Unknown · CVSS Not scored
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.
Published Aug 29, 2022 · Updated Aug 4, 2024
High · CVSS 7.8
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-after-free and execute arbitrary code because JavaScript is mishandled.
Published Aug 29, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
websda.c in GoAhead WebServer 2.1.8 has insufficient nonce entropy because the nonce calculation relies on the hardcoded onceuponatimeinparadise value, which does not follow the secret-data guideline for HTTP Digest Access Authentication in RFC 7616 section 3.3 (or RFC 2617 section 3.2.1). NOTE: 2.1.8 is a version from 2003; however, the affected websda.c code appears in multiple derivative works that may be used in 2021. Recent GoAhead software is unaffected.
Published Aug 8, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
htmly v2.8.1 was discovered to contain an arbitrary file deletion vulnerability via the component \views\backup.html.php.
Published Aug 26, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.
Published Aug 31, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, mishandle hidden and incremental data in signed documents. An attacker can write to an arbitrary file, and display controlled contents, during signature verification.
Published Aug 29, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Zoho ManageEngine Log360 before Build 5224 allows stored XSS via the LOGO_PATH key value in the logon settings.
Published Aug 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Zoho ManageEngine Log360 before Build 5225 allows stored XSS.
Published Aug 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Knot Resolver before 5.3.2 is prone to an assertion failure, triggerable by a remote attacker in an edge case (NSEC3 with too many iterations used for a positive wildcard proof).
Published Aug 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Zoho ManageEngine Log360 before Build 5225 allows remote code execution via BCP file overwrite.
Published Aug 29, 2021 · Updated Aug 4, 2024
High · CVSS 7.5
In OPC Foundation Local Discovery Server (LDS) before 1.04.402.463, remote attackers can cause a denial of service (DoS) by sending carefully crafted messages that lead to Access of a Memory Location After the End of a Buffer.
Published Aug 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Zoho ManageEngine Cloud Security Plus before Build 4117 allows a CSRF attack on the server proxy settings.
Published Aug 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.
Published Aug 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to be regarded as being obsolete, and should only be used for development and testing purposes.
Published Aug 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
opensysusers through 0.6 does not safely use eval on files in sysusers.d that may contain shell metacharacters. For example, it allows command execution via a crafted GECOS field whereas systemd-sysusers (a program with the same specification) does not do that.
Published Aug 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in PrimeKey EJBCA before 7.6.0. When audit logging changes to the alias configurations of various protocols that use an enrollment secret, any modifications to the secret were logged in cleartext in the audit log (that can only be viewed by an administrator). This affects use of any of the following protocols: SCEP, CMP, or EST.
Published Aug 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in PrimeKey EJBCA before 7.6.0. The General Purpose Custom Publisher, which is normally run to invoke a local script upon a publishing operation, was still able to run if the System Configuration setting Enable External Script Access was disabled. With this setting disabled it's not possible to create new such publishers, but existing publishers would continue to run.
Published Aug 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Zoho ManageEngine Log360 before Build 5224 allows a CSRF attack for disabling the logon security settings.
Published Aug 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
EmTec ZOC before 8.02.2 allows \e[201~ pastes, a different vulnerability than CVE-2021-32198.
Published Aug 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in PrimeKey EJBCA before 7.6.0. CMP RA Mode can be configured to use a known client certificate to authenticate enrolling clients. The same RA client certificate is used for revocation requests as well. While enrollment enforces multi tenancy constraints (by verifying that the client certificate has access to the CA and Profiles being enrolled against), this check was not performed when authenticating revocation operations, allowing a known tenant to revoke a certificate belonging to another tenant.
Published Aug 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Zoho ManageEngine Log360 before Build 5219 allows unrestricted file upload with resultant remote code execution.
Published Aug 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Zoho ManageEngine Log360 before Build 5219 allows a CSRF attack on proxy settings.
Published Aug 29, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in PrimeKey EJBCA before 7.6.0. As part of the configuration of the aliases for SCEP, CMP, EST, and Auto-enrollment, the enrollment secret was reflected on a page (that can only be viewed by an administrator). While hidden from direct view, checking the page source would reveal the secret.
Published Aug 25, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in OpenStack Neutron before 16.4.1, 17.x before 17.2.1, and 18.x before 18.1.1. Authenticated attackers can reconfigure dnsmasq via a crafted extra_dhcp_opts value.
Published Aug 31, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The video framework has the memory overwriting vulnerability caused by addition overflow. Successful exploitation of this vulnerability may affect the availability.
Published Aug 9, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The PowerVR GPU driver allows unprivileged apps to allocated pinned memory, unpin it (which makes it available to be freed), and continue using the page in GPU calls. No privileges required and this results in kernel memory corruption.Product: AndroidVersions: Android SoCAndroid ID: A-232440670
Published Aug 24, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In Task.java, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-185810717
Published Aug 9, 2022 · Updated Aug 4, 2024
High · CVSS 8.8
D-Link DVG-3104MS version 1.0.2.0.3, 1.0.2.0.4, and 1.0.2.0.4E contains hard-coded credentials for undocumented user accounts in the '/etc/passwd' file. As weak passwords have been used, the plaintext passwords can be recovered from the hash values. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Published Aug 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Remote Code Execution (RCE) vulnerabilty exists in FlatCore-CMS 2.0.7 via the upload addon plugin, which could let a remote malicious user exeuct arbitrary php code.
Published Aug 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A Buffer Overflow vulnerabilty exists in Miniftpd 1.0 in the do_mkd function in the ftpproto.c file, which could let a remote malicious user cause a Denial of Service.
Published Aug 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
D-Link DVX-2000MS contains hard-coded credentials for undocumented user accounts in the '/etc/passwd' file. As weak passwords have been used, the plaintext passwords can be recovered from the hash values.
Published Aug 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Cross Site Scripting (XSS) vulnerability exiss in FlatCore-CMS 2.0.7 via the upload image function.
Published Aug 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Multiple Cross Site Scripting (XSS) vulnerabilities exists in CXUUCMS 3.1 in the search and c parameters in (1) public/search.php and in the (2) c parameter in admin.php.
Published Aug 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
D-Link DSR-500N version 1.02 contains hard-coded credentials for undocumented user accounts in the '/etc/passwd' file.If an attacker succeeds in recovering the cleartext password of the identified hash value, he will be able to log in via SSH or Telnet and thus gain access to the underlying embedded Linux operating system on the device. Fixed in version 2.12/2. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Published Aug 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in D-Link DIR816_A1_FW101CNB04 750m11ac wireless router, The HTTP request parameter is used in the handler function of /goform/form2userconfig.cgi route, which can construct the user name string to delete the user function. This can lead to command injection through shell metacharacters.
Published Aug 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An XSS issue was discovered in ReCaptcha Solver 5.7. A response from Anti-Captcha.com, RuCaptcha.com, 2captcha.com, DEATHbyCAPTCHA.com, ImageTyperz.com, or BestCaptchaSolver.com in setCaptchaCode() is inserted into the DOM as HTML, resulting in full control over the user's browser by these servers.
Published Aug 22, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
mm-wiki v0.2.1 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily add user accounts and modify user information.
Published Aug 26, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in D-Link DIR-816 DIR-816A2_FWv1.10CNB05_R1B011D88210 The HTTP request parameter is used in the handler function of /goform/form2userconfig.cgi route, which can construct the user name string to delete the user function. This can lead to command injection through shell metacharacters.
Published Aug 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Philips Healthcare Tasy Electronic Medical Record (EMR) 3.06 allows SQL injection via the WAdvancedFilter/getDimensionItemsByCode FilterValue parameter.
Published Aug 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Canon Oce Print Exec Workgroup 1.3.2 allows Host header injection.
Published Aug 22, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Canon Oce Print Exec Workgroup 1.3.2 allows XSS via the lang parameter.
Published Aug 22, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In GNOME evolution-rss through 0.3.96, network-soup.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
Published Aug 22, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
mm-wiki v0.2.1 was discovered to contain a cross-site scripting (XSS) vulnerability via the markdown editor.
Published Aug 26, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In GNOME libzapojit through 0.0.3, zpj-skydrive.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
Published Aug 22, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Philips Healthcare Tasy Electronic Medical Record (EMR) 3.06 allows SQL injection via the CorCad_F2/executaConsultaEspecifico IE_CORPO_ASSIST or CD_USUARIO_CONVENIO parameter.
Published Aug 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Hardcoded .htaccess Credentials for getlogs.cgi exist on Altus Nexto, Nexto Xpress, and Hadron Xtorm devices. This affects Nexto NX3003 1.8.11.0, Nexto NX3004 1.8.11.0, Nexto NX3005 1.8.11.0, Nexto NX3010 1.8.3.0, Nexto NX3020 1.8.3.0, Nexto NX3030 1.8.3.0, Nexto NX5100 1.8.11.0, Nexto NX5101 1.8.11.0, Nexto NX5110 1.1.2.8, Nexto NX5210 1.1.2.8, Nexto Xpress XP300 1.8.11.0, Nexto Xpress XP315 1.8.11.0, Nexto Xpress XP325 1.8.11.0, Nexto Xpress XP340 1.8.11.0, and Hadron Xtorm HX3040 1.7.58.0.
Published Aug 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In GNOME grilo though 0.3.13, grl-net-wc.c does not enable TLS certificate verification on the SoupSessionAsync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
Published Aug 22, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OrbiTeam BSCW Classic before 7.4.3 allows authenticated remote code execution (RCE) during archive extraction via attacker-supplied Python code in the class attribute of a .bscw file. This is fixed in 5.0.12, 5.1.10, 5.2.4, 7.3.3, and 7.4.3.
Published Aug 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An XML external entity (XXE) injection in PyWPS before 4.4.5 allows an attacker to view files on the application server filesystem by assigning a path to the entity. OWSLib 0.24.1 may also be affected.
Published Aug 23, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In GNOME libgda through 6.0.0, gda-web-provider.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.
Published Aug 22, 2021 · Updated Aug 4, 2024