|
196431
|
6.1 |
MEDIUM
Network
|
zope
|
products.pluggableauthservice
|
Products.PluggableAuthService is a pluggable Zope authentication and authorization framework. In Products.PluggableAuthService before version 2.6.0 there is an open redirect vulnerability. A maliciou…
|
-
|
CVE-2021-21337
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196432
|
9.8 |
CRITICAL
Network
|
spnego_http_authentication_module_project
|
spnego_http_authentication_module
|
In the SPNEGO HTTP Authentication Module for nginx (spnego-http-auth-nginx-module) before version 1.1.1 basic Authentication can be bypassed using a malformed username. This affects users of spnego-h…
|
-
|
CVE-2021-21335
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196433
|
9.8 |
CRITICAL
Network
|
ratcf
|
ratcf
|
RATCF is an open-source framework for hosting Cyber-Security Capture the Flag events. In affected versions of RATCF users with multi factor authentication enabled are able to log in without a valid t…
|
-
|
CVE-2021-21329
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196434
|
6.5 |
MEDIUM
Network
|
zope plone
|
products.pluggableauthservice plone
|
Products.PluggableAuthService is a pluggable Zope authentication and authorization framework. In Products.PluggableAuthService before version 2.6.0 there is an information disclosure vulnerability - …
|
-
|
CVE-2021-21336
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196435
|
6.5 |
MEDIUM
Network
|
minio
|
minio
|
MinIO is an open-source high performance object storage service and it is API compatible with Amazon S3 cloud storage service. In MinIO before version RELEASE.2021-03-04T00-53-13Z it is possible to b…
|
CWE-863
Incorrect Authorization
|
CVE-2021-21362
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196436
|
6.1 |
MEDIUM
Network
|
mozilla
|
pollbot
|
Pollbot is open source software which "frees its human masters from the toilsome task of polling for the state of things during the Firefox release process." In Pollbot before version 1.4.4 there is …
|
-
|
CVE-2021-21354
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196437
|
7.5 |
HIGH
Network
|
glpi-project
|
glpi
|
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. In GLPI before version 9.5.4 non-authenticated user …
|
CWE-470
Unsafe Reflection
|
CVE-2021-21327
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196438
|
6.5 |
MEDIUM
Network
|
glpi-project
|
glpi
|
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. In GLPI before version 9.5.4 it is possible to creat…
|
-
|
CVE-2021-21326
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196439
|
4.8 |
MEDIUM
Network
|
glpi-project
|
glpi
|
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. In GLPI before version 9.5.4 a new budget type can b…
|
-
|
CVE-2021-21325
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196440
|
6.5 |
MEDIUM
Network
|
glpi-project
|
glpi
|
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. In GLPI before version 9.5.4 there is an Insecure Di…
|
-
|
CVE-2021-21324
|
2024-11-21 14:48 |
2021-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|