|
195341
|
6.8 |
MEDIUM
Adjacent
|
logitech
|
lan-w300n\/pgrb_firmware
|
LOGITEC LAN-W300N/PGRB allows an attacker with administrative privilege to execute arbitrary OS commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2021-20638
|
2024-11-21 14:46 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195342
|
6.5 |
MEDIUM
Network
|
logitech
|
lan-w300n\/pr5b_firmware
|
Improper check or handling of exceptional conditions in LOGITEC LAN-W300N/PR5B allows a remote attacker to cause a denial-of-service (DoS) condition by sending a specially crafted URL.
|
NVD-CWE-Other
|
CVE-2021-20637
|
2024-11-21 14:46 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195343
|
6.5 |
MEDIUM
Network
|
logitech
|
lan-w300n\/pr5b_firmware
|
Cross-site request forgery (CSRF) vulnerability in LOGITEC LAN-W300N/PR5B allows remote attackers to hijack the authentication of administrators via a specially crafted URL. As a result, unintended o…
|
CWE-352
Origin Validation Error
|
CVE-2021-20636
|
2024-11-21 14:46 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195344
|
6.5 |
MEDIUM
Adjacent
|
logitech
|
lan-wh450n\/gr_firmware
|
Improper restriction of excessive authentication attempts in LOGITEC LAN-WH450N/GR allows an attacker in the wireless range of the device to recover PIN and access the network.
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2021-20635
|
2024-11-21 14:46 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195345
|
7.0 |
HIGH
Local
|
podman_project redhat
|
podman enterprise_linux openshift_container_platform
|
A flaw was found in podman before 1.7.0. File permissions for non-root users running in a privileged container are not correctly checked. This flaw can be abused by a low-privileged user inside the c…
|
-
|
CVE-2021-20188
|
2024-11-21 14:46 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195346
|
7.5 |
HIGH
Network
|
ibm
|
security_verify_information_queue
|
IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user to perform unauthorized activities due to improper encoding of output. IBM X-Force ID: 196183.
|
CWE-116
Improper Encoding or Escaping of Output
|
CVE-2021-20405
|
2024-11-21 14:46 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195347
|
5.3 |
MEDIUM
Network
|
ibm
|
security_verify_information_queue
|
IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user on the network to cause a denial of service due to an invalid cookie value that could prevent future logins. IBM X-Force ID: 1…
|
NVD-CWE-noinfo
|
CVE-2021-20404
|
2024-11-21 14:46 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195348
|
8.8 |
HIGH
Network
|
ibm
|
security_verify_information_queue
|
IBM Security Verify Information Queue 1.0.6 and 1.0.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user t…
|
CWE-352
Origin Validation Error
|
CVE-2021-20403
|
2024-11-21 14:46 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195349
|
2.7 |
LOW
Network
|
ibm
|
security_verify_information_queue
|
IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This informatio…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2021-20402
|
2024-11-21 14:46 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195350
|
4.6 |
MEDIUM
Adjacent
|
mongodb
|
ops_manager
|
For MongoDB Ops Manager versions prior to and including 4.2.24 with multiple OM application servers, that have SSL turned on for their MongoDB processes, the upgrade to MongoDB Ops Manager versions p…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2021-20335
|
2024-11-21 14:46 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|