|
196681
|
8.8 |
HIGH
Adjacent
|
valmet
|
dna
|
A remote code execution vulnerability affecting a Valmet DNA service listening on TCP port 1517, allows an attacker to execute commands with SYSTEM privileges This issue affects: Valmet DNA versions …
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2021-26726
|
2024-11-21 14:56 |
2022-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196682
|
9.8 |
CRITICAL
Network
|
secuwiz
|
secuwayssl_u
|
An OS command injection was found in SecuwaySSL, when special characters injection on execute command with runCommand arguments.
|
CWE-78
OS Command
|
CVE-2021-26616
|
2024-11-21 14:56 |
2022-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196683
|
7.5 |
HIGH
Network
|
tobesoft
|
nexacro
|
improper input validation vulnerability in nexacro permits copying file to the startup folder using rename method.
|
CWE-20
Improper Input Validation
|
CVE-2021-26613
|
2024-11-21 14:56 |
2022-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196684
|
5.5 |
MEDIUM
Local
|
emerson
|
deltav_workstation deltav_distributed_control_system
|
A specially crafted script could cause the DeltaV Distributed Control System Controllers (All Versions) to restart and cause a denial-of-service condition.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2021-26264
|
2024-11-21 14:56 |
2022-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196685
|
9.8 |
CRITICAL
Network
|
micrium
|
uc\/lib
|
An issue was discovered in lib_mem.c in Micrium uC/OS uC/LIB 1.38.x and 1.39.00. The following memory allocation functions do not check for integer overflow when allocating a pool whose size exceeds …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2021-26706
|
2024-11-21 14:56 |
2022-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196686
|
6.5 |
MEDIUM
Network
|
user_management_system_in_php_stored_procedure_project
|
user_management_system_in_php_stored_procedure
|
Cross Site Request Forgery (CSRF) vulnerability in Change-password.php in phpgurukul user management system in php using stored procedure V1.0, allows attackers to change the password to an arbitrary…
|
CWE-352
Origin Validation Error
|
CVE-2021-26800
|
2024-11-21 14:56 |
2021-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196687
|
6.1 |
MEDIUM
Network
|
genesys
|
workforce_management
|
A cross site scripting (XSS) vulnerability in Genesys Workforce Management 8.5.214.20 can occur (during record deletion) via the Time-off parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2021-26787
|
2024-11-21 14:56 |
2021-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196688
|
8.4 |
HIGH
Local
|
amd
|
epyc_7001_firmware epyc_7232p_firmware epyc_7251_firmware epyc_7261_firmware epyc_7252_firmware epyc_74f3_firmware epyc_7501_firmware epyc_7502_firmware epyc_7502p_firmware
|
A malicious hypervisor in conjunction with an unprivileged attacker process inside an SEV/SEV-ES guest VM may fail to flush the Translation Lookaside Buffer (TLB) resulting in unexpected behavior ins…
|
NVD-CWE-noinfo
|
CVE-2021-26340
|
2024-11-21 14:56 |
2021-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196689
|
9.8 |
CRITICAL
Network
|
circutor
|
compact_dc-s_basic_firmware
|
Buffer overflow vulnerability in function SetFirewall in index.cgi in CIRCUTOR COMPACT DC-S BASIC smart metering concentrator Firwmare version CIR_CDC_v1.2.17, allows attackers to execute arbitrary c…
|
CWE-120
Classic Buffer Overflow
|
CVE-2021-26777
|
2024-11-21 14:56 |
2021-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196690
|
9.9 |
CRITICAL
Network
|
amd
|
amd_uprof
|
The AMDPowerProfiler.sys driver of AMD µProf tool may allow lower privileged users to access MSRs in kernel which may lead to privilege escalation and ring-0 code execution by the lower privileged us…
|
NVD-CWE-Other
|
CVE-2021-26334
|
2024-11-21 14:56 |
2021-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|