|
196351
|
5.3 |
MEDIUM
Network
|
elastic
|
elasticsearch
|
Elasticsearch versions before 7.11.2 and 6.8.15 contain a document disclosure flaw was found in the Elasticsearch suggester and profile API when Document and Field Level Security are enabled. The sug…
|
CWE-200
Information Exposure
|
CVE-2021-22135
|
2024-11-21 14:49 |
2021-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196352
|
5.3 |
MEDIUM
Network
|
blackberry
|
unified_endpoint_management
|
An Information Disclosure vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and earlier and 12.12.1a QF6 and earlier could allow an attacker to potentially ga…
|
NVD-CWE-noinfo
|
CVE-2021-22154
|
2024-11-21 14:49 |
2021-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196353
|
7.3 |
HIGH
Local
|
blackberry
|
unified_endpoint_management
|
A Remote Code Execution vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and earlier and 12.12.1a QF6 and earlier could allow an attacker to potentially caus…
|
CWE-1236
Improper Neutralization of Formula Elements in a CSV File
|
CVE-2021-22153
|
2024-11-21 14:49 |
2021-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196354
|
5.5 |
MEDIUM
Local
|
blackberry
|
unified_endpoint_management
|
A Denial of Service due to Improper Input Validation vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and earlier and 12.12.1a QF6 and earlier could allow an…
|
CWE-20
Improper Input Validation
|
CVE-2021-22152
|
2024-11-21 14:49 |
2021-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196355
|
8.8 |
HIGH
Network
|
blackberry
|
workspaces_server
|
An Authentication Bypass vulnerability in the SAML Authentication component of BlackBerry Workspaces Server (deployed with Appliance-X) version(s) 10.1, 9.1 and earlier could allow an attacker to pot…
|
CWE-287
Improper Authentication
|
CVE-2021-22155
|
2024-11-21 14:49 |
2021-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196356
|
6.1 |
MEDIUM
Network
|
vmware
|
workspace_one_unified_endpoint_management
|
VMware Workspace one UEM console (2102 prior to 21.2.0.8, 2101 prior to 21.1.0.14, 2011 prior to 20.11.0.27, 2010 prior to 20.10.0.16,2008 prior to 20.8.0.28, 2007 prior to 20.7.0.14,2006 prior to 20…
|
CWE-79
Cross-site Scripting
|
CVE-2021-21990
|
2024-11-21 14:49 |
2021-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196357
|
8.8 |
HIGH
Network
|
foxitsoftware
|
foxit_reader
|
A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 10.1.3.37598. A specially crafted PDF document can trigger the reuse of previously free memory, …
|
CWE-416
Use After Free
|
CVE-2021-21822
|
2024-11-21 14:49 |
2021-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196358
|
9.8 |
CRITICAL
Network
|
vmware
|
vrealize_business_for_cloud
|
VMware vRealize Business for Cloud 7.x prior to 7.6.0 contains a remote code execution vulnerability due to an unauthorised end point. A malicious actor with network access may exploit this issue cau…
|
CWE-862
Missing Authorization
|
CVE-2021-21984
|
2024-11-21 14:49 |
2021-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196359
|
5.3 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2. When querying the repository branches through API, GitLab was ignoring a query parameter and returning a consid…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2021-22210
|
2024-11-21 14:49 |
2021-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196360
|
7.5 |
HIGH
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.8. GitLab was not properly validating authorisation tokens which resulted in GraphQL mutation being executed.
|
CWE-863
Incorrect Authorization
|
CVE-2021-22209
|
2024-11-21 14:49 |
2021-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|