|
196161
|
7.0 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
Windows Installer Elevation of Privilege Vulnerability
|
CWE-59
Link Following
|
CVE-2021-26862
|
2024-11-21 14:56 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196162
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
Windows Graphics Component Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2021-26861
|
2024-11-21 14:56 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196163
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2019 windows_10 windows_server_2016
|
Windows App-V Overlay Filter Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2021-26860
|
2024-11-21 14:56 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196164
|
7.7 |
HIGH
Network
|
microsoft
|
power_bi_report_server
|
Microsoft Power BI Information Disclosure Vulnerability
|
NVD-CWE-noinfo
|
CVE-2021-26859
|
2024-11-21 14:56 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196165
|
8.8 |
HIGH
Network
|
microsoft
|
edge internet_explorer
|
Internet Explorer Memory Corruption Vulnerability
|
CWE-416
Use After Free
|
CVE-2021-26411
|
2024-11-21 14:56 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196166
|
7.5 |
HIGH
Network
|
oryx-embedded
|
cyclonetcp
|
Oryx Embedded CycloneTCP 1.7.6 to 2.0.0, fixed in 2.0.2, is affected by incorrect input validation, which may cause a denial of service (DoS). To exploit the vulnerability, an attacker needs to have …
|
CWE-20
Improper Input Validation
|
CVE-2021-26788
|
2024-11-21 14:56 |
2021-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196167
|
7.5 |
HIGH
Network
|
afterlogic
|
webmail_pro aurora
|
An issue was discovered in AfterLogic Aurora through 7.7.9 and WebMail Pro through 7.7.9. They allow directory traversal to read files (such as a data/settings/settings.xml file containing admin pane…
|
CWE-22
Path Traversal
|
CVE-2021-26294
|
2024-11-21 14:56 |
2021-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196168
|
8.8 |
HIGH
Network
|
wazuh
|
wazuh
|
Wazuh API in Wazuh from 4.0.0 to 4.0.3 allows authenticated users to execute arbitrary code with administrative privileges via /manager/files URI. An authenticated user to the service may exploit inc…
|
CWE-22
Path Traversal
|
CVE-2021-26814
|
2024-11-21 14:56 |
2021-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196169
|
9.1 |
CRITICAL
Network
|
squarebox
|
catdv
|
An issue was discovered in SquareBox CatDV Server through 9.2. An attacker can invoke sensitive RMI methods such as getConnections without authentication, the results of which can be used to generate…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2021-26705
|
2024-11-21 14:56 |
2021-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196170
|
9.8 |
CRITICAL
Network
|
afterlogic
|
aurora webmail_pro
|
An issue was discovered in AfterLogic Aurora through 8.5.3 and WebMail Pro through 8.5.3, when DAV is enabled. They allow directory traversal to create new files (such as an executable file under the…
|
CWE-22
Path Traversal
|
CVE-2021-26293
|
2024-11-21 14:56 |
2021-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|