3376 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-47078
Linux General
5.3
MEDIUM
EPSS
0.0%
2021 1 PoC

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Clear all QP fields if creation failed rxe_qp_do_cleanup() relies on valid pointer values in QP for the properly created ones, but in case rxe_qp_from_init() failed it was filled with garbage and caused tot the following error. refcount_t: underflow; use-after-free. WARNING: CPU: 1 PID: 12560 at lib/refcount.c:28 refcount_warn_saturate+0x1d1/0x1e0 lib/refcount.c:28 Modules linked in: CPU: 1 PID: 12560 Comm: syz-executor.4 Not tainted 5.12.0-syzkaller #0 Hardware name: Google Google Compute Engine/Google

CVE-2021-4119
bookstackapp/bookstack General
5.3
MEDIUM
EPSS
0.4%
2021 CWE-284 1 PoC

bookstack is vulnerable to Improper Access Control

CVE-2021-23413
jszip General
5.3
MEDIUM
EPSS
1.2%
2021 3 PoCs

This affects the package jszip before 3.7.0. Crafting a new zip file with filenames set to Object prototype values (e.g __proto__, toString, etc) results in a returned object with a modified prototype instance.

CVE-2021-32557
apport General
5.2
MEDIUM
EPSS
0.1%
2021 CWE-59 1 PoC

It was discovered that the process_report() function in data/whoopsie-upload-all allowed arbitrary file writes via symlinks.

CVE-2021-21440
((OTRS)) Community Edition General
5.2
MEDIUM
EPSS
0.2%
2021 CWE-200 1 PoC

Generated Support Bundles contains private S/MIME and PGP keys if containing folder is not hidden. This issue affects: OTRS AG ((OTRS)) Community Edition 6.0.x version 6.0.1 and later versions. OTRS AG OTRS 7.0.x version 7.0.27 and prior versions; 8.0.x version 8.0.14 and prior versions.

CVE-2021-25635
LibreOffice General
5.2
MEDIUM
EPSS
0.0%
2021 CWE-295 1 PoC

An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to self sign an ODF document, with a signature untrusted by the target, then modify it to change the signature algorithm to an invalid (or unknown to LibreOffice) algorithm and LibreOffice would incorrectly present such a signature with an unknown algorithm as a valid signature issued by a trusted person This issue affects LibreOffice: from 7.0 before 7.0.5, from 7.1 before 7.1.1.

CVE-2021-36096
((OTRS)) Community Edition General
5.2
MEDIUM
EPSS
0.2%
2021 CWE-200 1 PoC

Generated Support Bundles contains private S/MIME and PGP keys if containing folder is not hidden. This issue affects: OTRS AG ((OTRS)) Community Edition 6.0.x version 6.0.1 and later versions. OTRS AG OTRS 7.0.x version 7.0.28 and prior versions; 8.0.x version 8.0.15 and prior versions.

CVE-2021-29253
Software Genérico General
5.1
MEDIUM
EPSS
0.1%
2021 1 PoC

The Tableau integration in RSA Archer 6.4 P1 (6.4.0.1) through 6.9 P2 (6.9.0.2) is affected by an insecure credential storage vulnerability. An malicious attacker with access to the Tableau workbook file may obtain access to credential information to use it in further attacks.

CVE-2021-25340
Samsung Mobile Devices General
5.1
MEDIUM
EPSS
0.0%
2021 CWE-284 2 PoCs

Improper access control vulnerability in Samsung keyboard version prior to SMR Feb-2021 Release 1 allows physically proximate attackers to change in arbitrary settings during Initialization State.

CVE-2021-47901
dirsearch General
5.1
MEDIUM
EPSS
0.1%
2021 CWE-1236 1 PoC

Dirsearch 0.4.1 contains a CSV injection vulnerability when using the --csv-report flag that allows attackers to inject formulas through redirected endpoints. Attackers can craft malicious server redirects with comma-separated paths containing Excel formulas to manipulate the generated CSV report.

CVE-2021-4229
ua-parser-js General
5.0
MEDIUM
EPSS
0.9%
2021 CWE-912 1 PoC

A vulnerability was found in ua-parser-js 0.7.29/0.8.0/1.0.0. It has been rated as critical. This issue affects the crypto mining component which introduces a backdoor. Upgrading to version 0.7.30, 0.8.1 and 1.0.1 is able to address this issue. It is recommended to upgrade the affected component.

CVE-2021-45446
Pentaho Business Analytics Server General
5.0
MEDIUM
EPSS
0.2%
2021 CWE-548 1 PoC

A vulnerability in Hitachi Vantara Pentaho Business Analytics Server versions before 9.2.0.2 and 8.3.0.25 does not cascade the hidden property to the children of the Home folder.  This directory listing provides an attacker with the complete index of all the resources located inside the directory.

CVE-2021-25503
Samsung Mobile Devices General
5.0
MEDIUM
EPSS
0.0%
2021 CWE-20 1 PoC

Improper input validation vulnerability in HDCP prior to SMR Nov-2021 Release 1 allows attackers to arbitrary code execution.

CVE-2021-34389
NVIDIA Jetson, TX2 series, TX2 NX, AGX Xavier series, Xavier NX General
5.0
MEDIUM
EPSS
0.1%
2021 1 PoC

Trusty contains a vulnerability in NVIDIA OTE protocol message parsing code, which is present in all the TAs. An incorrect bounds check can allow a local user through a malicious client to access memory from the heap in the TrustZone, which may lead to information disclosure.

CVE-2021-32006
GateManager General
5.0
MEDIUM
EPSS
0.1%
2021 CWE-275 1 PoC

This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Permission Issues vulnerability in LinkManager web portal of Secomea GateManager allows logged in LinkManager user to access stored SiteManager backup files.

CVE-2021-28175
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The Radius configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28205
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.4%
2021 CWE-22 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Delete SOL video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.

CVE-2021-28179
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Media support configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28183
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Web License configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28182
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The Web Service configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.