CVE-2021-36000 to CVE-2021-36999
104 CVEs with public proof-of-concept exploits.
- CVE-2021-361591 PoClibfetch before 2021-07-26, as used in apk-tools, xbps, and other products, mishandles numeric strings for the FTP and HTTP protocols. The…
- CVE-2021-361651 PoCRICON Industrial Cellular Router S9922L 16.10.3(3794) is affected by cleartext storage of sensitive information and sends username and…
- CVE-2021-362242 PoCsWestern Digital My Cloud devices before OS5 have a nobody account with a blank password.
- CVE-2021-362252 PoCsWestern Digital My Cloud devices before OS5 allow REST API access by low-privileged accounts, as demonstrated by API commands for firmware…
- CVE-2021-362262 PoCsWestern Digital My Cloud devices before OS5 do not use cryptographically signed Firmware upgrade files.
- CVE-2021-362311 PoCDeserialization of untrusted data in multiple functions in MIK.starlight 7.9.5.24363 allows authenticated remote attackers to execute…
- CVE-2021-362321 PoCImproper Authorization in multiple functions in MIK.starlight 7.9.5.24363 allows an authenticated attacker to escalate privileges.
- CVE-2021-362331 PoCThe function AdminGetFirstFileContentByFilePath in MIK.starlight 7.9.5.24363 allows (by design) an authenticated attacker to read…
- CVE-2021-3626027 PoCsKEVA command injection vulnerability in the web server of some Hikvision product. Due to the insufficient input validation, attacker can…
- CVE-2021-363511 PoCSQL Injection Vulnerability in Care2x Open Source Hospital Information Management 2.7 Alpha via the (1) pday, (2) pmonth, and (3) pyear…
- CVE-2021-363521 PoCStored cross-site scripting (XSS) vulnerability in Care2x Hospital Information Management 2.7 Alpha. The vulnerability has found POST…
- CVE-2021-363564 PoCsKRAMER VIAware through August 2021 allows remote attackers to execute arbitrary code because ajaxPages/writeBrowseFilePathAjax.php accepts…
- CVE-2021-363592 PoCsOrbiTeam BSCW Classic before 7.4.3 allows exportpdf authenticated remote code execution (RCE) via XML tag injection because…
- CVE-2021-363802 PoCsKEVSunhillo SureLine before 8.7.0.1.1 allows Unauthenticated OS Command Injection via shell metacharacters in ipAddr or dnsAddr…
- CVE-2021-363831 PoCXen Orchestra (with xo-web through 5.80.0 and xo-server through 5.84.0) mishandles authorization, as demonstrated by modified WebSocket…
- CVE-2021-363933 PoCsIn Moodle, an SQL injection risk was identified in the library fetching a user's recent courses.
- CVE-2021-363942 PoCsIn Moodle, a remote code execution risk was identified in the Shibboleth authentication plugin.
- CVE-2021-363962 PoCsIn Moodle, insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictions, resulting in a…
- CVE-2021-364081 PoCAn issue was discovered in libde265 v1.0.8.There is a Heap-use-after-free in intrapred.h when decoding file using dec265.
- CVE-2021-364091 PoCThere is an Assertion `scaling_list_pred_matrix_id_delta==1' failed at sps.cc:925 in libde265 v1.0.8 when decoding file, which allows…
- CVE-2021-364101 PoCA stack-buffer-overflow exists in libde265 v1.0.8 via fallback-motion.cc in function put_epel_hv_fallback when running program dec265.
- CVE-2021-364111 PoCAn issue has been found in libde265 v1.0.8 due to incorrect access control. A SEGV caused by a READ memory access in function…
- CVE-2021-364121 PoCA heap-based buffer overflow vulnerability exists in MP4Box in GPAC 1.0.1 via the gp_rtp_builder_do_mpeg12_video function, which allows…
- CVE-2021-364141 PoCA heab-based buffer overflow vulnerability exists in MP4Box in GPAC 1.0.1 via media.c, which allows attackers to cause a denial of service…
- CVE-2021-364171 PoCA heap-based buffer overflow vulnerability exists in GPAC v1.0.1 in the gf_isom_dovi_config_get function in MP4Box, which causes a denial…
- CVE-2021-364261 PoCFile Upload vulnerability in phpwcms 1.9.25 allows remote attackers to run arbitrary code via crafted file upload to…
- CVE-2021-364401 PoCUnrestricted File Upload in ShowDoc v2.9.5 allows remote attackers to execute arbitrary code via the 'file_url' parameter in the component…
- CVE-2021-364431 PoCCross Site Request Forgery vulnerability in imcat 5.4 allows remote attackers to escalate privilege via lack of token verification.
- CVE-2021-364441 PoCCross Site Request Forgery (CSRF) vulnerability in imcat 5.4 allows remote attackers to gain escalated privileges via flaws one time token…
- CVE-2021-364502 PoCsVerint Workforce Optimization (WFO) 15.2.8.10048 allows XSS via the control/my_notifications NEWUINAV parameter.
- CVE-2021-364601 PoCVeryFitPro (com.veryfit2hr.second) 3.2.8 hashes the account's password locally on the device and uses the hash to authenticate in all…
- CVE-2021-364931 PoCBuffer Overflow vulnerability in pdfimages in xpdf 4.03 allows attackers to crash the application via crafted command.
- CVE-2021-365202 PoCsA SQL injection vulnerability in I-Tech Trainsmart r1044 exists via a evaluation/assign-evaluation?id= URI.
- CVE-2021-365301 PoCngiflib 0.4 has a heap overflow in GetByteStr() at ngiflib.c:108 in NGIFLIB_NO_FILE mode, GetByteStr() copy memory buffer without checking…
- CVE-2021-365311 PoCngiflib 0.4 has a heap overflow in GetByte() at ngiflib.c:70 in NGIFLIB_NO_FILE mode, GetByte() reads memory buffer without checking the…
- CVE-2021-365321 PoCRace condition vulnerability discovered in portfolioCMS 1.0 allows remote attackers to run arbitrary code via fileExt parameter to…
- CVE-2021-365351 PoCBuffer Overflow vulnerability in Cesanta mJS 1.26 allows remote attackers to cause a denial of service via crafted .js file to…
- CVE-2021-365391 PoCInstructure Canvas LMS didn't properly deny access to locked/unpublished files when the unprivileged user access the DocViewer based file…
- CVE-2021-365431 PoCCross-Site Request Forgery (CSRF) vulnerability in the /op/op.UnlockDocument.php in SeedDMS v5.1.x <5.1.23 and v6.0.x <6.0.16 allows a…
- CVE-2021-365461 PoCIncorrect Access Control issue discovered in KiteCMS 1.1 allows remote attackers to view sensitive information via path in application URL.
- CVE-2021-365501 PoCTikiWiki v21.4 was discovered to contain a cross-site scripting (XSS) vulnerability in the component tiki-browse_categories.php. This…
- CVE-2021-365511 PoCTikiWiki v21.4 was discovered to contain a cross-site scripting (XSS) vulnerability in the component tiki-calendar.php. This vulnerability…
- CVE-2021-365601 PoCPhone Shop Sales Managements System using PHP with Source Code 1.0 is vulnerable to authentication bypass which leads to account takeover…
- CVE-2021-365631 PoCThe CheckMK management web console (versions 1.5.0 to 2.0.0) does not sanitise user input in various parameters of the WATO module. This…
- CVE-2021-365641 PoCThinkPHP v6.0.8 was discovered to contain a deserialization vulnerability via the component…
- CVE-2021-365681 PoCIn certain Moodle products after creating a course, it is possible to add in a arbitrary "Topic" a resource, in this case a "Database"…
- CVE-2021-365691 PoCCross Site Request Forgery vulnerability in FUEL-CMS 1.4.13 allows remote attackers to run arbitrary code via post ID to /users/delete/2.
- CVE-2021-365701 PoCCross Site Request Forgery vulnerability in FUEL-CMS 1.4.13 allows remote attackers to run arbitrary code via post ID to…
- CVE-2021-365721 PoCCross Site Scripting (XSS) vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via the user name field of the…
- CVE-2021-365731 PoCFile Upload vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via crafted image upload.
- CVE-2021-365801 PoCOpen Redirect vulnerability exists in IceWarp MailServer IceWarp Server Deep Castle 2 Update 1 (13.0.1.2) via the referer parameter.
- CVE-2021-365811 PoCKooboo CMS 2.1.1.0 is vulnerable to Insecure file upload. It is possible to upload any file extension to the server. The server does not…
- CVE-2021-365821 PoCIn Kooboo CMS 2.1.1.0, it is possible to upload a remote shell (e.g., aspx) to the server and then call upon it to receive a reverse shell…
- CVE-2021-365841 PoCAn issue was discovered in GPAC 1.0.1. There is a heap-based buffer overflow in the function gp_rtp_builder_do_tx3g function in…
- CVE-2021-366011 PoCGetSimpleCMS 3.3.16 contains a cross-site Scripting (XSS) vulnerability, where Function TSL does not filter check settings.php Website…
- CVE-2021-366081 PoCCross Site Scripting (XSS) vulnerability in webTareas 2.2p1 via the Name field to /projects/editproject.php.
- CVE-2021-366091 PoCCross Site Scripting (XSS) vulnerability in webTareas 2.2p1 via the Name field to /linkedcontent/editfolder.php.
- CVE-2021-366132 PoCsMikrotik RouterOs before stable 6.48.2 suffers from a memory corruption vulnerability in the ptp process. An authenticated remote attacker…
- CVE-2021-366142 PoCsMikrotik RouterOs before stable 6.48.2 suffers from a memory corruption vulnerability in the tr069-client process. An authenticated remote…
- CVE-2021-366213 PoCsSourcecodester Online Covid Vaccination Scheduler System 1.0 is vulnerable to SQL Injection. The username parameter is vulnerable to…
- CVE-2021-366221 PoCSourcecodester Online Covid Vaccination Scheduler System 1.0 is affected vulnerable to Arbitrary File Upload. The admin panel has an…
- CVE-2021-366231 PoCArbitrary File Upload in Sourcecodester Phone Shop Sales Management System 1.0 enables RCE.
- CVE-2021-366242 PoCsSourcecodester Phone Shop Sales Managements System version 1.0 suffers from a remote SQL injection vulnerability that allows for…
- CVE-2021-366301 PoCDDOS reflection amplification vulnerability in eAut module of Ruckus Wireless SmartZone controller that allows remote attackers to perform…
- CVE-2021-366461 PoCA Cross Site Scrtpting (XSS) vulnerability in KodExplorer 4.45 allows remote attackers to run arbitrary code via /index.php page.
- CVE-2021-366542 PoCsCMSuno 1.7 is vulnerable to an authenticated stored cross site scripting in modifying the filename parameter (tgo) while updating the theme.
- CVE-2021-366651 PoCAn issue was discovered in Druva 6.9.0 for macOS, allows attackers to gain escalated local privileges via the inSyncUpgradeDaemon.
- CVE-2021-366661 PoCAn issue was discovered in Druva 6.9.0 for MacOS, allows attackers to gain escalated local privileges via the inSyncDecommission.
- CVE-2021-366671 PoCCommand injection vulnerability in Druva inSync 6.9.0 for MacOS, allows attackers to execute arbitrary commands via crafted payload to the…
- CVE-2021-366681 PoCURL injection in Driva inSync 6.9.0 for MacOS, allows attackers to force a visit to an arbitrary url via the port parameter to the…
- CVE-2021-366891 PoCAn issue discovered in com.samourai.wallet.PinEntryActivity.java in Streetside Samourai Wallet 0.99.96i allows attackers to view sensitive…
- CVE-2021-366901 PoCA segmentation fault can occur in the sqlite3.exe command-line component of SQLite 3.36.0 via the idxGetTableInfo function when there is a…
- CVE-2021-366911 PoClibjxl v0.5.0 is affected by a Assertion failed issue in lib/jxl/image.cc jxl::PlaneBase::PlaneBase(). When encoding a malicous GIF file…
- CVE-2021-366951 PoCDeskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in the…
- CVE-2021-366961 PoCDeskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulnerability in social…
- CVE-2021-367051 PoCIn ProLink PRC2402M V1.0.18 and older, the set_TR069 function in the adm.cgi binary, accessible with a page parameter value of TR069…
- CVE-2021-367061 PoCIn ProLink PRC2402M V1.0.18 and older, the set_sys_cmd function in the adm.cgi binary, accessible with a page parameter value of sysCMD…
- CVE-2021-367071 PoCIn ProLink PRC2402M V1.0.18 and older, the set_ledonoff function in the adm.cgi binary, accessible with a page parameter value of ledonoff…
- CVE-2021-367081 PoCIn ProLink PRC2402M V1.0.18 and older, the set_sys_init function in the login.cgi binary allows an attacker to reset the password to the…
- CVE-2021-367114 PoCsWebInterface in OctoBot before 0.4.4 allows remote code execution because Tentacles upload is mishandled.
- CVE-2021-367131 PoCCross Site Scripting (XSS) vulnerability in the DataTables plug-in 1.9.2 for jQuery allows attackers to run arbitrary code via the…
- CVE-2021-367471 PoCBlackboard Learn through 9.1 allows XSS by an authenticated user via the Feedback to Learner form.
- CVE-2021-367482 PoCsA SQL Injection issue in the list controller of the Prestahome Blog (aka ph_simpleblog) module before 1.7.8 for Prestashop allows a remote…
- CVE-2021-367497 PoCsApache Druid: The HTTP inputSource allows authenticated users to read data from other sources than intended (incomplete fix of…
- CVE-2021-367501 PoCENC DataVault before 7.2 and VaultAPI v67 mishandle key derivation, making it easier for attackers to determine the passwords of all…
- CVE-2021-367541 PoCPowerDNS Authoritative Server 4.5.0 before 4.5.1 allows anybody to crash the process by sending a specific query (QTYPE 65535) that causes…
- CVE-2021-367661 PoCConcrete5 through 8.5.5 deserializes Untrusted Data. The vulnerable code is located within the…
- CVE-2021-367822 PoCsRancher: Plaintext storage and exposure of credentials in Rancher API and cluster.management.cattle.io object
- CVE-2021-367872 PoCsThe femanager extension before 5.5.1 and 6.x before 6.3.1 for TYPO3 allows XSS via a crafted SVG document.
- CVE-2021-367983 PoCsA Denial-of-Service (DoS) vulnerability was discovered in Team Server in HelpSystems Cobalt Strike 4.2 and 4.3. It allows remote attackers…
- CVE-2021-367991 PoCKNX ETS5 through 5.7.6 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local users to read project…
- CVE-2021-368001 PoCAkaunting OS Command Injection in 'Money.php'
- CVE-2021-368011 PoCAkaunting Authentication Bypass in Company Selection
- CVE-2021-368021 PoCAkaunting DoS via User-Controlled 'locale' Variable
- CVE-2021-368031 PoCAkaunting Avatar Persistent XSS
- CVE-2021-368041 PoCAkaunting Password Reset Relay
- CVE-2021-368051 PoCAkaunting Invoice Footer Persistent XSS
- CVE-2021-368081 PoCA local attacker could bypass the app password using a race condition in Sophos Secure Workspace for Android before version 9.7.3115.
- CVE-2021-368731 PoCWordPress iQ Block Country plugin <= 1.2.11 - Authenticated Persistent Cross-Site Scripting (XSS) vulnerability
- CVE-2021-368881 PoCWordPress Image Hover Effects Ultimate plugin <= 9.6.1 - Unauthenticated Arbitrary Options Update leading to full website compromise
- CVE-2021-3693422 PoCsKEVWindows Elevation of Privilege Vulnerability
- CVE-2021-369426 PoCsKEVWindows LSA Spoofing Vulnerability
- CVE-2021-369552 PoCsKEVWindows Common Log File System Driver Elevation of Privilege Vulnerability
- CVE-2021-369811 PoCIn the server in SerNet verinice before 1.22.2, insecure Java deserialization allows remote authenticated attackers to execute arbitrary…