|
196721
|
7.4 |
HIGH
Network
|
mifos
|
mifos-mobile
|
Mifos-Mobile Android Application for MifosX is an Android Application built on top of the MifosX Self-Service platform. Mifos-Mobile before commit e505f62 disables HTTPS hostname verification of its …
|
-
|
CVE-2021-21385
|
2024-11-21 14:48 |
2021-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196722
|
8.8 |
HIGH
Network
|
xwiki
|
xwiki
|
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected versions of XWiki Platform (and only those with the Ratings API installed), the Ra…
|
CWE-89
SQL Injection
|
CVE-2021-21380
|
2024-11-21 14:48 |
2021-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196723
|
6.5 |
MEDIUM
Network
|
jellyfin
|
jellyfin
|
Jellyfin is a Free Software Media System. In Jellyfin before version 10.7.1, with certain endpoints, well crafted requests will allow arbitrary file read from a Jellyfin server's file system. This is…
|
-
|
CVE-2021-21402
|
2024-11-21 14:48 |
2021-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196724
|
7.1 |
HIGH
Network
|
nanopb_project
|
nanopb
|
Nanopb is a small code-size Protocol Buffers implementation in ansi C. In Nanopb before versions 0.3.9.8 and 0.4.5, decoding a specifically formed message can cause invalid `free()` or `realloc()` ca…
|
-
|
CVE-2021-21401
|
2024-11-21 14:48 |
2021-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196725
|
5.4 |
MEDIUM
Network
|
openmicroscopy
|
omero.web
|
OMERO.web is open source Django-based software for managing microscopy imaging. OMERO.web before version 5.9.0 supports redirection to a given URL after performing login or switching the group contex…
|
-
|
CVE-2021-21377
|
2024-11-21 14:48 |
2021-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196726
|
6.5 |
MEDIUM
Network
|
openmicroscopy
|
omero.web
|
OMERO.web is open source Django-based software for managing microscopy imaging. OMERO.web before version 5.9.0 loads various information about the current user such as their id, name and the groups t…
|
-
|
CVE-2021-21376
|
2024-11-21 14:48 |
2021-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196727
|
5.4 |
MEDIUM
Network
|
typo3
|
typo3
|
TYPO3 is an open source PHP based web content management system. In TYPO3 before versions 7.6.51, 8.7.40, 9.5.25, 10.4.14, 11.1.1 it has been discovered that content elements of type _menu_ are vulne…
|
-
|
CVE-2021-21370
|
2024-11-21 14:48 |
2021-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196728
|
7.5 |
HIGH
Network
|
typo3
|
typo3
|
TYPO3 is an open source PHP based web content management system. In TYPO3 before versions 9.5.25, 10.4.14, 11.1.1 requesting invalid or non-existing resources via HTTP triggers the page error handler…
|
-
|
CVE-2021-21359
|
2024-11-21 14:48 |
2021-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196729
|
5.4 |
MEDIUM
Network
|
typo3
|
typo3
|
TYPO3 is an open source PHP based web content management system. In TYPO3 before versions 10.4.14, 11.1.1 it has been discovered that the Form Designer backend module of the Form Framework is vulnera…
|
-
|
CVE-2021-21358
|
2024-11-21 14:48 |
2021-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196730
|
5.4 |
MEDIUM
Network
|
typo3
|
typo3
|
TYPO3 is an open source PHP based web content management system. In TYPO3 before versions 10.4.14, 11.1.1 it has been discovered that database fields used as _descriptionColumn_ are vulnerable to cro…
|
CWE-79
Cross-site Scripting
|
CVE-2021-21340
|
2024-11-21 14:48 |
2021-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|