|
197741
|
2.4 |
LOW
Adjacent
|
elastic
|
apm_agent
|
The Elastic APM agent for Go versions before 1.11.0 can leak sensitive HTTP header information when logging the details during an application panic. Normally, the APM agent will sanitize sensitive HT…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2021-22133
|
2024-11-21 14:49 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197742
|
5.9 |
MEDIUM
Network
|
hpe
|
web_viewpoint
|
Idelji Web ViewPoint Suite, as used in conjunction with HPE NonStop, allows a remote replay attack for T0320L01^ABP through T0320L01^ABZ, T0952L01^AAH through T0952L01^AAR, T0986L01 through T0986L01^…
|
CWE-294
Authentication Bypass by Capture-replay
|
CVE-2021-22267
|
2024-11-21 14:49 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197743
|
6.1 |
MEDIUM
Network
|
fortinet
|
fortiweb
|
An improper neutralization of input during web page generation in FortiWeb GUI interface 6.3.0 through 6.3.7 and version before 6.2.4 may allow an unauthenticated, remote attacker to perform a reflec…
|
CWE-79
Cross-site Scripting
|
CVE-2021-22122
|
2024-11-21 14:49 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197744
|
6.5 |
MEDIUM
Adjacent
|
openwrt
|
openwrt
|
In OpenWrt 19.07.x before 19.07.7, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device and its upstream ISP's router. This occurs when a li…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2021-22161
|
2024-11-21 14:49 |
2021-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197745
|
3.3 |
LOW
Local
|
huawei
|
mate_30_firmware
|
There is a buffer overflow vulnerability in Mate 30 10.1.0.126(C00E125R5P3). A module does not verify the some input when dealing with messages. Attackers can exploit this vulnerability by sending ma…
|
CWE-120
Classic Buffer Overflow
|
CVE-2021-22305
|
2024-11-21 14:49 |
2021-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197746
|
3.3 |
LOW
Local
|
huawei
|
taurus-al00a_firmware
|
There is a use after free vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). A module may refer to some memory after it has been freed while dealing with some messages. Attackers can exploit this vul…
|
CWE-416
Use After Free
|
CVE-2021-22304
|
2024-11-21 14:49 |
2021-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197747
|
7.1 |
HIGH
Local
|
huawei
|
taurus-al00a_firmware
|
There is an out-of-bound read vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). A module does not verify the some input. Attackers can exploit this vulnerability by sending malicious input through s…
|
CWE-125
Out-of-bounds Read
|
CVE-2021-22302
|
2024-11-21 14:49 |
2021-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197748
|
7.5 |
HIGH
Network
|
huawei
|
manageone campusinsight taurus-al00a_firmware
|
Some Huawei products have an inconsistent interpretation of HTTP requests vulnerability. Attackers can exploit this vulnerability to cause information leak. Affected product versions include: CampusI…
|
CWE-444
HTTP Request Smuggling
|
CVE-2021-22293
|
2024-11-21 14:49 |
2021-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197749
|
7.5 |
HIGH
Network
|
huawei
|
ecns280_firmware
|
There is a denial of service (DoS) vulnerability in eCNS280 versions V100R005C00, V100R005C10. Due to a design defect, remote unauthorized attackers send a large number of specific messages to affect…
|
NVD-CWE-noinfo
|
CVE-2021-22292
|
2024-11-21 14:49 |
2021-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197750
|
7.8 |
HIGH
Local
|
huawei
|
manageone imaster_mae-m network_functions_virtualization_fusionsphere smc2.0_firmware
|
There is a local privilege escalation vulnerability in some Huawei products. A local, authenticated attacker could craft specific commands to exploit this vulnerability. Successful exploitation may c…
|
NVD-CWE-noinfo
|
CVE-2021-22299
|
2024-11-21 14:49 |
2021-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|