|
196091
|
9.1 |
CRITICAL
Network
|
moxa
|
vport_06ec-2v26m_firmware vport_06ec-2v36m-t_firmware vport_06ec-2v36m-ct_firmware vport_06ec-2v36m-ct-t_firmware vport_06ec-2v42m_firmware vport_06ec-2v42m-t_firmware vport_06ec-2v…
|
Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows information disclosure to attackers due to using fixed loop co…
|
CWE-125
Out-of-bounds Read
|
CVE-2021-25848
|
2024-11-21 14:55 |
2021-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196092
|
9.1 |
CRITICAL
Network
|
moxa
|
vport_06ec-2v26m_firmware vport_06ec-2v36m-t_firmware vport_06ec-2v36m-ct_firmware vport_06ec-2v36m-ct-t_firmware vport_06ec-2v42m_firmware vport_06ec-2v42m-t_firmware vport_06ec-2v…
|
Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows information disclosure to attackers due to controllable loop c…
|
CWE-125
Out-of-bounds Read
|
CVE-2021-25847
|
2024-11-21 14:55 |
2021-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196093
|
7.5 |
HIGH
Network
|
moxa
|
vport_06ec-2v26m_firmware vport_06ec-2v36m-t_firmware vport_06ec-2v36m-ct_firmware vport_06ec-2v36m-ct-t_firmware vport_06ec-2v42m_firmware vport_06ec-2v42m-t_firmware vport_06ec-2v…
|
Improper validation of the ChassisID TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows attackers to cause a denial of service due to a negative number passed to the…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2021-25846
|
2024-11-21 14:55 |
2021-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196094
|
7.5 |
HIGH
Network
|
moxa
|
vport_06ec-2v26m_firmware vport_06ec-2v36m-t_firmware vport_06ec-2v36m-ct_firmware vport_06ec-2v36m-ct-t_firmware vport_06ec-2v42m_firmware vport_06ec-2v42m-t_firmware vport_06ec-2v…
|
Improper validation of the ChassisID TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows attackers to cause a denial of service due to a NULL pointer dereference via …
|
CWE-476
NULL Pointer Dereference
|
CVE-2021-25845
|
2024-11-21 14:55 |
2021-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196095
|
8.8 |
HIGH
Network
|
atlassian
|
connect_spring_boot
|
Broken Authentication in Atlassian Connect Spring Boot (ACSB) in version 1.1.0 before 2.1.3 and from version 2.1.4 before 2.1.5: Atlassian Connect Spring Boot is a Java Spring Boot package for buildi…
|
CWE-287
Improper Authentication
|
CVE-2021-26077
|
2024-11-21 14:55 |
2021-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196096
|
6.1 |
MEDIUM
Network
|
livinglogic
|
xist4c
|
LivingLogic XIST4C before 0.107.8 allows XSS via login.htm, login.wihtm, or login-form.htm.
|
CWE-79
Cross-site Scripting
|
CVE-2021-26123
|
2024-11-21 14:55 |
2021-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196097
|
6.1 |
MEDIUM
Network
|
livinglogic
|
xist4c
|
LivingLogic XIST4C before 0.107.8 allows XSS via feedback.htm or feedback.wihtm.
|
CWE-79
Cross-site Scripting
|
CVE-2021-26122
|
2024-11-21 14:55 |
2021-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196098
|
8.8 |
HIGH
Network
|
libreoffice
|
libreoffice
|
In the LibreOffice 7-1 series in versions prior to 7.1.2, and in the 7-0 series in versions prior to 7.0.5, the denylist can be circumvented by manipulating the link so it doesn't match the denylist …
|
NVD-CWE-Other
|
CVE-2021-25631
|
2024-11-21 14:55 |
2021-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196099
|
9.8 |
CRITICAL
Network
|
chinamobile
|
an_lianbao_wf-1_firmware
|
Command injection vulnerability in China Mobile An Lianbao WF-1 1.01 via the 'ip' parameter with a POST request to /api/ZRQos/set_online_client.
|
CWE-77
Command Injection
|
CVE-2021-25812
|
2024-11-21 14:55 |
2021-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196100
|
7.5 |
HIGH
Network
|
mercusys
|
mercury_x18g_firmware
|
MERCUSYS Mercury X18G 1.0.5 devices allow Denial of service via a crafted value to the POST listen_http_lan parameter. Upon subsequent device restarts after this vulnerability is exploted the device …
|
NVD-CWE-noinfo
|
CVE-2021-25811
|
2024-11-21 14:55 |
2021-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|