|
199831
|
6.1 |
MEDIUM
Network
|
jenkins
|
credentials
|
Jenkins Credentials Plugin 2.3.18 and earlier does not escape user-controlled information on a view it provides, resulting in a reflected cross-site scripting (XSS) vulnerability.
|
CWE-79
Cross-site Scripting
|
CVE-2021-21648
|
2024-11-21 14:48 |
2021-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199832
|
5.5 |
MEDIUM
Local
|
openapi-generator
|
openapi_generator
|
OpenAPI Generator allows generation of API client libraries (SDK generation), server stubs, documentation and configuration automatically given an OpenAPI Spec. Using `File.createTempFile` in JDK wil…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2021-21430
|
2024-11-21 14:48 |
2021-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199833
|
7.0 |
HIGH
Local
|
openapi-generator
|
openapi_generator
|
Openapi generator is a java tool which allows generation of API client libraries (SDK generation), server stubs, documentation and configuration automatically given an OpenAPI Spec. openapi-generator…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2021-21428
|
2024-11-21 14:48 |
2021-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199834
|
5.3 |
MEDIUM
Network
|
eventlet fedoraproject
|
eventlet fedora
|
Eventlet is a concurrent networking library for Python. A websocket peer may exhaust memory on Eventlet side by sending very large websocket frames. Malicious peer may exhaust memory on Eventlet side…
|
-
|
CVE-2021-21419
|
2024-11-21 14:48 |
2021-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199835
|
6.7 |
MEDIUM
Local
|
dell
|
emc_powerscale_onefs
|
Dell EMC PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulnerability. This vulnerability can allow an authenticated user with ISI_PRIV_LOGI…
|
CWE-78
OS Command
|
CVE-2021-21550
|
2024-11-21 14:48 |
2021-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199836
|
6.7 |
MEDIUM
Local
|
dell
|
emc_powerscale_onefs
|
Dell PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulnerability. This vulnerability may allow an authenticated user with ISI_PRIV_LOGIN_SS…
|
CWE-78
OS Command
|
CVE-2021-21527
|
2024-11-21 14:48 |
2021-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199837
|
9.8 |
CRITICAL
Network
|
dell
|
emc_integrated_system_for_microsoft_azure_stack_hub_firmware
|
Dell EMC Integrated System for Microsoft Azure Stack Hub, versions 1906 – 2011, contain an undocumented default iDRAC account. A remote unauthenticated attacker, with the knowledge of the default cre…
|
CWE-1188
Insecure Default Initialization of Resource
|
CVE-2021-21505
|
2024-11-21 14:48 |
2021-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199838
|
7.8 |
HIGH
Local
|
dell
|
dbutil_2_3.sys
|
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user acc…
|
NVD-CWE-Other
|
CVE-2021-21551
|
2024-11-21 14:48 |
2021-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199839
|
6.7 |
MEDIUM
Local
|
dell
|
unity_operating_environment unityvsa_operating_environment unity_xt_operating_environment
|
Dell EMC Unity, UnityVSA, and Unity XT versions prior to 5.0.7.0.5.008 contain a plain-text password storage vulnerability when the Dell Upgrade Readiness Utility is run on the system. The credential…
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2021-21547
|
2024-11-21 14:48 |
2021-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199840
|
2.7 |
LOW
Network
|
dell
|
idrac9_firmware
|
Dell EMC iDRAC9 versions prior to 4.40.00.00 contain an improper authentication vulnerability. A remote authenticated malicious user with high privileges could potentially exploit this vulnerability …
|
CWE-287
Improper Authentication
|
CVE-2021-21544
|
2024-11-21 14:48 |
2021-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|