|
196591
|
6.5 |
MEDIUM
Network
|
kamadak-exif_project
|
kamadak-exif
|
kamadak-exif is an exif parsing library written in pure Rust. In kamadak-exif version 0.5.2, there is an infinite loop in parsing crafted PNG files. Specifically, reader::read_from_container can caus…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2021-21235
|
2024-11-21 14:47 |
2021-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196592
|
7.7 |
HIGH
Network
|
spring-boot-actuator-logview_project
|
spring-boot-actuator-logview
|
spring-boot-actuator-logview in a library that adds a simple logfile viewer as spring boot actuator endpoint. It is maven package "eu.hinsch:spring-boot-actuator-logview". In spring-boot-actuator-log…
|
-
|
CVE-2021-21234
|
2024-11-21 14:47 |
2021-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196593
|
- |
|
-
|
-
|
IBM Cognos Controller 10.4.1, 10.4.2, and 11.0.0 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or …
|
-
|
CVE-2021-20451
|
2024-11-21 14:46 |
2024-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196594
|
- |
|
-
|
-
|
IBM Cognos Controller 10.4.1, 10.4.2, and 11.0.0 could allow a remote user to enumerate usernames due to differentiating error messages on existing usernames. IBM X-Force ID: 199181.
|
-
|
CVE-2021-20556
|
2024-11-21 14:46 |
2024-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196595
|
- |
|
-
|
-
|
IBM Cognos Controller 10.4.1, 10.4.2, and 11.0.0 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link…
|
-
|
CVE-2021-20450
|
2024-11-21 14:46 |
2024-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196596
|
4.3 |
MEDIUM
Network
|
ibm
|
security_verify_privilege_on-premises
|
IBM Security Verify Privilege On-Premises 11.5 could allow a user to obtain sensitive information due to insufficient session expiration. IBM X-Force ID: 199324.
|
CWE-613
Insufficient Session Expiration
|
CVE-2021-20581
|
2024-11-21 14:46 |
2023-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196597
|
5.9 |
MEDIUM
Network
|
samba fedoraproject
|
samba fedora
|
A flaw was found in samba. A race condition in the password lockout code may lead to the risk of brute force attacks being successful if special conditions are met.
|
CWE-362
Race Condition
|
CVE-2021-20251
|
2024-11-21 14:46 |
2023-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196598
|
6.5 |
MEDIUM
Network
|
ibm netapp
|
cognos_analytics oncommand_insight
|
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that th…
|
CWE-352
Origin Validation Error
|
CVE-2021-20468
|
2024-11-21 14:46 |
2022-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196599
|
7.8 |
HIGH
Local
|
theforeman
|
foreman
|
A flaw was found in the Foreman project. The Datacenter plugin exposes the password through the API to an authenticated local attacker with view_hosts permission. The highest threat from this vulnera…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2021-20260
|
2024-11-21 14:46 |
2022-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196600
|
5.5 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
An integer overflow issue was discovered in ImageMagick's ExportIndexQuantum() function in MagickCore/quantum-export.c. Function calls to GetPixelIndex() could result in values outside the range of r…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2021-20224
|
2024-11-21 14:46 |
2022-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|