3376 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-22207
Wireshark General
5.5
MEDIUM
EPSS
0.5%
2021 1 PoC

Excessive memory consumption in MS-WSP dissector in Wireshark 3.4.0 to 3.4.4 and 3.2.0 to 3.2.12 allows denial of service via packet injection or crafted capture file

CVE-2021-47114
Linux General
5.5
MEDIUM
EPSS
0.0%
2021 2 PoCs

In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix data corruption by fallocate When fallocate punches holes out of inode size, if original isize is in the middle of last cluster, then the part from isize to the end of the cluster will be zeroed with buffer write, at that time isize is not yet updated to match the new size, if writeback is kicked in, it will invoke ocfs2_writepage()->block_write_full_page() where the pages out of inode size will be dropped. That will cause file corruption. Fix this by zero out eof blocks when extending the inode size. Running t

CVE-2021-26407
2nd Gen EPYC General
5.5
MEDIUM
EPSS
0.1%
2021 1 PoC

A randomly generated Initialization Vector (IV) may lead to a collision of IVs with the same key potentially resulting in information disclosure.

CVE-2021-1123
NVIDIA Virtual GPU Software General
5.5
MEDIUM
EPSS
0.0%
2021 1 PoC

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it can deadlock, which may lead to denial of service.

CVE-2021-25381
Samsung Account General
5.5
MEDIUM
EPSS
0.0%
2021 CWE-285 2 PoCs

Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) and above allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.

CVE-2021-20348
Rational Rhapsody Model Manager General
5.4
MEDIUM
EPSS
0.1%
2021 1 PoC

IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-ForceID: 194597.

CVE-2021-23447
teddy General
5.4
MEDIUM
EPSS
0.3%
2021 1 PoC

This affects the package teddy before 0.5.9. A type confusion vulnerability can be used to bypass input sanitization when the model content is an array (instead of a string).

CVE-2021-41278
app-functions-sdk-go General
5.4
MEDIUM
EPSS
0.1%
2021 CWE-327 1 PoC

Functions SDK for EdgeX is meant to provide all the plumbing necessary for developers to get started in processing/transforming/exporting data out of the EdgeX IoT platform. In affected versions broken encryption in app-functions-sdk “AES” transform in EdgeX Foundry releases prior to Jakarta allows attackers to decrypt messages via unspecified vectors. The app-functions-sdk exports an “aes” transform that user scripts can optionally call to encrypt data in the processing pipeline. No decrypt function is provided. Encryption is not enabled by default, but if used, the level of protection may be

CVE-2021-23432
mootools General
5.4
MEDIUM
EPSS
0.3%
2021 1 PoC

This affects all versions of package mootools. This is due to the ability to pass untrusted input to Object.merge()

CVE-2021-20346
Rational Collaborative Lifecycle Management General
5.4
MEDIUM
EPSS
0.1%
2021 1 PoC

IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 194595.

CVE-2021-20345
Rational Rhapsody Model Manager General
5.4
MEDIUM
EPSS
0.1%
2021 1 PoC

IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 194594.

CVE-2021-20347
Rational DOORS Next Generation General
5.4
MEDIUM
EPSS
0.1%
2021 1 PoC

IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 194596.

CVE-2021-20343
Engineering Test Management General
5.4
MEDIUM
EPSS
0.1%
2021 1 PoC

IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 194593.

CVE-2021-23408
com.graphhopper:graphhopper-web-bundle General
5.4
MEDIUM
EPSS
0.3%
2021 1 PoC

This affects the package com.graphhopper:graphhopper-web-bundle before 3.2, from 4.0-pre1 and before 4.0. The URL parser could be tricked into adding or modifying properties of Object.prototype using a constructor or __proto__ payload.

CVE-2021-23416
curly-bracket-parser General
5.4
MEDIUM
EPSS
0.2%
2021 1 PoC

This affects all versions of package curly-bracket-parser. When used as a template library, it does not properly sanitize the user input.

CVE-2021-21351
xstream General ⚡ nuclei
5.4
MEDIUM
EPSS
92.0%
2021 CWE-434 3 PoCs

XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability may allow a remote attacker to load and execute arbitrary code from a remote host only by manipulating the processed input stream. No user is affected, who followed the recommendation to setup XStream's security framework with a whitelist limited to the minimal required types. If you rely on XStream's default blacklist of the Security Framework, you will have to use at least version 1.4.16.

CVE-2021-3799
getgrav/grav-plugin-admin General
5.4
MEDIUM
EPSS
0.2%
2021 CWE-1021 1 PoC

grav-plugin-admin is vulnerable to Improper Restriction of Rendered UI Layers or Frames

CVE-2021-23401
Flask-User General
5.4
MEDIUM
EPSS
0.3%
2021 1 PoC

This affects all versions of package Flask-User. When using the make_safe_url function, it is possible to bypass URL validation and redirect a user to an arbitrary URL by providing multiple back slashes such as /////evil.com/path or \\\evil.com/path. This vulnerability is only exploitable if an alternative WSGI server other than Werkzeug is used, or the default behaviour of Werkzeug is modified using 'autocorrect_location_header=False.

CVE-2021-23393
Flask-Unchained General
5.4
MEDIUM
EPSS
0.2%
2021 1 PoC

This affects the package Flask-Unchained before 0.9.0. When using the the _validate_redirect_url function, it is possible to bypass URL validation and redirect a user to an arbitrary URL by providing multiple back slashes such as \\\evil.com/path. This vulnerability is only exploitable if an alternative WSGI server other than Werkzeug is used, or the default behaviour of Werkzeug is modified using 'autocorrect_location_header=False.

CVE-2021-23443
edge.js General
5.4
MEDIUM
EPSS
0.2%
2021 1 PoC

This affects the package edge.js before 5.3.2. A type confusion vulnerability can be used to bypass input sanitization when the input to be rendered is an array (instead of a string or a SafeValue), even if {{ }} are used.