|
195701
|
6.1 |
MEDIUM
Network
|
avaya
|
aura_experience_portal
|
A vulnerability in the system Service Menu component of Avaya Aura Experience Portal may allow URL Redirection to any untrusted site through a crafted attack. Affected versions include 7.0 through 7.…
|
CWE-601
Open Redirect
|
CVE-2021-25655
|
2024-11-21 14:55 |
2021-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195702
|
7.8 |
HIGH
Local
|
avaya
|
aura_appliance_virtualization_platform
|
A privilege escalation vulnerability was discovered in Avaya Aura Appliance Virtualization Platform Utilities (AVPU) that may potentially allow a local user to escalate privileges. Affects 8.0.0.0 th…
|
NVD-CWE-noinfo
|
CVE-2021-25653
|
2024-11-21 14:55 |
2021-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195703
|
5.5 |
MEDIUM
Local
|
avaya
|
aura_appliance_virtualization_platform
|
An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Appliance Virtualization Platform Utilities (AVPU). This vulnerability may potentially allow …
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2021-25652
|
2024-11-21 14:55 |
2021-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195704
|
7.8 |
HIGH
Local
|
avaya
|
aura_utility_services
|
A privilege escalation vulnerability was discovered in Avaya Aura Utility Services that may potentially allow a local user to escalate privileges. Affects all 7.x versions of Avaya Aura Utility Servi…
|
CWE-269
Improper Privilege Management
|
CVE-2021-25651
|
2024-11-21 14:55 |
2021-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195705
|
8.8 |
HIGH
Local
|
avaya
|
aura_utility_services
|
A privilege escalation vulnerability was discovered in Avaya Aura Utility Services that may potentially allow a local user to execute specially crafted scripts as a privileged user. Affects all 7.x v…
|
CWE-269
Improper Privilege Management
|
CVE-2021-25650
|
2024-11-21 14:55 |
2021-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195706
|
5.5 |
MEDIUM
Local
|
avaya
|
aura_utility_services
|
An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Utility Services. This vulnerability may potentially allow any local user to access system fu…
|
NVD-CWE-Other
|
CVE-2021-25649
|
2024-11-21 14:55 |
2021-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195707
|
7.8 |
HIGH
Local
|
canonical
|
apport
|
It was discovered that apport in data/apport did not properly open a report file to prevent hanging reads on a FIFO.
|
CWE-20
Improper Input Validation
|
CVE-2021-25684
|
2024-11-21 14:55 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195708
|
7.8 |
HIGH
Local
|
canonical
|
apport
|
It was discovered that the get_starttime() function in data/apport did not properly parse the /proc/pid/stat file from the kernel.
|
CWE-20
Improper Input Validation
|
CVE-2021-25683
|
2024-11-21 14:55 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195709
|
7.8 |
HIGH
Local
|
canonical
|
apport
|
It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel.
|
CWE-74
Injection
|
CVE-2021-25682
|
2024-11-21 14:55 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195710
|
6.5 |
MEDIUM
Network
|
jerryscript
|
jerryscript
|
An issue was discovered in JerryScript 2.4.0. There is a heap-use-after-free in ecma_bytecode_ref in ecma-helpers.c file.
|
CWE-416
Use After Free
|
CVE-2021-26199
|
2024-11-21 14:55 |
2021-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|