|
196041
|
6.5 |
MEDIUM
Network
|
elastic oracle
|
elasticsearch communications_cloud_native_core_automated_test_suite
|
A memory disclosure vulnerability was identified in Elasticsearch 7.10.0 to 7.13.3 error reporting. A user with the ability to submit arbitrary queries to Elasticsearch could submit a malformed query…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2021-22145
|
2024-11-21 14:49 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196042
|
7.5 |
HIGH
Network
|
wireshark debian
|
wireshark debian_linux
|
Crash in DNP dissector in Wireshark 3.4.0 to 3.4.6 and 3.2.0 to 3.2.14 allows denial of service via packet injection or crafted capture file
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2021-22235
|
2024-11-21 14:49 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196043
|
7.2 |
HIGH
Network
|
fortinet
|
fortisandbox
|
An instance of improper neutralization of special elements in the sniffer module of FortiSandbox before 3.2.2 may allow an authenticated administrator to execute commands on the underlying system's s…
|
CWE-78
OS Command
|
CVE-2021-22125
|
2024-11-21 14:49 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196044
|
9.8 |
CRITICAL
Network
|
dlink
|
dir-3040_firmware
|
A hard-coded password vulnerability exists in the Libcli Test Environment functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to code execution. An attacker can sen…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-21820
|
2024-11-21 14:49 |
2021-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196045
|
7.2 |
HIGH
Network
|
dlink
|
dir-3040_firmware
|
A code execution vulnerability exists in the Libcli Test Environment functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to arbitrary command execution. An attacker…
|
CWE-78
OS Command
|
CVE-2021-21819
|
2024-11-21 14:49 |
2021-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196046
|
7.5 |
HIGH
Network
|
dlink
|
dir-3040_firmware
|
A hard-coded password vulnerability exists in the Zebra IP Routing Manager functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to a denial of service. An attacker c…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-21818
|
2024-11-21 14:49 |
2021-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196047
|
7.5 |
HIGH
Network
|
dlink
|
dir-3040_firmware
|
An information disclosure vulnerability exists in the Zebra IP Routing Manager functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to the disclosure of sensitive in…
|
CWE-200
Information Exposure
|
CVE-2021-21817
|
2024-11-21 14:49 |
2021-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196048
|
4.3 |
MEDIUM
Network
|
dlink
|
dir-3040_firmware
|
An information disclosure vulnerability exists in the Syslog functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to the disclosure of sensitive information. An atta…
|
CWE-200
Information Exposure
|
CVE-2021-21816
|
2024-11-21 14:49 |
2021-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196049
|
9.8 |
CRITICAL
Network
|
advantech
|
r-seenet
|
A local file inclusion (LFI) vulnerability exists in the options.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). A specially crafted HTTP request can lead to arbitrary PHP code …
|
CWE-829
Inclusion of Functionality from Untrusted Control Sphere
|
CVE-2021-21804
|
2024-11-21 14:49 |
2021-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196050
|
6.1 |
MEDIUM
Network
|
advantech
|
r-seenet
|
This vulnerability is present in device_graph_page.php script, which is a part of the Advantech R-SeeNet web applications. A specially crafted URL by an attacker and visited by a victim can lead to a…
|
CWE-79
Cross-site Scripting
|
CVE-2021-21803
|
2024-11-21 14:49 |
2021-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|