|
197841
|
7.8 |
HIGH
Local
|
att
|
xmill
|
Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line. filepattern is passed directly to memcpy copying the path provided by t…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21813
|
2024-11-21 14:49 |
2021-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197842
|
7.8 |
HIGH
Local
|
att
|
xmill
|
A stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs' Xmill 0.7. Within the function HandleFileArg the argument filepattern is under…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21815
|
2024-11-21 14:49 |
2021-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197843
|
7.8 |
HIGH
Local
|
att
|
xmill
|
Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line. filepattern is passed directly to strlen to determine the ending locati…
|
CWE-88
Argument Injection
|
CVE-2021-21814
|
2024-11-21 14:49 |
2021-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197844
|
7.8 |
HIGH
Local
|
att
|
xmill
|
A stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs’ Xmill 0.7. Within the function HandleFileArg the argument filepattern is under…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21812
|
2024-11-21 14:49 |
2021-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197845
|
9.8 |
CRITICAL
Network
|
att
|
xmill
|
A heap-based buffer overflow vulnerability exists in the XML Decompression LabelDict::Load functionality of AT&T Labs’ Xmill 0.7. A specially crafted XMI file can lead to remote code execution. An at…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21830
|
2024-11-21 14:49 |
2021-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197846
|
9.8 |
CRITICAL
Network
|
att
|
xmill
|
A heap-based buffer overflow vulnerability exists in the XML Decompression EnumerationUncompressor::UncompressItem functionality of AT&T Labs’ Xmill 0.7. A specially crafted XMI file can lead to remo…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21829
|
2024-11-21 14:49 |
2021-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197847
|
6.1 |
MEDIUM
Network
|
cloudfoundry
|
user_account_and_authentication cf-deployment
|
UAA server versions prior to 75.4.0 are vulnerable to an open redirect vulnerability. A malicious user can exploit the open redirect vulnerability by social engineering leading to take over of victim…
|
CWE-601
Open Redirect
|
CVE-2021-22098
|
2024-11-21 14:49 |
2021-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197848
|
5.5 |
MEDIUM
Local
|
huawei
|
harmonyos
|
A component of the HarmonyOS has a permission bypass vulnerability. Local attackers may exploit this vulnerability to cause the device to hang due to the page error OsVmPageFaultHandler.
|
CWE-276
Incorrect Default Permissions
|
CVE-2021-22295
|
2024-11-21 14:49 |
2021-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197849
|
6.4 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.11 before 13.11.7, all versions starting from 13.12 before 13.12.8, and all versions starting from 14.0 before 14.…
|
CWE-79
Cross-site Scripting
|
CVE-2021-22234
|
2024-11-21 14:49 |
2021-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197850
|
8.8 |
HIGH
Network
|
foxit
|
pdf_reader
|
A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.0.0.49893. A specially crafted PDF document can trigger the reuse of previously freed memory,…
|
CWE-416
Use After Free
|
CVE-2021-21893
|
2024-11-21 14:49 |
2021-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|