|
198561
|
5.9 |
MEDIUM
Network
|
fibaro
|
home_center_2_firmware home_center_lite_firmware
|
Fibaro Home Center 2 and Lite devices with firmware version 4.600 and older initiate SSH connections to the Fibaro cloud to provide remote access and remote support capabilities. This connection can …
|
-
|
CVE-2021-20989
|
2024-11-21 14:47 |
2021-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198562
|
8.8 |
HIGH
Network
|
google fedoraproject
|
chrome fedora
|
Use after free in Aura in Google Chrome on Linux prior to 89.0.4389.114 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML pa…
|
CWE-416
Use After Free
|
CVE-2021-21199
|
2024-11-21 14:47 |
2021-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198563
|
7.4 |
HIGH
Network
|
google fedoraproject
|
chrome fedora
|
Out of bounds read in IPC in Google Chrome prior to 89.0.4389.114 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
|
CWE-125
Out-of-bounds Read
|
CVE-2021-21198
|
2024-11-21 14:47 |
2021-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198564
|
8.8 |
HIGH
Network
|
google fedoraproject
|
chrome fedora
|
Heap buffer overflow in TabStrip in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21197
|
2024-11-21 14:47 |
2021-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198565
|
8.8 |
HIGH
Network
|
google fedoraproject
|
chrome fedora
|
Heap buffer overflow in TabStrip in Google Chrome on Windows prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21196
|
2024-11-21 14:47 |
2021-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198566
|
8.8 |
HIGH
Network
|
google fedoraproject
|
chrome fedora
|
Use after free in V8 in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2021-21195
|
2024-11-21 14:47 |
2021-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198567
|
8.8 |
HIGH
Network
|
google fedoraproject
|
chrome fedora
|
Use after free in screen sharing in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2021-21194
|
2024-11-21 14:47 |
2021-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198568
|
7.1 |
HIGH
Local
|
eikisoft
|
archive_collectively_operation_utility
|
Directory traversal vulnerability in Archive collectively operation utility Ver.2.10.1.0 and earlier allows an attacker to create or overwrite files by leading a user to expand a malicious ZIP archiv…
|
CWE-22
Path Traversal
|
CVE-2021-20692
|
2024-11-21 14:47 |
2021-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198569
|
6.1 |
MEDIUM
Network
|
yomi-search_project
|
yomi-search
|
Cross-site scripting vulnerability in Yomi-Search Ver4.22 allows remote attackers to inject an arbitrary script via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2021-20691
|
2024-11-21 14:47 |
2021-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198570
|
6.1 |
MEDIUM
Network
|
yomi-search_project
|
yomi-search
|
Cross-site scripting vulnerability in Yomi-Search Ver4.22 allows remote attackers to inject an arbitrary script via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2021-20690
|
2024-11-21 14:47 |
2021-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|