|
195011
|
7.2 |
HIGH
Network
|
pulsesecure ivanti
|
pulse_connect_secure connect_secure
|
A vulnerability allowed multiple unrestricted uploads in Pulse Connect Secure before 9.1R11.4 that could lead to an authenticated administrator to perform a file write via a maliciously crafted archi…
|
CWE-669
Incorrect Resource Transfer Between Spheres
|
CVE-2021-22900
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195012
|
8.8 |
HIGH
Network
|
pulsesecure ivanti
|
pulse_connect_secure connect_secure
|
A command injection vulnerability exists in Pulse Connect Secure before 9.1R11.4 allows a remote authenticated attacker to perform remote code execution via Windows Resource Profiles Feature
|
CWE-77
Command Injection
|
CVE-2021-22899
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195013
|
8.8 |
HIGH
Network
|
pulsesecure ivanti
|
pulse_connect_secure connect_secure
|
A buffer overflow vulnerability exists in Pulse Connect Secure before 9.1R11.4 allows a remote authenticated attacker to execute arbitrary code as the root user via maliciously crafted meeting room.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2021-22894
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195014
|
7.5 |
HIGH
Network
|
rocket.chat
|
rocket.chat
|
An information disclosure vulnerability exists in the Rocket.Chat server fixed v3.13, v3.12.2 & v3.11.3 that allowed email addresses to be disclosed by enumeration and validation checks.
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2021-22892
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195015
|
9.8 |
CRITICAL
Network
|
citrix
|
sharefile_storagezones_controller
|
A missing authorization vulnerability exists in Citrix ShareFile Storage Zones Controller before 5.7.3, 5.8.3, 5.9.3, 5.10.1 and 5.11.18 may allow unauthenticated remote compromise of the Storage Zon…
|
CWE-862
Missing Authorization
|
CVE-2021-22891
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195016
|
7.5 |
HIGH
Network
|
rubyonrails debian
|
rails actionpack_page-caching debian_linux
|
A possible information disclosure / unintended method execution vulnerability in Action Pack >= 2.0.0 when using the `redirect_to` or `polymorphic_url`helper with untrusted user input.
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2021-22885
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195017
|
3.9 |
LOW
Physics
|
schneider-electric
|
triconex_model_3009_mp_firmware tcm_4351b_firmware
|
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriSt…
|
-
|
CVE-2021-22747
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195018
|
3.9 |
LOW
Physics
|
schneider-electric
|
triconex_model_3009_mp_firmware tcm_4351b_firmware
|
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriSt…
|
-
|
CVE-2021-22746
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195019
|
3.9 |
LOW
Physics
|
schneider-electric
|
triconex_model_3009_mp_firmware tcm_4351b_firmware
|
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriSt…
|
-
|
CVE-2021-22745
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195020
|
3.9 |
LOW
Physics
|
schneider-electric
|
triconex_model_3009_mp_firmware tcm_4351b_firmware
|
Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon V11.3.x systems that could cause module reset when TCM receives malformed TriSt…
|
-
|
CVE-2021-22744
|
2024-11-21 14:50 |
2021-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|