|
195201
|
9.3 |
CRITICAL
Network
|
sealevel
|
seaconnect_370w_firmware
|
A denial of service vulnerability exists in the SeaMax remote configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of se…
|
CWE-287
Improper Authentication
|
CVE-2021-21965
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195202
|
7.4 |
HIGH
Network
|
sealevel
|
seaconnect_370w_firmware
|
A denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of service. …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2021-21964
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195203
|
5.9 |
MEDIUM
Network
|
sealevel
|
seaconnect_370w_firmware
|
An information disclosure vulnerability exists in the Web Server functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted man-in-the-middle attack can lead to a disclosure…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2021-21963
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195204
|
8.1 |
HIGH
Network
|
sealevel
|
seaconnect_370w_firmware
|
A heap-based buffer overflow vulnerability exists in the OTA Update u-download functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A series of specially-crafted MQTT payloads can lead to…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21962
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195205
|
10.0 |
CRITICAL
Network
|
sealevel
|
seaconnect_370w_firmware
|
A stack-based buffer overflow vulnerability exists in the NBNS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execution. A…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21961
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195206
|
10.0 |
CRITICAL
Network
|
sealevel
|
seaconnect_370w_firmware
|
A stack-based buffer overflow vulnerability exists in both the LLMNR functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execut…
|
CWE-1284
Improper Validation of Specified Quantity in Input
|
CVE-2021-21960
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195207
|
8.1 |
HIGH
Network
|
sealevel
|
seaconnect_370w_firmware
|
A misconfiguration exists in the MQTTS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. This misconfiguration significantly simplifies a man-in-the-middle attack, which directly leads…
|
CWE-295
Improper Certificate Validation
|
CVE-2021-21959
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195208
|
4.3 |
MEDIUM
Network
|
vmware oracle
|
spring_framework communications_cloud_native_core_console communications_cloud_native_core_service_communication_proxy
|
In Spring Framework versions 5.3.0 - 5.3.13, 5.2.0 - 5.2.18, and older unsupported versions, it is possible for a user to provide malicious input to cause the insertion of additional log entries. Thi…
|
NVD-CWE-noinfo
|
CVE-2021-22060
|
2024-11-21 14:49 |
2022-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195209
|
7.8 |
HIGH
Local
|
vmware
|
cloud_foundation workstation fusion esxi
|
VMware ESXi (7.0, 6.7 before ESXi670-202111101-SG and 6.5 before ESXi650-202110101-SG), VMware Workstation (16.2.0) and VMware Fusion (12.2.0) contains a heap-overflow vulnerability in CD-ROM device …
|
CWE-787
Out-of-bounds Write
|
CVE-2021-22045
|
2024-11-21 14:49 |
2022-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195210
|
8.1 |
HIGH
Network
|
anker
|
eufy_homebase_2_firmware
|
An authentication bypass vulnerability exists in the process_msg() function of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h. A specially-crafted man-in-the-middle attack can lead to inc…
|
NVD-CWE-Other
|
CVE-2021-21953
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|