3376 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2021-28183
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Web License configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28181
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Remote video configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28176
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The DNS configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28178
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The UEFI configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-29693
VIOS General
4.9
MEDIUM
EPSS
0.1%
2021 1 PoC

IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a local user that is in the with elevated group privileges to cause a denial of service due to a vulnerability in the lpd daemon. IBM X-Force ID: 200255.

CVE-2021-29695
8335-GTB General
4.9
MEDIUM
EPSS
0.9%
2021 1 PoC

IBM Host firmware for LC-class Systems could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request that would allow them to delete arbitrary files on the system. IBM X-Force ID: 200558.

CVE-2021-28187
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.6%
2021 CWE-120 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Generate new SSL certificate) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28180
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Audit log configuration setting) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28186
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The specific function in ASUS BMC’s firmware Web management page (ActiveX configuration-2 acquisition) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28185
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The specific function in ASUS BMC’s firmware Web management page (ActiveX configuration-1 acquisition) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-21907
Garrett Metal Detectors General
4.9
MEDIUM
EPSS
0.3%
2021 CWE-22 1 PoC

A directory traversal vulnerability exists in the CMA CLI getenv command functionality of Garrett Metal Detectors’ iC Module CMA Version 5.0. A specially-crafted command line argument can lead to local file inclusion. An attacker can provide malicious input to trigger this vulnerability.

CVE-2021-28189
BMC firmware for Z10PR-D16 General
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The SMTP configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-23346
html-parse-stringify General
4.8
MEDIUM
EPSS
0.6%
2021 3 PoCs

This affects the package html-parse-stringify before 2.0.1; all versions of package html-parse-stringify2. Sending certain input could cause one of the regular expressions that is used for parsing to backtrack, freezing the process.

CVE-2021-3797
hestiacp/hestiacp General
4.8
MEDIUM
EPSS
0.4%
2021 CWE-597 1 PoC

hestiacp is vulnerable to Use of Wrong Operator in String Comparison

CVE-2021-25956
dolibarr General
4.7
MEDIUM
EPSS
0.4%
2021 CWE-284 1 PoC

In “Dolibarr” application, v3.3.beta1_20121221 to v13.0.2 have “Modify” access for admin level users to change other user’s details but fails to validate already existing “Login” name, while renaming the user “Login”. This leads to complete account takeover of the victim user. This happens since the password gets overwritten for the victim user having a similar login name.

CVE-2021-27853
802.2 General
4.7
MEDIUM
EPSS
0.1%
2021 CWE-290 1 PoC

Layer 2 network filtering capabilities such as IPv6 RA guard or ARP inspection can be bypassed using combinations of VLAN 0 headers and LLC/SNAP headers.

CVE-2021-37866
Mattermost Boards General
4.7
MEDIUM
EPSS
0.2%
2021 CWE-613 2 PoCs

Mattermost Boards plugin v0.10.0 and earlier fails to invalidate a session on the server-side when a user logged out of Boards, which allows an attacker to reuse old session token for authorization.

CVE-2021-46795
Ryzen 5000 Series General
4.7
MEDIUM
EPSS
0.0%
2021 1 PoC

A TOCTOU (time-of-check to time-of-use) vulnerability exists where an attacker may use a compromised BIOS to cause the TEE OS to read memory out of bounds that could potentially result in a denial of service.

CVE-2021-38531
Software Genérico General
4.7
MEDIUM
EPSS
0.2%
2021 1 PoC

Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6120 before 1.0.0.66, R6260 before 1.1.0.78, R6700v2 before 1.2.0.76, R6800 before 1.2.0.76, R6900v2 before 1.2.0.76, R7450 before 1.2.0.76, AC2100 before 1.2.0.76, and AC2400 before 1.2.0.76.

CVE-2021-33798
libpano13 General
4.7
MEDIUM
EPSS
0.0%
2021 CWE-476 2 PoCs

A null pointer dereference was found in libpano13, version libpano13-2.9.20. The flow allows attackers to cause a denial of service and potential code execute via a crafted file.