Latest CVE Feed
-
7.8
HIGHCVE-2021-44422
An Improper Input Validation Vulnerability exists when reading a BMP file using Open Design Alliance Drawings SDK before 2022.12. Crafted data in a BMP file can trigger a write operation past the end of an allocated buffer, or lead to a heap-based buffer ... Read more
Affected Products : drawings_sdk- Published: Dec. 21, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-44421
The pointer-validation logic in util/mem_util.rs in Occlum before 0.26.0 for Intel SGX acts as a confused deputy that allows a local attacker to access unauthorized information via side-channel analysis.... Read more
Affected Products : occlum- Published: Mar. 10, 2022
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-44420
In Django 2.2 before 2.2.25, 3.1 before 3.1.14, and 3.2 before 3.2.10, HTTP requests for URLs with trailing newlines could bypass upstream access control based on URL paths.... Read more
- Published: Dec. 08, 2021
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44419
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetMdAlarm param is not object. An attacker can send an HTTP re... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44418
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetMdState param is not object. An attacker can send an HTTP re... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44417
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetAlarm param is not object. An attacker can send an HTTP requ... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44416
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. Disconnect param is not object. An attacker can send an HTTP re... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44415
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. ModifyUser param is not object. An attacker can send an HTTP re... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44414
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. DelUser param is not object. An attacker can send an HTTP reque... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44413
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. AddUser param is not object. An attacker can send an HTTP reque... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44412
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetRec param is not object. An attacker can send an HTTP reques... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44411
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. Search param is not object. An attacker can send an HTTP reques... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44410
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. UpgradePrepare param is not object. An attacker can send an HTT... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44409
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. TestWifi param is not object. An attacker can send an HTTP requ... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44408
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. TestFtp param is not object. An attacker can send an HTTP reque... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44407
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. TestEmail param is not object. An attacker can send an HTTP req... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44406
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetAutoFocus param is not object. An attacker can send an HTTP ... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44405
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. StartZoomFocus param is not object. An attacker can send an HTT... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44404
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetZoomFocus param is not object. An attacker can send an HTTP ... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024
-
8.6
HIGHCVE-2021-44403
A denial of service vulnerability exists in the cgiserver.cgi JSON command parser functionality of reolink RLC-410W v3.0.0.136_20121102. A specially-crafted HTTP request can lead to a reboot. GetPtzTattern param is not object. An attacker can send an HTTP... Read more
- Published: Jan. 28, 2022
- Modified: Nov. 21, 2024