3376 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-33538
IE-WL(T)-BL-AP-CL-XX General
8.8
HIGH
EPSS
0.5%
2021 CWE-269 1 PoC

In Weidmueller Industrial WLAN devices in multiple versions an exploitable improper access control vulnerability exists in the iw_webs account settings functionality. A specially crafted user name entry can cause the overwrite of an existing user account password, resulting in remote shell access to the device as that user. An attacker can send commands while authenticated as a low privilege user to trigger this vulnerability.

CVE-2021-21862
GPAC General
8.8
HIGH
EPSS
0.4%
2021 CWE-680 1 PoC

Multiple exploitable integer truncation vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.1. A specially crafted MPEG-4 input can cause an improper memory allocation resulting in a heap-based buffer overflow that causes memory corruption The implementation of the parser used for the “Xtra” FOURCC code is handled. An attacker can convince a user to open a video to trigger this vulnerability.

CVE-2021-21858
GPAC General
8.8
HIGH
EPSS
0.2%
2021 CWE-680 1 PoC

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.1. A specially crafted MPEG-4 input can cause an integer overflow due to unchecked addition arithmetic resulting in a heap-based buffer overflow that causes memory corruption. An attacker can convince a user to open a video to trigger this vulnerability.

CVE-2021-27273
ProSAFE Network Management System General
8.8
HIGH
EPSS
77.5%
2021 CWE-78 1 PoC

This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the SettingConfigController class. When parsing the fileName parameter, the process does not properly validate a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of SYSTEM. Was ZDI-CAN-12121.

CVE-2021-47854
DD-WRT General
8.7
HIGH
EPSS
0.1%
2021 CWE-120 1 PoC

DD-WRT version 45723 contains a buffer overflow vulnerability in the UPNP network discovery service that allows remote attackers to potentially execute arbitrary code. Attackers can send crafted M-SEARCH packets with oversized UUID payloads to trigger buffer overflow conditions on the target device.

CVE-2021-47788
WebsiteBaker General
8.7
HIGH
EPSS
0.1%
2021 CWE-434 1 PoC

WebsiteBaker 2.13.0 contains an authenticated remote code execution vulnerability that allows users with language editing permissions to execute arbitrary code. Attackers can exploit the language installation endpoint by manipulating language installation parameters to achieve remote code execution on the server.

CVE-2021-47794
ZesleCP General
8.7
HIGH
EPSS
0.2%
2021 CWE-78 2 PoCs

ZesleCP 3.1.9 contains an authenticated remote code execution vulnerability that allows attackers to create malicious FTP accounts with shell injection payloads. Attackers can exploit the FTP account creation endpoint by injecting a reverse shell command that establishes a network connection to a specified listening host.

CVE-2021-47710
Smart Home Ruvie CCTV Bridge DVR Service General
8.7
HIGH
EPSS
0.2%
2021 CWE-306 2 PoCs

COMMAX Smart Home System is a smart IoT home solution that allows an unauthenticated attacker to disclose RTSP credentials in plain-text by exploiting the /overview.asp endpoint. Attackers can access sensitive information, including login credentials and DVR settings, by submitting a GET request to this endpoint.

CVE-2021-47709
Smart Home Ruvie CCTV Bridge DVR Service General
8.7
HIGH
EPSS
0.1%
2021 CWE-306 2 PoCs

COMMAX Smart Home System allows an unauthenticated attacker to change configuration and cause denial-of-service through the setconf endpoint. Attackers can trigger a denial-of-service scenario by sending a malformed request to the setconf endpoint.

CVE-2021-47727
Selea Targa IP OCR-ANPR Camera General
8.7
HIGH
EPSS
0.2%
2021 CWE-306 2 PoCs

Selea Targa IP OCR-ANPR Camera contains an unauthenticated vulnerability that allows remote attackers to access live video streams without authentication. Attackers can directly connect to RTP/RTSP or M-JPEG streams by requesting specific endpoints like p1.mjpg or p1.264 to view camera footage.

CVE-2021-47721
orangescrum General
8.7
HIGH
EPSS
0.0%
2021 CWE-639 1 PoC

Orangescrum 1.8.0 contains a privilege escalation vulnerability that allows authenticated users to take over other project-assigned accounts by manipulating session cookies. Attackers can extract the victim's unique ID from the page source and replace their own session cookie to gain unauthorized access to another user's account.

CVE-2021-47944
Notepad General
8.7
HIGH
EPSS
0.1%
2021 CWE-789 1 PoC

memono Notepad 4.2 contains a denial of service vulnerability that allows attackers to crash the application by pasting excessively long character buffers into note fields. Attackers can generate a payload containing 350000 repeated characters and paste it twice into a new note to trigger an application crash on iOS devices.

CVE-2021-47705
COMMAX UMS Client ActiveX Control General
8.7
HIGH
EPSS
0.1%
2021 CWE-787 2 PoCs

COMMAX UMS Client ActiveX Control 1.7.0.2 contains a heap-based buffer overflow vulnerability that allows attackers to execute arbitrary code by providing excessively long string arrays through multiple functions. Attackers can exploit improper boundary validation in CNC_Ctrl.dll to cause heap corruption and potentially gain system-level access.

CVE-2021-47706
COMMAX Biometric Access Control System General
8.7
HIGH
EPSS
0.6%
2021 CWE-565 2 PoCs

COMMAX Biometric Access Control System 1.0.0 contains an authentication bypass vulnerability that allows unauthenticated attackers to access sensitive information and circumvent physical controls in smart homes and buildings by exploiting cookie poisoning. Attackers can forge cookies to bypass authentication and disclose sensitive information.

CVE-2021-4466
IPCop General
8.7
HIGH
EPSS
0.4%
2021 CWE-78 1 PoC

IPCop versions up to and including 2.1.9 contain an authenticated remote code execution vulnerability within the web-based administration interface. The email configuration component inserts user-controlled values, including the EMAIL_PW parameter, directly into system-level operations without proper input sanitation. By modifying the email password field to include shell metacharacters and issuing a save-and-test-mail action, an authenticated attacker can execute arbitrary operating system commands with the privileges of the web interface, resulting in full system compromise.

CVE-2021-47755
Oliver Library Server General
8.7
HIGH
EPSS
0.1%
2021 CWE-22 1 PoC

Oliver Library Server v5 contains a file download vulnerability that allows unauthenticated attackers to access arbitrary system files through unsanitized input in the FileServlet endpoint. Attackers can exploit the vulnerability by manipulating the 'fileName' parameter to download sensitive files from the server's filesystem.

CVE-2021-47719
COMMAX WebViewer ActiveX Control General
8.7
HIGH
EPSS
0.1%
2021 CWE-787 2 PoCs

COMMAX WebViewer ActiveX Control 2.1.4.5 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by providing excessively long string arrays through multiple functions. Attackers can exploit boundary errors in Commax_WebViewer.ocx to cause buffer overflow conditions and potentially gain code execution.

CVE-2021-23442
@cookiex/deep General
8.6
HIGH
EPSS
0.5%
2021 1 PoC

This affects all versions of package @cookiex/deep. The global proto object can be polluted using the __proto__ object.

CVE-2021-3837
openwhyd/openwhyd General
8.6
HIGH
EPSS
0.1%
2021 CWE-285 1 PoC

openwhyd is vulnerable to Improper Authorization

CVE-2021-47770
OpenPLC General
8.6
HIGH
EPSS
0.3%
2021 CWE-94 1 PoC

OpenPLC v3 contains an authenticated remote code execution vulnerability that allows attackers with valid credentials to inject malicious code through the hardware configuration interface. Attackers can upload a custom hardware layer with embedded reverse shell code that establishes a network connection to a specified IP and port, enabling remote command execution.