|
196361
|
7.5 |
HIGH
Network
|
haxx debian fedoraproject netapp oracle apple siemens splunk
|
curl debian_linux fedora cloud_backup snapcenter oncommand_workflow_automation oncommand_insight clustered_data_ontap h300s_firmware h500s_firmware h700s_firmware h30…
|
A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (`--ssl-reqd` on the command line or`CURLOPT_USE_SSL` set to `CURLUSES…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2021-22946
|
2024-11-21 14:50 |
2021-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196362
|
4.9 |
MEDIUM
Network
|
microfocus
|
netiq_directory_and_resource_administrator
|
Unauthorized information security disclosure vulnerability on Micro Focus Directory and Resource Administrator (DRA) product, affecting all DRA versions prior to 10.1 Patch 1. The vulnerability could…
|
CWE-863
Incorrect Authorization
|
CVE-2021-22535
|
2024-11-21 14:50 |
2021-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196363
|
9.8 |
CRITICAL
Network
|
github
|
enterprise_server
|
An improper access control vulnerability in GitHub Enterprise Server allowed a workflow job to execute in a self-hosted runner group it should not have had access to. This affects customers using sel…
|
CWE-287
Improper Authentication
|
CVE-2021-22869
|
2024-11-21 14:50 |
2021-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196364
|
4.3 |
MEDIUM
Network
|
github
|
enterprise_server
|
A path traversal vulnerability was identified in GitHub Enterprise Server that could be exploited when building a GitHub Pages site. User-controlled configuration options used by GitHub Pages were no…
|
CWE-22
Path Traversal
|
CVE-2021-22868
|
2024-11-21 14:50 |
2021-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196365
|
9.1 |
CRITICAL
Network
|
haxx fedoraproject netapp oracle apple siemens debian splunk
|
libcurl fedora cloud_backup clustered_data_ontap mysql_server h300s_firmware h500s_firmware h700s_firmware h300e_firmware h500e_firmware h700e_firmware h410s_firmware…
|
When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances erroneously keep a pointer to an already freed memory area and both use that again in a subsequent call t…
|
CWE-415
Double Free
|
CVE-2021-22945
|
2024-11-21 14:50 |
2021-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196366
|
9.8 |
CRITICAL
Network
|
citrix
|
sharefile_storagezones_controller
|
Improper Access Control in Citrix ShareFile storage zones controller before 5.11.20 may allow an unauthenticated attacker to remotely compromise the storage zones controller.
|
NVD-CWE-Other
|
CVE-2021-22941
|
2024-11-21 14:50 |
2021-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196367
|
5.4 |
MEDIUM
Network
|
microfocus
|
access_manager
|
Reflected Cross Site Scripting (XSS) vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
|
CWE-79
Cross-site Scripting
|
CVE-2021-22528
|
2024-11-21 14:50 |
2021-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196368
|
7.5 |
HIGH
Network
|
microfocus
|
access_manager
|
Information leakage vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
|
NVD-CWE-noinfo
|
CVE-2021-22527
|
2024-11-21 14:50 |
2021-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196369
|
6.1 |
MEDIUM
Network
|
microfocus
|
access_manager
|
Open Redirection vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
|
CWE-601
Open Redirect
|
CVE-2021-22526
|
2024-11-21 14:50 |
2021-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196370
|
4.9 |
MEDIUM
Network
|
microfocus
|
access_manager
|
Injection attack caused the denial of service vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4
|
CWE-91
Blind XPath Injection
|
CVE-2021-22524
|
2024-11-21 14:50 |
2021-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|