|
196861
|
5.3 |
MEDIUM
Network
|
trendmicro
|
apex_one officescan worry-free_business_security
|
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain informa…
|
NVD-CWE-Other
|
CVE-2021-25233
|
2024-11-21 14:54 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196862
|
5.3 |
MEDIUM
Network
|
trendmicro
|
apex_one officescan
|
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS) and OfficeScan XG SP1 could allow an unauthenticated user to obtain information about the SQL database.
|
NVD-CWE-Other
|
CVE-2021-25232
|
2024-11-21 14:54 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196863
|
5.3 |
MEDIUM
Network
|
trendmicro
|
apex_one officescan worry-free_business_security
|
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain informa…
|
NVD-CWE-Other
|
CVE-2021-25231
|
2024-11-21 14:54 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196864
|
5.3 |
MEDIUM
Network
|
trendmicro
|
apex_one officescan
|
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS) and OfficeScan XG SP1 could allow an unauthenticated user to obtain information about the contents of a scan connec…
|
NVD-CWE-Other
|
CVE-2021-25230
|
2024-11-21 14:54 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196865
|
5.3 |
MEDIUM
Network
|
trendmicro
|
officescan apex_one
|
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS) and OfficeScan XG SP1 could allow an unauthenticated user to obtain information about the database server.
|
NVD-CWE-Other
|
CVE-2021-25229
|
2024-11-21 14:54 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196866
|
5.3 |
MEDIUM
Network
|
trendmicro
|
officescan apex_one worry-free_business_security
|
An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain informa…
|
NVD-CWE-Other
|
CVE-2021-25228
|
2024-11-21 14:54 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196867
|
3.3 |
LOW
Local
|
trendmicro
|
antivirus
|
Trend Micro Antivirus for Mac 2021 (Consumer) is vulnerable to a memory exhaustion vulnerability that could lead to disabling all the scanning functionality within the application. Please note: an at…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2021-25227
|
2024-11-21 14:54 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196868
|
7.1 |
HIGH
Local
|
solarwinds
|
serv-u
|
In SolarWinds Serv-U before 15.2.2 Hotfix 1, there is a directory containing user profile files (that include users' password hashes) that is world readable and writable. An unprivileged Windows user…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2021-25276
|
2024-11-21 14:54 |
2021-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196869
|
9.8 |
CRITICAL
Network
|
solarwinds
|
orion_platform
|
The Collector Service in SolarWinds Orion Platform before 2020.2.4 uses MSMQ (Microsoft Message Queue) and doesn't set permissions on its private queues. As a result, remote unauthenticated clients c…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2021-25274
|
2024-11-21 14:54 |
2021-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196870
|
7.8 |
HIGH
Local
|
solarwinds
|
orion_platform
|
SolarWinds Orion Platform before 2020.2.4, as used by various SolarWinds products, installs and uses a SQL Server backend, and stores database credentials to access this backend in a file readable by…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-25275
|
2024-11-21 14:54 |
2021-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|