Show filters
1,713 Total Results
Displaying 491-500 of 1,713
Sort by:
Attacker Value
Unknown

CVE-2021-3352

Disclosure Date: August 13, 2021 (last updated February 23, 2025)
The Software Development Kit in Mitel MiContact Center Business from 8.0.0.0 through 8.1.4.1 and 9.0.0.0 through 9.3.1.0 could allow an unauthenticated attacker to access (view and modify) user data without authorization due to improper handling of tokens.
Attacker Value
Unknown

CVE-2021-36946

Disclosure Date: August 12, 2021 (last updated February 23, 2025)
Microsoft Dynamics Business Central Cross-site Scripting Vulnerability
0
Attacker Value
Unknown

CVE-2015-2073

Disclosure Date: August 09, 2021 (last updated February 23, 2025)
The File RepositoRy Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to read arbitrary files via a full pathname, aka SAP Note 2018682.
Attacker Value
Unknown

CVE-2014-9320

Disclosure Date: August 09, 2021 (last updated February 23, 2025)
SAP BusinessObjects Edge 4.1 allows remote attackers to obtain the SI_PLATFORM_SEARCH_SERVER_LOGON_TOKEN token and consequently gain SYSTEM privileges via vectors involving CORBA calls, aka SAP Note 2039905.
Attacker Value
Unknown

CVE-2015-2074

Disclosure Date: August 09, 2021 (last updated February 23, 2025)
The File Repository Server (FRS) CORBA listener in SAP BussinessObjects Edge 4.0 allows remote attackers to write to arbitrary files via a full pathname, aka SAP Note 2018681.
Attacker Value
Unknown

CVE-2021-33597

Disclosure Date: August 05, 2021 (last updated November 28, 2024)
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the SAVAPI component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine.
Attacker Value
Unknown

CVE-2021-1602

Disclosure Date: August 04, 2021 (last updated February 23, 2025)
A vulnerability in the web-based management interface of Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. This vulnerability is due to insufficient user input validation. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface. A successful exploit could allow the attacker to execute arbitrary commands on an affected device using root-level privileges. Due to the nature of the vulnerability, only commands without parameters can be executed.
Attacker Value
Unknown

CVE-2021-1609

Disclosure Date: August 04, 2021 (last updated February 23, 2025)
Multiple vulnerabilities in the web-based management interface of the Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an attacker to do the following: Execute arbitrary code Cause a denial of service (DoS) condition Execute arbitrary commands For more information about these vulnerabilities, see the Details section of this advisory.
Attacker Value
Unknown

CVE-2021-1610

Disclosure Date: August 04, 2021 (last updated February 23, 2025)
Multiple vulnerabilities in the web-based management interface of the Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an attacker to do the following: Execute arbitrary code Cause a denial of service (DoS) condition Execute arbitrary commands For more information about these vulnerabilities, see the Details section of this advisory.
Attacker Value
Unknown

CVE-2021-36741

Disclosure Date: July 29, 2021 (last updated February 27, 2025)
An improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG, and Worry-Free Business Security 10.0 SP1 allows a remote attached to upload arbitrary files on affected installations. Please note: an attacker must first obtain the ability to logon to the product�s management console in order to exploit this vulnerability.