CVE-2020-20945
Summary: A Cross-Site Request Forgery (CSRF) in /admin/index.php?lfj=member&action=editmember of Qibosoft v7 allows attackers to arbitrarily add administrator accounts. Reference Links(if...
Summary: A Cross-Site Request Forgery (CSRF) in /admin/index.php?lfj=member&action=editmember of Qibosoft v7 allows attackers to arbitrarily add administrator accounts. Reference Links(if...
Summary: A cryptographic weakness existed in the authentication protocol of Remote Desktop. This issue was addressed by implementing the Secure...
Summary: CVE-2019-7609 is a code injection vulnerability impacting Elastic Kibana versions before 5.6.15 and 6.6.1. An exploit was observed in...
Summary: CVE-2019-12815 is an improper access control vulnerability impacting ProFTPD file transfer protocol server up to version 1.3.5b. A proof...
Summary: A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (All versions < V13.2.0.5). The Jt1001.dll...
Summary: MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle IEEE 1905 protocols. (Affected Chipsets MT7603E,...
Summary: MediaTek microchips, as used in NETGEAR devices through 2021-11-11 and other devices, mishandle IEEE 1905 protocols. (Affected Chipsets MT7603E,...
Summary: MediaTek microchips, as used in NETGEAR devices through 2021-12-13 and other devices, mishandle attempts at Wi-Fi authentication flooding. (Affected...
Summary: An issue was discovered in the rusqlite crate 0.25.x before 0.25.4 and 0.26.x before 0.26.2 for Rust. create_scalar_function has...
Summary: CVE-2021-45232 is a missing authentication for critical function vulnerability impacting Apache APISIX versions 2.10.0 and earlier. An exploit was...
Summary: CVE-2021-38633 is a privilege escalation vulnerability impacting multiple products and versions of Microsoft Windows. A proof of concept (PoC)...
Summary: Certain NETGEAR devices are affected by server-side injection. This affects RBK40 before 2.5.1.16, RBR40 before 2.5.1.16, RBS40 before 2.5.1.16,...
Summary: Certain NETGEAR devices are affected by server-side injection. This affects RBK40 before 2.5.1.16, RBR40 before 2.5.1.16, RBS40 before 2.5.1.16,...
Summary: Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 before 1.0.0.48,...
Summary: An issue was discovered in the libpulse-binding crate before 1.2.1 for Rust. get_format_info can cause a use-after-free. Reference Links(if...
Summary: Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 before 1.0.0.48,...
Summary: A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS High Sierra 10.13....
Summary: In __f2fs_setxattr in fs/f2fs/xattr.c in the Linux kernel through 5.15.11, there is an out-of-bounds memory access when an inode...
Summary: A combination of a use of hard-coded cryptographic key vulnerability in FortiClientEMS 7.0.1 and below, 6.4.6 and below and...
Summary: An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via an...
Summary: A Memory Corruption vulnerability may lead to code execution through maliciously crafted DLL files through PDF earlier than 9.0.7...
Summary: An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.1, iOS...
Summary: A path handling issue was addressed with improved validation. This issue is fixed in Security Update 2021-008 Catalina, macOS...
Summary: A race condition was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.6.2, tvOS...