|
197021
|
4.9 |
MEDIUM
Network
|
sonicwall
|
sma100_firmware
|
A post-authenticated vulnerability in SonicWall SMA100 allows an attacker to export the configuration file to the specified email address. This vulnerability impacts SMA100 version 10.2.0.5 and earli…
|
CWE-287
Improper Authentication
|
CVE-2021-20018
|
2024-11-21 14:45 |
2021-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197022
|
8.8 |
HIGH
Network
|
sonicwall
|
sma100_firmware
|
A post-authenticated command injection vulnerability in SonicWall SMA100 allows an authenticated attacker to execute OS commands as a 'nobody' user. This vulnerability impacts SMA100 version 10.2.0.5…
|
CWE-78
OS Command
|
CVE-2021-20017
|
2024-11-21 14:45 |
2021-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197023
|
8.8 |
HIGH
Network
|
tenable
|
tenable.sc
|
Tenable.sc and Tenable.sc Core versions 5.13.0 through 5.17.0 were found to contain a vulnerability that could allow an authenticated, unprivileged user to perform Remote Code Execution (RCE) on the …
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2021-20076
|
2024-11-21 14:45 |
2021-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197024
|
7.5 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
Windows Remote Procedure Call Information Disclosure Vulnerability
|
NVD-CWE-noinfo
|
CVE-2021-1734
|
2024-11-21 14:45 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197025
|
7.8 |
HIGH
Local
|
racom
|
m\!dge_firmware
|
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows for privilege escalation via configd.
|
CWE-269
Improper Privilege Management
|
CVE-2021-20075
|
2024-11-21 14:45 |
2021-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197026
|
8.8 |
HIGH
Network
|
racom
|
m\!dge_firmware
|
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows users to escape the provided command line interface and execute arbitrary OS commands.
|
CWE-78
OS Command
|
CVE-2021-20074
|
2024-11-21 14:45 |
2021-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197027
|
8.8 |
HIGH
Network
|
racom
|
m\!dge_firmware
|
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows for cross-site request forgeries.
|
CWE-352
Origin Validation Error
|
CVE-2021-20073
|
2024-11-21 14:45 |
2021-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197028
|
7.2 |
HIGH
Network
|
racom
|
m\!dge_firmware
|
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to arbitrarily access and delete files via an authenticated directory traveral.
|
CWE-22
Path Traversal
|
CVE-2021-20072
|
2024-11-21 14:45 |
2021-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197029
|
4.8 |
MEDIUM
Network
|
racom
|
m\!dge_firmware
|
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scriptings attacks via the sms.php dialogs.
|
CWE-79
Cross-site Scripting
|
CVE-2021-20071
|
2024-11-21 14:45 |
2021-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197030
|
4.8 |
MEDIUM
Network
|
racom
|
m\!dge_firmware
|
Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scriptings attacks via the virtualization.php dialogs.
|
CWE-79
Cross-site Scripting
|
CVE-2021-20070
|
2024-11-21 14:45 |
2021-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|