Latest CVE Feed
-
7.1
HIGHCVE-2021-26274
The Agent in NinjaRMM 5.0.909 has Insecure Permissions.... Read more
Affected Products : ninjarmm- EPSS Score: %0.04
- Published: Jul. 07, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-26273
The Agent in NinjaRMM 5.0.909 has Incorrect Access Control.... Read more
Affected Products : ninjarmm- EPSS Score: %0.14
- Published: Jul. 07, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-26272
It was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim to paste crafted URL-like text into the editor, and then press Enter or Space (in the Autolink plugin).... Read more
- EPSS Score: %0.20
- Published: Jan. 26, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-26271
It was possible to execute a ReDoS-type attack inside CKEditor 4 before 4.16 by persuading a victim to paste crafted text into the Styles input of specific dialogs (in the Advanced Tab for Dialogs plugin).... Read more
- EPSS Score: %0.64
- Published: Jan. 26, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-26267
cPanel before 92.0.9 allows a MySQL user (who has an old-style password hash) to bypass suspension (SEC-579).... Read more
Affected Products : cpanel- EPSS Score: %0.24
- Published: Jan. 26, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-26266
cPanel before 92.0.9 allows a Reseller to bypass the suspension lock (SEC-578).... Read more
Affected Products : cpanel- EPSS Score: %0.24
- Published: Jan. 26, 2021
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2021-26263
Cross-site scripting (XSS) issue in Discuss app of Odoo Community 14.0 through 15.0, and Odoo Enterprise 14.0 through 15.0, allows remote attackers to inject arbitrary web script in the browser of a victim, by posting crafted contents.... Read more
Affected Products : odoo- EPSS Score: %0.11
- Published: Apr. 25, 2023
- Modified: Nov. 21, 2024
-
6.2
MEDIUMCVE-2021-26262
Philips MRI 1.5T and MRI 3T Version 5.x.x does not restrict or incorrectly restricts access to a resource from an unauthorized actor.... Read more
- EPSS Score: %0.11
- Published: Nov. 19, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-26260
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR. This is a different flaw from CVE-2021-23215.... Read more
- EPSS Score: %0.09
- Published: Jun. 08, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-26259
A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in render_table_row(),in ps-pdf.cxx may lead to arbitrary code execution and denial of service.... Read more
Affected Products : htmldoc- EPSS Score: %0.26
- Published: Mar. 03, 2022
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2021-26256
Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability discovered in Survey Maker WordPress plugin (versions <= 2.0.6).... Read more
Affected Products : survey_maker- EPSS Score: %1.29
- Published: Feb. 21, 2022
- Modified: Nov. 21, 2024
-
8.1
HIGHCVE-2021-26253
A potential vulnerability in Splunk Enterprise's implementation of DUO MFA allows for bypassing the MFA verification in Splunk Enterprise versions before 8.1.6. The potential vulnerability impacts Splunk Enterprise instances configured to use DUO MFA and ... Read more
Affected Products : splunk- EPSS Score: %0.20
- Published: May. 06, 2022
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-26252
A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in pspdf_prepare_page(),in ps-pdf.cxx may lead to execute arbitrary code and denial of service.... Read more
- EPSS Score: %0.39
- Published: Feb. 24, 2022
- Modified: Nov. 21, 2024
-
6.2
MEDIUMCVE-2021-26248
Philips MRI 1.5T and MRI 3T Version 5.x.x assigns an owner who is outside the intended control sphere to a resource.... Read more
- EPSS Score: %0.05
- Published: Nov. 19, 2021
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2021-26247
As an unauthenticated remote user, visit "http://<CACTI_SERVER>/auth_changepassword.php?ref=<script>alert(1)</script>" to successfully execute the JavaScript payload present in the "ref" URL parameter.... Read more
Affected Products : cacti- EPSS Score: %31.02
- Published: Jan. 19, 2022
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-26237
FastStone Image Viewer <= 7.5 is affected by a user mode write access violation at 0x00402d7d, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this issue for a Denial of Service (DoS) o... Read more
Affected Products : image_viewer- EPSS Score: %0.20
- Published: Mar. 18, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-26236
FastStone Image Viewer v.<= 7.5 is affected by a Stack-based Buffer Overflow at 0x005BDF49, affecting the CUR file parsing functionality (BITMAPINFOHEADER Structure, 'BitCount' file format field), that will end up corrupting the Structure Exception Handle... Read more
Affected Products : image_viewer- EPSS Score: %1.00
- Published: Mar. 18, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-26235
FastStone Image Viewer <= 7.5 is affected by a user mode write access violation near NULL at 0x005bdfc9, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this issue for a Denial of Servi... Read more
Affected Products : image_viewer- EPSS Score: %0.32
- Published: Mar. 18, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-26234
FastStone Image Viewer <= 7.5 is affected by a user mode write access violation at 0x00402d8a, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this issue for a Denial of Service (DoS) o... Read more
Affected Products : image_viewer- EPSS Score: %0.32
- Published: Mar. 18, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-26233
FastStone Image Viewer <= 7.5 is affected by a user mode write access violation near NULL at 0x005bdfcb, triggered when a user opens or views a malformed CUR file that is mishandled by FSViewer.exe. Attackers could exploit this issue for a Denial of Servi... Read more
Affected Products : image_viewer- EPSS Score: %0.32
- Published: Mar. 18, 2021
- Modified: Nov. 21, 2024