3376 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-36359
Software Genérico General
N/A
UNKNOWN
EPSS
4.9%
2021 2 PoCs

OrbiTeam BSCW Classic before 7.4.3 allows exportpdf authenticated remote code execution (RCE) via XML tag injection because reportlab\platypus\paraparser.py (reached via bscw.cgi op=_editfolder.EditFolder) calls eval on attacker-supplied Python code. This is fixed in 5.0.12, 5.1.10, 5.2.4, 7.3.3, and 7.4.3.

CVE-2021-30853
macOS General
N/A
UNKNOWN
EPSS
0.2%
2021 1 PoC

This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6. A malicious application may bypass Gatekeeper checks.

CVE-2021-39692
Android General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

In onCreate of SetupLayoutActivity.java, there is a possible way to setup a work profile bypassing user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-209611539

CVE-2021-47607
Linux General
N/A
UNKNOWN
EPSS
0.0%
2021 2 PoCs

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix kernel address leakage in atomic cmpxchg's r0 aux reg The implementation of BPF_CMPXCHG on a high level has the following parameters: .-[old-val] .-[new-val] BPF_R0 = cmpxchg{32,64}(DST_REG + insn->off, BPF_R0, SRC_REG) `-[mem-loc] `-[old-val] Given a BPF insn can only have two registers (dst, src), the R0 is fixed and used as an auxilliary register for input (old value) as well as output (returning old value from memory location). Whi

CVE-2021-4209
GnuTLS General
N/A
UNKNOWN
EPSS
0.4%
2021 CWE-476 1 PoC

A NULL pointer dereference flaw was found in GnuTLS. As Nettle's hash update functions internally call memcpy, providing zero-length input may cause undefined behavior. This flaw leads to a denial of service after authentication in rare circumstances.

CVE-2021-33267
Software Genérico General
N/A
UNKNOWN
EPSS
1.9%
2021 1 PoC

D-Link DIR-809 devices with firmware through DIR-809Ax_FW1.12WWB03_20190410 were discovered to contain a stack buffer overflow vulnerability in the function FUN_80034d60 in /formStaticDHCP. This vulnerability is triggered via a crafted POST request.

CVE-2021-31857
Software Genérico General
N/A
UNKNOWN
EPSS
0.5%
2021 1 PoC

In Zoho ManageEngine Password Manager Pro before 11.1 build 11104, attackers are able to retrieve credentials via a browser extension for non-website resource types.

CVE-2021-44852
Software Genérico General
N/A
UNKNOWN
EPSS
1.9%
2021 2 PoCs

An issue was discovered in BS_RCIO64.sys in Biostar RACING GT Evo 2.1.1905.1700. A low-integrity process can open the driver's device object and issue IOCTLs to read or write to arbitrary physical memory locations (or call an arbitrary address), leading to execution of arbitrary code. This is associated with 0x226040, 0x226044, and 0x226000.

CVE-2021-31815
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2021 1 PoC

GAEN (aka Google/Apple Exposure Notifications) through 2021-04-27 on Android allows attackers to obtain sensitive information, such as a user's location history, in-person social graph, and (sometimes) COVID-19 infection status, because Rolling Proximity Identifiers and MAC addresses are written to the Android system log, and many Android devices have applications (preinstalled by the hardware manufacturer or network operator) that read system log data and send it to third parties. NOTE: a news outlet (The Markup) states that they received a vendor response indicating that fix deployment "bega

CVE-2021-42847
Software Genérico General
N/A
UNKNOWN
EPSS
82.7%
2021 1 PoC

Zoho ManageEngine ADAudit Plus before 7006 allows attackers to write to, and execute, arbitrary files.

CVE-2021-25772
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2021 2 PoCs

In JetBrains TeamCity before 2020.2.2, TeamCity server DoS was possible via server integration.

CVE-2021-28377
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
52.6%
2021 1 PoC

ChronoForums 2.0.11 allows av Directory Traversal to read arbitrary files.

CVE-2021-20121
Telus Wi-Fi Hub (PRV65B444A-S-TS) General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is vulnerable to an authenticated arbitrary file read. An authenticated user with physical access to the device can read arbitrary files from the device by preparing and connecting a specially prepared USB drive to the device, and making a series of crafted requests to the device's web interface.

CVE-2021-42389
clickhouse General
N/A
UNKNOWN
EPSS
0.5%
2021 CWE-369 1 PoC

Divide-by-zero in Clickhouse's Delta compression codec when parsing a malicious query. The first byte of the compressed buffer is used in a modulo operation without being checked for 0.

CVE-2021-34413
Zoom Plugin for Microsoft Outlook for MacOS General
N/A
UNKNOWN
EPSS
0.4%
2021 1 PoC

All versions of the Zoom Plugin for Microsoft Outlook for MacOS before 5.3.52553.0918 contain a Time-of-check Time-of-use (TOC/TOU) vulnerability during the plugin installation process. This could allow a standard user to write their own malicious application to the plugin directory, allowing the malicious application to execute in a privileged context.

CVE-2021-44493
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2021 1 PoC

An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause a call to $Extract to force an signed integer holding the size of a buffer to take on a large negative number, which is then used as the length of a memcpy call that occurs on the stack, causing a buffer overflow.

CVE-2021-25168
HPE Apollo 70 System General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

The Baseboard Management Controller (BMC) firmware in HPE Apollo 70 System prior to version 3.0.14.0 has a local buffer overflow in libifc.so webupdatecomponent function.

CVE-2021-37160
Software Genérico General
N/A
UNKNOWN
EPSS
2.0%
2021 1 PoC

A firmware validation issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. There is no firmware validation (e.g., cryptographic signature validation) during a File Upload for a firmware update.

CVE-2021-1060
NVIDIA Virtual GPU Software General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

NVIDIA vGPU software contains a vulnerability in the guest kernel mode driver and vGPU plugin, in which an input index is not validated, which may lead to tampering of data or denial of service. This affects vGPU version 8.x (prior to 8.6) and version 11.0 (prior to 11.3).

CVE-2021-3522
GStreamer General
N/A
UNKNOWN
EPSS
0.1%
2021 CWE-125 1 PoC

GStreamer before 1.18.4 may perform an out-of-bounds read when handling certain ID3v2 tags.