|
191021
|
6.5 |
MEDIUM
Network
|
libming fedoraproject
|
ming fedora
|
Ming 0.4.8 has an out-of-bounds buffer overwrite issue in the function getName() in decompiler.c file that causes a direct segmentation fault and leads to denial of service.
|
CWE-787
Out-of-bounds Write
|
CVE-2021-34338
|
2024-11-21 15:10 |
2022-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
191022
|
6.1 |
MEDIUM
Network
|
qnap
|
nas_proxy_server
|
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remote attackers to inject malicious code. We have alr…
|
CWE-79
Cross-site Scripting
|
CVE-2021-34361
|
2024-11-21 15:10 |
2022-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
191023
|
5.4 |
MEDIUM
Network
|
qnap
|
nas_proxy_server
|
A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, this vulnerability allows remote attackers to inject malicious code. We have alr…
|
CWE-79
Cross-site Scripting
|
CVE-2021-34359
|
2024-11-21 15:10 |
2022-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
191024
|
9.8 |
CRITICAL
Network
|
tsg-solutions
|
tokheim_profleet_dialog
|
Tokheim Profleet DiaLOG 11.005.02 is affected by SQL Injection. The component is the Field__UserLogin parameter on the logon page.
|
CWE-89
SQL Injection
|
CVE-2021-34235
|
2024-11-21 15:10 |
2022-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
191025
|
5.5 |
MEDIUM
Local
|
telenot
|
compasx
|
Telenot CompasX versions prior to 32.0 use a weak seed for random number generation leading to predictable AES keys used in the NFC tags used for local authorization of users. This may lead to total …
|
-
|
CVE-2021-34600
|
2024-11-21 15:10 |
2022-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
191026
|
4.7 |
MEDIUM
Local
|
nvidia
|
shield_experience
|
NVIDIA Tegra kernel driver contains a vulnerability in NVHost, where a specific race condition can lead to a null pointer dereference, which may lead to a system reboot.
|
CWE-362 CWE-476
Race Condition NULL Pointer Dereference
|
CVE-2021-34406
|
2024-11-21 15:10 |
2022-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
191027
|
5.5 |
MEDIUM
Local
|
nvidia
|
shield_experience
|
NVIDIA Linux distributions contain a vulnerability in TrustZone’s TEE_Malloc function, where an unchecked return value causing a null pointer dereference may lead to denial of service.
|
CWE-252
Unchecked Return Value
|
CVE-2021-34405
|
2024-11-21 15:10 |
2022-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
191028
|
7.6 |
HIGH
Physics
|
nvidia
|
shield_experience
|
Android images for T210 provided by NVIDIA contain a vulnerability in BROM, where failure to limit access to AHB-DMA when BROM fails may allow an unprivileged attacker with physical access to cause d…
|
NVD-CWE-noinfo
|
CVE-2021-34404
|
2024-11-21 15:10 |
2022-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
191029
|
7.8 |
HIGH
Local
|
nvidia
|
shield_experience
|
NVIDIA Linux distributions contain a vulnerability in nvmap ioctl, which allows any user with a local account to exploit a use-after-free condition, leading to code privilege escalation, loss of conf…
|
CWE-416
Use After Free
|
CVE-2021-34403
|
2024-11-21 15:10 |
2022-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
191030
|
6.7 |
MEDIUM
Local
|
nvidia
|
shield_experience
|
NVIDIA Tegra kernel driver contains a vulnerability in NVIDIA NVDEC, where a user with high privileges might be able to read from or write to a memory location that is outside the intended boundary o…
|
CWE-125 CWE-787
Out-of-bounds Read Out-of-bounds Write
|
CVE-2021-34402
|
2024-11-21 15:10 |
2022-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|