|
196361
|
6.1 |
MEDIUM
Network
|
devolutions
|
devolutions_server
|
An issue was discovered in Devolutions Server before 2020.3. There is a cross-site scripting (XSS) vulnerability in entries of type Document.
|
CWE-79
Cross-site Scripting
|
CVE-2021-23925
|
2024-11-21 14:52 |
2021-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196362
|
7.5 |
HIGH
Network
|
devolutions
|
devolutions_server
|
An issue was discovered in Devolutions Server before 2020.3. There is an exposure of sensitive information in diagnostic files.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2021-23924
|
2024-11-21 14:52 |
2021-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196363
|
8.1 |
HIGH
Network
|
devolutions
|
devolutions_server
|
An issue was discovered in Devolutions Server before 2020.3. There is Broken Authentication with Windows domain users.
|
CWE-287
Improper Authentication
|
CVE-2021-23923
|
2024-11-21 14:52 |
2021-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196364
|
5.4 |
MEDIUM
Network
|
devolutions
|
remote_desktop_manager
|
An issue was discovered in Devolutions Remote Desktop Manager before 2020.2.12. There is a cross-site scripting (XSS) vulnerability in webviews.
|
CWE-79
Cross-site Scripting
|
CVE-2021-23922
|
2024-11-21 14:52 |
2021-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196365
|
9.1 |
CRITICAL
Network
|
devolutions
|
devolutions_server
|
An issue was discovered in Devolutions Server before 2020.3. There is broken access control on Password List entry elements.
|
NVD-CWE-Other
|
CVE-2021-23921
|
2024-11-21 14:52 |
2021-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196366
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Mozilla developers reported memory safety bugs present in Firefox 86. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been expl…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-23988
|
2024-11-21 14:52 |
2021-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196367
|
8.8 |
HIGH
Network
|
mozilla
|
firefox thunderbird firefox_esr
|
Mozilla developers and community members reported memory safety bugs present in Firefox 86 and Firefox ESR 78.8. Some of these bugs showed evidence of memory corruption and we presume that with enoug…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-23987
|
2024-11-21 14:52 |
2021-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196368
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
A malicious extension with the 'search' permission could have installed a new search engine whose favicon referenced a cross-origin URL. The response to this cross-origin request could have been read…
|
CWE-346
Origin Validation Error
|
CVE-2021-23986
|
2024-11-21 14:52 |
2021-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196369
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox thunderbird firefox_esr
|
A malicious extension could have opened a popup window lacking an address bar. The title of the popup lacking an address bar should not be fully controllable, but in this situation was. This could ha…
|
CWE-290
Authentication Bypass by Spoofing
|
CVE-2021-23984
|
2024-11-21 14:52 |
2021-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196370
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
By causing a transition on a parent node by removing a CSS rule, an invalid property for a marker could have been applied, resulting in memory corruption and a potentially exploitable crash. This vul…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-23983
|
2024-11-21 14:52 |
2021-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|