|
195311
|
7.8 |
HIGH
Local
|
linux netapp
|
linux_kernel cloud_backup
|
A use-after-free flaw was found in the io_uring in Linux kernel, where a local attacker with a user privilege could cause a denial of service problem on the system The issue results from the lack of …
|
-
|
CVE-2021-20226
|
2024-11-21 14:46 |
2021-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195312
|
9.8 |
CRITICAL
Network
|
mitsubishielectric
|
melfa-works rt_toolbox2 ezsocket fr_configurator fr_configurator_sw3 gx_configurator-dp gx_configurator-qp gx_explorer gx_iec_developer gx_works2 gx_works3 m_commdtm-…
|
Improper handling of length parameter inconsistency vulnerability in Mitsubishi Electric FA Engineering Software(CPU Module Logging Configuration Tool versions 1.112R and prior, CW Configurator versi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2021-20588
|
2024-11-21 14:46 |
2021-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195313
|
9.8 |
CRITICAL
Network
|
mitsubishielectric
|
melfa-works rt_toolbox2 ezsocket fr_configurator fr_configurator_sw3 gx_configurator-dp gx_configurator-qp gx_explorer gx_iec_developer gx_works2 gx_works3 m_commdtm-…
|
Heap-based buffer overflow vulnerability in Mitsubishi Electric FA Engineering Software (CPU Module Logging Configuration Tool versions 1.112R and prior, CW Configurator versions 1.011M and prior, Da…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-20587
|
2024-11-21 14:46 |
2021-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195314
|
5.4 |
MEDIUM
Network
|
ibm
|
maximo_for_civil_infrastructure
|
IBM Maximo for Civil Infrastructure 7.6.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functional…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20446
|
2024-11-21 14:46 |
2021-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195315
|
6.5 |
MEDIUM
Network
|
ibm
|
maximo_for_civil_infrastructure
|
IBM Maximo for Civil Infrastructure 7.6.2 could allow a user to obtain sensitive information due to insecure storeage of authentication credentials. IBM X-Force ID: 196621.
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2021-20445
|
2024-11-21 14:46 |
2021-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195316
|
6.1 |
MEDIUM
Network
|
ibm
|
maximo_for_civil_infrastructure
|
IBM Maximo for Civil Infrastructure 7.6.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functional…
|
CWE-79
Cross-site Scripting
|
CVE-2021-20444
|
2024-11-21 14:46 |
2021-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195317
|
8.8 |
HIGH
Network
|
ibm
|
maximo_for_civil_infrastructure
|
IBM Maximo for Civil Infrastructure 7.6.2 includes executable functionality (such as a library) from a source that is outside of the intended control sphere. IBM X-Force ID: 196619.
|
CWE-829
Inclusion of Functionality from Untrusted Control Sphere
|
CVE-2021-20443
|
2024-11-21 14:46 |
2021-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195318
|
7.5 |
HIGH
Network
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) …
|
CWE-22
Path Traversal
|
CVE-2021-20354
|
2024-11-21 14:46 |
2021-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195319
|
7.2 |
HIGH
Network
|
soliton
|
filezen
|
FileZen (V3.0.0 to V4.2.7 and V5.0.0 to V5.0.2) allows a remote attacker with administrator rights to execute arbitrary OS commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2021-20655
|
2024-11-21 14:46 |
2021-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195320
|
5.3 |
MEDIUM
Network
|
nec
|
csdj-b_firmware csdj-h_firmware csdj-d_firmware csdj-a_firmware
|
Calsos CSDJ (CSDJ-B 01.08.00 and earlier, CSDJ-H 01.08.00 and earlier, CSDJ-D 01.08.00 and earlier, and CSDJ-A 03.08.00 and earlier) allows remote attackers to bypass access restriction and to obtain…
|
CWE-276
Incorrect Default Permissions
|
CVE-2021-20653
|
2024-11-21 14:46 |
2021-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|