|
196291
|
4.9 |
MEDIUM
Network
|
apache
|
teaclave_sgx_sdk
|
In Apache Teaclave Rust SGX SDK 1.1.3, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a control…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2021-24117
|
2024-11-21 14:52 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196292
|
4.9 |
MEDIUM
Network
|
arm fedoraproject debian
|
mbed_tls fedora debian_linux
|
In Trusted Firmware Mbed TLS 2.24.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a controlle…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2021-24119
|
2024-11-21 14:52 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196293
|
4.9 |
MEDIUM
Network
|
wolfssl
|
wolfssl
|
In wolfSSL through 4.6.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a controlled-channel a…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2021-24116
|
2024-11-21 14:52 |
2021-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196294
|
9.8 |
CRITICAL
Network
|
ninjateam
|
filebird
|
The Filebird Plugin 4.7.3 introduced a SQL injection vulnerability as it is making SQL queries without escaping user input data from a HTTP post request. This is a major vulnerability as the user inp…
|
-
|
CVE-2021-24385
|
2024-11-21 14:52 |
2021-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196295
|
5.4 |
MEDIUM
Network
|
admincolumns
|
admin_columns
|
The Admin Columns WordPress plugin Free before 4.3.2 and Pro before 5.5.2 allowed to configure individual columns for tables. Each column had a type. The type "Custom Field" allowed to choose an arbi…
|
-
|
CVE-2021-24365
|
2024-11-21 14:52 |
2021-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196296
|
8.8 |
HIGH
Network
|
fortinet
|
fortimail
|
An improper neutralization of special elements used in an OS Command vulnerability in the administrative interface of FortiMail before 6.4.4 may allow an authenticated attacker to execute unauthorize…
|
CWE-78
OS Command
|
CVE-2021-24015
|
2024-11-21 14:52 |
2021-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196297
|
6.5 |
MEDIUM
Network
|
fortinet
|
fortimail
|
Multiple Path traversal vulnerabilities in the Webmail of FortiMail before 6.4.4 may allow a regular user to obtain unauthorized access to files and data via specifically crafted web requests.
|
CWE-22
Path Traversal
|
CVE-2021-24013
|
2024-11-21 14:52 |
2021-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196298
|
9.8 |
CRITICAL
Network
|
fortinet
|
fortimail
|
A missing cryptographic step in the implementation of the hash digest algorithm in FortiMail 6.4.0 through 6.4.4, and 6.2.0 through 6.2.7 may allow an unauthenticated attacker to tamper with signed U…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2021-24020
|
2024-11-21 14:52 |
2021-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196299
|
9.8 |
CRITICAL
Network
|
fortinet
|
fortimail
|
Multiple improper neutralization of special elements of SQL commands vulnerabilities in FortiMail before 6.4.4 may allow a non-authenticated attacker to execute unauthorized code or commands via spec…
|
CWE-89
SQL Injection
|
CVE-2021-24007
|
2024-11-21 14:52 |
2021-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196300
|
6.1 |
MEDIUM
Network
|
chimpgroup
|
foodbakery
|
The WP Foodbakery WordPress plugin before 2.2, used in the FoodBakery WordPress theme before 2.2 did not properly sanitize the foodbakery_radius parameter before outputting it back in the response, l…
|
-
|
CVE-2021-24389
|
2024-11-21 14:52 |
2021-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|