|
196341
|
8.8 |
HIGH
Local
|
parallels
|
parallels_desktop
|
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.0.1-48919. An attacker must first obtain the ability to execute low-privileged code …
|
-
|
CVE-2021-27243
|
2024-11-21 14:57 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196342
|
8.8 |
HIGH
Local
|
parallels
|
parallels_desktop
|
This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.0.1-48919. An attacker must first obtain the ability to execute low-privileged code …
|
-
|
CVE-2021-27242
|
2024-11-21 14:57 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196343
|
6.1 |
MEDIUM
Local
|
avast
|
premium_security
|
This vulnerability allows local attackers to delete arbitrary directories on affected installations of Avast Premium Security 20.8.2429 (Build 20.8.5653.561). An attacker must first obtain the abilit…
|
-
|
CVE-2021-27241
|
2024-11-21 14:57 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196344
|
7.8 |
HIGH
Local
|
solarwinds
|
patch_manager
|
This vulnerability allows local attackers to escalate privileges on affected installations of SolarWinds Patch Manager 2020.2.1. An attacker must first obtain the ability to execute low-privileged co…
|
-
|
CVE-2021-27240
|
2024-11-21 14:57 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196345
|
8.8 |
HIGH
Adjacent
|
netgear
|
d6220_firmware d6400_firmware d7000_firmware d8500_firmware dc112a_firmware ex7000_firmware ex7500_firmware r6250_firmware r6300_firmware r6400_firmware r6700_firmware
|
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400 and R6700 firmware version 1.0.4.98 routers. Authentication is not required t…
|
-
|
CVE-2021-27239
|
2024-11-21 14:57 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196346
|
5.4 |
MEDIUM
Network
|
ilch
|
ilch_cms
|
An open redirect vulnerability in Ilch CMS version 2.1.42 allows attackers to redirect users to an attacker's site after a successful login.
|
CWE-601
Open Redirect
|
CVE-2021-27352
|
2024-11-21 14:57 |
2021-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196347
|
9.8 |
CRITICAL
Network
|
realtek
|
xpon_rtl9601d_software_development_kit
|
Realtek xPON RTL9601D SDK 1.9 stores passwords in plaintext which may allow attackers to possibly gain access to the device with root permissions via the build-in network monitoring tool and execute …
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2021-27372
|
2024-11-21 14:57 |
2021-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196348
|
9.8 |
CRITICAL
Network
|
ge
|
reason_dr60_firmware
|
The software contains a hard-coded password it uses for its own inbound authentication or for outbound communication to external components on the Reason DR60 (all firmware versions prior to 02A04.1).
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-27440
|
2024-11-21 14:57 |
2021-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196349
|
8.8 |
HIGH
Network
|
ge
|
reason_dr60_firmware
|
The software contains a hard-coded password it uses for its own inbound authentication or for outbound communication to external components on the Reason DR60 (all firmware versions prior to 02A04.1).
|
CWE-94 CWE-798
Code Injection Use of Hard-coded Credentials
|
CVE-2021-27438
|
2024-11-21 14:57 |
2021-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196350
|
5.9 |
MEDIUM
Network
|
netop
|
vision_pro
|
Improper Authorization vulnerability in Netop Vision Pro up to and including to 9.7.1 allows an attacker to replay network traffic.
|
CWE-863
Incorrect Authorization
|
CVE-2021-27195
|
2024-11-21 14:57 |
2021-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|