Show filters
600 Total Results
Displaying 291-300 of 600
Sort by:
Attacker Value
Unknown
CVE-2021-43295
Disclosure Date: November 30, 2021 (last updated February 23, 2025)
Zoho ManageEngine SupportCenter Plus before 11016 is vulnerable to Reflected XSS in the Accounts module.
0
Attacker Value
Unknown
CVE-2021-43294
Disclosure Date: November 30, 2021 (last updated February 23, 2025)
Zoho ManageEngine SupportCenter Plus before 11016 is vulnerable to Reflected XSS in the Products module.
0
Attacker Value
Unknown
CVE-2021-36919
Disclosure Date: November 26, 2021 (last updated February 23, 2025)
Multiple Authenticated Reflected Cross-Site Scripting (XSS) vulnerabilities in WordPress Awesome Support plugin (versions <= 6.0.6), vulnerable parameters (&id, &assignee).
0
Attacker Value
Unknown
CVE-2021-43976
Disclosure Date: November 17, 2021 (last updated October 07, 2023)
In the Linux kernel through 5.15.2, mwifiex_usb_recv in drivers/net/wireless/marvell/mwifiex/usb.c allows an attacker (who can connect a crafted USB device) to cause a denial of service (skb_over_panic).
0
Attacker Value
Unknown
CVE-2021-24807
Disclosure Date: November 08, 2021 (last updated February 23, 2025)
The Support Board WordPress plugin before 3.3.5 allows Authenticated (Agent+) users to perform Cross-Site Scripting attacks by placing a payload in the notes field, when an administrator or any authenticated user go to the chat the XSS will be automatically executed.
0
Attacker Value
Unknown
CVE-2021-43396
Disclosure Date: November 04, 2021 (last updated November 08, 2023)
In iconvdata/iso-2022-jp-3.c in the GNU C Library (aka glibc) 2.34, remote attackers can force iconv() to emit a spurious '\0' character via crafted ISO-2022-JP-3 data that is accompanied by an internal state reset. This may affect data integrity in certain iconv() use cases. NOTE: the vendor states "the bug cannot be invoked through user input and requires iconv to be invoked with a NULL inbuf, which ought to require a separate application bug to do so unintentionally. Hence there's no security impact to the bug.
0
Attacker Value
Unknown
CVE-2021-43389
Disclosure Date: November 04, 2021 (last updated February 23, 2025)
An issue was discovered in the Linux kernel before 5.14.15. There is an array-index-out-of-bounds flaw in the detach_capi_ctr function in drivers/isdn/capi/kcapi.c.
0
Attacker Value
Unknown
CVE-2020-27820
Disclosure Date: November 03, 2021 (last updated February 23, 2025)
A vulnerability was found in Linux kernel, where a use-after-frees in nouveau's postclose() handler could happen if removing device (that is not common to remove video card physically without power-off, but same happens if "unbind" the driver).
0
Attacker Value
Unknown
CVE-2021-41973
Disclosure Date: November 01, 2021 (last updated February 23, 2025)
In Apache MINA, a specifically crafted, malformed HTTP request may cause the HTTP Header decoder to loop indefinitely. The decoder assumed that the HTTP Header begins at the beginning of the buffer and loops if there is more data than expected. Please update MINA to 2.1.5 or greater.
0
Attacker Value
Unknown
CVE-2021-42739
Disclosure Date: October 20, 2021 (last updated February 23, 2025)
The firewire subsystem in the Linux kernel through 5.14.13 has a buffer overflow related to drivers/media/firewire/firedtv-avc.c and drivers/media/firewire/firedtv-ci.c, because avc_ca_pmt mishandles bounds checking.
0