Show filters
664 Total Results
Displaying 351-360 of 664
Sort by:
Attacker Value
Unknown
CVE-2021-22736
Disclosure Date: May 26, 2021 (last updated February 22, 2025)
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause a denial of service when an unauthorized file is uploaded.
0
Attacker Value
Unknown
CVE-2021-32457
Disclosure Date: May 26, 2021 (last updated February 22, 2025)
Trend Micro Home Network Security version 6.6.604 and earlier is vulnerable to an iotcl stack-based buffer overflow vulnerability which could allow an attacker to issue a specially crafted iotcl to escalate privileges on affected devices. An attacker must first obtain the ability to execute low-privileged code on the target device in order to exploit this vulnerability.
0
Attacker Value
Unknown
CVE-2021-25264
Disclosure Date: May 17, 2021 (last updated November 28, 2024)
In multiple versions of Sophos Endpoint products for MacOS, a local attacker could execute arbitrary code with administrator privileges.
0
Attacker Value
Unknown
CVE-2021-24326
Disclosure Date: May 17, 2021 (last updated February 22, 2025)
The tab parameter of the settings page of the All 404 Redirect to Homepage WordPress plugin before 1.21 was vulnerable to an authenticated reflected Cross-Site Scripting (XSS) issue as user input was not properly sanitised before being output in an attribute.
0
Attacker Value
Unknown
CVE-2021-24324
Disclosure Date: May 17, 2021 (last updated February 22, 2025)
The 404 SEO Redirection WordPress plugin through 1.3 is lacking CSRF checks in all its settings, allowing attackers to make a logged in user change the plugin's settings. Due to the lack of sanitisation and escaping in some fields, it could also lead to Stored Cross-Site Scripting issues
0
Attacker Value
Unknown
CVE-2021-31519
Disclosure Date: May 12, 2021 (last updated February 22, 2025)
An incorrect permission vulnerability in the product installer folders for Trend Micro HouseCall for Home Networks version 5.3.1179 and below could allow an attacker to escalate privileges by placing arbitrary code on a specified folder and have that code be executed by an Administrator who is running a scan. Please note that an attacker must first obtain the ability to execute low-privileged code on the target system to exploit this vulnerability.
0
Attacker Value
Unknown
CVE-2021-28649
Disclosure Date: May 12, 2021 (last updated February 22, 2025)
An incorrect permission vulnerability in the product installer for Trend Micro HouseCall for Home Networks version 5.3.1179 and below could allow an attacker to escalate privileges by placing arbitrary code on a specified folder and have that code be executed by an Administrator who is running a scan. Please note that an attacker must first obtain the ability to execute low-privileged code on the target system to exploit this vulnerability.
0
Attacker Value
Unknown
CVE-2021-31518
Disclosure Date: May 05, 2021 (last updated November 28, 2024)
Trend Micro Home Network Security 6.5.599 and earlier is vulnerable to a file-parsing vulnerability which could allow an attacker to exploit the vulnerability and cause a denial-of-service to the device. This vulnerability is similar, but not identical to CVE-2021-31517.
0
Attacker Value
Unknown
CVE-2021-31517
Disclosure Date: May 05, 2021 (last updated November 28, 2024)
Trend Micro Home Network Security 6.5.599 and earlier is vulnerable to a file-parsing vulnerability which could allow an attacker to exploit the vulnerability and cause a denial-of-service to the device. This vulnerability is similar, but not identical to CVE-2021-31518.
0
Attacker Value
Unknown
CVE-2020-21997
Disclosure Date: April 29, 2021 (last updated February 22, 2025)
Smartwares HOME easy <=1.0.9 is vulnerable to an unauthenticated database backup download and information disclosure vulnerability. An attacker could disclose sensitive and clear-text information resulting in authentication bypass, session hijacking and full system control.
0