Page(s) : 1 ... 714 715 716 717 718 719 720 721 722 723 [724] 725 726 727 728 729 730 731 732 733 734 ... | Result(s) : 43487 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
9.8 | 2021-09-08 | CVE-2020-26772 | cve | Command Injection in PPGo_Jobs v2.8.0 allows remote attackers to execute arbitrary code via the 'AjaxRun()' function. |
9.8 | 2021-09-08 | CVE-2020-19138 | cve | Unrestricted Upload of File with Dangerous Type in DotCMS v5.2.3 and earlier allow remote attackers to execute arbitrary code via the component "/src/main/java/com/dotmarketing/... |
9.8 | 2021-09-08 | CVE-2021-30793 | cve | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.5, Security Update 2021-004 Catalina, Security Update 2021-005 Mojave. An app... |
9.8 | 2021-09-07 | CVE-2020-7865 | cve | A vulnerability(improper input validation) in the ExECM CoreB2B solution allows an unauthenticated attacker to download and execute an arbitrary file via httpDownload function. ... |
9.8 | 2021-09-07 | CVE-2021-40540 | cve | ulfius_uri_logger in Ulfius HTTP Framework before 2.7.4 omits con_info initialization and a con_info->request NULL check for certain malformed HTTP requests. |
9.8 | 2021-09-07 | CVE-2021-38840 | cve | SQL Injection can occur in Simple Water Refilling Station Management System 1.0 via the water_refilling/classes/Login.php username parameter. |
9.8 | 2021-09-07 | CVE-2021-37716 | cve | A remote buffer overflow vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Software version(s): Prior to 8.6.0.4-2.2.0.4; Prior to 8.7.1... |
9.8 | 2021-09-07 | CVE-2021-36163 | cve | In Apache Dubbo, users may choose to use the Hessian protocol. The Hessian protocol is implemented on top of HTTP and passes the body of a POST request directly to a HessianSkel... |
9.8 | 2021-09-07 | CVE-2021-40539 | cve | Zoho ManageEngine ADSelfService Plus version 6113 and prior is vulnerable to REST API authentication bypass with resultant remote code execution. |
9.8 | 2021-09-07 | CVE-2020-7832 | cve | A vulnerability (improper input validation) in the DEXT5 Upload solution allows an unauthenticated attacker to download and execute an arbitrary file via AddUploadFile, SetSelec... |
9.8 | 2021-09-07 | CVE-2021-39497 | cve | eyoucms 1.5.4 lacks sanitization of input data, allowing an attacker to inject a url to trigger blind SSRF via the saveRemote() function. |
9.8 | 2021-09-07 | CVE-2021-35946 | cve | A receiver of a federated share with access to the database with ownCloud version before 10.8 could update the permissions and therefore elevate their own permissions. |
9.1 | 2021-09-07 | CVE-2020-19751 | cve | An issue was discovered in gpac 0.8.0. The gf_odf_del_ipmp_tool function in odf_code.c has a heap-based buffer over-read. |
9.8 | 2021-09-07 | CVE-2021-32802 | cve | Nextcloud server is an open source, self hosted personal cloud. Nextcloud supports rendering image previews for user provided file content. For some image types, the Nextcloud s... |
9.8 | 2021-09-06 | CVE-2021-40531 | cve | Sketch before 75 allows library feeds to be used to bypass file quarantine. Files are automatically downloaded and opened, without the com.apple.quarantine extended attribute. T... |
9.8 | 2021-09-06 | CVE-2021-40532 | cve | Telegram Web K Alpha before 0.7.2 mishandles the characters in a document extension. |
9.8 | 2021-09-06 | CVE-2021-3766 | cve | objection.js is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
9.8 | 2021-09-03 | CVE-2021-40494 | cve | A Hardcoded JWT Secret Key in metadata.py in AdaptiveScale LXDUI through 2.1.3 allows attackers to gain admin access to the host system. |
9.3 | 2021-09-02 | CVE-2021-36017 | cve | Adobe After Effects version 18.2.1 (and earlier) is affected by a memory corruption vulnerability when parsing a specially crafted file. An unauthenticated attacker could levera... |
9.3 | 2021-09-02 | CVE-2021-35994 | cve | Adobe After Effects version 18.2.1 (and earlier) is affected by an out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could lev... |
Page(s) : 1 ... 714 715 716 717 718 719 720 721 722 723 [724] 725 726 727 728 729 730 731 732 733 734 ... | Result(s) : 43487 |