3376 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-25920
openemr General
6.5
MEDIUM
EPSS
0.2%
2021 1 PoC

In OpenEMR, versions v2.7.2-rc1 to 6.0.0 are vulnerable to Improper Access Control when creating a new user, which leads to a malicious user able to read and send sensitive messages on behalf of the victim user.

CVE-2021-35093
BlueCore General
6.5
MEDIUM
EPSS
0.1%
2021 1 PoC

Possible memory corruption in BT controller when it receives an oversized LMP packet over 2-DH1 link and leads to denial of service in BlueCore

CVE-2021-3990
star7th/showdoc General
6.5
MEDIUM
EPSS
0.3%
2021 CWE-338 1 PoC

showdoc is vulnerable to Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

CVE-2021-45647
Software Genérico General
6.5
MEDIUM
EPSS
0.3%
2021 1 PoC

Certain NETGEAR devices are affected by disclosure of sensitive information. This affects EAX80 before 1.0.1.62, EX7000 before 1.0.1.104, R6120 before 1.0.0.76, R6220 before 1.1.0.110, R6230 before 1.1.0.110, R6260 before 1.1.0.78, R6850 before 1.1.0.78, R6350 before 1.1.0.78, R6330 before 1.1.0.78, R6800 before 1.2.0.76, R6900v2 before 1.2.0.76, R6700v2 before 1.2.0.76, R7000 before 1.0.11.116, R6900P before 1.3.3.140, R7000P before 1.3.3.140, R7200 before 1.2.0.76, R7350 before 1.2.0.76, R7400 before 1.2.0.76, R7450 before 1.2.0.76, AC2100 before 1.2.0.76, AC2400 before 1.2.0.76, AC2600 befo

CVE-2021-21468
SAP Business Warehouse General
6.5
MEDIUM
EPSS
0.4%
2021 2 PoCs

The BW Database Interface does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges that allows the user to practically read out any database table.

CVE-2021-41184
jquery-ui General
6.5
MEDIUM
EPSS
25.4%
2021 CWE-79 4 PoCs

jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of the `of` option of the `.position()` util from untrusted sources may execute untrusted code. The issue is fixed in jQuery UI 1.13.0. Any string value passed to the `of` option is now treated as a CSS selector. A workaround is to not accept the value of the `of` option from untrusted sources.

CVE-2021-32537
HDA driver General
6.5
MEDIUM
EPSS
0.2%
2021 2 PoCs

Realtek HAD contains a driver crashed vulnerability which allows local side attackers to send a special string to the kernel driver in a user’s mode. Due to unexpected commands, the kernel driver will cause the system crashed.

CVE-2021-41182
jquery-ui General
6.5
MEDIUM
EPSS
27.5%
2021 CWE-79 5 PoCs

jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0, accepting the value of the `altField` option of the Datepicker widget from untrusted sources may execute untrusted code. The issue is fixed in jQuery UI 1.13.0. Any string value passed to the `altField` option is now treated as a CSS selector. A workaround is to not accept the value of the `altField` option from untrusted sources.

CVE-2021-3198
MobileIron Core General
6.5
MEDIUM
EPSS
2.2%
2021 CWE-78 1 PoC

By abusing the 'install rpm url' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.

CVE-2021-3540
MobileIron Core General
6.5
MEDIUM
EPSS
2.2%
2021 CWE-88 1 PoC

By abusing the 'install rpm info detail' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.

CVE-2021-3916
bookstackapp/bookstack General
6.5
MEDIUM
EPSS
0.4%
2021 CWE-22 1 PoC

bookstack is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

CVE-2021-45515
Software Genérico General
6.5
MEDIUM
EPSS
0.1%
2021 1 PoC

Certain NETGEAR devices are affected by denial of service. This affects EX7500 before 1.0.0.72, RBS40V before 2.6.1.4, RBW30 before 2.6.1.4, RBRE960 before 6.0.3.68, RBSE960 before 6.0.3.68, RBR750 before 3.2.17.12, RBR850 before 3.2.17.12, RBS750 before 3.2.17.12, RBS850 before 3.2.17.12, RBK752 before 3.2.17.12, and RBK852 before 3.2.17.12.

CVE-2021-25449
Samsung Mobile Devices General
6.5
MEDIUM
EPSS
0.2%
2021 CWE-122 1 PoC

An improper input validation vulnerability in libsapeextractor library prior to SMR Sep-2021 Release 1 allows attackers to execute arbitrary code in mediaextractor process.

CVE-2021-3710
apport General
6.5
MEDIUM
EPSS
0.0%
2021 CWE-24 2 PoCs

An information disclosure via path traversal was discovered in apport/hookutils.py function read_file(). This issue affects: apport 2.14.1 versions prior to 2.14.1-0ubuntu3.29+esm8; 2.20.1 versions prior to 2.20.1-0ubuntu2.30+esm2; 2.20.9 versions prior to 2.20.9-0ubuntu7.26; 2.20.11 versions prior to 2.20.11-0ubuntu27.20; 2.20.11 versions prior to 2.20.11-0ubuntu65.3;

CVE-2021-3992
kevinpapst/kimai2 General
6.5
MEDIUM
EPSS
0.2%
2021 CWE-284 1 PoC

kimai2 is vulnerable to Improper Access Control

CVE-2021-23700
merge-deep2 General
6.5
MEDIUM
EPSS
0.5%
2021 1 PoC

All versions of package merge-deep2 are vulnerable to Prototype Pollution via the mergeDeep() function.

CVE-2021-33104
Intel(R) OFU software General
6.5
MEDIUM
EPSS
0.1%
2021 1 PoC

Improper access control in the Intel(R) OFU software before version 14.1.28 may allow an authenticated user to potentially enable denial of service via local access.

CVE-2021-39140
xstream General
6.5
MEDIUM
EPSS
0.1%
2021 CWE-502 3 PoCs

XStream is a simple library to serialize objects to XML and back again. In affected versions this vulnerability may allow a remote attacker to allocate 100% CPU time on the target system depending on CPU type or parallel execution of such a payload resulting in a denial of service only by manipulating the processed input stream. No user is affected, who followed the recommendation to setup XStream's security framework with a whitelist limited to the minimal required types. XStream 1.4.18 uses no longer a blacklist by default, since it cannot be secured for general purpose.

CVE-2021-4472
Red Hat OpenStack Platform 13 (Queens) General
6.5
MEDIUM
EPSS
0.1%
2021 CWE-73 1 PoC

The mistral-dashboard plugin for openstack has a local file inclusion vulnerability through the 'Create Workbook' feature that may result in disclosure of arbitrary local files content.

CVE-2021-25466
Samsung Internet General
6.5
MEDIUM
EPSS
0.2%
2021 CWE-287 1 PoC

Improper scheme check vulnerability in Samsung Internet prior to version 15.0.2.47 allows attackers to perform Man-in-the-middle attack and obtain Samsung Account token.