Show filters
563 Total Results
Displaying 281-290 of 563
Sort by:
Attacker Value
Unknown

CVE-2020-27234

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3 in the serviceUID parameter. An attacker can make an authenticated HTTP request to trigger this vulnerability.
Attacker Value
Unknown

CVE-2021-30030

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the Full Name field on register-patient.php.
Attacker Value
Unknown

CVE-2021-30044

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the First Name or Last Name field on staff/register.php.
Attacker Value
Unknown

CVE-2021-30039

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the "Fever" or "Blood Pressure" field on the patients/register-report.php.
Attacker Value
Unknown

CVE-2021-30042

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the "Clinic Name", "Clinic Address", "Clinic City", or "Clinic Contact" field on clinics/register.php
Attacker Value
Unknown

CVE-2021-30034

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
Cross Site Scripting (XSS) in Remote Clinic v2.0 via the Symptons field on patients/register-report.php.
Attacker Value
Unknown

CVE-2021-28166

Disclosure Date: April 07, 2021 (last updated February 22, 2025)
In Eclipse Mosquitto version 2.0.0 to 2.0.9, if an authenticated client that had connected with MQTT v5 sent a crafted CONNACK message to the broker, a NULL pointer dereference would occur.
Attacker Value
Unknown

CVE-2021-20688

Disclosure Date: April 07, 2021 (last updated February 22, 2025)
Cross-site scripting vulnerability in Click Ranker Ver.3.5 allows remote attackers to inject an arbitrary script via unspecified vectors.
Attacker Value
Unknown

CVE-2021-30130

Disclosure Date: April 06, 2021 (last updated February 22, 2025)
phpseclib before 2.0.31 and 3.x before 3.0.7 mishandles RSA PKCS#1 v1.5 signature verification.
Attacker Value
Unknown

CVE-2021-21421

Disclosure Date: April 01, 2021 (last updated February 22, 2025)
node-etsy-client is a NodeJs Etsy ReST API Client. Applications that are using node-etsy-client and reporting client error to the end user will offer api key value too This is fixed in node-etsy-client v0.3.0 and later.