9052 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-21964
Sealevel General
8.6
HIGH
EPSS
0.2%
2021 CWE-284 1 PoC

A denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.

CVE-2021-21777
EIP Stack Group General
8.6
HIGH
EPSS
0.3%
2021 1 PoC

An information disclosure vulnerability exists in the Ethernet/IP UDP handler functionality of EIP Stack Group OpENer 2.3 and development commit 8c73bf3. A specially crafted network request can lead to an out-of-bounds read.

CVE-2021-23442
@cookiex/deep General
8.6
HIGH
EPSS
0.5%
2021 1 PoC

This affects all versions of package @cookiex/deep. The global proto object can be polluted using the __proto__ object.

CVE-2021-21965
Sealevel General
8.6
HIGH
EPSS
0.4%
2021 CWE-284 1 PoC

A denial of service vulnerability exists in the SeaMax remote configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.

CVE-2021-3869
stanfordnlp/corenlp General
8.6
HIGH
EPSS
0.3%
2021 CWE-611 1 PoC

corenlp is vulnerable to Improper Restriction of XML External Entity Reference

CVE-2021-25374
Samsung Members General
8.6
HIGH
EPSS
7.6%
2021 CWE-285 5 PoCs

An improper authorization vulnerability in Samsung Members "samsungrewards" scheme for deeplink in versions 2.4.83.9 in Android O(8.1) and below, and 3.9.00.9 in Android P(9.0) and above allows remote attackers to access a user data related with Samsung Account.

CVE-2021-20987
EtherNet/IP Core V2 General
8.6
HIGH
EPSS
0.4%
2021 CWE-787 1 PoC

A denial of service and memory corruption vulnerability was found in Hilscher EtherNet/IP Core V2 prior to V2.13.0.21that may lead to code injection through network or make devices crash without recovery.

CVE-2021-3517
libxml2 General
8.6
HIGH
EPSS
0.1%
2021 CWE-787 4 PoCs

There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able to supply a crafted file to be processed by an application linked with the affected functionality of libxml2 could trigger an out-of-bounds read. The most likely impact of this flaw is to application availability, with some potential impact to confidentiality and integrity if an attacker is able to use memory information to further exploit the application.

CVE-2021-47770
OpenPLC General
8.6
HIGH
EPSS
0.3%
2021 CWE-94 1 PoC

OpenPLC v3 contains an authenticated remote code execution vulnerability that allows attackers with valid credentials to inject malicious code through the hardware configuration interface. Attackers can upload a custom hardware layer with embedded reverse shell code that establishes a network connection to a specified IP and port, enabling remote command execution.

CVE-2021-23427
elFinder.NetCore General
8.6
HIGH
EPSS
0.6%
2021 1 PoC

This affects all versions of package elFinder.NetCore. The ExtractAsync function within the FileSystem is vulnerable to arbitrary extraction due to insufficient validation.

CVE-2021-47745
200 General
8.6
HIGH
EPSS
0.3%
2021 CWE-78 2 PoCs

Cypress Solutions CTM-200 2.7.1 contains an authenticated command injection vulnerability in the firmware upgrade script that allows remote attackers to execute shell commands. Attackers can exploit the 'fw_url' parameter in the ctm-config-upgrade.sh script to inject and execute arbitrary commands with root privileges.

CVE-2021-23452
x-assign General
8.6
HIGH
EPSS
0.6%
2021 1 PoC

This affects all versions of package x-assign. The global proto object can be polluted using the __proto__ object.

CVE-2021-47903
LiteSpeed Web Server Enterprise General
8.6
HIGH
EPSS
0.3%
2021 CWE-78 1 PoC

LiteSpeed Web Server Enterprise 5.4.11 contains an authenticated command injection vulnerability in the external app configuration interface. Authenticated administrators can inject shell commands through the 'Command' parameter in the server configuration, allowing remote code execution via path traversal and bash command injection.

CVE-2021-23428
elFinder.NetCore General
8.6
HIGH
EPSS
0.8%
2021 1 PoC

This affects all versions of package elFinder.NetCore. The Path.Combine(...) method is used to create an absolute file path. Due to missing sanitation of the user input and a missing check of the generated path its possible to escape the Files directory via path traversal

CVE-2021-43799
zulip General
8.6
HIGH
EPSS
5.3%
2021 CWE-338 1 PoC

Zulip is an open-source team collaboration tool. Zulip Server installs RabbitMQ for internal message passing. In versions of Zulip Server prior to 4.9, the initial installation (until first reboot, or restart of RabbitMQ) does not successfully limit the default ports which RabbitMQ opens; this includes port 25672, the RabbitMQ distribution port, which is used as a management port. RabbitMQ's default "cookie" which protects this port is generated using a weak PRNG, which limits the entropy of the password to at most 36 bits; in practicality, the seed for the randomizer is biased, resulting in a

CVE-2021-3770
vim/vim General
8.6
HIGH
EPSS
0.3%
2021 CWE-122 2 PoCs

vim is vulnerable to Heap-based Buffer Overflow

CVE-2021-27662
KT-1 General
8.6
HIGH
EPSS
0.2%
2021 CWE-294 1 PoC

The KT-1 door controller is susceptible to replay or man-in-the-middle attacks where an attacker can record and replay TCP packets. This issue affects Johnson Controls KT-1 all versions up to and including 3.01

CVE-2021-3837
openwhyd/openwhyd General
8.6
HIGH
EPSS
0.1%
2021 CWE-285 1 PoC

openwhyd is vulnerable to Improper Authorization

CVE-2021-23664
@isomorphic-git/cors-proxy General
8.6
HIGH
EPSS
0.3%
2021 1 PoC

The package @isomorphic-git/cors-proxy before 2.7.1 are vulnerable to Server-side Request Forgery (SSRF) due to missing sanitization and validation of the redirection action in middleware.js.

CVE-2009-20008
Green Dam Youth Escort General
8.6
HIGH
EPSS
46.3%
2009 CWE-121 4 PoCs

Green Dam Youth Escort version 3.17 is vulnerable to a stack-based buffer overflow when processing overly long URLs. The flaw resides in the URL filtering component, which fails to properly validate input length before copying user-supplied data into a fixed-size buffer. A remote attacker can exploit this vulnerability by enticing a user to visit a specially crafted webpage containing a long URL, resulting in arbitrary code execution.