3376 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-23336
python/cpython General
5.9
MEDIUM
EPSS
0.3%
2021 4 PoCs

The package python/cpython from 0 and before 3.6.13, from 3.7.0 and before 3.7.10, from 3.8.0 and before 3.8.8, from 3.9.0 and before 3.9.2 are vulnerable to Web Cache Poisoning via urllib.parse.parse_qsl and urllib.parse.parse_qs by using a vector called parameter cloaking. When the attacker can separate query parameters using a semicolon (;), they can cause a difference in the interpretation of the request between the proxy (running with default configuration) and the server. This can result in malicious requests being cached as completely safe ones, as the proxy would usually not see the se

CVE-2021-43307
semver-regex General
5.9
MEDIUM
EPSS
0.6%
2021 CWE-1333 1 PoC

An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the semver-regex npm package, when an attacker is able to supply arbitrary input to the test() method

CVE-2021-27620
SAP Internet Graphics Service General
5.9
MEDIUM
EPSS
0.5%
2021 CWE-787 1 PoC

SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retrieving an existing system state value can submit a malicious IGS request over a network which due to insufficient input validation in method Ups::AddPart() which will trigger an internal memory corruption error in the system causing the system to crash and rendering it unavailable. In this attack, no data in the system can be viewed or modified.

CVE-2021-27625
SAP Internet Graphics Service General
5.9
MEDIUM
EPSS
0.5%
2021 CWE-787 1 PoC

SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retrieving an existing system state value can submit a malicious IGS request over a network which due to insufficient input validation in method IgsData::freeMemory() which will trigger an internal memory corruption error in the system causing the system to crash and rendering it unavailable. In this attack, no data in the system can be viewed or modified.

CVE-2021-23433
algoliasearch-helper General
5.9
MEDIUM
EPSS
0.2%
2021 1 PoC

The package algoliasearch-helper before 3.6.2 are vulnerable to Prototype Pollution due to use of the merge function in src/SearchParameters/index.jsSearchParameters._parseNumbers without any protection against prototype properties. Note that this vulnerability is only exploitable if the implementation allows users to define arbitrary search patterns.

CVE-2021-21345
xstream General ⚡ nuclei
5.8
MEDIUM
EPSS
88.1%
2021 CWE-94 5 PoCs

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker who has sufficient rights to execute commands of the host only by manipulating the processed input stream. No user is affected, who followed the recommendation to setup XStream's security framework with a whitelist limited to the minimal required types. If you rely on XStream's default blacklist of the Security Framework, you will have to use at least version 1.4.16.

CVE-2021-37861
Mattermost General
5.8
MEDIUM
EPSS
0.4%
2021 CWE-532 1 PoC

Mattermost 6.0.2 and earlier fails to sufficiently sanitize user's password in audit logs when user creation fails.

CVE-2021-25380
Bixby General
5.8
MEDIUM
EPSS
0.3%
2021 CWE-703 2 PoCs

Improper handling of exceptional conditions in Bixby prior to version 3.0.53.02 allows attacker to execute the actions registered by the user.

CVE-2021-4043
gpac/gpac General
5.8
MEDIUM
EPSS
1.5%
2021 CWE-476 1 PoC

NULL Pointer Dereference in GitHub repository gpac/gpac prior to 1.1.0.

CVE-2021-40403
Gerbv General
5.8
MEDIUM
EPSS
0.2%
2021 CWE-456 1 PoC

An information disclosure vulnerability exists in the pick-and-place rotation parsing functionality of Gerbv 2.7.0 and dev (commit b5f1eacd), and Gerbv forked 2.8.0. A specially-crafted pick-and-place file can exploit the missing initialization of a structure to leak memory contents. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2021-30496
Software Genérico General
5.7
MEDIUM
EPSS
0.6%
2021 1 PoC

The Telegram app 7.6.2 for iOS allows remote authenticated users to cause a denial of service (application crash) if the victim pastes an attacker-supplied message (e.g., in the Persian language) into a channel or group. The crash occurs in MtProtoKitFramework. NOTE: the vendor's perspective is that "this behavior can't be considered a vulnerability."

CVE-2021-21435
OTRS General
5.7
MEDIUM
EPSS
0.3%
2021 CWE-200 1 PoC

Article Bcc fields and agent personal information are shown when customer prints the ticket (PDF) via external interface. This issue affects: OTRS AG OTRS 7.0.x version 7.0.23 and prior versions; 8.0.x version 8.0.10 and prior versions.

CVE-2021-3426
python General
5.7
MEDIUM
EPSS
0.1%
2021 CWE-200 2 PoCs

There's a flaw in Python 3's pydoc. A local or adjacent attacker who discovers or is able to convince another local or adjacent user to start a pydoc server could access the server and use it to disclose sensitive information belonging to the other user that they would not normally be able to access. The highest risk of this flaw is to data confidentiality. This flaw affects Python versions before 3.8.9, Python versions before 3.9.3 and Python versions before 3.10.0a7.

CVE-2021-45523
Software Genérico General
5.7
MEDIUM
EPSS
0.2%
2021 1 PoC

NETGEAR R7000 devices before 1.0.9.42 are affected by a buffer overflow by an authenticated user.

CVE-2021-21337
Products.PluggableAuthService General
5.7
MEDIUM
EPSS
1.8%
2021 CWE-601 1 PoC

Products.PluggableAuthService is a pluggable Zope authentication and authorization framework. In Products.PluggableAuthService before version 2.6.0 there is an open redirect vulnerability. A maliciously crafted link to the login form and login functionality could redirect the browser to a different website. The problem has been fixed in version 2.6.1. Depending on how you have installed Products.PluggableAuthService, you should change the buildout version pin to `2.6.1` and re-run the buildout, or if you used `pip` simply do `pip install "Products.PluggableAuthService>=2.6.1".

CVE-2021-25991
ifme General
5.7
MEDIUM
EPSS
0.2%
2021 CWE-284 1 PoC

In Ifme, versions v5.0.0 to v7.32 are vulnerable against an improper access control, which makes it possible for admins to ban themselves leading to their deactivation from Ifme account and complete loss of admin access to Ifme.

CVE-2021-25507
Samsung Flow General
5.7
MEDIUM
EPSS
0.1%
2021 CWE-285 1 PoC

Improper authorization vulnerability in Samsung Flow mobile application prior to 4.8.03.5 allows Samsung Flow PC application connected with user device to access part of notification data in Secure Folder without authorization.

CVE-2021-41355
PowerShell 7.1 General
5.7
MEDIUM
EPSS
3.6%
2021 1 PoC

.NET Core and Visual Studio Information Disclosure Vulnerability

CVE-2021-32010
SiteManager General
5.6
MEDIUM
EPSS
0.1%
2021 CWE-326 1 PoC

Inadequate Encryption Strength vulnerability in TLS stack of Secomea SiteManager, LinkManager, GateManager may facilitate man in the middle attacks. This issue affects: Secomea SiteManager All versions prior to 9.7. Secomea LinkManager versions prior to 9.7. Secomea GateManager versions prior to 9.7.

CVE-2021-23369
handlebars General
5.6
MEDIUM
EPSS
3.6%
2021 5 PoCs

The package handlebars before 4.7.7 are vulnerable to Remote Code Execution (RCE) when selecting certain compiling options to compile templates coming from an untrusted source.