7442 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2021-31810
Software Genérico General
N/A
UNKNOWN
EPSS
0.6%
2021 1 PoC

An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. A malicious FTP server can use the PASV response to trick Net::FTP into connecting back to a given IP address and port. This potentially makes curl extract information about services that are otherwise private and not disclosed (e.g., the attacker can conduct port scans and service banner extractions).

CVE-2021-26577
HPE Apollo 70 System Networking
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

The Baseboard Management Controller (BMC) firmware in HPE Apollo 70 System prior to version 3.0.14.0 has a local buffer overflow in libifc.so uploadsshkey function.

CVE-2021-37927
Software Genérico General
N/A
UNKNOWN
EPSS
2.1%
2021 1 PoC

Zoho ManageEngine ADManager Plus version 7110 and prior allows account takeover via SSO.

CVE-2021-25045
Asgaros Forum Web Database Windows
N/A
UNKNOWN
EPSS
1.2%
2021 CWE-89 1 PoC

The Asgaros Forum WordPress plugin before 1.15.15 does not validate or escape the forum_id parameter before using it in a SQL statement when editing a forum, leading to an SQL injection issue

CVE-2021-24664
School Management System – WPSchoolPress Web Windows
N/A
UNKNOWN
EPSS
1.4%
2021 CWE-79 2 PoCs

The School Management System – WPSchoolPress WordPress plugin before 2.1.17 sanitise some fields using sanitize_text_field() but does not escape them before outputting in attributes, resulting in Stored Cross-Site Scripting issues.

CVE-2021-25087
Download Manager Web Windows
N/A
UNKNOWN
EPSS
1.6%
2021 CWE-862 1 PoC

The Download Manager WordPress plugin before 3.2.35 does not have any authorisation checks in some of the REST API endpoints, allowing unauthenticated attackers to call them, which could lead to sensitive information disclosure, such as posts passwords (fixed in 3.2.24) and files Master Keys (fixed in 3.2.25).

CVE-2021-24804
Simple JWT Login – Login and Register to WordPress using JWT Web Windows
N/A
UNKNOWN
EPSS
0.1%
2021 CWE-352 1 PoC

The Simple JWT Login WordPress plugin before 3.2.1 does not have nonce checks when saving its settings, allowing attackers to make a logged in admin changed them. Settings such as HMAC verification secret, account registering and default user roles can be updated, which could result in site takeover.

CVE-2021-33217
Software Genérico Web
N/A
UNKNOWN
EPSS
0.8%
2021 2 PoCs

An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. The Web Application allows Arbitrary Read/Write actions by authenticated users. The API allows an HTTP POST of arbitrary content into any file on the filesystem as root.

CVE-2021-20106
Nessus Agent General
N/A
UNKNOWN
EPSS
0.3%
2021 1 PoC

Nessus Agent versions 8.2.5 and earlier were found to contain a privilege escalation vulnerability which could allow a Nessus administrator user to upload a specially crafted file that could lead to gaining administrator privileges on the Nessus host.

CVE-2021-26718
Kaspersky Internet Security for Mac General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

KIS for macOS in some use cases was vulnerable to AV bypass that potentially allowed an attacker to disable anti-virus protection.

CVE-2021-24270
DethemeKit For Elementor Web Windows
N/A
UNKNOWN
EPSS
0.2%
2021 CWE-79 1 PoC

The “DeTheme Kit for Elementor” WordPress Plugin before 1.5.5.5 has a widget that is vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.

CVE-2021-20167
Netgear RAX43 Cloud ⚡ nuclei
N/A
UNKNOWN
EPSS
84.6%
2021 1 PoC

Netgear RAX43 version 1.0.3.96 contains a command injection vulnerability. The readycloud cgi application is vulnerable to command injection in the name parameter.

CVE-2021-4115
polkitd General
N/A
UNKNOWN
EPSS
0.1%
2021 CWE-400 3 PoCs

There is a flaw in polkit which can allow an unprivileged user to cause polkit to crash, due to process file descriptor exhaustion. The highest threat from this vulnerability is to availability. NOTE: Polkit process outage duration is tied to the failing process being reaped and a new one being spawned

CVE-2021-45835
Software Genérico Web
N/A
UNKNOWN
EPSS
22.2%
2021 1 PoC

The Online Admission System 1.0 allows an unauthenticated attacker to upload or transfer files of dangerous types to the application through documents.php, which may be used to execute malicious code or lead to code execution.

CVE-2021-40373
Software Genérico Web
N/A
UNKNOWN
EPSS
25.5%
2021 1 PoC

playSMS before 1.4.5 allows Arbitrary Code Execution by entering PHP code at the #tabs-information-page of core_main_config, and then executing that code via the index.php?app=main&inc=core_welcome URI.

CVE-2021-40093
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2021 2 PoCs

A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inject arbitrary web script or HTML via dashboard actions.

CVE-2021-30147
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2021 1 PoC

DMA Softlab Radius Manager 4.4.0 allows CSRF with impacts such as adding new manager accounts via admin.php.

CVE-2021-31908
Software Genérico Web
N/A
UNKNOWN
EPSS
0.0%
2021 2 PoCs

In JetBrains TeamCity before 2020.2.3, stored XSS was possible on several pages.

CVE-2021-33622
Software Genérico General
N/A
UNKNOWN
EPSS
0.5%
2021 1 PoC

Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.

CVE-2021-26363
Ryzen™ Series General
N/A
UNKNOWN
EPSS
0.1%
2021 1 PoC

A malicious or compromised UApp or ABL could potentially change the value that the ASP uses for its reserved DRAM, to one outside of the fenced area, potentially leading to data exposure.