Show filters
186 Total Results
Displaying 41-50 of 186
Sort by:
Attacker Value
Unknown

CVE-2021-41593

Disclosure Date: October 04, 2021 (last updated February 23, 2025)
Lightning Labs lnd before 0.13.3-beta allows loss of funds because of dust HTLC exposure.
Attacker Value
Unknown

CVE-2021-41592

Disclosure Date: October 04, 2021 (last updated February 23, 2025)
Blockstream c-lightning through 0.10.1 allows loss of funds because of dust HTLC exposure.
Attacker Value
Unknown

CVE-2021-34415

Disclosure Date: September 27, 2021 (last updated February 23, 2025)
The Zone Controller service in the Zoom On-Premise Meeting Connector Controller before version 4.6.358.20210205 does not verify the cnt field sent in incoming network packets, which leads to exhaustion of resources and system crash.
Attacker Value
Unknown

CVE-2021-0422

Disclosure Date: September 27, 2021 (last updated February 23, 2025)
In memory management driver, there is a possible system crash due to a missing bounds check. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05403499; Issue ID: ALPS05381071.
Attacker Value
Unknown

CVE-2021-29763

Disclosure Date: September 15, 2021 (last updated February 23, 2025)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 under very specific conditions, could allow a local user to keep running a procedure that could cause the system to run out of memory.and cause a denial of service. IBM X-Force ID: 202267.
Attacker Value
Unknown

CVE-2021-23053

Disclosure Date: September 14, 2021 (last updated February 23, 2025)
On version 15.1.x before 15.1.3, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.6, when the brute force protection feature of BIG-IP Advanced WAF or BIG-IP ASM is enabled on a virtual server and the virtual server is under brute force attack, the MySQL database may run out of disk space due to lack of row limit on undisclosed tables in the MYSQL database. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Attacker Value
Unknown

CVE-2021-33011

Disclosure Date: September 10, 2021 (last updated February 23, 2025)
All versions of the afffected TOYOPUC-PC10 Series,TOYOPUC-Plus Series,TOYOPUC-PC3J/PC2J Series, TOYOPUC-Nano Series products may not be able to properly process an ICMP flood, which may allow an attacker to deny Ethernet communications between affected devices.
Attacker Value
Unknown

CVE-2021-37629

Disclosure Date: September 07, 2021 (last updated February 23, 2025)
Nextcloud Richdocuments is an open source collaborative office suite. In affected versions there is a lack of rate limiting on the Richdocuments OCS endpoint. This may have allowed an attacker to enumerate potentially valid share tokens. It is recommended that the Nextcloud Richdocuments app is upgraded to either 3.8.4 or 4.2.1 to resolve. For users unable to upgrade it is recommended that the Richdocuments application be disabled.
Attacker Value
Unknown

CVE-2021-33831

Disclosure Date: September 07, 2021 (last updated February 23, 2025)
api/account/register in the TH Wildau COVID-19 Contact Tracing application through 2021-09-01 has Incorrect Access Control. An attacker can interfere with tracing of infection chains by creating 500 random users within 2500 seconds.
Attacker Value
Unknown

CVE-2021-22029

Disclosure Date: August 31, 2021 (last updated February 23, 2025)
VMware Workspace ONE UEM REST API contains a denial of service vulnerability. A malicious actor with access to /API/system/admins/session could cause an API denial of service due to improper rate limiting.