|
194741
|
7.8 |
HIGH
Local
|
autodesk
|
design_review
|
A heap-based buffer overflow could occur while parsing PICT, PCX, RCL or TIFF files in Autodesk Design Review 2018, 2017, 2013, 2012, 2011. This vulnerability can be exploited to execute arbitrary co…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-27034
|
2024-11-21 14:57 |
2021-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194742
|
7.8 |
HIGH
Local
|
autodesk
|
design_review
|
A Double Free vulnerability allows remote attackers to execute arbitrary code on PDF files within affected installations of Autodesk Design Review 2018, 2017, 2013, 2012, 2011. User interaction is re…
|
CWE-415
Double Free
|
CVE-2021-27033
|
2024-11-21 14:57 |
2021-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194743
|
7.8 |
HIGH
Local
|
deltaww
|
dopsoft
|
Delta Electronics DOPSoft Versions 4.0.10.17 and prior are vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code.
|
-
|
CVE-2021-27412
|
2024-11-21 14:57 |
2021-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194744
|
6.5 |
MEDIUM
Network
|
apache
|
druid
|
In the Druid ingestion system, the InputSource is used for reading data from a certain data source. However, the HTTP InputSource allows authenticated users to read data from other sources than inten…
|
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
|
CVE-2021-26920
|
2024-11-21 14:57 |
2021-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194745
|
7.8 |
HIGH
Local
|
autodesk
|
advance_steel autocad autocad_architecture civil_3d autocad_electrical autocad_lt autocad_map_3d autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview
|
An Arbitrary Address Write issue in the Autodesk DWG application can allow a malicious user to leverage the application to write in unexpected paths. In order to exploit this the attacker would need …
|
CWE-787
Out-of-bounds Write
|
CVE-2021-27043
|
2024-11-21 14:57 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194746
|
7.8 |
HIGH
Local
|
autodesk
|
advance_steel autocad autocad_architecture civil_3d autocad_electrical autocad_lt autocad_map_3d autocad_mechanical autocad_mep autocad_plant_3d
|
A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. The vulnerability exists because the application fails to handle a crafted DWG file, which cau…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2021-27042
|
2024-11-21 14:57 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194747
|
7.8 |
HIGH
Local
|
autodesk iconics mitsubishielectric
|
design_review advance_steel autocad autocad_architecture civil_3d autocad_electrical autocad_lt autocad_map_3d autocad_mechanical autocad_mep autocad_plant_3d genesis…
|
A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. This vulnerability can be exploited to execute arbitrary code
|
CWE-787
Out-of-bounds Write
|
CVE-2021-27041
|
2024-11-21 14:57 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194748
|
3.3 |
LOW
Local
|
autodesk iconics mitsubishielectric
|
advance_steel autocad autocad_architecture civil_3d autocad_electrical autocad_lt autocad_map_3d autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview genesis6…
|
A maliciously crafted DWG file can be forced to read beyond allocated boundaries when parsing the DWG file. This vulnerability can be exploited to execute arbitrary code.
|
CWE-125
Out-of-bounds Read
|
CVE-2021-27040
|
2024-11-21 14:57 |
2021-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194749
|
9.8 |
CRITICAL
Network
|
siemens
|
sinamics_sl150_firmware sinamics_sm150_firmware sinamics_sm150i_firmware
|
SINAMICS medium voltage routable products are affected by a vulnerability in the Sm@rtServer component for remote access that could allow an unauthenticated attacker to cause a denial-of-service cond…
|
-
|
CVE-2021-27388
|
2024-11-21 14:57 |
2021-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194750
|
7.5 |
HIGH
Network
|
hitachienergy
|
relion_670_firmware relion_650_firmware relion_sam600-io_firmware rtu500_firmware reb500_firmware fox615_tego1_firmware modular_switchgear_monitoring_firmware gms600_firmware …
|
Improper Input Validation vulnerability in Hitachi ABB Power Grids Relion 670 Series, Relion 670/650 Series, Relion 670/650/SAM600-IO, Relion 650, REB500, RTU500 Series, FOX615 (TEGO1), MSM, GMS600, …
|
CWE-20
Improper Input Validation
|
CVE-2021-27196
|
2024-11-21 14:57 |
2021-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|