|
194211
|
6.5 |
MEDIUM
Network
|
synology
|
photo_station
|
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in file management component in Synology Photo Station before 6.8.14-3500 allows remote authenticated user…
|
-
|
CVE-2021-29091
|
2024-11-21 15:00 |
2021-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194212
|
7.2 |
HIGH
Network
|
synology
|
photo_station
|
Improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in PHP component in Synology Photo Station before 6.8.14-3500 allows remote authenticated users to e…
|
-
|
CVE-2021-29090
|
2024-11-21 15:00 |
2021-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194213
|
8.8 |
HIGH
Network
|
synology
|
photo_station
|
Unrestricted upload of file with dangerous type vulnerability in file management component in Synology Photo Station before 6.8.14-3500 allows remote authenticated users to execute arbitrary code via…
|
-
|
CVE-2021-29092
|
2024-11-21 15:00 |
2021-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194214
|
7.8 |
HIGH
Local
|
synology
|
diskstation_manager
|
Improper limitation of a pathname to a restricted directory ('Path Traversal') in cgi component in Synology DiskStation Manager (DSM) before 6.2.4-25553 allows local users to execute arbitrary code v…
|
-
|
CVE-2021-29088
|
2024-11-21 15:00 |
2021-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194215
|
6.5 |
MEDIUM
Network
|
squid-cache debian fedoraproject
|
squid debian_linux fedora
|
An issue was discovered in Squid 4.x before 4.15 and 5.x before 5.0.6. If a remote server sends a certain response header over HTTP or HTTPS, there is a denial of service. This header can plausibly o…
|
CWE-116
Improper Encoding or Escaping of Output
|
CVE-2021-28662
|
2024-11-21 15:00 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194216
|
4.9 |
MEDIUM
Network
|
squid-cache debian fedoraproject
|
squid debian_linux fedora
|
An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to incorrect parser validation, it allows a Denial of Service attack against the Cache Manager API. This allows a trusted client…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2021-28652
|
2024-11-21 15:00 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194217
|
7.5 |
HIGH
Network
|
squid-cache debian fedoraproject netapp
|
squid debian_linux fedora cloud_manager
|
An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a buffer-management bug, it allows a denial of service. When resolving a request with the urn: scheme, the parser leaks a sma…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2021-28651
|
2024-11-21 15:00 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194218
|
5.5 |
MEDIUM
Local
|
rsa
|
archer
|
The Tableau integration in RSA Archer 6.4 P1 (6.4.0.1) through 6.9 P2 (6.9.0.2) is affected by an insecure credential storage vulnerability. An malicious attacker with access to the Tableau workbook …
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2021-29253
|
2024-11-21 15:00 |
2021-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194219
|
5.4 |
MEDIUM
Network
|
rsa
|
archer
|
RSA Archer before 6.9 SP1 P1 (6.9.1.1) contains a stored XSS vulnerability. A remote authenticated malicious Archer user with access to modify link name fields could potentially exploit this vulnerab…
|
CWE-79
Cross-site Scripting
|
CVE-2021-29252
|
2024-11-21 15:00 |
2021-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194220
|
4.8 |
MEDIUM
Network
|
hp
|
integrated_lights-out_4 integrated_lights-out_5
|
A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers; HPE SimpliVity 380 Gen10; HPE Sim…
|
CWE-79
Cross-site Scripting
|
CVE-2021-29211
|
2024-11-21 15:00 |
2021-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|