Unknown · CVSS Not scored
An issue was discovered on 4GEE ROUTER HH70VB Version HH70_E1_02.00_22. Attackers can use slowhttptest tool to send incomplete HTTP request, which could make server keep waiting for the packet to finish the connection, until its resource exhausted. Then the web server is denial-of-service.
Published Jun 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An XXE issue in SAXBuilder in JDOM through 2.0.6 allows attackers to cause a denial of service via a crafted HTTP request.
Published Jun 16, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered on MOXA Mgate MB3180 Version 2.1 Build 18113012. Attackers can use slowhttptest tool to send incomplete HTTP request, which could make server keep waiting for the packet to finish the connection, until its resource exhausted. Then the web server is denial-of-service.
Published Jun 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
A cross-site scripting (XSS) vulnerability in the HTML Data Processor in CKEditor 4 4.14.0 through 4.16.x before 4.16.1 allows remote attackers to inject executable JavaScript code through a crafted comment because --!> is mishandled.
Published Jun 9, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
dwa_uncompress in libavcodec/exr.c in FFmpeg 4.4 allows an out-of-bounds array access because dc_count is not strictly checked.
Published Jun 3, 2021 · Updated Aug 3, 2024
Medium · CVSS 6.7
Under certain conditions, the installation of SAP Business One, version - 10.0, discloses sensitive information on the file system allowing an attacker to access information which would otherwise be restricted.
Published Jun 9, 2021 · Updated Aug 3, 2024
Medium · CVSS 4.3
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated FLI file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
Published Jun 9, 2021 · Updated Aug 3, 2024
High · CVSS 8.2
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
Published Jun 8, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
A vulnerability has been identified in Mendix SAML Module (All versions < V2.1.2). The configuration of the SAML module does not properly check various restrictions and validations imposed by an identity provider. This could allow a remote authenticated attacker to escalate privileges.
Published Jun 8, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
When performing the initialization operation of the Split operator, if a dimension in the input shape is 0, it will cause a division by 0 exception.
Published Jun 27, 2022 · Updated Aug 3, 2024
Medium · CVSS 5.3
Due to improper input sanitization, specially crafted LDAP queries can be injected by an unauthenticated user. This could partially impact the confidentiality of the application.
Published Jun 9, 2021 · Updated Aug 3, 2024
Medium · CVSS 4.7
When SAP Commerce Cloud version 100, hosts a JavaScript storefront, it is vulnerable to MIME sniffing, which, in certain circumstances, could be used to facilitate an XSS attack or malware proliferation.
Published Jun 9, 2021 · Updated Aug 3, 2024
Medium · CVSS 4.3
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated GIF file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
Published Jun 9, 2021 · Updated Aug 3, 2024
Medium · CVSS 5.4
SAP NetWeaver Application Server ABAP (Applications based on Web Dynpro ABAP), versions - SAP_UI - 750,752,753,754,755, SAP_BASIS - 702, 731 does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.
Published Jun 9, 2021 · Updated Aug 3, 2024
Medium · CVSS 5.8
SAP NetWeaver AS ABAP, versions - KRNL32NUC - 7.22,7.22EXT, KRNL32UC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.22,7.22EXT,7.49,7.53,7.73, KERNEL - 7.22,8.04,7.49,7.53,7.73,7.77,7.81,7.82,7.83,7.84, allows an unauthorized attacker to insert cleartext commands due to improper restriction of I/O buffering into encrypted SMTP sessions over the network which can partially impact the integrity of the application.
Published Jun 9, 2021 · Updated Aug 3, 2024
Medium · CVSS 4.3
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
Published Jun 9, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
When the Reduce operator run operation is executed, if there is a value of 0 in the parameter axis_sizes element, it will cause a division by 0 exception.
Published Jun 27, 2022 · Updated Aug 3, 2024
High · CVSS 7.8
Under certain conditions, SAP Mobile SDK Certificate Provider allows a local unprivileged attacker to exploit an insecure temporary file storage. For a successful exploitation user interaction from another user is required and could lead to complete impact of confidentiality integrity and availability.
Published Jun 9, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
When performing the derivation shape operation of the SpaceToBatch operator, if there is a value of 0 in the parameter block_shape element, it will cause a division by 0 exception.
Published Jun 27, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
When performing the inference shape operation of the Transpose operator, if the value in the perm element is greater than or equal to the size of the input_shape, it will access data outside of bounds of input_shape which allocated from heap buffers.
Published Jun 27, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
When performing the analytical operation of the DepthwiseConv2D operator, if the attribute depth_multiplier is 0, it will cause a division by 0 exception.
Published Jun 27, 2022 · Updated Aug 3, 2024
Medium · CVSS 5.4
SAP NetWeaver Application Server ABAP (Applications based on SAP GUI for HTML), versions - KRNL64NUC - 7.49, KRNL64UC - 7.49,7.53, KERNEL - 7.49,7.53,7.77,7.81,7.84, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.
Published Jun 9, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
When performing the inference shape operation of the SparseToDense operator, if the number of inputs is less than three, it will access data outside of bounds of inputs which allocated from heap buffers.
Published Jun 27, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
When performing the inference shape operation of Affine, Concat, MatMul, ArgMinMax, EmbeddingLookup, and Gather operators, if the input shape size is 0, it will access data outside of bounds of shape which allocated from heap buffers.
Published Jun 27, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.
Published Jun 15, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
When performing the inference shape operation of the Tile operator, if the input data type is not int or int32, it will access data outside of bounds of heap allocated buffers.
Published Jun 27, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
RSA Archer 6.8.00500.1003 P5 allows Unrestricted Upload of a File with a Dangerous Type.
Published Jun 2, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An XSS issue was discovered in manage_custom_field_edit_page.php in MantisBT before 2.25.2. Unescaped output of the return parameter allows an attacker to inject code into a hidden input field.
Published Jun 17, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In Django 2.2 before 2.2.24, 3.x before 3.1.12, and 3.2 before 3.2.4, URLValidator, validate_ipv4_address, and validate_ipv46_address do not prohibit leading zero characters in octal literals. This may allow a bypass of access control that is based on IP addresses. (validate_ipv4_address and validate_ipv46_address are unaffected with Python 3.9.5+..) .
Published Jun 8, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered in Cleo LexiCom 5.5.0.0. Within the AS2 message, the sender can specify a filename. This filename can include path-traversal characters, allowing the file to be written to an arbitrary location on disk.
Published Jun 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An argument injection vulnerability in Dragonfly Ruby Gem v1.3.0 allows attackers to read and write arbitrary files when the verify_url option is disabled. This vulnerability is exploited via a crafted URL.
Published Jun 2, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
lfs/backup in IPFire 2.25-core155 does not ensure that /var/ipfire/backup/bin/backup.pl is owned by the root account. It might be owned by an unprivileged account, which could potentially be used to install a Trojan horse backup.pl script that is later executed by root. Similar problems with the ownership/permissions of other files may be present as well.
Published Jun 9, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered in Cleo LexiCom 5.5.0.0. The requirement for the sender of an AS2 message to identify themselves (via encryption and signing of the message) can be bypassed by changing the Content-Type of the message to text/plain.
Published Jun 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
The submission service in Dovecot before 2.3.15 allows STARTTLS command injection in lib-smtp. Sensitive information can be redirected to an attacker-controlled address.
Published Jun 28, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered in urllib3 before 1.26.5. When provided with a URL containing many @ characters in the authority component, the authority regular expression exhibits catastrophic backtracking, causing a denial of service if a URL were passed as a parameter or redirected to via an HTTP redirect.
Published Jun 29, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered in JPress v3.3.0 and below. There are XSS vulnerabilities in the template module and tag management module. If you log in to the background by means of weak password, the storage XSS vulnerability can occur.
Published Jun 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
A vulnerability exists in gowitness < 2.3.6 that allows an unauthenticated attacker to perform an arbitrary file read using the file:// scheme in the url parameter to get an image of any file.
Published Jun 9, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
A vulnerability exists in RaspAP 2.6 to 2.6.5 in the "iface" GET parameter in /ajax/networking/get_netcfg.php, when the "iface" parameter value contains special characters such as ";" which enables an unauthenticated attacker to execute arbitrary OS commands.
Published Jun 9, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Multiple vulnerabilities exist in RaspAP 2.3 to 2.6.5 in the "interface", "ssid" and "wpa_passphrase" POST parameters in /hostapd, when the parameter values contain special characters such as ";" or "$()" which enables an authenticated attacker to execute arbitrary OS commands.
Published Jun 9, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Multiple privilege escalation vulnerabilities in RaspAP 1.5 to 2.6.5 could allow an authenticated remote attacker to inject arbitrary commands to /installers/common.sh component that can result in remote command execution with root privileges.
Published Jun 9, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered in JFinal framework v4.9.10 and below. The "set" method of the "Controller" class of jfinal framework is not strictly filtered, which will lead to XSS vulnerabilities in some cases.
Published Jun 24, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
There is an arbitrary password modification vulnerability in a D-LINK DSL-2888A router product. An attacker can use this vulnerability to modify the password of the admin user without authorization.
Published Jun 24, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Cross Site Scripting (XSS) vulnerability in Joplin Desktop App before 1.8.5 allows attackers to execute aribrary code due to improper sanitizing of html.
Published Jun 16, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
An issue was discovered in src/http/httpLib.c in EmbedThis Appweb Community Edition 8.2.1, allows attackers to cause a denial of service via the stream paramter to the parseUri function.
Published Jun 1, 2022 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Django before 2.2.24, 3.x before 3.1.12, and 3.2.x before 3.2.4 has a potential directory traversal via django.contrib.admindocs. Staff members could use the TemplateDetailView view to check the existence of arbitrary files. Additionally, if (and only if) the default admindocs templates have been customized by application developers to also show file contents, then not only the existence but also the file contents would have been exposed. In other words, there is directory traversal outside of the template root directories.
Published Jun 8, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
SerenityOS in test-crypto.cpp contains a stack buffer overflow which could allow attackers to obtain sensitive information.
Published Jun 18, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
In Apache APISIX Dashboard version 2.6, we changed the default value of listen host to 0.0.0.0 in order to facilitate users to configure external network access. In the IP allowed list restriction, a risky function was used for the IP acquisition, which made it possible to bypass the network limit. At the same time, the default account and password are fixed.Ultimately these factors lead to the issue of security risks. This issue is fixed in APISIX Dashboard 2.6.1
Published Jun 8, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
Western Digital EdgeRover before 0.25 has an escalation of privileges vulnerability where a low privileged user could load malicious content into directories with higher privileges, because of how Node.js is used. An attacker can gain admin privileges and carry out malicious activities such as creating a fake library and stealing user credentials.
Published Jun 11, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
EMQ X Broker versions prior to 4.2.8 are vulnerable to a denial of service attack as a result of excessive memory consumption due to the handling of untrusted inputs. These inputs cause the message broker to consume large amounts of memory, resulting in the application being terminated by the operating system.
Published Jun 8, 2021 · Updated Aug 3, 2024
Unknown · CVSS Not scored
SerenityOS contains a buffer overflow in the set_range test in TestBitmap which could allow attackers to obtain sensitive information.
Published Jun 18, 2021 · Updated Aug 3, 2024