Unknown · CVSS Not scored
An issue was discovered in the server software in Kaseya Unitrends Backup Software before 10.5.5-2. There is authenticated remote code execution.
Published Sep 1, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered on Compro IP70 2.08_7130218, IP570 2.08_7130520, IP60, and TN540 devices. cameralist.cgi and setcamera.cgi disclose credentials.
Published Sep 1, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
webctrl.cgi.elf on Christie Digital DWU850-GS V06.46 devices allows attackers to perform any desired action via a crafted query containing an unspecified Cookie header. Authentication bypass can be achieved by including an administrative cookie that the device does not validate.
Published Sep 1, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the server software in Kaseya Unitrends Backup Software before 10.5.5-2. There is a privilege escalation from read-only user to admin.
Published Sep 1, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SmarterTools SmarterMail 16.x before build 7866 has stored XSS. The application fails to sanitize email content, thus allowing one to inject HTML and/or JavaScript into a page that will then be processed and stored by the application.
Published Sep 8, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OpenEMR 6.0.0 has a pnotes_print.php?noteid= Insecure Direct Object Reference vulnerability via which an attacker can read the messages of all users.
Published Sep 1, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.8), Teamcenter V13.0 (All versions < V13.0.0.7), Teamcenter V13.1 (All versions < V13.1.0.5), Teamcenter V13.2 (All versions < 13.2.0.2). The affected application contains Insecure Direct Object Reference (IDOR) vulnerability that allows an attacker to use user-supplied input to access objects directly.
Published Sep 14, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.8), Teamcenter V13.0 (All versions < V13.0.0.7), Teamcenter V13.1 (All versions < V13.1.0.5), Teamcenter V13.2 (All versions < 13.2.0.2). The "surrogate" functionality on the user profile of the application does not perform sufficient access control that could lead to an account takeover. Any profile on the application can perform this attack and access any other user assigned tasks via the "inbox/surrogate tasks".
Published Sep 14, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered on Compro IP70 2.08_7130218, IP570 2.08_7130520, IP60, and TN540 devices. index_MJpeg.cgi allows video access.
Published Sep 1, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered on Compro IP70 2.08_7130218, IP570 2.08_7130520, IP60, and TN540 devices. mjpegStreamer.cgi allows video screenshot access.
Published Sep 1, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
playSMS before 1.4.5 allows Arbitrary Code Execution by entering PHP code at the #tabs-information-page of core_main_config, and then executing that code via the index.php?app=main&inc=core_welcome URI.
Published Sep 10, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in views/list.py in GNU Mailman Postorius before 1.3.5. An attacker (logged into any account) can send a crafted POST request to unsubscribe any user from a mailing list, also revealing whether that address was subscribed in the first place.
Published Sep 10, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Rittal CMC PU III Web management (version V3.11.00_2) fails to sanitize user input on several parameters of the configuration (User Configuration dialog, Task Configuration dialog and set logging filter dialog). This allows an attacker to backdoor the device with HTML and browser-interpreted content (such as JavaScript or other client-side scripts). The XSS payload will be triggered when the user accesses some specific sections of the application.
Published Sep 9, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The Authentication API in Ping Identity PingFederate before 10.3 mishandles certain aspects of external password management.
Published Sep 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Rittal CMC PU III Web management Version affected: V3.11.00_2. Version fixed: V3.17.10 is affected by a remote code execution vulnerablity. It is possible to introduce shell code to create a reverse shell in the PU-Hostname field of the TCP/IP Configuration dialog. Web application fails to sanitize user input on Network TCP/IP configuration page. This allows the attacker to inject commands as root on the device which will be executed once the data is received.
Published Sep 9, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An integer overflow exists in HAProxy 2.0 through 2.5 in htx_add_header that can be exploited to perform an HTTP request smuggling attack, allowing an attacker to bypass all configured http-request HAProxy ACLs and possibly other ACLs.
Published Sep 8, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OpenSIS Community Edition version 8.0 is affected by a cross-site scripting (XSS) vulnerability in the TakeAttendance.php via the cp_id_miss_attn parameter.
Published Sep 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
D-Link DSL-3782 EU v1.01:EU v1.03 is affected by a buffer overflow which can cause a denial of service. This vulnerability exists in the web interface "/cgi-bin/New_GUI/Igmp.asp". Authenticated remote attackers can trigger this vulnerability by sending a long string in parameter 'igmpsnoopEnable' via an HTTP request.
Published Sep 9, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Gibbon v22.0.00 suffers from a stored XSS vulnerability within the wall messages component.
Published Sep 13, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A SQL injection vulnerability exists in the Take Attendance functionality of OS4Ed's OpenSIS 8.0. allows an attacker to inject their own SQL query. The cp_id_miss_attn parameter from TakeAttendance.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request as a user with access to "Take Attendance" functionality to trigger this vulnerability.
Published Sep 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Sonatype Nexus Repository 3.x through 3.33.1-01 is vulnerable to an HTTP header injection. By sending a crafted HTTP request, a remote attacker may disclose sensitive information or request external resources from a vulnerable instance.
Published Sep 7, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A Cross Site Scriptiong (XSS) vulnerability exists in the admin panel in Webuzo < 2.9.0 via an HTTP request to a non-existent page, which is activated by administrators viewing the "Error Log" page. An attacker can leverage this to achieve Unauthenticated Remote Code Execution via the "Cron Jobs" functionality of Webuzo.
Published Sep 15, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. The Calendar is vulnerable to CSRF. ccm_token is not verified on the ccm/calendar/dialogs/event/add/save endpoint.
Published Sep 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. There is unauthenticated stored XSS in blog comments via the website field.
Published Sep 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to read beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.
Published Sep 15, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A maliciously crafted DWG file in Autodesk Navisworks 2019, 2020, 2021, 2022 can be forced to write beyond allocated boundaries when parsing the DWG files. This vulnerability can be exploited to execute arbitrary code.
Published Sep 15, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. There is an SVG sanitizer bypass.
Published Sep 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. Stored XSS can occur in Conversations when the Active Conversation Editor is set to Rich Text.
Published Sep 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The access controls on the Mobility read-write API improperly validate user access permissions; this API is disabled by default. If the API is manually enabled, attackers with both network access to the API and valid credentials can read and write data to it; regardless of access control group membership settings. This vulnerability is fixed in Mobility v12.14.
Published Sep 16, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. Path Traversal can lead to Arbitrary File Reading and SSRF.
Published Sep 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A SSRF issue was discovered in Concrete CMS through 8.5.5. Users can access forbidden files on their local network. A user with permissions to upload files from external sites can upload a URL that redirects to an internal resource of any file type. The redirect is followed and loads the contents of the file from the redirected-to server. Files of disallowed types can be uploaded.
Published Sep 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. There is XSS via Markdown Comments.
Published Sep 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A user may be tricked into opening a malicious FBX file which may exploit an Untrusted Pointer Dereference vulnerability in FBX’s Review version 1.5.0 and prior causing it to run arbitrary code on the system.
Published Sep 15, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The access controls on the Mobility read-only API improperly validate user access permissions. Attackers with both network access to the API and valid credentials can read data from it; regardless of access control group membership settings. This vulnerability is fixed in Mobility v11.76 and Mobility v12.14.
Published Sep 16, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A Remote Code Execution (RCE) vulnerability was discovered in the Any23 YAMLExtractor.java file and is known to affect Any23 versions < 2.5. RCE vulnerabilities allow a malicious actor to execute any code of their choice on a remote machine over LAN, WAN, or internet. RCE belongs to the broader class of arbitrary code execution (ACE) vulnerabilities.
Published Sep 11, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Configuration defects in the secure OS module. Successful exploitation of this vulnerability will affect confidentiality.
Published Sep 16, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. Authenticated path traversal leads to to remote code execution via uploaded PHP code, related to the bFilename parameter.
Published Sep 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. Path Traversal leading to RCE via external form by adding a regular expression.
Published Sep 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. Arbitrary File deletion can occur via PHAR deserialization in is_dir (PHP Object Injection associated with the __wakeup magic method).
Published Sep 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Concrete CMS through 8.5.5. Fetching the update json scheme over HTTP leads to remote code execution.
Published Sep 24, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Out-of-bounds heap read vulnerability in the HW_KEYMASTER module. Successful exploitation of this vulnerability may cause out-of-bounds access.
Published Sep 16, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Implementation of the WLAN module interfaces has the information disclosure vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
Published Sep 16, 2022 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The HW_KEYMASTER module lacks the validity check of the key format. Successful exploitation of this vulnerability may result in out-of-bounds memory access.
Published Sep 16, 2022 · Updated Aug 4, 2024
Medium · CVSS 5.5
Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published Sep 6, 2023 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function code_dump2() located in code.c. It allows an attacker to cause Denial of Service.
Published Sep 20, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function pool_read() located in pool.c. It allows an attacker to cause code Execution.
Published Sep 20, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function parse_metadata() located in abc.c. It allows an attacker to cause Denial of Service.
Published Sep 20, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_DumpActions() located in swfaction.c. It allows an attacker to cause code Execution.
Published Sep 20, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function string_hash() located in q.c. It allows an attacker to cause code Execution.
Published Sep 20, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function Gfx::opSetFillColorN() located in Gfx.cc. It allows an attacker to cause code Execution.
Published Sep 20, 2021 · Updated Aug 4, 2024