Database CVE
Archivio delle vulnerabilità note (CVE) con punteggio CVSS, gravità, prodotti e vendor coinvolti. Filtra per anno e severità, collegato ai nostri articoli.
- CVE-2021-31882Media6.5
È stata identificata una vulnerabilità in Capital Embedded AR Classic 431-422 (Tutte le versioni), Capital Embedded AR Classic R20-11 (Tutte le versioni < V2303). L'applicazione client DHCP non convalida la lunghezza dell'opzione/i IP del Domain Name Server (0x06) durante l'elaborazione dei pacchetti DHCP ACK. Ciò può portare a condizioni di Denial-of-Service. (FSMD-2021-0011)
- CVE-2021-31881Alta7.1
È stata identificata una vulnerabilità in Capital Embedded AR Classic 431-422 (Tutte le versioni), Capital Embedded AR Classic R20-11 (Tutte le versioni < V2303). Durante l'elaborazione di un messaggio DHCP OFFER, l'applicazione client DHCP non convalida la lunghezza delle opzioni Vendor, determinando condizioni di Denial-of-Service. (FSMD-2021-0008)
- CVE-2021-31346Alta8.2
È stata identificata una vulnerabilità in Capital Embedded AR Classic 431-422 (Tutte le versioni), Capital Embedded AR Classic R20-11 (Tutte le versioni < V2303), PLUSCONTROL 1st Gen (Tutte le versioni), SIMOTICS CONNECT 400 (Tutte le versioni < V0.5.0.0), SIMOTICS CONNECT 400 (Tutte le versioni < V1.0.0.0). La lunghezza totale di un payload ICMP (impostata nell'header IP) non è controllata. Ciò può portare a vari effetti collaterali, inclusi Information Leak e condizioni di Denial-of-Service, a seconda dell'organizzazione del network buffer in memoria. (FSMD-2021-0007)
- CVE-2021-31345Alta7.5
È stata identificata una vulnerabilità in Capital Embedded AR Classic 431-422 (Tutte le versioni), Capital Embedded AR Classic R20-11 (Tutte le versioni < V2303), PLUSCONTROL 1st Gen (Tutte le versioni). La lunghezza totale di un payload UDP (impostata nell'header IP) non è controllata. Ciò può portare a vari effetti collaterali, inclusi Information Leak e condizioni di Denial-of-Service, a seconda delle applicazioni definite dall'utente eseguite sopra il protocollo UDP. (FSMD-2021-0006)
- CVE-2021-31344Media5.3
È stata identificata una vulnerabilità in Capital Embedded AR Classic 431-422 (Tutte le versioni), Capital Embedded AR Classic R20-11 (Tutte le versioni < V2303), PLUSCONTROL 1st Gen (Tutte le versioni), SIMOTICS CONNECT 400 (Tutte le versioni < V0.5.0.0), SIMOTICS CONNECT 400 (Tutte le versioni < V1.0.0.0). Pacchetti ICMP echo con opzioni IP false consentono l'invio di messaggi di risposta ICMP echo a host arbitrari sulla rete. (FSMD-2021-0004)
- CVE-2021-42237Critica9.8
Sitecore XP 7.5 Initial Release to Sitecore XP 8.2 Update-7 is vulnerable to an insecure deserialization attack where it is possible to achieve remote command execution on the machine. No authentication or special configuration is required to exploit this vulnerability.
- CVE-2021-42258Critica9.8
BQE BillQuick Web Suite 2018 through 2021 before 22.0.9.1 allows SQL injection for unauthenticated remote code execution, as exploited in the wild in October 2021 for ransomware installation. SQL injection can, for example, use the txtID (aka username) parameter. Successful exploitation can include the ability to execute arbitrary code as MSSQLSERVER$ via xp_cmdshell.
- CVE-2021-30807Alta7.8
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.5.1, iOS 14.7.1 and iPadOS 14.7.1, watchOS 7.6.1. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
- CVE-2021-27561Critica9.8
Yealink Device Management (DM) 3.6.0.20 allows command injection as root via the /sm/api/v1/firewall/zone/services URI, without authentication.
- CVE-2021-20124Alta7.5
A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the WebServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files from the underlying operating system with root privileges.
- CVE-2021-20123Alta7.5
A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the DownloadFileServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files from the underlying operating system with root privileges.
- CVE-2021-41357Alta7.8
Win32k Elevation of Privilege Vulnerability
- CVE-2021-40450Alta7.8
Win32k Elevation of Privilege Vulnerability
- CVE-2021-40449Alta7.8
Win32k Elevation of Privilege Vulnerability
- CVE-2021-42260Alta7.5
TinyXML fino alla 2.6.2 ha un loop infinito in TiXmlParsingData::Stamp in tinyxmlparser.cpp tramite il caso TIXML_UTF_LEAD_0. Può essere attivato da un messaggio XML appositamente creato e porta a un denial of service.
- CVE-2021-37976Media6.5
Inappropriate implementation in Memory in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
- CVE-2021-37975Alta8.8
Use after free in V8 in Google Chrome prior to 94.0.4606.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- CVE-2021-37973Critica9.6
Use after free in Portals in Google Chrome prior to 94.0.4606.61 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
- CVE-2021-30633Critica9.6
Use after free in Indexed DB API in Google Chrome prior to 93.0.4577.82 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
- CVE-2021-30632Alta8.8
Out of bounds write in V8 in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
This product uses the NVD API but is not endorsed or certified by the NVD.