|
196131
|
7.8 |
HIGH
Local
|
schneider-electric
|
interactive_graphical_scada_system
|
A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21041 and prior that could result in loss of data or remote code execution due to missing length checks, when a…
|
-
|
CVE-2021-22750
|
2024-11-21 14:50 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196132
|
5.3 |
MEDIUM
Network
|
schneider-electric
|
modicon_x80_bmxnor0200h_rtu_firmware
|
A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon X80 BMXNOR0200H RTU SV1.70 IR22 and prior that could cause information leak concerning the curren…
|
-
|
CVE-2021-22749
|
2024-11-21 14:50 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196133
|
7.8 |
HIGH
Local
|
google
|
asylo
|
An attacker can modify the pointers in enclave memory to overwrite arbitrary memory addresses within the secure enclave. It is recommended to update past 0.6.3 or git commit https://github.com/google…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2021-22550
|
2024-11-21 14:50 |
2021-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196134
|
7.8 |
HIGH
Local
|
google
|
asylo
|
An attacker can modify the address to point to trusted memory to overwrite arbitrary trusted memory. It is recommended to update past 0.6.2 or git commit https://github.com/google/asylo/commit/53ed5d…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2021-22549
|
2024-11-21 14:50 |
2021-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196135
|
7.8 |
HIGH
Local
|
google
|
asylo
|
An attacker can change the pointer to untrusted memory to point to trusted memory region which causes copying trusted memory to trusted memory, if the latter is later copied out, it allows for readin…
|
NVD-CWE-Other
|
CVE-2021-22548
|
2024-11-21 14:50 |
2021-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196136
|
7.5 |
HIGH
Network
|
microfocus
|
secure_api_manager
|
Insertion of Sensitive Information into Log File vulnerability in Micro Focus Secure API Manager (SAPIM) product, affecting version 2.0.0. The vulnerability could lead to sensitive information being …
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2021-22516
|
2024-11-21 14:50 |
2021-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196137
|
9.8 |
CRITICAL
Network
|
microfocus
|
sitescope
|
Execute arbitrary code vulnerability in Micro Focus SiteScope product, affecting versions 11.40,11.41 , 2018.05(11.50), 2018.08(11.51), 2018.11(11.60), 2019.02(11.70), 2019.05(11.80), 2019.08(11.90),…
|
NVD-CWE-noinfo
|
CVE-2021-22519
|
2024-11-21 14:50 |
2021-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196138
|
6.5 |
MEDIUM
Network
|
huawei
|
ngfw_module_firmware secospace_usg6300_firmware secospace_usg6500_firmware secospace_usg6600_firmware usg9500_firmware
|
There is an out-of-bounds write vulnerability in some Huawei products. The code of a module have a bad judgment logic. Attackers can exploit this vulnerability by performing multiple abnormal activit…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-22411
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196139
|
9.8 |
CRITICAL
Network
|
rocket.chat
|
rocket.chat
|
A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenticated NoSQL injection, resulting potentially in RCE.
|
NVD-CWE-Other
|
CVE-2021-22911
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196140
|
7.5 |
HIGH
Network
|
ui
|
edgemax_edgerouter_firmware
|
A vulnerability found in EdgeMAX EdgeRouter V2.0.9 and earlier could allow a malicious actor to execute a man-in-the-middle (MitM) attack during a firmware update. This vulnerability is fixed in Edge…
|
CWE-295
Improper Certificate Validation
|
CVE-2021-22909
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|