3376 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-30263
Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music General
6.7
MEDIUM
EPSS
0.0%
2021 1 PoC

Possible race condition can occur due to lack of synchronization mechanism when On-Device Logging node open twice concurrently in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music

CVE-2021-22142
Kibana General
6.6
MEDIUM
EPSS
0.5%
2021 CWE-1104 1 PoC

Kibana contains an embedded version of the Chromium browser that the Reporting feature uses to generate the downloadable reports. If a user with permissions to generate reports is able to render arbitrary HTML with this browser, they may be able to leverage known Chromium vulnerabilities to conduct further attacks. Kibana contains a number of protections to prevent this browser from rendering arbitrary content.

CVE-2021-32942
InTouch General
6.6
MEDIUM
EPSS
0.0%
2021 CWE-316 2 PoCs

The vulnerability could expose cleartext credentials from AVEVA InTouch Runtime 2020 R2 and all prior versions (WindowViewer) if an authorized, privileged user creates a diagnostic memory dump of the process and saves it to a non-protected location.

CVE-2021-22150
Kibana General
6.6
MEDIUM
EPSS
0.2%
2021 CWE-94 1 PoC

It was discovered that a user with Fleet admin permissions could upload a malicious package. Due to using an older version of the js-yaml library, this package would be loaded in an insecure manner, allowing an attacker to execute commands on the Kibana server.

CVE-2021-38520
Software Genérico General
6.6
MEDIUM
EPSS
0.3%
2021 1 PoC

Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6400 before 1.0.1.52, R6400v2 before 1.0.4.84, R6700v3 before 1.0.4.84, R6700v2 before 1.2.0.62, R6900v2 before 1.2.0.62, and R7000P before 1.3.2.124.

CVE-2021-23632
git General
6.6
MEDIUM
EPSS
3.4%
2021 1 PoC

All versions of package git are vulnerable to Remote Code Execution (RCE) due to missing sanitization in the Git.git method, which allows execution of OS commands rather than just git commands. Steps to Reproduce 1. Create a file named exploit.js with the following content: js var Git = require("git").Git; var repo = new Git("repo-test"); var user_input = "version; date"; repo.git(user_input, function(err, result) { console.log(result); }) 2. In the same directory as exploit.js, run npm install git. 3. Run exploit.js: node exploit.js. You should see the outputs of both the git version and date

CVE-2021-25393
Samsung Mobile Devices General
6.6
MEDIUM
EPSS
0.0%
2021 CWE-94 2 PoCs

Improper sanitization of incoming intent in SecSettings prior to SMR MAY-2021 Release 1 allows local attackers to get permissions to access system uid data.

CVE-2021-27017
Puppet Agent General
6.6
MEDIUM
EPSS
0.1%
2021 1 PoC

Utilization of a module presented a security risk by allowing the deserialization of untrusted/user supplied data. This is resolved in the Puppet Agent 7.4.0 release.

CVE-2021-22600
🔥 KEV Kernel General
6.6
MEDIUM
EPSS
0.2%
2021 CWE-415 2 PoCs

A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscalls to escalate privileges or deny service. We recommend upgrading kernel past the effected versions or rebuilding past ec6af094ea28f0f2dda1a6a33b14cd57e36a9755

CVE-2021-23338
qlib General
6.6
MEDIUM
EPSS
2.9%
2021 1 PoC

This affects all versions of package qlib. The workflow function in cli part of qlib was using an unsafe YAML load function.

CVE-2021-3916
bookstackapp/bookstack General
6.5
MEDIUM
EPSS
0.4%
2021 CWE-22 1 PoC

bookstack is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

CVE-2021-3992
kevinpapst/kimai2 General
6.5
MEDIUM
EPSS
0.2%
2021 CWE-284 1 PoC

kimai2 is vulnerable to Improper Access Control

CVE-2021-26403
1st Gen EPYC General
6.5
MEDIUM
EPSS
0.0%
2021 1 PoC

Insufficient checks in SEV may lead to a malicious hypervisor disclosing the launch secret potentially resulting in compromise of VM confidentiality.

CVE-2021-21391
ckeditor5 General
6.5
MEDIUM
EPSS
8.3%
2021 CWE-400 6 PoCs

CKEditor 5 provides a WYSIWYG editing solution. This CVE affects the following npm packages: ckeditor5-engine, ckeditor5-font, ckeditor5-image, ckeditor5-list, ckeditor5-markdown-gfm, ckeditor5-media-embed, ckeditor5-paste-from-office, and ckeditor5-widget. Following an internal audit, a regular expression denial of service (ReDoS) vulnerability has been discovered in multiple CKEditor 5 packages. The vulnerability allowed to abuse particular regular expressions, which could cause a significant performance drop resulting in a browser tab freeze. It affects all users using the CKEditor 5 packag

CVE-2021-21792
IObit General
6.5
MEDIUM
EPSS
0.1%
2021 CWE-782 1 PoC

An information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O read requests. A specially crafted I/O request packet (IRP) can lead to privileged reads in the context of a driver which can result in sensitive information disclosure from the kernel. The IN instruction can read four bytes from the given I/O device, potentially leaking sensitive device data to unprivileged users.

CVE-2021-23561
comb General
6.5
MEDIUM
EPSS
0.5%
2021 1 PoC

All versions of package comb are vulnerable to Prototype Pollution via the deepMerge() function.

CVE-2021-3540
MobileIron Core General
6.5
MEDIUM
EPSS
2.2%
2021 CWE-88 1 PoC

By abusing the 'install rpm info detail' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.

CVE-2021-21967
SeaConnect 370W General
6.5
MEDIUM
EPSS
0.3%
2021 CWE-120 1 PoC

An out-of-bounds write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to denial of service. An attacker can perform a man-in-the-middle attack to trigger this vulnerability.

CVE-2021-23514
Crow General
6.5
MEDIUM
EPSS
0.8%
2021 1 PoC

This affects the package Crow before 0.3+4. It is possible to traverse directories to fetch arbitrary files from the server.

CVE-2021-23663
sey General
6.5
MEDIUM
EPSS
0.5%
2021 1 PoC

All versions of package sey are vulnerable to Prototype Pollution via the deepmerge() function.