|
195401
|
8.8 |
HIGH
Local
|
google
|
android
|
An improper caller check vulnerability in Managed Provisioning prior to SMR APR-2021 Release 1 allows unprivileged application to install arbitrary application, grant device admin permission and then…
|
CWE-863
Incorrect Authorization
|
CVE-2021-25356
|
2024-11-21 14:54 |
2021-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195402
|
8.8 |
HIGH
Network
|
skyworthdigital
|
rn510_firmware
|
Skyworth Digital Technology RN510 V.3.1.0.4 RN510 V.3.1.0.4 contains a buffer overflow vulnerability in /cgi-bin/app-staticIP.asp. An authenticated attacker can send a specially crafted request to en…
|
CWE-120
Classic Buffer Overflow
|
CVE-2021-25328
|
2024-11-21 14:54 |
2021-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195403
|
6.5 |
MEDIUM
Network
|
skyworthdigital
|
rn510_firmware
|
Skyworth Digital Technology RN510 V.3.1.0.4 contains a cross-site request forgery (CSRF) vulnerability in /cgi-bin/net-routeadd.asp and /cgi-bin/sec-urlfilter.asp. Missing CSRF protection in devices …
|
CWE-352 CWE-79
Origin Validation Error Cross-site Scripting
|
CVE-2021-25327
|
2024-11-21 14:54 |
2021-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195404
|
5.4 |
MEDIUM
Network
|
skyworthdigital
|
rn510_firmware
|
Skyworth Digital Technology RN510 V.3.1.0.4 is affected by an incorrect access control vulnerability in/cgi-bin/test_version.asp. If Wi-Fi is connected but an unauthenticated user visits a URL, the S…
|
CWE-352
Origin Validation Error
|
CVE-2021-25326
|
2024-11-21 14:54 |
2021-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195405
|
8.1 |
HIGH
Network
|
arubanetworks siemens
|
instant scalance_w1750d_firmware
|
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.17 and below; Aruba Instant 6…
|
CWE-78
OS Command
|
CVE-2021-25162
|
2024-11-21 14:54 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195406
|
6.1 |
MEDIUM
Network
|
arubanetworks siemens
|
instant scalance_w1750d_firmware
|
A remote cross-site scripting (xss) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.17 and below; Aruba Instant 6.5.x:…
|
CWE-79
Cross-site Scripting
|
CVE-2021-25161
|
2024-11-21 14:54 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195407
|
5.9 |
MEDIUM
Network
|
arubanetworks siemens
|
instant scalance_w1750d_firmware
|
A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.5.x: 6.5.4.18 and below; Aruba Instant 8.3.x: 8.3.0.14 and b…
|
CWE-362
Race Condition
|
CVE-2021-25158
|
2024-11-21 14:54 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195408
|
4.9 |
MEDIUM
Network
|
arubanetworks siemens
|
instant scalance_w1750d_firmware
|
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.17 and below; Aruba Instant 6.5.x…
|
NVD-CWE-noinfo
|
CVE-2021-25160
|
2024-11-21 14:54 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195409
|
6.5 |
MEDIUM
Network
|
arubanetworks siemens
|
instant scalance_w1750d_firmware
|
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.17 and below; Aruba Instant 6.5.x…
|
NVD-CWE-noinfo
|
CVE-2021-25159
|
2024-11-21 14:54 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195410
|
4.9 |
MEDIUM
Network
|
arubanetworks siemens
|
instant scalance_w1750d_firmware
|
A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.17 and below; Aruba Instant 6.5.x: 6.5.4.…
|
NVD-CWE-noinfo
|
CVE-2021-25157
|
2024-11-21 14:54 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|