|
195161
|
5.9 |
MEDIUM
Network
|
atomtech
|
smart_life
|
The ATOM (ATOM - Smart life App for Android versions prior to 1.8.1 and ATOM - Smart life App for iOS versions prior to 1.8.2) does not verify server certificate properly, which allows man-in-the-mid…
|
CWE-295
Improper Certificate Validation
|
CVE-2021-20732
|
2024-11-21 14:47 |
2021-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195162
|
8.8 |
HIGH
Adjacent
|
buffalo
|
wsr-1166dhp4_firmware wsr-1166dhp3_firmware
|
WSR-1166DHP3 firmware Ver.1.16 and prior and WSR-1166DHP4 firmware Ver.1.02 and prior allow an attacker to execute arbitrary OS commands with root privileges via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2021-20731
|
2024-11-21 14:47 |
2021-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195163
|
4.3 |
MEDIUM
Adjacent
|
buffalo
|
wsr-1166dhp4_firmware wsr-1166dhp3_firmware
|
Improper access control vulnerability in WSR-1166DHP3 firmware Ver.1.16 and prior and WSR-1166DHP4 firmware Ver.1.02 and prior allows an attacker to obtain configuration information via unspecified v…
|
NVD-CWE-Other
|
CVE-2021-20730
|
2024-11-21 14:47 |
2021-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195164
|
5.3 |
MEDIUM
Network
|
nttr
|
goo_blog
|
Improper access control vulnerability in goo blog App for Android ver.1.2.25 and earlier and for iOS ver.1.3.3 and earlier allows a remote attacker to lead a user to access an arbitrary website via t…
|
NVD-CWE-Other
|
CVE-2021-20728
|
2024-11-21 14:47 |
2021-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195165
|
9.8 |
CRITICAL
Network
|
sharp-nec-displays
|
un462a_firmware un462va_firmware un492s_firmware un492vs_firmware un552a_firmware un552s_firmware un552vs_firmware un552_firmware un552v_firmware ux552s_firmware ux552_f…
|
Sharp NEC Displays ((UN462A R1.300 and prior to it, UN462VA R1.300 and prior to it, UN492S R1.300 and prior to it, UN492VS R1.300 and prior to it, UN552A R1.300 and prior to it, UN552S R1.300 and pri…
|
CWE-77 CWE-120
Command Injection Classic Buffer Overflow
|
CVE-2021-20699
|
2024-11-21 14:47 |
2021-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195166
|
9.8 |
CRITICAL
Network
|
sharp-nec-displays
|
un462a_firmware un462va_firmware un492s_firmware un492vs_firmware un552a_firmware un552s_firmware un552vs_firmware un552_firmware un552v_firmware ux552s_firmware ux552_f…
|
Sharp NEC Displays (UN462A R1.300 and prior to it, UN462VA R1.300 and prior to it, UN492S R1.300 and prior to it, UN492VS R1.300 and prior to it, UN552A R1.300 and prior to it, UN552S R1.300 and prio…
|
NVD-CWE-noinfo
|
CVE-2021-20698
|
2024-11-21 14:47 |
2021-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195167
|
6.1 |
MEDIUM
Network
|
zettlr
|
zettlr
|
Cross-site scripting vulnerability in Zettlr from 0.20.0 to 1.8.8 allows an attacker to execute an arbitrary script by loading a file or code snippet containing an invalid iframe into Zettlr.
|
CWE-79
Cross-site Scripting
|
CVE-2021-20727
|
2024-11-21 14:47 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195168
|
6.5 |
MEDIUM
Network
|
wago
|
750-823_firmware 750-829_firmware 750-831_firmware 750-832_firmware 750-852_firmware 750-862_firmware 750-880_firmware 750-881_firmware 750-882_firmware 750-885_firmware
|
On WAGO PFC200 devices in different firmware versions with special crafted packets an authorised attacker with network access to the device can access the file system with higher privileges.
|
CWE-22
Path Traversal
|
CVE-2021-21001
|
2024-11-21 14:47 |
2021-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195169
|
7.5 |
HIGH
Network
|
wago
|
750-823_firmware 750-829_firmware 750-831_firmware 750-832_firmware 750-852_firmware 750-862_firmware 750-880_firmware 750-881_firmware 750-882_firmware 750-885_firmware
|
On WAGO PFC200 devices in different firmware versions with special crafted packets an attacker with network access to the device could cause a denial of service for the login service of the runtime.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2021-21000
|
2024-11-21 14:47 |
2021-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195170
|
7.8 |
HIGH
Local
|
overwolf
|
overwolf
|
Untrusted search path vulnerability in The Installer of Overwolf 2.168.0.n and earlier allows an attacker to gain privileges and execute arbitrary code with the privilege of the user invoking the ins…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2021-20726
|
2024-11-21 14:47 |
2021-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|