|
195081
|
8.8 |
HIGH
Network
|
github
|
enterprise_server
|
A remote code execution vulnerability was identified in GitHub Enterprise Server that could be exploited when building a GitHub Pages site. User-controlled configuration options used by GitHub Pages …
|
NVD-CWE-noinfo
|
CVE-2021-22864
|
2024-11-21 14:50 |
2021-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195082
|
7.8 |
HIGH
Local
|
rockwellautomation
|
drivetools_sp drivetools_add-on_profiles
|
Rockwell Automation DriveTools SP v5.13 and below and Drives AOP v4.12 and below both contain a vulnerability that a local attacker with limited privileges may be able to exploit resulting in privile…
|
-
|
CVE-2021-22665
|
2024-11-21 14:50 |
2021-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195083
|
9.8 |
CRITICAL
Network
|
hgiga
|
msr45_isherlock-antispam msr45_isherlock-user ssr45_isherlock-antispam ssr45_isherlock-user
|
HGiga MailSherlock contains a SQL Injection. Remote attackers can inject SQL syntax and execute SQL commands in a URL parameter of email pages without privilege.
|
CWE-89
SQL Injection
|
CVE-2021-22848
|
2024-11-21 14:50 |
2021-03-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195084
|
9.8 |
CRITICAL
Network
|
eic
|
e-document_system
|
EIC e-document system does not perform completed identity verification for sorting and filtering personnel data. The vulnerability allows remote attacker to obtain users’ credential information witho…
|
CWE-287
Improper Authentication
|
CVE-2021-22860
|
2024-11-21 14:50 |
2021-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195085
|
9.8 |
CRITICAL
Network
|
eic
|
e-document_system
|
The users’ data querying function of EIC e-document system does not filter the special characters which resulted in remote attackers can inject SQL syntax and execute arbitrary commands without privi…
|
CWE-89
SQL Injection
|
CVE-2021-22859
|
2024-11-21 14:50 |
2021-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195086
|
2.3 |
LOW
Local
|
pulsesecure supermicro
|
psa-5000_firmware psa-7000_firmware x10slh-f_firmware x10sll-f_firmware x10slm-f_firmware x10sll\+f_firmware x10slm\+-f_firmware x10slm\+ln4f_firmware x10sla-f_firmware x10…
|
A vulnerability in the BIOS of Pulse Secure (PSA-Series Hardware) models PSA5000 and PSA7000 could allow an attacker to compromise BIOS firmware. This vulnerability can be exploited only as part of a…
|
NVD-CWE-Other
|
CVE-2021-22887
|
2024-11-21 14:50 |
2021-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195087
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
powerlogic_ion7400_firmware powerlogic_pm8000_firmware powerlogic_ion9000_firmware
|
A CWE-119:Improper restriction of operations within the bounds of a memory buffer vulnerability exists in PowerLogic ION7400, PM8000 and ION9000 (All versions prior to V3.0.0), which could cause the …
|
-
|
CVE-2021-22714
|
2024-11-21 14:50 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195088
|
7.5 |
HIGH
Network
|
schneider-electric
|
powerlogic_ion8650_firmware powerlogic_ion8800_firmware powerlogic_ion7550_firmware powerlogic_ion7650_firmware powerlogic_ion7700_firmware powerlogic_ion7300_firmware powerlogic_io…
|
A CWE-119:Improper restriction of operations within the bounds of a memory buffer vulnerability exists in PowerLogic ION8650, ION8800, ION7650, ION7700/73xx, and ION83xx/84xx/85xx/8600 (see security …
|
-
|
CVE-2021-22713
|
2024-11-21 14:50 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195089
|
7.8 |
HIGH
Local
|
schneider-electric
|
interactive_graphical_scada_system
|
A CWE-119:Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Interactive Graphical SCADA System (IGSS) Definition (Def.exe) V15.0.0.21041 and prior, which…
|
-
|
CVE-2021-22712
|
2024-11-21 14:50 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195090
|
7.8 |
HIGH
Local
|
schneider-electric
|
interactive_graphical_scada_system
|
A CWE-119:Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in Interactive Graphical SCADA System (IGSS) Definition (Def.exe) V15.0.0.21041 and prior, which…
|
-
|
CVE-2021-22711
|
2024-11-21 14:50 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|