|
195001
|
7.8 |
HIGH
Local
|
google
|
asylo
|
An attacker can modify the pointers in enclave memory to overwrite arbitrary memory addresses within the secure enclave. It is recommended to update past 0.6.3 or git commit https://github.com/google…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2021-22550
|
2024-11-21 14:50 |
2021-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195002
|
7.8 |
HIGH
Local
|
google
|
asylo
|
An attacker can modify the address to point to trusted memory to overwrite arbitrary trusted memory. It is recommended to update past 0.6.2 or git commit https://github.com/google/asylo/commit/53ed5d…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2021-22549
|
2024-11-21 14:50 |
2021-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195003
|
7.8 |
HIGH
Local
|
google
|
asylo
|
An attacker can change the pointer to untrusted memory to point to trusted memory region which causes copying trusted memory to trusted memory, if the latter is later copied out, it allows for readin…
|
NVD-CWE-Other
|
CVE-2021-22548
|
2024-11-21 14:50 |
2021-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195004
|
7.5 |
HIGH
Network
|
microfocus
|
secure_api_manager
|
Insertion of Sensitive Information into Log File vulnerability in Micro Focus Secure API Manager (SAPIM) product, affecting version 2.0.0. The vulnerability could lead to sensitive information being …
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2021-22516
|
2024-11-21 14:50 |
2021-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195005
|
9.8 |
CRITICAL
Network
|
microfocus
|
sitescope
|
Execute arbitrary code vulnerability in Micro Focus SiteScope product, affecting versions 11.40,11.41 , 2018.05(11.50), 2018.08(11.51), 2018.11(11.60), 2019.02(11.70), 2019.05(11.80), 2019.08(11.90),…
|
NVD-CWE-noinfo
|
CVE-2021-22519
|
2024-11-21 14:50 |
2021-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195006
|
6.5 |
MEDIUM
Network
|
huawei
|
ngfw_module_firmware secospace_usg6300_firmware secospace_usg6500_firmware secospace_usg6600_firmware usg9500_firmware
|
There is an out-of-bounds write vulnerability in some Huawei products. The code of a module have a bad judgment logic. Attackers can exploit this vulnerability by performing multiple abnormal activit…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-22411
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195007
|
9.8 |
CRITICAL
Network
|
rocket.chat
|
rocket.chat
|
A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenticated NoSQL injection, resulting potentially in RCE.
|
NVD-CWE-Other
|
CVE-2021-22911
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195008
|
7.5 |
HIGH
Network
|
ui
|
edgemax_edgerouter_firmware
|
A vulnerability found in EdgeMAX EdgeRouter V2.0.9 and earlier could allow a malicious actor to execute a man-in-the-middle (MitM) attack during a firmware update. This vulnerability is fixed in Edge…
|
CWE-295
Improper Certificate Validation
|
CVE-2021-22909
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195009
|
8.8 |
HIGH
Network
|
pulsesecure ivanti
|
pulse_connect_secure connect_secure
|
A buffer overflow vulnerability exists in Windows File Resource Profiles in 9.X allows a remote authenticated user with privileges to browse SMB shares to execute arbitrary code as the root user. As …
|
CWE-120
Classic Buffer Overflow
|
CVE-2021-22908
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195010
|
7.8 |
HIGH
Local
|
citrix
|
workspace
|
An improper access control vulnerability exists in Citrix Workspace App for Windows potentially allows privilege escalation in CR versions prior to 2105 and 1912 LTSR prior to CU4.
|
NVD-CWE-Other
|
CVE-2021-22907
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|