|
194561
|
6.5 |
MEDIUM
Local
|
amd
|
athlon_x4_940_firmware athlon_x4_950_firmware athlon_x4_970_firmware athlon_x4_835_firmware athlon_x4_845_firmware athlon_x4_830_firmware athlon_x4_840_firmware athlon_x4_860k_fi…
|
Some AMD CPUs may transiently execute beyond unconditional direct branches, which may potentially result in data leakage.
|
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer
|
CVE-2021-26341
|
2024-11-21 14:56 |
2022-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194562
|
9.8 |
CRITICAL
Network
|
firstmall
|
firstmall
|
This issues due to insufficient verification of the various input values from user’s input. The vulnerability allows remote attackers to execute malicious code in Firstmall via navercheckout_add func…
|
CWE-20
Improper Input Validation
|
CVE-2021-26617
|
2024-11-21 14:56 |
2022-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194563
|
9.1 |
CRITICAL
Network
|
bigfile
|
bigfileagent
|
An path traversal vulnerability leading to delete arbitrary files was discovered in BigFileAgent. Remote attackers can use this vulnerability to delete arbitrary files of unspecified number of users.
|
CWE-22
Path Traversal
|
CVE-2021-26619
|
2024-11-21 14:56 |
2022-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194564
|
9.8 |
CRITICAL
Network
|
tmax
|
tooffice
|
An improper input validation leading to arbitrary file creation was discovered in ToWord of ToOffice. Remote attackers use this vulnerability to execute arbitrary file included malicious code.
|
CWE-20
Improper Input Validation
|
CVE-2021-26618
|
2024-11-21 14:56 |
2022-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194565
|
8.8 |
HIGH
Adjacent
|
valmet
|
dna
|
A remote code execution vulnerability affecting a Valmet DNA service listening on TCP port 1517, allows an attacker to execute commands with SYSTEM privileges This issue affects: Valmet DNA versions …
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2021-26726
|
2024-11-21 14:56 |
2022-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194566
|
9.8 |
CRITICAL
Network
|
secuwiz
|
secuwayssl_u
|
An OS command injection was found in SecuwaySSL, when special characters injection on execute command with runCommand arguments.
|
CWE-78
OS Command
|
CVE-2021-26616
|
2024-11-21 14:56 |
2022-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194567
|
7.5 |
HIGH
Network
|
tobesoft
|
nexacro
|
improper input validation vulnerability in nexacro permits copying file to the startup folder using rename method.
|
CWE-20
Improper Input Validation
|
CVE-2021-26613
|
2024-11-21 14:56 |
2022-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194568
|
5.5 |
MEDIUM
Local
|
emerson
|
deltav_workstation deltav_distributed_control_system
|
A specially crafted script could cause the DeltaV Distributed Control System Controllers (All Versions) to restart and cause a denial-of-service condition.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2021-26264
|
2024-11-21 14:56 |
2022-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194569
|
9.8 |
CRITICAL
Network
|
micrium
|
uc\/lib
|
An issue was discovered in lib_mem.c in Micrium uC/OS uC/LIB 1.38.x and 1.39.00. The following memory allocation functions do not check for integer overflow when allocating a pool whose size exceeds …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2021-26706
|
2024-11-21 14:56 |
2022-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194570
|
6.5 |
MEDIUM
Network
|
user_management_system_in_php_stored_procedure_project
|
user_management_system_in_php_stored_procedure
|
Cross Site Request Forgery (CSRF) vulnerability in Change-password.php in phpgurukul user management system in php using stored procedure V1.0, allows attackers to change the password to an arbitrary…
|
CWE-352
Origin Validation Error
|
CVE-2021-26800
|
2024-11-21 14:56 |
2021-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|