Unknown · CVSS Not scored
Dnsmasq 2.86 has a heap-based buffer overflow in resize_packet (called from FuzzResizePacket and fuzz_rfc1035.c) because of the lack of a proper bounds check upon pseudo header re-insertion. NOTE: the vendor's position is that CVE-2021-45951 through CVE-2021-45957 "do not represent real vulnerabilities, to the best of our knowledge." However, a contributor states that a security patch (mentioned in 016162.html) is needed
Published Dec 31, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in gif2apng 1.9. There is a heap-based buffer overflow within the main function. It allows an attacker to write data outside of the allocated buffer. The attacker has control over a part of the address that data is written to, control over the written data, and (to some extent) control over the amount of data that is written.
Published Dec 28, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in gif2apng 1.9. There is a stack-based buffer overflow involving a while loop. An attacker has little influence over the data written to the stack, making it unlikely that the flow of control can be subverted.
Published Dec 28, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
libjxl b02d6b9, as used in libvips 8.11 through 8.11.2 and other products, has an out-of-bounds write in jxl::ModularFrameDecoder::DecodeGroup (called from jxl::FrameDecoder::ProcessACGroup and jxl::ThreadPool::RunCallState<jxl::FrameDecoder::ProcessSections).
Published Dec 31, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OpenWrt 21.02.1 allows XSS via the Traffic Rules Name screen.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Qt SVG in Qt 5.0.0 through 5.15.2 and 6.0.0 through 6.2.1 has an out-of-bounds write in QtPrivate::QCommonArrayOps<QPainterPath::Element>::growAppend (called from QPainterPath::addPath and QPathClipper::intersect).
Published Dec 31, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OpenWrt 21.02.1 allows XSS via the Port Forwards Add Name screen.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::CPCIDSKFile::ReadFromFile (called from PCIDSK::CPCIDSKSegment::ReadFromFile and PCIDSK::CPCIDSKBinarySegment::CPCIDSKBinarySegment).
Published Dec 31, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in gif2apng 1.9. There is a heap-based buffer overflow vulnerability in the DecodeLZW function. It allows an attacker to write a large amount of arbitrary data outside the boundaries of a buffer.
Published Dec 28, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
wolfSSL wolfMQTT 1.9 has a heap-based buffer overflow in MqttClient_DecodePacket (called from MqttClient_WaitType and MqttClient_Unsubscribe).
Published Dec 31, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
basic/BasicAuthProvider.java in AuthGuard before 0.9.0 allows authentication via an inactive identifier.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A persistent cross-site scripting (XSS) issue in the web interface of SuiteCRM before 7.10.35, and 7.11.x and 7.12.x before 7.12.2, allows a remote attacker to introduce arbitrary JavaScript via attachments upload, a different vulnerability than CVE-2021-39267 and CVE-2021-39268.
Published Dec 28, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
glFusion CMS v1.7.9 is affected by a reflected Cross Site Scripting (XSS) vulnerability. The value of the title request parameter is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. This input was echoed unmodified in the application's response.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Nokia FastMile 3TG00118ABAD52 devices allow privilege escalation by an authenticated user via is_ctc_admin=1 to login_web_app.cgi and use of Import Config File.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Nettmp NNT 5.1 is affected by a SQL injection vulnerability. An attacker can bypass authentication and access the panel with an administrative account.
Published Dec 28, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SLICAN WebCTI 1.01 2015 is affected by a Cross Site Scripting (XSS) vulnerability. The attacker can steal the user's session by injecting malicious JavaScript codes which leads to Session Hijacking and cause user's credentials theft.
Published Dec 28, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In Brave Desktop 1.17 through 1.33 before 1.33.106, when CNAME-based adblocking and a proxying extension with a SOCKS fallback are enabled, additional DNS requests are issued outside of the proxying extension using the system's DNS settings, resulting in information disclosure. NOTE: this issue exists because of an incomplete fix for CVE-2021-21323 and CVE-2021-22916.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Quectel UC20 UMTS/HSPA+ UC20 6.3.14 is affected by a Cross Site Scripting (XSS) vulnerability.
Published Dec 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Netgen Tags Bundle 3.4.x before 3.4.11 and 4.0.x before 4.0.15 allows XSS in the Tags Admin interface.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An arbitrary file read vulnerability was found in Metersphere v1.15.4, where authenticated users can read any file on the server via the file download function.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An arbitrary file upload vulnerability was found in Metersphere v1.15.4. Unauthenticated users can upload any file to arbitrary directory, where attackers can write a cron job to execute commands.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SAFARI Montage 8.7.32 is affected by a CRLF injection vulnerability which can lead to HTTP response splitting.
Published Dec 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Time-based SQL Injection vulnerabilities were found in Metersphere v1.15.4 via the "orders" parameter.
Published Dec 27, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the tremor-script crate before 0.11.6 for Rust. A patch operation may result in a use-after-free.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_collation has a use-after-free.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the nix crate 0.16.0 and later before 0.20.2, 0.21.x before 0.21.2, and 0.22.x before 0.22.2 for Rust. unistd::getgrouplist has an out-of-bounds write if a user is in more than 16 /etc/groups groups.
Published Dec 26, 2021 · Updated Aug 4, 2024
Medium · CVSS 4.2
Certain NETGEAR devices are affected by Stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before 1.0.0.48, R6120 before 1.0.0.76, R6220 before 1.1.0.110, R6230 before 1.1.0.110, R6260 before 1.1.0.78, R6800 before 1.2.0.76, R6900v2 before 1.2.0.76, R6700v2 before 1.2.0.76, R6850 before 1.1.0.78, R7200 before 1.2.0.76, R7350 before 1.2.0.76, R7400 before 1.2.0.76, R7450 before 1.2.0.76, AC2100 before 1.2.0.76, AC2400 before 1.2.0.76, AC2600 before 1.2.0.76, and RAX40 before 1.0.3.62.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the raw-cpuid crate before 9.1.1 for Rust. If the serialize feature is used (which is not the the default), a Deserialize operation may lack sufficient validation, leading to memory corruption or a panic.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the ckb crate before 0.40.0 for Rust. Remote attackers may be able to conduct a 51% attack against the Nervos CKB blockchain by triggering an inability to allocate memory for the misbehavior HashMap.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. commit_hook has a use-after-free.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_aggregate_function has a use-after-free.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_scalar_function has a use-after-free.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the nanorand crate before 0.6.1 for Rust. There can be multiple mutable references to the same object because the TlsWyRand Deref implementation dereferences a raw pointer.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_binary may read from uninitialized memory locations.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Netgear Nighthawk R6700 version 1.0.4.120 makes use of a hardcoded credential. It does not appear that normal users are intended to be able to manipulate configuration backups due to the fact that they are encrypted/obfuscated. By extracting the configuration using readily available public tools, a user can reconfigure settings not intended to be manipulated, repackage the configuration, and restore a backup causing these settings to be changed.
Published Dec 30, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the rust-embed crate before 6.3.0 for Rust. A ../ directory traversal can sometimes occur in debug mode.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_extension_others may read from uninitialized memory locations.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the zeroize_derive crate before 1.1.1 for Rust. Dropped memory is not zeroed out for an enum.
Published Dec 26, 2021 · Updated Aug 4, 2024
High · CVSS 8.4
Certain NETGEAR devices are affected by privilege escalation. This affects R6900P before 1.3.3.140, R7000 before 1.0.11.126, R7000P before 1.3.3.140, and RS400 before 1.5.1.80.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. rollback_hook has a use-after-free.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. update_hook has a use-after-free.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
NETGEAR RAX200 devices before 1.0.5.132 are affected by insecure code.
Published Dec 26, 2021 · Updated Aug 4, 2024
Critical · CVSS 9.6
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D7000v2 before 1.0.0.74, LAX20 before 1.1.6.28, MK62 before 1.0.6.116, MR60 before 1.0.6.116, MS60 before 1.0.6.116, RAX15 before 1.0.3.96, RAX20 before 1.0.3.96, RAX200 before 1.0.4.120, RAX45 before 1.0.3.96, RAX50 before 1.0.3.96, RAX43 before 1.0.3.96, RAX40v2 before 1.0.3.96, RAX35v2 before 1.0.3.96, RAX75 before 1.0.4.120, RAX80 before 1.0.4.120, RBK752 before 3.2.17.12, RBR750 before 3.2.17.12, RBS750 before 3.2.17.12, RBK852 before 3.2.17.12, RBR850 before 3.2.17.12, RBS850 before 3.2.17.12, and XR1000 before 1.0.0.58.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the simple_asn1 crate 0.6.0 before 0.6.1 for Rust. There is a panic if UTCTime data, supplied by a remote attacker, has a second character greater than 0x7f.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the ckb crate before 0.40.0 for Rust. Attackers can cause a denial of service (Nervos CKB blockchain node crash) via a dead call that is used as a DepGroup.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the ckb crate before 0.40.0 for Rust. A get_block_template RPC call may fail in situations where it is supposed to select a Nervos CKB blockchain transaction with a higher fee rate than another transaction.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the mopa crate through 2021-06-01 for Rust. It incorrectly relies on Trait memory layout, possibly leading to future occurrences of arbitrary code execution or ASLR bypass.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the tokio crate before 1.8.4, and 1.9.x through 1.13.x before 1.13.1, for Rust. In certain circumstances involving a closed oneshot channel, there is a data race and memory corruption.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the lru crate before 0.7.1 for Rust. The iterators have a use-after-free, as demonstrated by an access after a pop operation.
Published Dec 26, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the gfx-auxil crate through 2021-01-07 for Rust. gfx_auxil::read_spirv may read from uninitialized memory locations.
Published Dec 26, 2021 · Updated Aug 4, 2024