|
195761
|
5.4 |
MEDIUM
Network
|
elecom
|
wrh-733gbk_firmware wrh-733gwh_firmware
|
Cross-site scripting vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a remote authenticated attacker to inject an arbitrar…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20856
|
2024-11-21 14:47 |
2021-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195762
|
5.4 |
MEDIUM
Network
|
elecom
|
wrh-733gbk_firmware wrh-733gwh_firmware
|
Cross-site scripting vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a remote authenticated attacker to inject an arbitrar…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20855
|
2024-11-21 14:47 |
2021-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195763
|
8.8 |
HIGH
Network
|
elecom
|
wrc-1167gst2_firmware wrc-1167gst2a_firmware wrc-1167gst2h_firmware wrc-2533gs2-b_firmware wrc-2533gs2-w_firmware wrc-1750gs_firmware wrc-1750gsv_firmware wrc-1900gst_firmware
|
Cross-site request forgery (CSRF) vulnerability in ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H firmware v1.25 and prior, WRC-2533G…
|
CWE-352
Origin Validation Error
|
CVE-2021-20860
|
2024-11-21 14:47 |
2021-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195764
|
8.0 |
HIGH
Adjacent
|
elecom
|
wrc-1167gst2_firmware wrc-1167gst2a_firmware wrc-1167gst2h_firmware wrc-2533gs2-b_firmware wrc-2533gs2-w_firmware wrc-1750gs_firmware wrc-1750gsv_firmware wrc-1900gst_firmware
|
ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H firmware v1.25 and prior, WRC-2533GS2-B firmware v1.52 and prior, WRC-2533GS2-W firmwa…
|
CWE-78
OS Command
|
CVE-2021-20859
|
2024-11-21 14:47 |
2021-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195765
|
6.8 |
MEDIUM
Adjacent
|
elecom
|
wrh-733gbk_firmware wrh-733gwh_firmware
|
ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-adjacent attacker with an administrator privilege to execute arbitrary OS command…
|
CWE-78
OS Command
|
CVE-2021-20854
|
2024-11-21 14:47 |
2021-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195766
|
6.8 |
MEDIUM
Adjacent
|
elecom
|
wrh-733gbk_firmware wrh-733gwh_firmware
|
ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-adjacent attacker with an administrator privilege to execute arbitrary OS command…
|
CWE-78
OS Command
|
CVE-2021-20853
|
2024-11-21 14:47 |
2021-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195767
|
6.8 |
MEDIUM
Adjacent
|
elecom
|
wrh-733gbk_firmware wrh-733gwh_firmware
|
Buffer overflow vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-adjacent attacker with an administrator privileg…
|
CWE-120
Classic Buffer Overflow
|
CVE-2021-20852
|
2024-11-21 14:47 |
2021-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195768
|
8.8 |
HIGH
Network
|
browser_and_operating_system_finder_project
|
browser_and_operating_system_finder
|
Cross-site request forgery (CSRF) vulnerability in Browser and Operating System Finder versions prior to 1.2 allows a remote unauthenticated attacker to hijack the authentication of an administrator …
|
CWE-352
Origin Validation Error
|
CVE-2021-20851
|
2024-11-21 14:47 |
2021-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195769
|
6.1 |
MEDIUM
Network
|
nttdocomo
|
wi-fi_station_sh-52a_firmware
|
Cross-site scripting vulnerability in Wi-Fi STATION SH-52A (38JP_1_11G, 38JP_1_11J, 38JP_1_11K, 38JP_1_11L, 38JP_1_26F, 38JP_1_26G, 38JP_1_26J, 38JP_2_03B, and 38JP_2_03C) allows a remote unauthentic…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20847
|
2024-11-21 14:47 |
2021-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195770
|
9.8 |
CRITICAL
Network
|
alfasado
|
powercms
|
PowerCMS XMLRPC API of PowerCMS 5.19 and earlier, PowerCMS 4.49 and earlier, PowerCMS 3.295 and earlier, and PowerCMS 2 Series (End-of-Life, EOL) allows a remote attacker to execute an arbitrary OS c…
|
CWE-78
OS Command
|
CVE-2021-20850
|
2024-11-21 14:47 |
2021-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|