Unknown · CVSS Not scored
A vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). An XML external entity injection vulnerability in the underlying XML parser could cause the affected application to disclose arbitrary files to remote attackers by loading a specially crafted xml file.
Published Aug 10, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A buffer overflow issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. In the tcpTxThread function, the received data is copied to a stack buffer. An off-by-3 condition can occur, resulting in a stack-based buffer overflow.
Published Aug 2, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Redmine 4.2.0 and 4.2.1 allow existing user sessions to continue upon enabling two-factor authentication for the user's account, but the intended behavior is for those sessions to be terminated.
Published Aug 5, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A buffer overflow issue leading to denial of service was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. When HMI3 starts up, it binds a local service to a TCP port on all interfaces of the device, and takes extensive time for the GUI to connect to the TCP socket, allowing the connection to be hijacked by an external attacker.
Published Aug 2, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
There is a command injection vulnerability in the HG8045Q product. When the command-line interface is enabled, which is disabled by default, attackers with administrator privilege could execute part of commands.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In the server in SerNet verinice before 1.22.2, insecure Java deserialization allows remote authenticated attackers to execute arbitrary code.
Published Aug 31, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
AIMANAGER before B115 on MONITORAPP Application Insight Web Application Firewall (AIWAF) devices with Manager 2.1.0 has Improper Authentication. An attacker can gain administrative access by modifying the response to an authentication check request.
Published Aug 12, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
AIMANAGER before B115 on MONITORAPP Application Insight Web Application Firewall (AIWAF) devices with Manager 2.1.0 allows OS Command Injection because of missing input validation on one of the parameters of an HTTP request.
Published Aug 12, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The femanager extension before 5.5.1 and 6.x before 6.3.1 for TYPO3 allows XSS via a crafted SVG document.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In CODESYS EtherNetIP before 4.1.0.0, specific EtherNet/IP requests may cause a null pointer dereference in the downloaded vulnerable EtherNet/IP stack that is executed by the CODESYS Control runtime system.
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows XSS.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The yoast_seo (aka Yoast SEO) extension before 7.2.3 for TYPO3 allows XSS.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A permission issue in the Cohesity Linux agent may allow privilege escalation in version 6.5.1b to 6.5.1d-hotfix10, 6.6.0a to 6.6.0b-hotfix1. An underprivileged linux user, if certain environment criteria are met, can gain additional privileges.
Published Aug 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows Sensitive Data Exposure of API credentials and private keys.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In ProLink PRC2402M V1.0.18 and older, the set_sys_init function in the login.cgi binary allows an attacker to reset the password to the administrative interface of the router.
Published Aug 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The "blog title" field in the "Settings" menu "config" page of "dashboard" in htmly 2.8.1 has a storage cross site scripting (XSS) vulnerability. It allows remote attackers to send an authenticated post HTTP request to admin/config and inject arbitrary web script or HTML through a special website name.
Published Aug 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in HCC Embedded InterNiche NicheStack through 4.3. The tfshnd():tftpsrv.c TFTP packet processing function doesn't ensure that a filename is adequately '\0' terminated; therefore, a subsequent call to strlen for the filename might read out of bounds of the protocol packet buffer (if no '\0' byte exists within a reasonable range).
Published Aug 19, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows XSS.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In ProLink PRC2402M V1.0.18 and older, the set_ledonoff function in the adm.cgi binary, accessible with a page parameter value of ledonoff contains a trivial command injection where the value of the led_cmd parameter is passed directly to do_system.
Published Aug 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A Denial-of-Service (DoS) vulnerability was discovered in Team Server in HelpSystems Cobalt Strike 4.2 and 4.3. It allows remote attackers to crash the C2 server thread and block beacons' communication with it.
Published Aug 9, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 has incorrect Access Control for confirming various applications.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In CODESYS Gateway V3 before 3.5.17.10, there is a NULL Pointer Dereference. Crafted communication requests may cause a Null pointer dereference in the affected CODESYS products and may result in a denial-of-service condition.
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The routes (aka Extbase Yaml Routes) extension before 2.1.1 for TYPO3, when CsrfTokenViewHelper is used, allows Sensitive Information Disclosure because a session identifier is unsafely present in HTML output.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows Information Disclosure of application registration data.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The dated_news (aka Dated News) extension through 5.1.1 for TYPO3 allows SQL Injection.
Published Aug 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In htmly version 2.8.1, is vulnerable to an Arbitrary File Deletion on the local host when delete backup files. The vulnerability may allow a remote attacker to delete arbitrary know files on the host.
Published Aug 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In ProLink PRC2402M V1.0.18 and older, the set_TR069 function in the adm.cgi binary, accessible with a page parameter value of TR069 contains a trivial command injection where the value of the TR069_local_port parameter is passed directly to system.
Published Aug 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In ProLink PRC2402M V1.0.18 and older, the set_sys_cmd function in the adm.cgi binary, accessible with a page parameter value of sysCMD contains a trivial command injection where the value of the command parameter is passed directly to system.
Published Aug 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
CMSuno 1.7 is vulnerable to an authenticated stored cross site scripting in modifying the filename parameter (tgo) while updating the theme.
Published Aug 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
libjxl v0.3.7 is affected by a Divide By Zero in issue in lib/extras/codec_apng.cc jxl::DecodeImageAPNG(). When encoding a malicous APNG file using cjxl, an attacker can trigger a denial of service.
Published Aug 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A SQL Injection issue in the list controller of the Prestahome Blog (aka ph_simpleblog) module before 1.7.8 for Prestashop allows a remote attacker to extract data from the database via the sb_category parameter.
Published Aug 20, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Sourcecodester Online Covid Vaccination Scheduler System 1.0 is affected vulnerable to Arbitrary File Upload. The admin panel has an upload function of profile photo accessible at http://localhost/scheduler/admin/?page=user. An attacker could upload a malicious file such as shell.php with the Content-Type: image/png. Then, the attacker have to visit the uploaded profile photo to access the shell.
Published Aug 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The "content" field in the "regular post" page of the "add content" menu under "dashboard" in htmly 2.8.1 has a storage cross site scripting (XSS) vulnerability. It allows remote attackers to send authenticated post-http requests to add / content and inject arbitrary web scripts or HTML through special content.
Published Aug 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In CODESYS V3 web server before 3.5.17.10, files or directories are accessible to External Parties.
Published Aug 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in GPAC 1.0.1. There is a heap-based buffer overflow in the function gp_rtp_builder_do_tx3g function in ietf/rtp_pck_3gpp.c, as demonstrated by MP4Box. This can cause a denial of service (DOS).
Published Aug 5, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Arbitrary File Upload in Sourcecodester Phone Shop Sales Management System 1.0 enables RCE.
Published Aug 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
libjxl v0.5.0 is affected by a Assertion failed issue in lib/jxl/image.cc jxl::PlaneBase::PlaneBase(). When encoding a malicous GIF file using cjxl, an attacker can trigger a denial of service.
Published Aug 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
GetSimpleCMS 3.3.16 contains a cross-site Scripting (XSS) vulnerability, where Function TSL does not filter check settings.php Website URL: "siteURL" parameter.
Published Aug 10, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
ngiflib 0.4 has a heap overflow in GetByte() at ngiflib.c:70 in NGIFLIB_NO_FILE mode, GetByte() reads memory buffer without checking the boundary.
Published Aug 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SQL Injection vulnerability in Naviwebs Navigate CMS 2.9 via the quicksearch parameter in \lib\packages\comments\comments.php.
Published Aug 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Cross-Site Request Forgery (CSRF) vulnerability in the /op/op.LockDocument.php in SeedDMS v5.1.x<5.1.23 and v6.0.x <6.0.16 allows a remote attacker to lock any document without victim's knowledge, by enticing an authenticated user to visit an attacker's web page.
Published Aug 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
ngiflib 0.4 has a heap overflow in GetByteStr() at ngiflib.c:108 in NGIFLIB_NO_FILE mode, GetByteStr() copy memory buffer without checking the boundary.
Published Aug 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Cross Site Scripting (XSS) vulnerability in Naviwebs Navigate Cms 2.9 via the navigate-quickse parameter to 1) backups\backups.php, 2) blocks\blocks.php, 3) brands\brands.php, 4) comments\comments.php, 5) coupons\coupons.php, 6) feeds\feeds.php, 7) functions\functions.php, 8) items\items.php, 9) menus\menus.php, 10) orders\orders.php, 11) payment_methods\payment_methods.php, 12) products\products.php, 13) profiles\profiles.php, 14) shipping_methods\shipping_methods.php, 15) templates\templates.php, 16) users\users.php, 17) webdictionary\webdictionary.php, 18) websites\websites.php, and 19) webusers\webusers.php because the initial_url function is built in these files.
Published Aug 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Cross-Site Request Forgery (CSRF) vulnerability in the /op/op.UnlockDocument.php in SeedDMS v5.1.x <5.1.23 and v6.0.x <6.0.16 allows a remote attacker to unlock any document without victim's knowledge, by enticing an authenticated user to visit an attacker's web page.
Published Aug 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A SQL Injection vulnerability in Cerner Mobile Care 5.0.0 allows remote unauthenticated attackers to execute arbitrary SQL commands via a Fullwidth Apostrophe (aka U+FF07) in the default.aspx User ID field. Arbitrary system commands can be executed through the use of xp_cmdshell.
Published Aug 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OrbiTeam BSCW Classic before 7.4.3 allows exportpdf authenticated remote code execution (RCE) via XML tag injection because reportlab\platypus\paraparser.py (reached via bscw.cgi op=_editfolder.EditFolder) calls eval on attacker-supplied Python code. This is fixed in 5.0.12, 5.1.10, 5.2.4, 7.3.3, and 7.4.3.
Published Aug 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SQL Injection Vulnerability in Care2x Open Source Hospital Information Management 2.7 Alpha via the (1) pday, (2) pmonth, and (3) pyear parameters in GET requests sent to /modules/nursing/nursing-station.php.
Published Aug 6, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
DevExpress.XtraReports.UI through v21.1 allows attackers to execute arbitrary code via insecure deserialization.
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Midnight Commander through 4.8.26. When establishing an SFTP connection, the fingerprint of the server is neither checked nor displayed. As a result, a user connects to the server without the ability to verify its authenticity.
Published Aug 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts arbitrary executable pathnames (even though browseSystemFiles.php is no longer reachable via the GUI). NOTE: this issue exists because of an incomplete fix for CVE-2019-17124.
Published Aug 31, 2021 · Updated Aug 4, 2024