|
199751
|
7.8 |
HIGH
Local
|
vmware
|
cloud_foundation workstation fusion esxi
|
VMware ESXi (7.0, 6.7 before ESXi670-202111101-SG and 6.5 before ESXi650-202110101-SG), VMware Workstation (16.2.0) and VMware Fusion (12.2.0) contains a heap-overflow vulnerability in CD-ROM device …
|
CWE-787
Out-of-bounds Write
|
CVE-2021-22045
|
2024-11-21 14:49 |
2022-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199752
|
8.1 |
HIGH
Network
|
anker
|
eufy_homebase_2_firmware
|
An authentication bypass vulnerability exists in the process_msg() function of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h. A specially-crafted man-in-the-middle attack can lead to inc…
|
NVD-CWE-Other
|
CVE-2021-21953
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199753
|
9.8 |
CRITICAL
Network
|
anker
|
eufy_homebase_2_firmware
|
An authentication bypass vulnerability exists in the CMD_DEVICE_GET_RSA_KEY_REQUEST functionality of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h. A specially-crafted set of network pac…
|
CWE-287
Improper Authentication
|
CVE-2021-21952
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199754
|
6.5 |
MEDIUM
Network
|
advantech
|
r-seenet
|
A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘host_alt_filter’ parameter. This can be done as any auth…
|
CWE-89
SQL Injection
|
CVE-2021-21937
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199755
|
8.8 |
HIGH
Network
|
advantech
|
r-seenet
|
A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘health_alt_filter’ parameter. This can be done as any au…
|
CWE-89
SQL Injection
|
CVE-2021-21936
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199756
|
6.5 |
MEDIUM
Network
|
advantech
|
r-seenet
|
A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘host_alt_filter2’ parameter. This can be done as any aut…
|
CWE-89
SQL Injection
|
CVE-2021-21935
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199757
|
6.5 |
MEDIUM
Network
|
advantech
|
r-seenet
|
A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at ‘imei_filter’ parameter. This can be done as any authenticated user or …
|
CWE-89
SQL Injection
|
CVE-2021-21934
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199758
|
6.5 |
MEDIUM
Network
|
advantech
|
r-seenet
|
A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at ‘esn_filter’ parameter. This can be done as any authenticated user or t…
|
CWE-89
SQL Injection
|
CVE-2021-21933
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199759
|
6.5 |
MEDIUM
Network
|
advantech
|
r-seenet
|
A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at ‘name_filter’ parameter. This can be done as any authenticated user or …
|
CWE-89
SQL Injection
|
CVE-2021-21932
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199760
|
6.5 |
MEDIUM
Network
|
advantech
|
r-seenet
|
A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests at‘ stat_filter’ parameter to trigger this vulnerability. This can be done as any authenti…
|
CWE-89
SQL Injection
|
CVE-2021-21931
|
2024-11-21 14:49 |
2021-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|