|
196011
|
7.8 |
HIGH
Local
|
sap
|
chef_business-one-cookbook
|
Under certain conditions, SAP Business One Chef cookbook, version - 9.2, 9.3, 10.0, used to install SAP Business One, allows an attacker to exploit an insecure temporary folder for incoming & outgoin…
|
NVD-CWE-noinfo
|
CVE-2021-27613
|
2024-11-21 14:58 |
2021-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196012
|
6.1 |
MEDIUM
Network
|
sap
|
gui_for_windows
|
In specific situations SAP GUI for Windows until and including 7.60 PL9, 7.70 PL0, forwards a user to specific malicious website which could contain malware or might lead to phishing attacks to steal…
|
CWE-601
Open Redirect
|
CVE-2021-27612
|
2024-11-21 14:58 |
2021-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196013
|
6.7 |
MEDIUM
Local
|
sap
|
netweaver_application_server_abap
|
SAP NetWeaver AS ABAP, versions - 700, 701, 702, 730, 731, allow a high privileged attacker to inject malicious code by executing an ABAP report when the attacker has access to the local SAP system. …
|
CWE-94
Code Injection
|
CVE-2021-27611
|
2024-11-21 14:58 |
2021-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196014
|
5.4 |
MEDIUM
Network
|
jetbrains
|
youtrack
|
In JetBrains YouTrack before 2020.6.6441, stored XSS was possible via an issue attachment.
|
CWE-79
Cross-site Scripting
|
CVE-2021-27733
|
2024-11-21 14:58 |
2021-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196015
|
8.1 |
HIGH
Network
|
remotemouse
|
emote_remote_mouse
|
An issue was discovered in Emote Remote Mouse through 4.0.0.0. It uses cleartext HTTP to check, and request, updates. Thus, attackers can machine-in-the-middle a victim to download a malicious binary…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2021-27574
|
2024-11-21 14:58 |
2021-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196016
|
9.8 |
CRITICAL
Network
|
remotemouse
|
emote_remote_mouse
|
An issue was discovered in Emote Remote Mouse through 4.0.0.0. Remote unauthenticated users can execute arbitrary code via crafted UDP packets with no prior authorization or authentication.
|
CWE-862
Missing Authorization
|
CVE-2021-27573
|
2024-11-21 14:58 |
2021-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196017
|
8.1 |
HIGH
Network
|
remotemouse
|
emote_remote_mouse
|
An issue was discovered in Emote Remote Mouse through 4.0.0.0. Authentication Bypass can occur via Packet Replay. Remote unauthenticated users can execute arbitrary code via crafted UDP packets even …
|
CWE-294
Authentication Bypass by Capture-replay
|
CVE-2021-27572
|
2024-11-21 14:58 |
2021-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196018
|
5.3 |
MEDIUM
Network
|
remotemouse
|
emote_remote_mouse
|
An issue was discovered in Emote Remote Mouse through 4.0.0.0. Attackers can retrieve recently used and running applications, their icons, and their file paths. This information is sent in cleartext …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2021-27571
|
2024-11-21 14:58 |
2021-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196019
|
5.3 |
MEDIUM
Network
|
remotemouse
|
emote_remote_mouse
|
An issue was discovered in Emote Remote Mouse through 3.015. Attackers can close any running process by sending the process name in a specially crafted packet. This information is sent in cleartext a…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2021-27570
|
2024-11-21 14:58 |
2021-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196020
|
5.3 |
MEDIUM
Network
|
remotemouse
|
emote_remote_mouse
|
An issue was discovered in Emote Remote Mouse through 4.0.0.0. Attackers can maximize or minimize the window of a running process by sending the process name in a crafted packet. This information is …
|
CWE-306 CWE-319
Missing Authentication for Critical Function Cleartext Transmission of Sensitive Information
|
CVE-2021-27569
|
2024-11-21 14:58 |
2021-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|