|
199741
|
8.1 |
HIGH
Network
|
sealevel
|
seaconnect_370w_firmware
|
An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. The HandleIncomingSeaCloudMessage function uses at [4] the js…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21969
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199742
|
8.3 |
HIGH
Network
|
sealevel
|
seaconnect_370w_firmware
|
A file write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to arbitrary file overwrite. An att…
|
NVD-CWE-Other
|
CVE-2021-21968
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199743
|
9.3 |
CRITICAL
Network
|
sealevel
|
seaconnect_370w_firmware
|
A denial of service vulnerability exists in the SeaMax remote configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of se…
|
CWE-287
Improper Authentication
|
CVE-2021-21965
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199744
|
7.4 |
HIGH
Network
|
sealevel
|
seaconnect_370w_firmware
|
A denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of service. …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2021-21964
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199745
|
5.9 |
MEDIUM
Network
|
sealevel
|
seaconnect_370w_firmware
|
An information disclosure vulnerability exists in the Web Server functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted man-in-the-middle attack can lead to a disclosure…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2021-21963
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199746
|
8.1 |
HIGH
Network
|
sealevel
|
seaconnect_370w_firmware
|
A heap-based buffer overflow vulnerability exists in the OTA Update u-download functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A series of specially-crafted MQTT payloads can lead to…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21962
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199747
|
10.0 |
CRITICAL
Network
|
sealevel
|
seaconnect_370w_firmware
|
A stack-based buffer overflow vulnerability exists in the NBNS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execution. A…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-21961
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199748
|
10.0 |
CRITICAL
Network
|
sealevel
|
seaconnect_370w_firmware
|
A stack-based buffer overflow vulnerability exists in both the LLMNR functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execut…
|
CWE-1284
Improper Validation of Specified Quantity in Input
|
CVE-2021-21960
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199749
|
8.1 |
HIGH
Network
|
sealevel
|
seaconnect_370w_firmware
|
A misconfiguration exists in the MQTTS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. This misconfiguration significantly simplifies a man-in-the-middle attack, which directly leads…
|
CWE-295
Improper Certificate Validation
|
CVE-2021-21959
|
2024-11-21 14:49 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199750
|
4.3 |
MEDIUM
Network
|
vmware oracle
|
spring_framework communications_cloud_native_core_console communications_cloud_native_core_service_communication_proxy
|
In Spring Framework versions 5.3.0 - 5.3.13, 5.2.0 - 5.2.18, and older unsupported versions, it is possible for a user to provide malicious input to cause the insertion of additional log entries. Thi…
|
NVD-CWE-noinfo
|
CVE-2021-22060
|
2024-11-21 14:49 |
2022-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|