|
197791
|
9.8 |
CRITICAL
Network
|
saltstack fedoraproject debian
|
salt fedora debian_linux
|
An issue was discovered in through SaltStack Salt before 3002.5. salt-api does not honor eauth credentials for the wheel_async client. Thus, an attacker can remotely run any wheel modules on the mast…
|
CWE-287
Improper Authentication
|
CVE-2021-25281
|
2024-11-21 14:54 |
2021-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197792
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
Windows PKU2U Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2021-25195
|
2024-11-21 14:54 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197793
|
6.1 |
MEDIUM
Network
|
nagios
|
nagios_xi
|
Nagios XI version xi-5.7.5 is affected by cross-site scripting (XSS). The vulnerability exists in the file /usr/local/nagiosxi/html/admin/sshterm.php due to improper sanitization of user-controlled i…
|
CWE-79
Cross-site Scripting
|
CVE-2021-25299
|
2024-11-21 14:54 |
2021-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197794
|
8.8 |
HIGH
Network
|
nagios
|
nagios_xi
|
Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi/html/includes/configwizards/cloud-vm/cloud-vm.inc.php due to improper sanitiza…
|
NVD-CWE-Other
|
CVE-2021-25298
|
2024-11-21 14:54 |
2021-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197795
|
8.8 |
HIGH
Network
|
nagios
|
nagios_xi
|
Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi/html/includes/configwizards/switch/switch.inc.php due to improper sanitization…
|
NVD-CWE-Other
|
CVE-2021-25297
|
2024-11-21 14:54 |
2021-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197796
|
8.8 |
HIGH
Network
|
nagios
|
nagios_xi
|
Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi/html/includes/configwizards/windowswmi/windowswmi.inc.php due to improper sani…
|
NVD-CWE-Other
|
CVE-2021-25296
|
2024-11-21 14:54 |
2021-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197797
|
7.2 |
HIGH
Network
|
trendmicro
|
antivirus\+_security_2020 antivirus\+_security_2021 internet_security_2020 internet_security_2021 maximum_security_2020 maximum_security_2021 premium_security_2020 premium_securi…
|
The Trend Micro Security 2020 and 2021 families of consumer products are vulnerable to a code injection vulnerability which could allow an attacker to disable the program's password protection and di…
|
CWE-94
Code Injection
|
CVE-2021-25251
|
2024-11-21 14:54 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197798
|
4.4 |
MEDIUM
Local
|
arubanetworks hpe
|
aruba_5406r_zl2_firmware aruba_5412r_zl2_firmware aruba_3810m_firmware aruba_2930m_firmware aruba_2930f_firmware aruba_2920_firmware aruba_2540_firmware aruba_2530ya_firmware …
|
A security vulnerability has been identified in in certain HPE and Aruba L2/L3 switch firmware. A data processing error due to improper handling of an unexpected data type in user supplied informatio…
|
NVD-CWE-Other
|
CVE-2021-25141
|
2024-11-21 14:54 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197799
|
9.8 |
CRITICAL
Network
|
hp
|
moonshot_provisioning_manager
|
A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20. The HPE Moonshot Provisioning Manager is an application that is installed in a VMWare or Microso…
|
CWE-22
Path Traversal
|
CVE-2021-25140
|
2024-11-21 14:54 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197800
|
9.8 |
CRITICAL
Network
|
hp
|
moonshot_provisioning_manager
|
A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20. The HPE Moonshot Provisioning Manager is an application that is installed in a VMWare or Microso…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-25139
|
2024-11-21 14:54 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|