Show filters
21 Total Results
Displaying 1-10 of 21
Sort by:
Attacker Value
Unknown

CVE-2021-42773

Disclosure Date: November 12, 2021 (last updated October 07, 2023)
Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, could allow a user to retrieve an arbitrary file from a remote host with the GetDumpFile command. In non-secure mode, the user is unauthenticated.
Attacker Value
Unknown

CVE-2021-42775

Disclosure Date: November 12, 2021 (last updated October 07, 2023)
Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a vulnerability in the remote firmware download feature that could allow a user to place or replace an arbitrary file on the remote host. In non-secure mode, the user is unauthenticated.
Attacker Value
Unknown

CVE-2021-42774

Disclosure Date: November 12, 2021 (last updated February 23, 2025)
Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a buffer overflow vulnerability in the remote firmware download feature that could allow remote unauthenticated users to perform various attacks. In non-secure mode, the user is unauthenticated.
Attacker Value
Unknown

CVE-2021-42772

Disclosure Date: November 03, 2021 (last updated February 23, 2025)
Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a buffer overflow vulnerability in the remote GetDumpFile command that could allow a user to attempt various attacks. In non-secure mode, the user is unauthenticated
Attacker Value
Unknown

CVE-2021-1630

Disclosure Date: August 05, 2021 (last updated February 23, 2025)
XML external entity (XXE) vulnerability affecting certain versions of a Mule runtime component that may affect CloudHub, GovCloud, Runtime Fabric, Pivotal Cloud Foundry, Private Cloud Edition, and on-premise customers.
Attacker Value
Unknown

CVE-2021-1626

Disclosure Date: March 26, 2021 (last updated November 28, 2024)
MuleSoft is aware of a Remote Code Execution vulnerability affecting certain versions of a Mule runtime component that may affect both CloudHub and on-premise customers. Versions affected: Mule 4.1.x and 4.2.x runtime released before February 2, 2021.
Attacker Value
Unknown

CVE-2021-1628

Disclosure Date: March 26, 2021 (last updated February 22, 2025)
MuleSoft is aware of a XML External Entity (XXE) vulnerability affecting certain versions of a Mule runtime component that may affect both CloudHub and on-premise customers. Affected versions: Mule 4.x runtime released before February 2, 2021.
Attacker Value
Unknown

CVE-2021-1627

Disclosure Date: March 26, 2021 (last updated February 22, 2025)
MuleSoft is aware of a Server Side Request Forgery vulnerability affecting certain versions of a Mule runtime component that may affect both CloudHub and on-premise customers. This affects: Mule 3.8.x,3.9.x,4.x runtime released before February 2, 2021.
Attacker Value
Unknown

CVE-2020-6937

Disclosure Date: May 29, 2020 (last updated November 27, 2024)
A Denial of Service vulnerability in MuleSoft Mule CE/EE 3.8.x, 3.9.x, and 4.x released before April 7, 2020, could allow remote attackers to submit data which can lead to resource exhaustion.
Attacker Value
Unknown

CVE-2019-15631

Disclosure Date: December 02, 2019 (last updated November 27, 2024)
Remote Code Execution vulnerability in MuleSoft Mule CE/EE 3.x and API Gateway 2.x released before October 31, 2019 allows remote attackers to execute arbitrary code.