LiveActive security incident?Get immediate response
CVE archive

August 2021

Browse CVE records published in August 2021, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 2047 matching CVEs · Page 22 of 41.

Unknown · CVSS Not scored

CVE-2021-36370: An issue was discovered in Midnight Commander through 4.8.26.

An issue was discovered in Midnight Commander through 4.8.26. When establishing an SFTP connection, the fingerprint of the server is neither checked nor displayed. As a result, a user connects to the server without the ability to verify its authenticity.

Published Aug 30, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-36356: KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writ...

KRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts arbitrary executable pathnames (even though browseSystemFiles.php is no longer reachable via the GUI). NOTE: this issue exists because of an incomplete fix for CVE-2019-17124.

Published Aug 31, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-36157: An issue was discovered in Grafana Cortex through 1.9.0.

An issue was discovered in Grafana Cortex through 1.9.0. The header value X-Scope-OrgID is used to construct file paths for rules files, and if crafted to conduct directory traversal such as ae ../../sensitive/path/in/deployment pathname, then Cortex will attempt to parse a rules file at that location and include some of the contents in the error message. (Other Cortex API requests can also be sent a malicious OrgID header, e.g., tricking the ingester into writing metrics to a different location, but the effect is nuisance rather than information disclosure.)

Published Aug 3, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-36156: An issue was discovered in Grafana Loki through 2.2.1.

An issue was discovered in Grafana Loki through 2.2.1. The header value X-Scope-OrgID is used to construct file paths for rules files, and if crafted to conduct directory traversal such as ae ../../sensitive/path/in/deployment pathname, then Loki will attempt to parse a rules file at that location and include some of the contents in the error message.

Published Aug 3, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-36159: libfetch before 2021-07-26, as used in apk-tools, xbps, and other products, mishandles numeric strings for...

libfetch before 2021-07-26, as used in apk-tools, xbps, and other products, mishandles numeric strings for the FTP and HTTP protocols. The FTP passive mode implementation allows an out-of-bounds read because strtol is used to parse the relevant numbers into address bytes. It does not check if the line ends prematurely. If it does, the for-loop condition checks for the '\0' terminator one byte too late.

Published Aug 3, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35940: Regression of CVE-2017-12613

An out-of-bounds array read in the apr_time_exp*() functions was fixed in the Apache Portable Runtime 1.6.3 release (CVE-2017-12613). The fix for this issue was not carried forward to the APR 1.7.x branch, and hence version 1.7.0 regressed compared to 1.6.3 and is vulnerable to the same issue.

Published Aug 23, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35938: A symbolic link issue was found in rpm.

A symbolic link issue was found in rpm. It occurs when rpm sets the desired permissions and credentials after installing a file. A local unprivileged user could use this flaw to exchange the original file with a symbolic link to a security-critical file and escalate their privileges on the system. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Published Aug 25, 2022 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35936: No Authentication on Logging Server

If remote logging is not used, the worker (in the case of CeleryExecutor) or the scheduler (in the case of LocalExecutor) runs a Flask logging server and is listening on a specific port and also binds on 0.0.0.0 by default. This logging server had no authentication and allows reading log files of DAG jobs. This issue affects Apache Airflow < 2.1.2.

Published Aug 16, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35939: It was found that the fix for CVE-2017-7500 and CVE-2017-7501 was incomplete: the check was only implemente...

It was found that the fix for CVE-2017-7500 and CVE-2017-7501 was incomplete: the check was only implemented for the parent directory of the file to be created. A local unprivileged user who owns another ancestor directory could potentially use this flaw to gain root privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Published Aug 26, 2022 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35937: A race condition vulnerability was found in rpm.

A race condition vulnerability was found in rpm. A local unprivileged user could use this flaw to bypass the checks that were introduced in response to CVE-2017-7500 and CVE-2017-7501, potentially gaining root privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Published Aug 25, 2022 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35465: Certain Arm products before 2021-08-23 do not properly consider the effect of exceptions on a VLLDM instruc...

Certain Arm products before 2021-08-23 do not properly consider the effect of exceptions on a VLLDM instruction. A Non-secure handler may have read or write access to part of a Secure context. This affects Arm Cortex-M33 r0p0 through r1p0, Arm Cortex-M35P r0, Arm Cortex-M55 r0p0 through r1p0, and Arm China STAR-MC1 (in the STAR SE configuration).

Published Aug 23, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35397: A path traversal vulnerability in the static router for Drogon from 1.0.0-beta14 to 1.6.0 could allow an un...

A path traversal vulnerability in the static router for Drogon from 1.0.0-beta14 to 1.6.0 could allow an unauthenticated, remote attacker to arbitrarily read files. The vulnerability is due to lack of proper input validation for requested path. An attacker could exploit this vulnerability by sending crafted HTTP request with specific path to read. Successful exploitation could allow the attacker to read files that should be restricted.

Published Aug 4, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35392: Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both...

Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols. The binary is usually named wscd or mini_upnpd and is the successor to miniigd. The server is vulnerable to a heap buffer overflow that is present due to unsafe crafting of SSDP NOTIFY messages from received M-SEARCH messages ST header.

Published Aug 16, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35312: A vulnerability was found in CIR 2000 / Gestionale Amica Prodigy v1.7.

A vulnerability was found in CIR 2000 / Gestionale Amica Prodigy v1.7. The Amica Prodigy's executable "RemoteBackup.Service.exe" has incorrect permissions, allowing a local unprivileged user to replace it with a malicious file that will be executed with "LocalSystem" privileges.

Published Aug 6, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35393: Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both...

Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols. The binary is usually named wscd or mini_upnpd and is the successor to miniigd. The server is vulnerable to a stack buffer overflow vulnerability that is present due to unsafe parsing of the UPnP SUBSCRIBE/UNSUBSCRIBE Callback header. Successful exploitation of this vulnerability allows remote unauthenticated attackers to gain arbitrary code execution on the affected device.

Published Aug 16, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35307: An issue was discovered in Bento4 through v1.6.0-636.

An issue was discovered in Bento4 through v1.6.0-636. A NULL pointer dereference exists in the AP4_DescriptorFinder::Test component located in /Core/Ap4Descriptor.h. It allows an attacker to cause a denial of service (DOS).

Published Aug 5, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2021-35306: An issue was discovered in Bento4 through v1.6.0-636.

An issue was discovered in Bento4 through v1.6.0-636. A NULL pointer dereference exists in the function AP4_StszAtom::WriteFields located in Ap4StszAtom.cpp. It allows an attacker to cause a denial of service (DOS).

Published Aug 5, 2021 · Updated Aug 4, 2024

Medium · CVSS 6.5

CVE-2021-35240: Stored XSS via Help Server settings

A security researcher stored XSS via a Help Server setting. This affects customers using Internet Explorer, because they do not support 'rel=noopener'.

Published Aug 31, 2021 · Updated Aug 4, 2024

High · CVSS 8.9

CVE-2021-35212: Blind SQL injection Vulnerability

An SQL injection Privilege Escalation Vulnerability was discovered in the Orion Platform reported by the ZDI Team. A blind Boolean SQL injection which could lead to full read/write over the Orion database content including the Orion certificate for any authenticated user.

Published Aug 31, 2021 · Updated Aug 4, 2024

High · CVSS 7.8

CVE-2021-34850: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF...

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-14529.

Published Aug 4, 2021 · Updated Aug 4, 2024

High · CVSS 7.8

CVE-2021-34846: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF...

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-14120.

Published Aug 4, 2021 · Updated Aug 4, 2024

High · CVSS 7.8

CVE-2021-34844: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF...

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-14033.

Published Aug 4, 2021 · Updated Aug 4, 2024

High · CVSS 7.8

CVE-2021-34845: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF...

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-14034.

Published Aug 4, 2021 · Updated Aug 4, 2024