|
195541
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8084_firmware apq8096au_firmware aqt1000_firmware csr6030_firmware csrb31024_firmwa…
|
Integer underflow can occur when the RTCP length is lesser than than the actual blocks present in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Ind…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2021-1919
|
2024-11-21 14:45 |
2021-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195542
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8084_firmware apq8096au_firmware aqt1000_firmware ar6003_firmware csr6030_firmware<…
|
Possible buffer underflow due to lack of check for negative indices values when processing user provided input in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-1916
|
2024-11-21 14:45 |
2021-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195543
|
7.5 |
HIGH
Network
|
qualcomm
|
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8096au_firmware aqt1000_firmware csr6030_firmware csrb31024_firmware mdm8207_firmwa…
|
Loop with unreachable exit condition may occur due to improper handling of unsupported input in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Indus…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2021-1914
|
2024-11-21 14:45 |
2021-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195544
|
5.5 |
MEDIUM
Local
|
qualcomm
|
apq8009_firmware apq8009w_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8076_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware…
|
Child process can leak information from parent process due to numeric pids are getting compared and these pid can be reused in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon…
|
CWE-697
Incorrect Comparison
|
CVE-2021-1904
|
2024-11-21 14:45 |
2021-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195545
|
9.8 |
CRITICAL
Network
|
sonicwall
|
analytics
|
SonicWall Analytics 2.5 On-Prem is vulnerable to Java Debug Wire Protocol (JDWP) interface security misconfiguration vulnerability which potentially leads to Remote Code Execution. This vulnerability…
|
NVD-CWE-noinfo
|
CVE-2021-20032
|
2024-11-21 14:45 |
2021-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195546
|
6.1 |
MEDIUM
Network
|
tecnick
|
tcexam
|
A reflected cross-site scripting vulnerability exists in TCExam <= 14.8.4. The paths provided in the f, d, and dir parameters in tce_select_mediafile.php were not properly validated and could cause r…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20116
|
2024-11-21 14:45 |
2021-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195547
|
6.1 |
MEDIUM
Network
|
tecnick
|
tcexam
|
A reflected cross-site scripting vulnerability exists in TCExam <= 14.8.3. The paths provided in the f, d, and dir parameters in tce_filemanager.php were not properly validated and could cause reflec…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20115
|
2024-11-21 14:45 |
2021-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195548
|
9.8 |
CRITICAL
Network
|
sonicwall
|
sma_210_firmware sma_410_firmware sma_500v_firmware sra_4600_firmware sra_1600_firmware sra_va_firmware
|
Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products, specifically the SRA appliances running all 8.x firmware and…
|
CWE-89
SQL Injection
|
CVE-2021-20028
|
2024-11-21 14:45 |
2021-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195549
|
7.5 |
HIGH
Network
|
tecnick
|
tcexam
|
When installed following the default/recommended settings, TCExam <= 14.8.1 allowed unauthenticated users to access the /cache/backup/ directory, which included sensitive database backup files.
|
CWE-425
Direct Request ('Forced Browsing')
|
CVE-2021-20114
|
2024-11-21 14:45 |
2021-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195550
|
5.3 |
MEDIUM
Network
|
tecnick
|
tcexam
|
An exposure of sensitive information vulnerability exists in TCExam <= 14.8.1. If a password reset request was made for an email address that was not registered with a user then we would be presented…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2021-20113
|
2024-11-21 14:45 |
2021-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|