3376 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-40529
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2021 1 PoC

The ElGamal implementation in Botan through 2.18.1, as used in Thunderbird and other products, allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key, and the sender's ephemeral exponents can lead to a cross-configuration attack against OpenPGP.

CVE-2021-39704
Android General
N/A
UNKNOWN
EPSS
0.0%
2021 1 PoC

In deleteNotificationChannelGroup of NotificationManagerService.java, there is a possible way to run foreground service without user notification due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-209965481

CVE-2021-0705
Android General
N/A
UNKNOWN
EPSS
0.0%
2021 2 PoCs

In sanitizeSbn of NotificationManagerService.java, there is a possible way to keep service running in foreground and keep granted permissions due to Bypass of Background Service Restrictions. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-10Android ID: A-185388103

CVE-2021-26570
HPE Apollo 70 System General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

The Baseboard Management Controller (BMC) firmware in HPE Apollo 70 System prior to version 3.0.14.0 has a local buffer overflow in libifc.so webifc_setadconfig function.

CVE-2021-26824
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

DM FingerTool v1.19 in the DM PD065 Secure USB is susceptible to improper authentication by a replay attack, allowing local attackers to bypass user authentication and access all features and data on the USB.

CVE-2021-3653
kernel General
N/A
UNKNOWN
EPSS
0.0%
2021 CWE-862 1 PoC

A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMCB (virtual machine control block) provided by the L1 guest to spawn/handle a nested guest (L2). Due to improper validation of the "int_ctl" field, this issue could allow a malicious L1 to enable AVIC support (Advanced Virtual Interrupt Controller) for the L2 guest. As a result, the L2 guest would be allowed to read/write physical pages of the host, resulting in a crash of the entire system, leak of sensitive data or potential guest-to-host escape. This flaw affects Linux kern

CVE-2021-27204
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2021 2 PoCs

Telegram before 7.4 (212543) Stable on macOS stores the local passcode in cleartext, leading to information disclosure.

CVE-2021-4138
geckodriver General
N/A
UNKNOWN
EPSS
0.2%
2021 1 PoC

Improved Host header checks to reject requests not sent to a well-known local hostname or IP, or the server-specified hostname.

CVE-2021-21198
Chrome General
N/A
UNKNOWN
EPSS
0.8%
2021 1 PoC

Out of bounds read in IPC in Google Chrome prior to 89.0.4389.114 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

CVE-2021-31859
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2021 2 PoCs

Incorrect privileges in the MU55 FlexiSpooler service in YSoft SafeQ 6 6.0.55 allows local user privilege escalation by overwriting the executable file via an alternative data stream.

CVE-2021-30490
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2021 1 PoC

upsMonitor in ViewPower (aka ViewPowerHTML) 1.04-21012 through 1.04-21353 has insecure permissions for the service binary that enable an Authenticated User to modify files, allowing for privilege escalation.

CVE-2021-26273
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

The Agent in NinjaRMM 5.0.909 has Incorrect Access Control.

CVE-2021-31609
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

The Bluetooth Classic implementation in Silicon Labs iWRAP 6.3.0 and earlier does not properly handle the reception of an oversized LMP packet greater than 17 bytes, allowing attackers in radio range to trigger a crash in WT32i via a crafted LMP packet.

CVE-2021-3610
ImageMagick General
N/A
UNKNOWN
EPSS
0.2%
2021 CWE-125 1 PoC

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

CVE-2021-22057
VMware Workspace ONE Access General
N/A
UNKNOWN
EPSS
0.5%
2021 1 PoC

VMware Workspace ONE Access 21.08, 20.10.0.1, and 20.10 contain an authentication bypass vulnerability. A malicious actor, who has successfully provided first-factor authentication, may be able to obtain second-factor authentication provided by VMware Verify.

CVE-2021-0390
Android General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

In various methods of WifiNetworkSuggestionsManager.java, there is a possible modification of suggested networks due to a missing permission check. This could lead to local escalation of privilege by a background user on the same device with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-174749461

CVE-2021-31698
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2021 1 PoC

Quectel EG25-G devices through 202006130814 allow executing arbitrary code remotely by using an AT command to place shell metacharacters in quectel_handle_fumo_cfg input in atfwd_daemon.

CVE-2021-35450
Software Genérico General
N/A
UNKNOWN
EPSS
0.8%
2021 1 PoC

A Server Side Template Injection in the Entando Admin Console 6.3.9 and before allows a user with privileges to execute FreeMarker template with command execution via freemarker.template.utility.Execute

CVE-2021-31684
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2021 2 PoCs

A vulnerability was discovered in the indexOf function of JSONParserByteArray in JSON Smart versions 1.3 and 2.4 which causes a denial of service (DOS) via a crafted web request.

CVE-2021-31220
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2021 2 PoCs

SES Evolution before 2.1.0 allows modifying security policies by leveraging access of a user having read-only access to security policies.