|
194441
|
4.8 |
MEDIUM
Network
|
ypsomed
|
mylife mylife_cloud
|
Ypsomed mylife Cloud, mylife Mobile Application, Ypsomed mylife Cloud: All versions prior to 1.7.2, Ypsomed mylife App: All versions prior to 1.7.5,The application encrypts on the application layer o…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-27503
|
2024-11-21 14:58 |
2021-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194442
|
5.9 |
MEDIUM
Network
|
ypsomed
|
mylife mylife_cloud
|
Ypsomed mylife Cloud, mylife Mobile Application, Ypsomed mylife Cloud: All versions prior to 1.7.2, Ypsomed mylife App: All versions prior to 1.7.5,The application layer encryption of the communicati…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2021-27499
|
2024-11-21 14:58 |
2021-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194443
|
7.1 |
HIGH
Network
|
ypsomed
|
mylife mylife_cloud
|
Ypsomed mylife Cloud, mylife Mobile Application:Ypsomed mylife Cloud,All versions prior to 1.7.2,Ypsomed mylife App,All versions prior to 1.7.5,he Ypsomed mylife Cloud reflects the user password duri…
|
-
|
CVE-2021-27495
|
2024-11-21 14:58 |
2021-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194444
|
7.5 |
HIGH
Network
|
ypsomed
|
mylife mylife_cloud
|
Ypsomed mylife Cloud, mylife Mobile Application:Ypsomed mylife Cloud,All versions prior to 1.7.2,Ypsomed mylife App,All versions prior to 1.7.5,The Ypsomed mylife Cloud discloses password hashes duri…
|
-
|
CVE-2021-27491
|
2024-11-21 14:58 |
2021-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194445
|
6.1 |
MEDIUM
Network
|
foxit
|
phantompdf reader
|
Foxit PDF SDK For Web through 7.5.0 allows XSS. There is arbitrary JavaScript code execution in the browser if a victim uploads a malicious PDF document containing embedded JavaScript code that abuse…
|
CWE-79
Cross-site Scripting
|
CVE-2021-27517
|
2024-11-21 14:58 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194446
|
6.5 |
MEDIUM
Network
|
libvips
|
libvips
|
Division-By-Zero vulnerability in Libvips 8.10.5 in the function vips_eye_point, eye.c#L83, and function vips_mask_point, mask.c#L85.
|
CWE-369
Divide By Zero
|
CVE-2021-27847
|
2024-11-21 14:58 |
2021-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194447
|
5.5 |
MEDIUM
Local
|
jasper_project
|
jasper
|
A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c
|
CWE-369
Divide By Zero
|
CVE-2021-27845
|
2024-11-21 14:58 |
2021-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194448
|
5.4 |
MEDIUM
Network
|
irislink
|
irisnext
|
Multiple stored XSS vulnerabilities in IrisNext Edition 9.5.16, which allows an authenticated (or compromised) user to inject malicious JavaScript in folder/file name within the application in order …
|
CWE-79
Cross-site Scripting
|
CVE-2021-27930
|
2024-11-21 14:58 |
2021-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194449
|
8.8 |
HIGH
Network
|
sitasoftware
|
azurcms
|
A SQL injection vulnerability in azurWebEngine in Sita AzurCMS through 1.2.3.12 allows an authenticated attacker to execute arbitrary SQL commands via the id parameter to mesdocs.ajax.php in azurWebE…
|
CWE-89
SQL Injection
|
CVE-2021-27950
|
2024-11-21 14:58 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194450
|
5.5 |
MEDIUM
Local
|
deltaww
|
dopsoft
|
Delta Electronics DOPSoft Versions 4.0.10.17 and prior are vulnerable to an out-of-bounds read while processing project files, which may allow an attacker to disclose information.
|
-
|
CVE-2021-27455
|
2024-11-21 14:58 |
2021-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|