Show filters
420 Total Results
Displaying 151-160 of 420
Sort by:
Attacker Value
Unknown

CVE-2021-21874

Disclosure Date: December 22, 2021 (last updated February 23, 2025)
A specially-crafted HTTP request can lead to arbitrary command execution in DSA keypasswd parameter. An attacker can make an authenticated HTTP request to trigger this vulnerability.
Attacker Value
Unknown

CVE-2021-21873

Disclosure Date: December 22, 2021 (last updated February 23, 2025)
A specially-crafted HTTP request can lead to arbitrary command execution in RSA keypasswd parameter. An attacker can make an authenticated HTTP request to trigger this vulnerability.
Attacker Value
Unknown

CVE-2021-21872

Disclosure Date: December 22, 2021 (last updated February 23, 2025)
An OS command injection vulnerability exists in the Web Manager Diagnostics: Traceroute functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.
Attacker Value
Unknown

CVE-2021-37715

Disclosure Date: August 26, 2021 (last updated February 23, 2025)
A remote cross-site scripting (XSS) vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.13.0. Aruba has released upgrades for the Aruba AirWave Management Platform that address this security vulnerability.
Attacker Value
Unknown

CVE-2021-35522

Disclosure Date: July 22, 2021 (last updated February 23, 2025)
A Buffer Overflow in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2, Sigma devices before 4.9.4, and MA VP MD devices before 4.9.7 allows remote attackers to achieve code execution, denial of services, and information disclosure via TCP/IP packets.
Attacker Value
Unknown

CVE-2021-35521

Disclosure Date: July 22, 2021 (last updated February 23, 2025)
A path traversal in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2 allows remote authenticated attackers to achieve denial of services and information disclosure via TCP/IP packets.
Attacker Value
Unknown

CVE-2021-35520

Disclosure Date: July 22, 2021 (last updated February 23, 2025)
A Buffer Overflow in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2 allows physically proximate authenticated attackers to achieve code execution, denial of services, and information disclosure via serial ports.
Attacker Value
Unknown

CVE-2021-27823

Disclosure Date: May 25, 2021 (last updated November 28, 2024)
An information disclosure vulnerability was discovered in /index.class.php (via port 8181) on NetWave System 1.0 which allows unauthenticated attackers to exfiltrate sensitive information from the system.
Attacker Value
Unknown

CVE-2021-29137

Disclosure Date: April 29, 2021 (last updated February 22, 2025)
A remote URL redirection vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform that address this security vulnerability.
Attacker Value
Unknown

CVE-2021-25167

Disclosure Date: April 29, 2021 (last updated February 22, 2025)
A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1. Aruba has released patches for AirWave Management Platform that address this security vulnerability.