|
199381
|
9.8 |
CRITICAL
Network
|
github
|
enterprise_server
|
An improper access control vulnerability in GitHub Enterprise Server allowed a workflow job to execute in a self-hosted runner group it should not have had access to. This affects customers using sel…
|
CWE-287
Improper Authentication
|
CVE-2021-22869
|
2024-11-21 14:50 |
2021-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199382
|
4.3 |
MEDIUM
Network
|
github
|
enterprise_server
|
A path traversal vulnerability was identified in GitHub Enterprise Server that could be exploited when building a GitHub Pages site. User-controlled configuration options used by GitHub Pages were no…
|
CWE-22
Path Traversal
|
CVE-2021-22868
|
2024-11-21 14:50 |
2021-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199383
|
9.1 |
CRITICAL
Network
|
haxx fedoraproject netapp oracle apple siemens debian splunk
|
libcurl fedora cloud_backup clustered_data_ontap mysql_server h300s_firmware h500s_firmware h700s_firmware h300e_firmware h500e_firmware h700e_firmware h410s_firmware…
|
When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances erroneously keep a pointer to an already freed memory area and both use that again in a subsequent call t…
|
CWE-415
Double Free
|
CVE-2021-22945
|
2024-11-21 14:50 |
2021-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199384
|
9.8 |
CRITICAL
Network
|
citrix
|
sharefile_storagezones_controller
|
Improper Access Control in Citrix ShareFile storage zones controller before 5.11.20 may allow an unauthenticated attacker to remotely compromise the storage zones controller.
|
NVD-CWE-Other
|
CVE-2021-22941
|
2024-11-21 14:50 |
2021-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199385
|
5.4 |
MEDIUM
Network
|
microfocus
|
access_manager
|
Reflected Cross Site Scripting (XSS) vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
|
CWE-79
Cross-site Scripting
|
CVE-2021-22528
|
2024-11-21 14:50 |
2021-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199386
|
7.5 |
HIGH
Network
|
microfocus
|
access_manager
|
Information leakage vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
|
NVD-CWE-noinfo
|
CVE-2021-22527
|
2024-11-21 14:50 |
2021-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199387
|
6.1 |
MEDIUM
Network
|
microfocus
|
access_manager
|
Open Redirection vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
|
CWE-601
Open Redirect
|
CVE-2021-22526
|
2024-11-21 14:50 |
2021-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199388
|
4.9 |
MEDIUM
Network
|
microfocus
|
access_manager
|
Injection attack caused the denial of service vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
|
CWE-91
Blind XPath Injection
|
CVE-2021-22524
|
2024-11-21 14:50 |
2021-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199389
|
7.2 |
HIGH
Network
|
schneider-electric
|
accusine_pcsp_pfvp_firmware accusine_pcsn_active_harmonic_filter_firmware
|
A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exist in AccuSine PCS+ / PFV+ (Versions prior to V1.6.7) and AccuSine PCSn (Versions prior to V2.2.4) that could al…
|
-
|
CVE-2021-22793
|
2024-11-21 14:50 |
2021-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199390
|
7.5 |
HIGH
Network
|
schneider-electric
|
modicon_quantum_140cpu65150 modicon_quantum_140cpu65150c modicon_quantum_140cpu65160c modicon_quantum_140cpu65160 modicon_m580_bmep581020 modicon_m580_bmep581020h modicon_m580_bmep5…
|
A CWE-476: NULL Pointer Dereference vulnerability that could cause a Denial of Service on the Modicon PLC controller / simulator when updating the controller application with a specially crafted proj…
|
-
|
CVE-2021-22792
|
2024-11-21 14:50 |
2021-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|