's link retrieved from google to a shell command, potentially exposing the server to RCE.
Published Jun 1, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Miniaudio 0.10.35 has a Double free vulnerability that could cause a buffer overflow in ma_default_vfs_close__stdio in miniaudio.h.
Published Jun 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file.
Published Jun 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
main/inc/ajax/model.ajax.php in Chamilo through 1.11.14 allows SQL Injection via the searchField, filters, or filters2 parameter.
Published Jun 28, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A cross site request forgery (CSRF) vulnerability was discovered in Ice Hrm 29.0.0.OS which allows attackers to create new admin accounts or change users' passwords.
Published Jun 22, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Miniaudio 0.10.35 has an integer-based buffer overflow caused by an out-of-bounds left shift in drwav_bytes_to_u32 in miniaudio.h
Published Jun 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file.
Published Jun 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OS Command Injection vulnerability in es128 ssl-utils 1.0.0 for Node.js allows attackers to execute arbitrary commands via unsanitized shell metacharacters provided to the createCertRequest() and the createCert() functions.
Published Jun 1, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In Invoice Ninja before 4.4.0, there is an unsafe call to unserialize() in app/Ninja/Repositories/AccountRepository.php that may allow an attacker to deserialize arbitrary PHP classes. In certain contexts, this can result in remote code execution. The attacker's input must be hosted at http://www.geoplugin.net (cleartext HTTP), and thus a successful attack requires spoofing that site or obtaining control of it.
Published Jun 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
PandoraFMS <=7.54 allows arbitrary file upload, it leading to remote command execution via the File Manager. To bypass the built-in protection, a relative path is used in the requests.
Published Jun 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Insufficient verification of data authenticity in Peloton TTR01 up to and including PTV55G allows an attacker with physical access to boot into a modified kernel/ramdisk without unlocking the bootloader.
Published Jun 15, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OS Command Injection vulnerability in allenhwkim proctree through 0.1.1 and commit 0ac10ae575459457838f14e21d5996f2fa5c7593 for Node.js, allows attackers to execute arbitrary commands via the fix function.
Published Jun 1, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OS command injection vulnerability in Turistforeningen node-s3-uploader through 2.0.3 for Node.js allows attackers to execute arbitrary commands via the metadata() function.
Published Jun 1, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In Artica Pandora FMS <=754 in the File Manager component, there is sensitive information exposed on the client side which attackers can access.
Published Jun 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
LaikeTui 3.5.0 allows remote authenticated users to execute arbitrary PHP code by using index.php?module=system&action=pay to upload a ZIP archive containing a .php file, as demonstrated by the ../../../../phpinfo.php pathname.
Published Jun 15, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
lifion-verify-dependencies through 1.1.0 is vulnerable to OS command injection via a crafted dependency name on the scanned project's package.json file.
Published Jun 1, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
LaikeTui 3.5.0 allows remote authenticated users to delete arbitrary files, as demonstrated by deleting install.lock in order to reinstall the product in an attacker-controlled manner. This deletion is possible via directory traversal in the uploadImg, oldpic, or imgurl parameter.
Published Jun 15, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OS Command injection vulnerability in Mintzo Docker-Tester through 1.2.1 allows attackers to execute arbitrary commands via shell metacharacters in the 'ports' entry of a crafted docker-compose.yml file.
Published Jun 1, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file.
Published Jun 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In Progress MOVEit Transfer before 2019.0.6 (11.0.6), 2019.1.x before 2019.1.5 (11.1.5), 2019.2.x before 2019.2.2 (11.2.2), 2020.x before 2020.0.5 (12.0.5), 2020.1.x before 2020.1.4 (12.1.4), and 2021.x before 2021.0.1 (13.0.1), a SQL injection vulnerability exists in SILUtility.vb in MOVEit.DMZ.WebApp in the MOVEit Transfer web app. This could allow an authenticated attacker to gain unauthorized access to the database. Depending on the database engine being used (MySQL, Microsoft SQL Server, or Azure SQL), an attacker may be able to infer information about the structure and contents of the database and/or execute SQL statements that alter or delete database elements.
Published Jun 9, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Out-of-bounds Read in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file.
Published Jun 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
On NXP MIFARE Ultralight and NTAG cards, an attacker can interrupt a write operation (aka conduct a "tear off" attack) over RFID to bypass a Monotonic Counter protection mechanism. The impact depends on how the anti tear-off feature is used in specific applications such as public transportation, physical access control, etc.
Published Jun 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
ETINET BACKBOX E4.09 and H4.09 mismanages password access control. When a user uses the User ID of the process running BBSV to login to the Backbox UI application, the system procedure (USER_AUTHENTICATE_) used for verifying the Password returns 0 (no error). The reason is that the user is not running the XYGate application. Hence, BBSV assumes the Password is correct. For H4.09, the affected version isT0954V04^AAO. For E4.09, the affected version is 22SEP2020. Note: If your current version is E4.10-16MAY2021 (version procedure T9999V04_16MAY2022_BPAKETI_10), a hotfix (FIXPAK-19OCT-2022) is available in version E4.10-19OCT2022. Resolution to CVE-2021-33895 in version E4.11-19OCT2022
Published Jun 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In Accela Civic Platform through 21.1, the security/hostSignon.do parameter servProvCode is vulnerable to XSS. NOTE: The vendor states "there are configurable security flags and we are unable to reproduce them with the available information.
Published Jun 7, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The aaugustin websockets library before 9.1 for Python has an Observable Timing Discrepancy on servers when HTTP Basic Authentication is enabled with basic_auth_protocol_factory(credentials=...). An attacker may be able to guess a password via a timing attack.
Published Jun 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Tencent GameLoop before 4.1.21.90 downloaded updates over an insecure HTTP connection. A malicious attacker in an MITM position could spoof the contents of an XML document describing an update package, replacing a download URL with one pointing to an arbitrary Windows executable. Because the only integrity check would be a comparison of the downloaded file's MD5 checksum to the one contained within the XML document, the downloaded executable would then be executed on the victim's machine.
Published Jun 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Dino before 0.1.2 and 0.2.x before 0.2.1 allows Directory Traversal (only for creation of new files) via URI-encoded path separators.
Published Jun 7, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in UniFi Protect G3 FLEX Camera Version UVC.v4.30.0.67.Attacker could send a huge amount of TCP SYN packet to make web service's resource exhausted. Then the web server is denial-of-service.
Published Jun 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
The server in Luca through 1.1.14 allows remote attackers to cause a denial of service (insertion of many fake records related to COVID-19) because Phone Number data lacks a digital signature.
Published Jun 3, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Luca through 1.7.4 on Android allows remote attackers to obtain sensitive information about COVID-19 tracking because requests related to Check-In State occur shortly after requests for Phone Number Registration.
Published Jun 3, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Luca through 1.7.4 on Android allows remote attackers to obtain sensitive information about COVID-19 tracking because the QR code of a Public Location can be intentionally confused with the QR code of a Private Meeting.
Published Jun 3, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
The BDew BdLib library before 1.16.1.7 for Minecraft allows remote code execution because it deserializes untrusted data in ObjectInputStream.readObject as part of its use of Java serialization.
Published Jun 3, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered in UniFi Protect G3 FLEX Camera Version UVC.v4.30.0.67. Attackers can use slowhttptest tool to send incomplete HTTP request, which could make server keep waiting for the packet to finish the connection, until its resource exhausted. Then the web server is denial-of-service.
Published Jun 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered on MOXA Mgate MB3180 Version 2.1 Build 18113012. Attacker could send a huge amount of TCP SYN packet to make web service's resource exhausted. Then the web server is denial-of-service.
Published Jun 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
ConnMan (aka Connection Manager) 1.30 through 1.39 has a stack-based buffer overflow in uncompress in dnsproxy.c via NAME, RDATA, or RDLENGTH (for A or AAAA).
Published Jun 9, 2021 · Updated Aug 3, 2024