CVE-2021-21000 to CVE-2021-21999
256 CVEs with public proof-of-concept exploits.
- CVE-2021-210141 PoCMagento Commerce Arbitrary Folder Empty Could Lead To Arbitrary Code Execution
- CVE-2021-210172 PoCsKEVAcrobat Reader DC Heap-based Buffer Overflow Vulnerability Could Lead To Arbitrary Code Execution
- CVE-2021-210422 PoCsAcrobat Reader DC Out-Of-Bounds Read Information Disclosure Vulnerability
- CVE-2021-210861 PoCAdobe Reader CoolType Arbitrary Stack Manipulation
- CVE-2021-210872 PoCsColdFusion Improper neutralization of web input during page generation could lead to arbitrary JavaScript execution in the browser
- CVE-2021-211101 PoCUse after free in safe browsing in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially perform a sandbox escape…
- CVE-2021-211231 PoCInsufficient data validation in File System API in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass filesystem…
- CVE-2021-211481 PoCKEVHeap buffer overflow in V8 in Google Chrome prior to 88.0.4324.150 allowed a remote attacker to potentially exploit heap corruption via a…
- CVE-2021-211931 PoCKEVUse after free in Blink in Google Chrome prior to 89.0.4389.90 allowed a remote attacker to potentially exploit heap corruption via a…
- CVE-2021-212206 PoCsKEVInsufficient validation of untrusted input in V8 in Google Chrome prior to 89.0.4389.128 allowed a remote attacker to potentially exploit…
- CVE-2021-212241 PoCKEVType confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a…
- CVE-2021-212344 PoCsDirectory Traversal
- CVE-2021-212393 PoCsOpen default xmlsec1 key-type preference
- CVE-2021-212401 PoCRegular Expression Denial of Service in httplib2
- CVE-2021-212421 PoCPre-Auth Unsafe Deserialization on AttachmentUploadServet
- CVE-2021-212461 PoCPre-Auth Access token leak
- CVE-2021-212591 PoCStored XSS in slide mode
- CVE-2021-212672 PoCsRegular Expression Denial-of-Service in npm schema-inspector
- CVE-2021-212761 PoCPrivilege escalation in Polr
- CVE-2021-212873 PoCsServer-Side Request Forgery in MinIO Browser API
- CVE-2021-212911 PoCSubdomain checking of whitelisted domains could allow unintended redirects
- CVE-2021-2130015 PoCsmalicious repositories can execute remote code while cloning
- CVE-2021-213051 PoCCode Injection vulnerability in CarrierWave
- CVE-2021-213074 PoCsRemote Code Exploit in Lucee Admin
- CVE-2021-213101 PoCToken verification bug in next-auth
- CVE-2021-213116 PoCsKEVSSRF in adminer
- CVE-2021-213159 PoCsKEVCommand Injection Vulnerability
- CVE-2021-213271 PoCUnsafe Reflection in getItemForItemtype()
- CVE-2021-213372 PoCsURL Redirection to Untrusted Site ('Open Redirect') in Products.PluggableAuthService
- CVE-2021-213412 PoCsXStream can cause a Denial of Service
- CVE-2021-213441 PoCXStream is vulnerable to an Arbitrary Code Execution attack
- CVE-2021-213452 PoCsXStream is vulnerable to a Remote Command Execution attack
- CVE-2021-213491 PoCA Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a…
- CVE-2021-213512 PoCsXStream is vulnerable to an Arbitrary Code Execution attack
- CVE-2021-213532 PoCsRemote code execution in pug
- CVE-2021-213801 PoCRating Script Service expose XWiki to SQL injection
- CVE-2021-213821 PoCUnsafe loopback forwarding interface in Restund
- CVE-2021-213895 PoCsBuddyPress privilege escalation via REST API
- CVE-2021-214011 PoCInvalid free() call in Nanopb
- CVE-2021-214027 PoCsUnauthenticated Arbitrary File Access in Jellyfin
- CVE-2021-214051 PoCBLS Signature "Malleability"
- CVE-2021-214241 PoCPrevent user enumeration using Guard or the new Authenticator-based Security
- CVE-2021-214259 PoCsUnauthenticated Arbitrary YAML Write/Update leads to Code Execution
- CVE-2021-214652 PoCsThe BW Database Interface allows an attacker with low privileges to execute any crafted database queries, exposing the backend database.…
- CVE-2021-214662 PoCsSAP Business Warehouse, versions 700, 701, 702, 711, 730, 731, 740, 750, 782 and SAP BW/4HANA, versions 100, 200, allow a low privileged…
- CVE-2021-214682 PoCsThe BW Database Interface does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges…
- CVE-2021-214732 PoCsSAP NetWeaver AS ABAP and ABAP Platform, versions - 700, 702, 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, 755, contains function…
- CVE-2021-214791 PoCIn SCIMono before 0.0.19, it is possible for an attacker to inject and execute java expression compromising the availability and integrity…
- CVE-2021-214951 PoCMK-AUTH through 19.01 K4.9 allows CSRF for password changes via the central/executar_central.php?acao=altsenha_princ URI.
- CVE-2021-215131 PoCDell EMC OpenManage Server Administrator (OMSA) version 9.5 Microsoft Windows installations with Distributed Web Server (DWS) enabled…
- CVE-2021-215141 PoCDell EMC OpenManage Server Administrator (OMSA) versions 9.5 and prior contain a path traversal vulnerability. A remote user with admin…
- CVE-2021-2155120 PoCsKEVDell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of…
- CVE-2021-217042 PoCsMultiple vulnerabilities in Firebird client extension
- CVE-2021-217072 PoCsSpecial characters break path parsing in XML functions
- CVE-2021-217083 PoCsUAF due to php_filter_float() failing
- CVE-2021-217451 PoCZTE MF971R product has a Referer authentication bypass vulnerability. Without CSRF verification, an attackercould use this vulnerability…
- CVE-2021-217721 PoCA use-after-free vulnerability exists in the NMR::COpcPackageReader::releaseZIP() functionality of 3MF Consortium lib3mf 2.0.0. A…
- CVE-2021-217731 PoCAn out-of-bounds write vulnerability exists in the TIFF header count-processing functionality of Accusoft ImageGear 19.8. A specially…
- CVE-2021-217751 PoCA use-after-free vulnerability exists in the way certain events are processed for ImageLoader objects of Webkit WebKitGTK 2.30.4. A…
- CVE-2021-217761 PoCAn out-of-bounds write vulnerability exists in the SGI Format Buffer Size Processing functionality of Accusoft ImageGear 19.8. A specially…
- CVE-2021-217771 PoCAn information disclosure vulnerability exists in the Ethernet/IP UDP handler functionality of EIP Stack Group OpENer 2.3 and development…
- CVE-2021-217781 PoCA denial of service vulnerability exists in the ASDU message processing functionality of MZ Automation GmbH lib60870.NET 2.2.0. A…
- CVE-2021-217791 PoCA use-after-free vulnerability exists in the way Webkit’s GraphicsContext handles certain events in WebKitGTK 2.30.4. A specially crafted…
- CVE-2021-217811 PoCAn information disclosure vulnerability exists in the ARM SIGPAGE functionality of Linux Kernel v5.4.66 and v5.4.54. The latest version…
- CVE-2021-217821 PoCAn out-of-bounds write vulnerability exists in the SGI format buffer size processing functionality of Accusoft ImageGear 19.8. A specially…
- CVE-2021-217831 PoCA code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request…
- CVE-2021-217841 PoCAn out-of-bounds write vulnerability exists in the JPG format SOF marker processing of Accusoft ImageGear 19.8. A specially crafted…
- CVE-2021-217861 PoCA privilege escalation vulnerability exists in the IOCTL 0x9c406144 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220. A specially…
- CVE-2021-217871 PoCA privilege escalation vulnerability exists in the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O write…
- CVE-2021-217881 PoCA privilege escalation vulnerability exists in the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O write…
- CVE-2021-217891 PoCA privilege escalation vulnerability exists in the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O write…
- CVE-2021-217901 PoCAn information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O…
- CVE-2021-217911 PoCAn information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O…
- CVE-2021-217921 PoCAn information disclosure vulnerability exists in the the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Privileged I/O…
- CVE-2021-217931 PoCAn out-of-bounds write vulnerability exists in the JPG sof_nb_comp header processing functionality of Accusoft ImageGear 19.8 and 19.9. A…
- CVE-2021-217951 PoCA heap-based buffer overflow vulnerability exists in the PSD read_icc_icCurve_data functionality of Accusoft ImageGear 19.9. A specially…
- CVE-2021-217961 PoCAn exploitable use-after-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF. A specially crafted document can…
- CVE-2021-217971 PoCAn exploitable double-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF. A specially crafted document can cause…
- CVE-2021-217981 PoCAn exploitable return of stack variable address vulnerability exists in the JavaScript implementation of Nitro Pro PDF. A specially…
- CVE-2021-217992 PoCsCross-site scripting vulnerabilities exist in the telnet_form.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). If a…
- CVE-2021-218002 PoCsCross-site scripting vulnerabilities exist in the ssh_form.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). If a user…
- CVE-2021-218012 PoCsThis vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially…
- CVE-2021-218022 PoCsThis vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially…
- CVE-2021-218032 PoCsThis vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially…
- CVE-2021-218041 PoCA local file inclusion (LFI) vulnerability exists in the options.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A…
- CVE-2021-218052 PoCsAn OS Command Injection vulnerability exists in the ping.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A specially…
- CVE-2021-218061 PoCAn exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.3 x64. A specially crafted HTML web page can cause a…
- CVE-2021-218071 PoCAn integer overflow vulnerability exists in the DICOM parse_dicom_meta_info functionality of Accusoft ImageGear 19.9. A specially crafted…
- CVE-2021-218081 PoCA memory corruption vulnerability exists in the PNG png_palette_process functionality of Accusoft ImageGear 19.9. A specially crafted…
- CVE-2021-218094 PoCsA command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted series of HTTP…
- CVE-2021-218101 PoCA memory corruption vulnerability exists in the XML-parsing ParseAttribs functionality of AT&T Labs’ Xmill 0.7. A specially crafted XML…
- CVE-2021-218111 PoCA memory corruption vulnerability exists in the XML-parsing CreateLabelOrAttrib functionality of AT&T Labs’ Xmill 0.7. A specially crafted…
- CVE-2021-218121 PoCA stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs’ Xmill 0.7. Within…
- CVE-2021-218131 PoCWithin the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line.…
- CVE-2021-218141 PoCWithin the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line.…
- CVE-2021-218151 PoCA stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs' Xmill 0.7. Within…
- CVE-2021-218162 PoCsAn information disclosure vulnerability exists in the Syslog functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request…
- CVE-2021-218171 PoCAn information disclosure vulnerability exists in the Zebra IP Routing Manager functionality of D-LINK DIR-3040 1.13B03. A specially…
- CVE-2021-218181 PoCA hard-coded password vulnerability exists in the Zebra IP Routing Manager functionality of D-LINK DIR-3040 1.13B03. A specially crafted…
- CVE-2021-218191 PoCA code execution vulnerability exists in the Libcli Test Environment functionality of D-LINK DIR-3040 1.13B03. A specially crafted network…
- CVE-2021-218201 PoCA hard-coded password vulnerability exists in the Libcli Test Environment functionality of D-LINK DIR-3040 1.13B03. A specially crafted…
- CVE-2021-218211 PoCA stack-based buffer overflow vulnerability exists in the PDF process_fontname functionality of Accusoft ImageGear 19.9. A specially…
- CVE-2021-218221 PoCA use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 10.1.3.37598. A specially crafted…
- CVE-2021-218241 PoCAn out-of-bounds write vulnerability exists in the JPG Handle_JPEG420 functionality of Accusoft ImageGear 19.9. A specially crafted…
- CVE-2021-218251 PoCA heap-based buffer overflow vulnerability exists in the XML Decompression PlainTextUncompressor::UncompressItem functionality of AT&T…
- CVE-2021-218261 PoCA heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7. Within…
- CVE-2021-218271 PoCA heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7. Within…
- CVE-2021-218281 PoCA heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7. In the…
- CVE-2021-218291 PoCA heap-based buffer overflow vulnerability exists in the XML Decompression EnumerationUncompressor::UncompressItem functionality of AT&T…
- CVE-2021-218301 PoCA heap-based buffer overflow vulnerability exists in the XML Decompression LabelDict::Load functionality of AT&T Labs’ Xmill 0.7. A…
- CVE-2021-218311 PoCA use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 10.1.3.37598. A specially crafted…
- CVE-2021-218321 PoCA memory corruption vulnerability exists in the ISO Parsing functionality of Disc Soft Ltd Deamon Tools Pro 8.3.0.0767. A specially…
- CVE-2021-218331 PoCAn improper array index validation vulnerability exists in the TIF IP_planar_raster_unpack functionality of Accusoft ImageGear 19.9. A…
- CVE-2021-218341 PoCAn exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218351 PoCAn exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218361 PoCAn exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218372 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218382 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218392 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218401 PoCAn exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218411 PoCAn exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218421 PoCAn exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218432 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218442 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218452 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218462 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218472 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218481 PoCAn exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218491 PoCAn exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218501 PoCAn exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218512 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218522 PoCsMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218531 PoCMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218541 PoCMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218551 PoCMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218561 PoCMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218571 PoCMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218581 PoCMultiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218591 PoCAn exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218601 PoCAn exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218611 PoCAn exploitable integer truncation vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content…
- CVE-2021-218621 PoCMultiple exploitable integer truncation vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced…
- CVE-2021-218641 PoCA unsafe deserialization vulnerability exists in the ComponentModel ComponentManager.StartupCultureSettings functionality of CODESYS GmbH…
- CVE-2021-218671 PoCAn unsafe deserialization vulnerability exists in the ObjectManager.plugin ObjectStream.ProfileByteArray functionality of CODESYS GmbH…
- CVE-2021-218681 PoCAn unsafe deserialization vulnerability exists in the ObjectManager.plugin Project.get_MissingTypes() functionality of CODESYS GmbH…
- CVE-2021-218691 PoCAn unsafe deserialization vulnerability exists in the Engine.plugin ProfileInformation ProfileData functionality of CODESYS GmbH CODESYS…
- CVE-2021-218701 PoCA use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 10.1.4.37651. A specially crafted…
- CVE-2021-218711 PoCA memory corruption vulnerability exists in the DMG File Format Handler functionality of PowerISO 7.9. A specially crafted DMG file can…
- CVE-2021-218721 PoCAn OS command injection vulnerability exists in the Web Manager Diagnostics: Traceroute functionality of Lantronix PremierWave 2050…
- CVE-2021-218731 PoCA specially-crafted HTTP request can lead to arbitrary command execution in RSA keypasswd parameter. An attacker can make an authenticated…
- CVE-2021-218741 PoCA specially-crafted HTTP request can lead to arbitrary command execution in DSA keypasswd parameter. An attacker can make an authenticated…
- CVE-2021-218751 PoCA specially-crafted HTTP request can lead to arbitrary command execution in EC keypasswd parameter. An attacker can make an authenticated…
- CVE-2021-218761 PoCSpecially-crafted HTTP requests can lead to arbitrary command execution in PUT requests. An attacker can make authenticated HTTP requests…
- CVE-2021-218771 PoCSpecially-crafted HTTP requests can lead to arbitrary command execution in “GET” requests. An attacker can make authenticated HTTP…
- CVE-2021-218781 PoCA local file inclusion vulnerability exists in the Web Manager Applications and FsBrowse functionality of Lantronix PremierWave 2050…
- CVE-2021-218791 PoCA directory traversal vulnerability exists in the Web Manager File Upload functionality of Lantronix PremierWave 2050 8.9.0.0R4. A…
- CVE-2021-218801 PoCA directory traversal vulnerability exists in the Web Manager FsCopyFile functionality of Lantronix PremierWave 2050 8.9.0.0R4. A…
- CVE-2021-218812 PoCsAn OS command injection vulnerability exists in the Web Manager Wireless Network Scanner functionality of Lantronix PremierWave 2050…
- CVE-2021-218821 PoCAn OS command injection vulnerability exists in the Web Manager FsUnmount functionality of Lantronix PremierWave 2050 8.9.0.0R4. A…
- CVE-2021-218831 PoCAn OS command injection vulnerability exists in the Web Manager Diagnostics: Ping functionality of Lantronix PremierWave 2050 8.9.0.0R4. A…
- CVE-2021-218841 PoCAn OS command injection vulnerability exists in the Web Manager SslGenerateCSR functionality of Lantronix PremierWave 2050 8.9.0.0R4. A…
- CVE-2021-218851 PoCA directory traversal vulnerability exists in the Web Manager FsMove functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially…
- CVE-2021-218861 PoCA directory traversal vulnerability exists in the Web Manager FSBrowsePage functionality of Lantronix PremierWave 2050 8.9.0.0R4. A…
- CVE-2021-218871 PoCA stack-based buffer overflow vulnerability exists in the Web Manager SslGenerateCSR functionality of Lantronix PremierWave 2050 8.9.0.0R4…
- CVE-2021-218881 PoCAn OS command injection vulnerability exists in the Web Manager SslGenerateCertificate functionality of Lantronix PremierWave 2050…
- CVE-2021-218891 PoCA stack-based buffer overflow vulnerability exists in the Web Manager Ping functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in…
- CVE-2021-218901 PoCA stack-based buffer overflow vulnerability exists in the Web Manager FsBrowseClean functionality of Lantronix PremierWave 2050 8.9.0.0R4…
- CVE-2021-218911 PoCA stack-based buffer overflow vulnerability exists in the Web Manager FsBrowseClean functionality of Lantronix PremierWave 2050 8.9.0.0R4…
- CVE-2021-218921 PoCA stack-based buffer overflow vulnerability exists in the Web Manager FsUnmount functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in…
- CVE-2021-218931 PoCA use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.0.0.49893. A specially crafted…
- CVE-2021-218941 PoCA directory traversal vulnerability exists in the Web Manager FsTFtp functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A…
- CVE-2021-218951 PoCA directory traversal vulnerability exists in the Web Manager FsTFtp functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A…
- CVE-2021-218961 PoCA directory traversal vulnerability exists in the Web Manager FsBrowseClean functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in…
- CVE-2021-218971 PoCA code execution vulnerability exists in the DL_Dxf::handleLWPolylineData functionality of Ribbonsoft dxflib 3.17.0. A specially-crafted…
- CVE-2021-218981 PoCA code execution vulnerability exists in the dwgCompressor::decompress18() functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A…
- CVE-2021-218991 PoCA code execution vulnerability exists in the dwgCompressor::copyCompBytes21 functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A…
- CVE-2021-219001 PoCA code execution vulnerability exists in the dxfRW::processLType() functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A…
- CVE-2021-219011 PoCA stack-based buffer overflow vulnerability exists in the CMA check_udp_crc function of Garrett Metal Detectors’ iC Module CMA Version…
- CVE-2021-219021 PoCAn authentication bypass vulnerability exists in the CMA run_server_6877 functionality of Garrett Metal Detectors iC Module CMA Version…
- CVE-2021-219031 PoCA stack-based buffer overflow vulnerability exists in the CMA check_udp_crc function of Garrett Metal Detectors’ iC Module CMA Version…
- CVE-2021-219041 PoCA directory traversal vulnerability exists in the CMA CLI setenv command of Garrett Metal Detectors’ iC Module CMA Version 5.0. An…
- CVE-2021-219051 PoCStack-based buffer overflow vulnerability exists in how the CMA readfile function of Garrett Metal Detectors iC Module CMA Version 5.0 is…
- CVE-2021-219061 PoCStack-based buffer overflow vulnerability exists in how the CMA readfile function of Garrett Metal Detectors iC Module CMA Version 5.0 is…
- CVE-2021-219071 PoCA directory traversal vulnerability exists in the CMA CLI getenv command functionality of Garrett Metal Detectors’ iC Module CMA Version…
- CVE-2021-219081 PoCSpecially-crafted command line arguments can lead to arbitrary file deletion. The handle_delete function does not attempt to sanitize or…
- CVE-2021-219091 PoCSpecially-crafted command line arguments can lead to arbitrary file deletion in the del .cnt|.log file delete command. An attacker can…
- CVE-2021-219101 PoCA privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15…
- CVE-2021-219111 PoCA privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15…
- CVE-2021-219121 PoCA privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15…
- CVE-2021-219131 PoCAn information disclosure vulnerability exists in the WiFi Smart Mesh functionality of D-LINK DIR-3040 1.13B03. A specially-crafted…
- CVE-2021-219141 PoCA heap-based buffer overflow vulnerability exists in the DecoderStream::Append functionality of Accusoft ImageGear 19.10. A…
- CVE-2021-219151 PoCAn exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A…
- CVE-2021-219161 PoCAn exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A…
- CVE-2021-219171 PoCAn exploitable SQL injection vulnerability exist in the ‘group_list’ page of the Advantech R-SeeNet 2.4.15 (30.07.2021). A…
- CVE-2021-219181 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability…
- CVE-2021-219191 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability…
- CVE-2021-219201 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability…
- CVE-2021-219211 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability…
- CVE-2021-219221 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability…
- CVE-2021-219231 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability…
- CVE-2021-219241 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these…
- CVE-2021-219251 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these…
- CVE-2021-219261 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these…
- CVE-2021-219271 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger these…
- CVE-2021-219281 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests at ‘mac_filter’ parameter to…
- CVE-2021-219291 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests at ‘prod_filter’ parameter to…
- CVE-2021-219301 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests at ‘sn_filter’ parameter to…
- CVE-2021-219311 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests at‘ stat_filter’ parameter to…
- CVE-2021-219321 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at…
- CVE-2021-219331 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at…
- CVE-2021-219341 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at…
- CVE-2021-219351 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability…
- CVE-2021-219361 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability…
- CVE-2021-219371 PoCA specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability…
- CVE-2021-219381 PoCA heap-based buffer overflow vulnerability exists in the Palette box parser functionality of Accusoft ImageGear 19.10. A specially-crafted…
- CVE-2021-219391 PoCA heap-based buffer overflow vulnerability exists in the XWD parser functionality of Accusoft ImageGear 19.10. A specially-crafted file…
- CVE-2021-219401 PoCA heap-based buffer overflow vulnerability exists in the pushMuxer processRtspInfo functionality of Anker Eufy Homebase 2 2.1.6.9h. A…
- CVE-2021-219411 PoCA use-after-free vulnerability exists in the pushMuxer CreatePushThread functionality of Anker Eufy Homebase 2 2.1.6.9h. A…
- CVE-2021-219421 PoCAn out-of-bounds write vulnerability exists in the TIFF YCbCr image parser functionality of Accusoft ImageGear 19.10. A specially-crafted…
- CVE-2021-219431 PoCA heap-based buffer overflow vulnerability exists in the XWD parser functionality of Accusoft ImageGear 19.10. A specially-crafted file…
- CVE-2021-219441 PoCTwo heap-based buffer overflow vulnerabilities exist in the TIFF parser functionality of Accusoft ImageGear 19.10. A specially-crafted…
- CVE-2021-219451 PoCTwo heap-based buffer overflow vulnerabilities exist in the TIFF parser functionality of Accusoft ImageGear 19.10. A specially-crafted…
- CVE-2021-219461 PoCTwo heap-based buffer overflow vulnerabilities exists in the JPEG-JFIF lossless Huffman image parser functionality of Accusoft ImageGear…
- CVE-2021-219471 PoCTwo heap-based buffer overflow vulnerabilities exists in the JPEG-JFIF lossless Huffman image parser functionality of Accusoft ImageGear…
- CVE-2021-219481 PoCA heap-based buffer overflow vulnerability exists in the readDatHeadVec functionality of AnyCubic Chitubox AnyCubic Plugin 1.0.0. A…
- CVE-2021-219491 PoCAn improper array index validation vulnerability exists in the JPEG-JFIF Scan header parser functionality of Accusoft ImageGear 19.10. A…
- CVE-2021-219501 PoCAn out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of Anker…
- CVE-2021-219511 PoCAn out-of-bounds write vulnerability exists in the CMD_DEVICE_GET_SERVER_LIST_REQUEST functionality of the home_security binary of Anker…
- CVE-2021-219521 PoCAn authentication bypass vulnerability exists in the CMD_DEVICE_GET_RSA_KEY_REQUEST functionality of the home_security binary of Anker…
- CVE-2021-219531 PoCAn authentication bypass vulnerability exists in the process_msg() function of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h.…
- CVE-2021-219541 PoCA command execution vulnerability exists in the wifi_country_code_update functionality of the home_security binary of Anker Eufy Homebase…
- CVE-2021-219551 PoCAn authentication bypass vulnerability exists in the get_aes_key_info_by_packetid() function of the home_security binary of Anker Eufy…
- CVE-2021-219561 PoCA php unserialize vulnerability exists in the Ai-Bolit functionality of CloudLinux Inc Imunify360 5.10.2. A specially-crafted malformed…
- CVE-2021-219571 PoCA privilege escalation vulnerability exists in the Remote Server functionality of Dream Report ODS Remote Connector 20.2.16900.0. A…
- CVE-2021-219581 PoCA heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353. A…
- CVE-2021-219591 PoCA misconfiguration exists in the MQTTS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. This misconfiguration…
- CVE-2021-219601 PoCA stack-based buffer overflow vulnerability exists in both the LLMNR functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A…
- CVE-2021-219611 PoCA stack-based buffer overflow vulnerability exists in the NBNS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A…
- CVE-2021-219621 PoCA heap-based buffer overflow vulnerability exists in the OTA Update u-download functionality of Sealevel Systems, Inc. SeaConnect 370W…
- CVE-2021-219641 PoCA denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34.…
- CVE-2021-219651 PoCA denial of service vulnerability exists in the SeaMax remote configuration functionality of Sealevel Systems, Inc. SeaConnect 370W…
- CVE-2021-219661 PoCAn information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution…
- CVE-2021-219671 PoCAn out-of-bounds write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A…
- CVE-2021-219681 PoCA file write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A…
- CVE-2021-219691 PoCAn out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34.…
- CVE-2021-219701 PoCAn out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34.…
- CVE-2021-2197243 PoCsKEVThe vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network…
- CVE-2021-219733 PoCsKEVThe vSphere Client (HTML5) contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in a vCenter…
- CVE-2021-219747 PoCsOpenSLP as used in ESXi (7.0 before ESXi70U1c-17325551, 6.7 before ESXi670-202102401-SG, 6.5 before ESXi650-202102101-SG) has a…
- CVE-2021-2197515 PoCsKEVServer Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network…
- CVE-2021-219788 PoCsVMware View Planner 4.x prior to 4.6 Security Patch 1 contains a remote code execution vulnerability. Improper input validation and lack…
- CVE-2021-219802 PoCsThe vSphere Web Client (FLEX/Flash) contains an unauthorized arbitrary file read vulnerability. A malicious actor with network access to…
- CVE-2021-219834 PoCsArbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authenticated malicious…
- CVE-2021-2198517 PoCsKEVThe vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input validation in the Virtual SAN Health Check…
- CVE-2021-219901 PoCVMware Workspace one UEM console (2102 prior to 21.2.0.8, 2101 prior to 21.1.0.14, 2011 prior to 20.11.0.27, 2010 prior to 20.10.0.16,2008…
- CVE-2021-219941 PoCSFCB (Small Footprint CIM Broker) as used in ESXi has an authentication bypass vulnerability. A malicious actor with network access to…