|
195371
|
9.8 |
CRITICAL
Network
|
acmailer
|
acmailer_db acmailer
|
Privilege chaining vulnerability in acmailer ver. 4.0.2 and earlier, and acmailer DB ver. 1.1.4 and earlier allows remote attackers to bypass authentication and to gain an administrative privilege wh…
|
CWE-269
Improper Privilege Management
|
CVE-2021-20618
|
2024-11-21 14:46 |
2021-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195372
|
9.8 |
CRITICAL
Network
|
acmailer
|
acmailer acmailer_db
|
Improper access control vulnerability in acmailer ver. 4.0.1 and earlier, and acmailer DB ver. 1.1.3 and earlier allows remote attackers to execute an arbitrary OS command, or gain an administrative …
|
NVD-CWE-Other
|
CVE-2021-20617
|
2024-11-21 14:46 |
2021-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195373
|
7.8 |
HIGH
Local
|
skygroup
|
skysea_client_view
|
Untrusted search path vulnerability in the installer of SKYSEA Client View Ver.1.020.05b to Ver.16.001.01g allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2021-20616
|
2024-11-21 14:46 |
2021-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195374
|
7.5 |
HIGH
Network
|
sonicwall
|
global_management_system
|
SonicWall GMS is vulnerable to file path manipulation resulting that an unauthenticated attacker can gain access to web directory containing application's binaries and configuration files.
|
CWE-22
Path Traversal
|
CVE-2021-20030
|
2024-11-21 14:45 |
2022-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195375
|
7.8 |
HIGH
Local
|
sonicwall
|
global_vpn_client
|
SonicWall Global VPN Client 4.10.7.1117 installer (32-bit and 64-bit) and earlier versions have a DLL Search Order Hijacking vulnerability in one of the installer components. Successful exploitation …
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2021-20051
|
2024-11-21 14:45 |
2022-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195376
|
7.8 |
HIGH
Local
|
qualcomm
|
ar8035_firmware csr8811_firmware ipq6000_firmware ipq6005_firmware ipq6010_firmware ipq6018_firmware ipq6028_firmware qca4024_firmware qca6390_firmware qca6391_firmware …
|
Improper cleaning of secure memory between authenticated users can lead to face authentication bypass in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapd…
|
CWE-287
Improper Authentication
|
CVE-2021-1950
|
2024-11-21 14:45 |
2022-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195377
|
8.8 |
HIGH
Local
|
qualcomm
|
aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware fsm10055_firmware fsm10056_firmware mdm9150_firmware qca6390_firmware qca6391_firmware<…
|
Improper handling of permissions of a shared memory region can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industria…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-1942
|
2024-11-21 14:45 |
2022-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195378
|
9.8 |
CRITICAL
Network
|
skolelinux debian
|
debian-edu-config debian_linux
|
It was discovered, that debian-edu-config, a set of configuration files used for the Debian Edu blend, before 2.12.16 configured insecure permissions for the user web shares (~/public_html), which co…
|
CWE-276
Incorrect Default Permissions
|
CVE-2021-20001
|
2024-11-21 14:45 |
2022-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195379
|
8.8 |
HIGH
Network
|
sonicwall
|
sonicos
|
A Stack-based buffer overflow in the SonicOS SessionID HTTP response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code execution in the fi…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-20048
|
2024-11-21 14:45 |
2022-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195380
|
8.8 |
HIGH
Network
|
sonicwall
|
sonicos
|
A Stack-based buffer overflow in the SonicOS HTTP Content-Length response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code execution in t…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-20046
|
2024-11-21 14:45 |
2022-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|