Show filters
71,169 Total Results
Displaying 231-240 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Very High
CVE-2021-38833
Disclosure Date: September 13, 2021 (last updated November 28, 2024)
SQL injection vulnerability in PHPGurukul Apartment Visitors Management System (AVMS) v. 1.0 allows attackers to execute arbitrary SQL statements and to gain RCE.
3
Attacker Value
Low
CVE-2021-38406
Disclosure Date: September 09, 2021 (last updated November 28, 2024)
Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could result in multiple out-of-bounds write instances. An attacker could leverage this vulnerability to execute code in the context of the current process.
3
Attacker Value
Low
CVE-2021-32648
Disclosure Date: August 26, 2021 (last updated November 28, 2024)
octobercms in a CMS platform based on the Laravel PHP Framework. In affected versions of the october/system package an attacker can request an account password reset and then gain access to the account using a specially crafted request. The issue has been patched in Build 472 and v1.1.5.
3
Attacker Value
High
CVE-2021-30883
Disclosure Date: August 24, 2021 (last updated July 03, 2024)
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 15.0.2 and iPadOS 15.0.2, macOS Monterey 12.0.1, iOS 14.8.1 and iPadOS 14.8.1, tvOS 15.1, watchOS 8.1, macOS Big Sur 11.6.1. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited..
3
Attacker Value
Unknown
CVE-2021-34803
Disclosure Date: June 16, 2021 (last updated November 28, 2024)
TeamViewer before 14.7.48644 on Windows loads untrusted DLLs in certain situations.
3
Attacker Value
Moderate
CVE-2021-32682
Disclosure Date: June 14, 2021 (last updated November 28, 2024)
elFinder is an open-source file manager for web, written in JavaScript using jQuery UI. Several vulnerabilities affect elFinder 2.1.58. These vulnerabilities can allow an attacker to execute arbitrary code and commands on the server hosting the elFinder PHP connector, even with minimal configuration. The issues were patched in version 2.1.59. As a workaround, ensure the connector is not exposed without authentication.
3
Attacker Value
High
CVE-2021-28550
Disclosure Date: May 11, 2021 (last updated November 08, 2023)
Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by a Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
3
Attacker Value
Very High
CVE-2021-20021
Disclosure Date: April 09, 2021 (last updated November 28, 2024)
A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host.
3
Attacker Value
High
CVE-2021-26295
Disclosure Date: March 22, 2021 (last updated November 08, 2023)
Apache OFBiz has unsafe deserialization prior to 17.12.06. An unauthenticated attacker can use this vulnerability to successfully take over Apache OFBiz.
3
Attacker Value
Very High
CVE-2021-27101
Disclosure Date: February 16, 2021 (last updated November 28, 2024)
Accellion FTA 9_12_370 and earlier is affected by SQL injection via a crafted Host header in a request to document_root.html. The fixed version is FTA_9_12_380 and later.
3