|
194961
|
5.3 |
MEDIUM
Network
|
ray-ban
|
stories_rw4003_65582v_48-23_firmware stories_rw4002_601\/71_50-22_firmware stories_rw4005_656013_51-20_firmware stories_rw4005_6563m3_51-20_firmware
|
A logic flaw in Ray-Ban® Stories device software allowed some parameters like video capture duration limit to be modified through the Facebook View application. This issue affected versions of device…
|
CWE-425
Direct Request ('Forced Browsing')
|
CVE-2021-24046
|
2024-11-21 14:52 |
2022-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194962
|
9.8 |
CRITICAL
Network
|
whatsapp
|
whatsapp
|
The calling logic for WhatsApp for Android prior to v2.21.23, WhatsApp Business for Android prior to v2.21.23, WhatsApp for iOS prior to v2.21.230, WhatsApp Business for iOS prior to v2.21.230, Whats…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-24042
|
2024-11-21 14:52 |
2022-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194963
|
9.8 |
CRITICAL
Network
|
facebook
|
hermes
|
A type confusion vulnerability could be triggered when resolving the "typeof" unary operator in Facebook Hermes prior to v0.10.0. Note that this is only exploitable if the application using Hermes pe…
|
CWE-843
Type Confusion
|
CVE-2021-24045
|
2024-11-21 14:52 |
2021-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194964
|
9.8 |
CRITICAL
Network
|
whatsapp
|
whatsapp whatsapp_business
|
A missing bounds check in image blurring code prior to WhatsApp for Android v2.21.22.7 and WhatsApp Business for Android v2.21.22.7 could have allowed an out-of-bounds write if a user sent a maliciou…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-24041
|
2024-11-21 14:52 |
2021-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194965
|
4.8 |
MEDIUM
Network
|
ninjaforms
|
contact_form
|
The Ninja Forms Contact Form WordPress plugin before 3.5.8.2 does not sanitise and escape the custom class name of the form field created, which could allow high privilege users to perform Cross-Site…
|
CWE-79
Cross-site Scripting
|
CVE-2021-24381
|
2024-11-21 14:52 |
2021-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194966
|
5.4 |
MEDIUM
Network
|
fortinet
|
fortianalyzer
|
An improper neutralization of input vulnerability [CWE-79] in FortiAnalyzer versions 6.4.3 and below, 6.2.7 and below and 6.0.10 and below may allow a remote authenticated attacker to perform a store…
|
CWE-79
Cross-site Scripting
|
CVE-2021-24021
|
2024-11-21 14:52 |
2021-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194967
|
9.8 |
CRITICAL
Network
|
fortinet
|
forticlient_endpoint_management_server
|
An insufficient session expiration vulnerability [CWE- 613] in FortiClientEMS versions 6.4.2 and below, 6.2.8 and below may allow an attacker to reuse the unexpired admin user session IDs to gain adm…
|
CWE-613
Insufficient Session Expiration
|
CVE-2021-24019
|
2024-11-21 14:52 |
2021-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194968
|
7.8 |
HIGH
Local
|
mcafee
|
drive_encryption
|
Privilege Escalation vulnerability in a Windows system driver of McAfee Drive Encryption (DE) prior to 7.3.0 could allow a local non-admin user to gain elevated system privileges via exploiting an un…
|
CWE-269
Improper Privilege Management
|
CVE-2021-23893
|
2024-11-21 14:52 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194969
|
4.3 |
MEDIUM
Network
|
fortinet
|
fortimanager
|
An improper authentication in Fortinet FortiManager version 6.4.3 and below, 6.2.6 and below allows attacker to assign arbitrary Policy and Object modules via crafted requests to the request handler.
|
CWE-287
Improper Authentication
|
CVE-2021-24017
|
2024-11-21 14:52 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194970
|
6.3 |
MEDIUM
Local
|
fortinet
|
fortimanager
|
An improper neutralization of formula elements in a csv file in Fortinet FortiManager version 6.4.3 and below, 6.2.7 and below allows attacker to execute arbitrary commands via crafted IPv4 field in …
|
CWE-1236
Improper Neutralization of Formula Elements in a CSV File
|
CVE-2021-24016
|
2024-11-21 14:52 |
2021-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|