|
196391
|
6.7 |
MEDIUM
Local
|
dell
|
poweredge_r640_firmware poweredge_r740_firmware poweredge_r740xd_firmware poweredge_r940_firmware poweredge_r840_firmware poweredge_r940xa_firmware poweredge_t640_firmware powere…
|
Dell PowerEdge R640, R740, R740XD, R840, R940, R940xa, MX740c, MX840c, and T640 Server BIOS contain a stack-based buffer overflow vulnerability in systems with NVDIMM-N installed. A local malicious u…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21556
|
2024-11-21 14:48 |
2021-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196392
|
6.7 |
MEDIUM
Local
|
dell
|
poweredge_r640_firmware poweredge_r740_firmware poweredge_r740xd_firmware poweredge_r940_firmware poweredge_r840_firmware poweredge_r940xa_firmware poweredge_t640_firmware powere…
|
Dell PowerEdge R640, R740, R740XD, R840, R940, R940xa, MX740c, MX840c, and T640 Server BIOS contain a heap-based buffer overflow vulnerability in systems with NVDIMM-N installed. A local malicious us…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21555
|
2024-11-21 14:48 |
2021-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196393
|
6.7 |
MEDIUM
Local
|
dell
|
poweredge_r640_firmware poweredge_r740_firmware poweredge_r740xd_firmware poweredge_r940_firmware poweredge_r840_firmware poweredge_r940xa_firmware poweredge_mx740c_firmware powe…
|
Dell PowerEdge R640, R740, R740XD, R840, R940, R940xa, MX740c, MX840c, and, Dell Precision 7920 Rack Workstation BIOS contain a stack-based buffer overflow vulnerability in systems with Intel Optane …
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21554
|
2024-11-21 14:48 |
2021-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196394
|
6.5 |
MEDIUM
Network
|
otrs
|
otrs
|
DoS attack can be performed when an email contains specially designed URL in the body. It can lead to the high CPU usage and cause low quality of service, or in extreme case bring the system to a hal…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2021-21439
|
2024-11-21 14:48 |
2021-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196395
|
9.6 |
CRITICAL
Network
|
wire
|
restund
|
Restund is an open source NAT traversal server. The restund TURN server can be instructed to open a relay to the loopback address range. This allows you to reach any other service running on localhos…
|
CWE-862
Missing Authorization
|
CVE-2021-21382
|
2024-11-21 14:48 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196396
|
9.8 |
CRITICAL
Network
|
accusoft
|
imagegear
|
A heap-based buffer overflow vulnerability exists in the PSD read_icc_icCurve_data functionality of Accusoft ImageGear 19.9. A specially crafted malformed file can lead to an integer overflow that, i…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21795
|
2024-11-21 14:48 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196397
|
6.1 |
MEDIUM
Network
|
jenkins
|
kiuwan
|
Jenkins Kiuwan Plugin 1.6.0 and earlier does not escape query parameters in an error message for a form validation endpoint, resulting in a reflected cross-site scripting (XSS) vulnerability.
|
CWE-79
Cross-site Scripting
|
CVE-2021-21666
|
2024-11-21 14:48 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196398
|
8.8 |
HIGH
Network
|
jenkins
|
xebialabs_xl_deploy
|
A cross-site request forgery (CSRF) vulnerability in Jenkins XebiaLabs XL Deploy Plugin 10.0.1 and earlier allows attackers to connect to an attacker-specified URL using attacker-specified credential…
|
CWE-352
Origin Validation Error
|
CVE-2021-21665
|
2024-11-21 14:48 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196399
|
6.5 |
MEDIUM
Network
|
jenkins
|
xebialabs_xl_deploy
|
An incorrect permission check in Jenkins XebiaLabs XL Deploy Plugin 10.0.1 and earlier allows attackers with Generic Create permission to connect to an attacker-specified URL using attacker-specified…
|
CWE-863
Incorrect Authorization
|
CVE-2021-21664
|
2024-11-21 14:48 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196400
|
4.3 |
MEDIUM
Network
|
jenkins
|
xebialabs_xl_deploy
|
A missing permission check in Jenkins XebiaLabs XL Deploy Plugin 7.5.8 and earlier allows attackers with Overall/Read permission to connect to an attacker-specified URL using attacker-specified crede…
|
-
|
CVE-2021-21663
|
2024-11-21 14:48 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|