|
190921
|
6.1 |
MEDIUM
Network
|
drk-odenwaldkreis
|
testerfassung
|
Multiple cross-site scripting (XSS) vulnerabilities in DRK Odenwaldkreis Testerfassung March-2021 allow remote attackers to inject arbitrary web script or HTML via all parameters to HTML form fields …
|
CWE-79
Cross-site Scripting
|
CVE-2021-35061
|
2024-11-21 15:11 |
2021-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190922
|
8.6 |
HIGH
Network
|
cisco
|
firepower_management_center_virtual_appliance_firmware firepower_management_center ironport_web_security_appliance
|
A vulnerability in Server Name Identification (SNI) request filtering of Cisco Web Security Appliance (WSA), Cisco Firepower Threat Defense (FTD), and the Snort detection engine could allow an unauth…
|
CWE-200
Information Exposure
|
CVE-2021-34749
|
2024-11-21 15:11 |
2021-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190923
|
7.8 |
HIGH
Local
|
cisco
|
appdynamics_.net_agent
|
A vulnerability in the AppDynamics .NET Agent for Windows could allow an attacker to leverage an authenticated, local user account to gain SYSTEM privileges. This vulnerability is due to the .NET Age…
|
CWE-269
Improper Privilege Management
|
CVE-2021-34745
|
2024-11-21 15:11 |
2021-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190924
|
6.5 |
MEDIUM
Adjacent
|
cisco
|
video_surveillance_7000_ip_camera_firmware
|
A vulnerability in the Link Layer Discovery Protocol (LLDP) implementation for the Cisco Video Surveillance 7000 Series IP Cameras firmware could allow an unauthenticated, adjacent attacker to cause …
|
CWE-415
Double Free
|
CVE-2021-34734
|
2024-11-21 15:11 |
2021-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190925
|
9.8 |
CRITICAL
Network
|
cisco
|
application_extension_platform rv110w_wireless-n_vpn_firewall_firmware rv130_vpn_router_firmware rv130w_wireless-n_multifunction_vpn_router_firmware rv215w_wireless-n_vpn_router_firmware
|
A vulnerability in the Universal Plug-and-Play (UPnP) service of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to execute arbitrary co…
|
CWE-787
Out-of-bounds Write
|
CVE-2021-34730
|
2024-11-21 15:11 |
2021-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190926
|
7.2 |
HIGH
Network
|
cisco
|
telepresence_video_communication_server expressway
|
A vulnerability in the web-based management interface of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker to execute arbit…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2021-34716
|
2024-11-21 15:11 |
2021-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190927
|
7.2 |
HIGH
Network
|
cisco
|
telepresence_video_communication_server expressway
|
A vulnerability in the image verification function of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker to execute code wit…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2021-34715
|
2024-11-21 15:11 |
2021-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190928
|
9.1 |
CRITICAL
Network
|
on24
|
screenshare
|
The ON24 ScreenShare (aka DesktopScreenShare.app) plugin before 2.0 for macOS allows remote file access via its built-in HTTP server. This allows unauthenticated remote users to retrieve files access…
|
CWE-611
XXE
|
CVE-2021-34823
|
2024-11-21 15:11 |
2021-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190929
|
6.5 |
MEDIUM
Network
|
cisco
|
evolved_programmable_network_manager
|
A vulnerability in the REST API of Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker to access sensitive data on an affected system. This vulnerability e…
|
CWE-200
Information Exposure
|
CVE-2021-34707
|
2024-11-21 15:11 |
2021-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190930
|
7.8 |
HIGH
Local
|
foxit foxitsoftware
|
pdf_reader pdf_editor
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the…
|
CWE-416
Use After Free
|
CVE-2021-34853
|
2024-11-21 15:11 |
2021-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|