|
190811
|
7.8 |
HIGH
Local
|
bentley
|
bentley_view microstation
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.75. User interaction is required to exploit this vulnerability in that the targe…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-34871
|
2024-11-21 15:11 |
2022-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190812
|
7.8 |
HIGH
Local
|
teamviewer
|
teamviewer
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of TeamViewer. User interaction is required to exploit this vulnerability in that the target must visit …
|
CWE-125
Out-of-bounds Read
|
CVE-2021-34858
|
2024-11-21 15:11 |
2022-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190813
|
7.5 |
HIGH
Network
|
apache
|
geode
|
Apache Geode versions up to 1.12.4 and 1.13.4 are vulnerable to a log file redaction of sensitive information flaw when using values that begin with characters other than letters or numbers for passw…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2021-34797
|
2024-11-21 15:11 |
2022-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190814
|
6.5 |
MEDIUM
Adjacent
|
qualcomm
|
csr8510_a10_firmware csr8811_a12_firmware
|
Possible memory corruption in BT controller when it receives an oversized LMP packet over 2-DH1 link and leads to denial of service in BlueCore
|
CWE-787
Out-of-bounds Write
|
CVE-2021-35093
|
2024-11-21 15:11 |
2022-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190815
|
6.5 |
MEDIUM
Network
|
zyxel
|
nbg6604_firmware
|
A cleartext storage of sensitive information vulnerability in the Zyxel NBG6604 firmware could allow a remote, authenticated attacker to obtain sensitive information from the configuration file.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2021-35035
|
2024-11-21 15:11 |
2021-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190816
|
9.1 |
CRITICAL
Network
|
zyxel
|
nbg6604_firmware
|
An insufficient session expiration vulnerability in the CGI program of the Zyxel NBG6604 firmware could allow a remote attacker to access the device if the correct token can be intercepted.
|
CWE-613
Insufficient Session Expiration
|
CVE-2021-35034
|
2024-11-21 15:11 |
2021-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190817
|
7.8 |
HIGH
Local
|
zyxel
|
gs1900-8_firmware gs1900-8hp_firmware gs1900-10hp_firmware gs1900-16_firmware gs1900-24e_firmware gs1900-24ep_firmware gs1900-24_firmware gs1900-24hp_firmware gs1900-24hpv2_fi…
|
A vulnerability in the 'libsal.so' of the Zyxel GS1900 series firmware version 2.60 could allow an authenticated local user to execute arbitrary OS commands via a crafted function call.
|
CWE-78
OS Command
|
CVE-2021-35032
|
2024-11-21 15:11 |
2021-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190818
|
8.0 |
HIGH
Adjacent
|
zyxel
|
gs1900-8_firmware gs1900-8hp_firmware gs1900-10hp_firmware gs1900-16_firmware gs1900-24e_firmware gs1900-24ep_firmware gs1900-24_firmware gs1900-24hp_firmware gs1900-24hpv2_fi…
|
A vulnerability in the TFTP client of Zyxel GS1900 series firmware, XGS1210 series firmware, and XGS1250 series firmware, which could allow an authenticated LAN user to execute arbitrary OS commands …
|
CWE-78
OS Command
|
CVE-2021-35031
|
2024-11-21 15:11 |
2021-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190819
|
8.8 |
HIGH
Network
|
mediatek
|
mt7603e_firmware mt7612_firmware mt7613_firmware mt7615_firmware mt7622_firmware mt7628_firmware mt7629_firmware mt7915_firmware mt7620_firmware mt7610_firmware
|
MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle the WPS (Wi-Fi Protected Setup) protocol. (Affected Chipsets MT7603E, MT7610, MT7612, MT7613, MT7615, M…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-35055
|
2024-11-21 15:11 |
2021-12-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190820
|
7.5 |
HIGH
Network
|
acronis
|
agent
|
Sensitive information could be logged. The following products are affected: Acronis Agent (Windows, Linux, macOS) before build 27147
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2021-34800
|
2024-11-21 15:11 |
2021-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|