CVE List - 2021 / September
Showing 701 - 800 of 1899 CVEs for September 2021 (Page 8 of 19)
CVE ID | Date | Title |
---|---|---|
CVE-2020-19144 | 2021-09-09 | Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a... |
CVE-2021-38725 | 2021-09-09 | Fuel CMS 1.5.0 has a brute force vulnerability in fuel/modules/fuel/controllers/Login.php |
CVE-2021-38723 | 2021-09-09 | FUEL CMS 1.5.0 allows SQL Injection via parameter 'col' in... |
CVE-2021-38721 | 2021-09-09 | FUEL CMS 1.5.0 login.php contains a cross-site request forgery (CSRF)... |
CVE-2020-19515 | 2021-09-09 | qdPM V9.1 is vulnerable to Cross Site Scripting (XSS) via... |
CVE-2021-22239 | 2021-09-09 | An unauthorized user was able to insert metadata when creating... |
CVE-2021-38540 | 2021-09-09 | Apache Airflow: Variable Import endpoint missed authentication check |
CVE-2021-32484 | 2021-09-09 | In modem 2G RRM, there is a possible system crash... |
CVE-2021-32485 | 2021-09-09 | In modem 2G RRM, there is a possible system crash... |
CVE-2021-32486 | 2021-09-09 | In modem 2G RRM, there is a possible system crash... |
CVE-2021-32487 | 2021-09-09 | In modem 2G RRM, there is a possible system crash... |
CVE-2021-38727 | 2021-09-09 | FUEL CMS 1.5.0 allows SQL Injection via parameter 'col' in... |
CVE-2021-40284 | 2021-09-09 | D-Link DSL-3782 EU v1.01:EU v1.03 is affected by a buffer... |
CVE-2021-28909 | 2021-09-09 | BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated... |
CVE-2021-28910 | 2021-09-09 | BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 contains basic... |
CVE-2020-19263 | 2021-09-09 | A cross-site request forgery (CSRF) in MipCMS v5.0.1 allows attackers... |
CVE-2020-19264 | 2021-09-09 | A cross-site request forgery (CSRF) in MipCMS v5.0.1 allows attackers... |
CVE-2020-19265 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the index.php/Dswjcms/Basis/links component... |
CVE-2020-19266 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the index.php/Dswjcms/Site/articleList component... |
CVE-2020-19267 | 2021-09-09 | An issue in index.php/Dswjcms/Basis/resources of Dswjcms 1.6.4 allows attackers to... |
CVE-2020-19268 | 2021-09-09 | A cross-site request forgery (CSRF) in index.php/Dswjcms/User/tfAdd of Dswjcms 1.6.4... |
CVE-2021-28911 | 2021-09-09 | BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated... |
CVE-2021-28912 | 2021-09-09 | BAB TECHNOLOGIE GmbH eibPort V3. Each device has its own... |
CVE-2021-28913 | 2021-09-09 | BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated... |
CVE-2021-28914 | 2021-09-09 | BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow the... |
CVE-2021-25449 | 2021-09-09 | An improper input validation vulnerability in libsapeextractor library prior to... |
CVE-2021-25450 | 2021-09-09 | Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Sep-2021 Release... |
CVE-2021-25451 | 2021-09-09 | A PendingIntent hijacking in NetworkPolicyManagerService prior to SMR Sep-2021 Release... |
CVE-2021-25452 | 2021-09-09 | An improper input validation vulnerability in loading graph file in... |
CVE-2021-25453 | 2021-09-09 | Some improper access control in Bluetooth APIs prior to SMR... |
CVE-2021-25454 | 2021-09-09 | OOB read vulnerability in libsaacextractor.so library prior to SMR Sep-2021... |
CVE-2021-25455 | 2021-09-09 | OOB read vulnerability in libsaviextractor.so library prior to SMR Sep-2021... |
CVE-2021-25456 | 2021-09-09 | OOB read vulnerability in libswmfextractor.so library prior to SMR Sep-2021... |
CVE-2021-25457 | 2021-09-09 | An improper input validation vulnerability in DSP driver prior to... |
CVE-2021-25458 | 2021-09-09 | NULL pointer dereference vulnerability in ION driver prior to SMR... |
CVE-2021-25459 | 2021-09-09 | An improper access control vulnerability in sspInit() in BlockchainTZService prior... |
CVE-2021-25460 | 2021-09-09 | An improper access control vulnerability in sspExit() in BlockchainTZService prior... |
CVE-2021-25461 | 2021-09-09 | An improper length check in APAService prior to SMR Sep-2021... |
CVE-2021-25462 | 2021-09-09 | NULL pointer dereference vulnerability in NPU driver prior to SMR... |
CVE-2021-25463 | 2021-09-09 | Improper access control vulnerability in PENUP prior to version 3.8.00.18... |
CVE-2021-25464 | 2021-09-09 | An improper file management vulnerability in SamsungCapture prior to version... |
CVE-2021-25465 | 2021-09-09 | An improper scheme check vulnerability in Samsung Themes prior to... |
CVE-2021-25466 | 2021-09-09 | Improper scheme check vulnerability in Samsung Internet prior to version... |
CVE-2021-38318 | 2021-09-09 | 3D Cover Carousel <= 1.0 Reflected Cross-Site Scripting |
CVE-2021-38322 | 2021-09-09 | Twitter Friends Widget <= 3.1 Reflected Cross-Site Scripting |
CVE-2021-38316 | 2021-09-09 | WP Academic People List <= 0.4.1 Reflected Cross-Site Scripting |
CVE-2021-38324 | 2021-09-09 | SP Rental Manager <= 1.5.3 Unauthenticated SQL Injection |
CVE-2021-38320 | 2021-09-09 | simpleSAMLphp Authentication <= 0.7.0 Reflected Cross-Site Scripting |
CVE-2021-38321 | 2021-09-09 | Custom Menu Plugin <= 1.3.3 Reflected Cross-Site Scripting |
CVE-2021-38317 | 2021-09-09 | Konnichiwa! Membership <= 0.8.3 Reflected Cross-Site Scripting |
CVE-2021-38319 | 2021-09-09 | More From Google <= 0.0.2 Reflected Cross-Site Scripting |
CVE-2021-38325 | 2021-09-09 | User Activation Email <= 1.3.0 Reflected Cross-Site Scripting |
CVE-2021-38323 | 2021-09-09 | RentPress <= 6.6.4 Reflected Cross-Site Scripting |
CVE-2021-32724 | 2021-09-09 | check-spelling workflow vulnerable to GITHUB_TOKEN leakage via symlink attack |
CVE-2021-39200 | 2021-09-09 | Information Disclosure in wp_die() via JSONP in wordpress |
CVE-2021-39201 | 2021-09-09 | Authenticated cross-site scripting (XSS) in WordPress editor |
CVE-2021-39202 | 2021-09-09 | WordPress 5.8 beta: Stored Cross-Site Scripting (XSS) vulnerability in widget |
CVE-2021-39203 | 2021-09-09 | Private data disclosure/privilege escalation through the block editor in Wordpress |
CVE-2021-39162 | 2021-09-09 | Incorrect handling of H2 GOAWAY + SETTINGS frames |
CVE-2021-39204 | 2021-09-09 | Excessive CPU usage in Pomerium |
CVE-2021-39206 | 2021-09-09 | Incorrect Authorization with specially crafted requests |
CVE-2020-19280 | 2021-09-09 | Jeesns 1.4.2 contains a cross-site request forgery (CSRF) which allows... |
CVE-2020-19281 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /manage/loginusername component... |
CVE-2020-19282 | 2021-09-09 | A reflected cross-site scripting (XSS) vulnerability in Jeesns 1.4.2 allows... |
CVE-2020-19283 | 2021-09-09 | A reflected cross-site scripting (XSS) vulnerability in the /newVersion component... |
CVE-2020-19284 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /group/comment component... |
CVE-2020-19285 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /group/apply component... |
CVE-2020-19286 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /question/detail component... |
CVE-2020-19287 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /group/post component... |
CVE-2020-19288 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /localhost/u component... |
CVE-2020-19289 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /member/picture/album component... |
CVE-2020-19290 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /weibo/comment component... |
CVE-2020-19291 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /weibo/publishdata component... |
CVE-2020-19292 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /question/ask component... |
CVE-2020-19293 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /article/add component... |
CVE-2020-19295 | 2021-09-09 | A reflected cross-site scripting (XSS) vulnerability in the /weibo/topic component... |
CVE-2020-19294 | 2021-09-09 | A stored cross-site scripting (XSS) vulnerability in the /article/comment component... |
CVE-2021-40839 | 2021-09-10 | The rencode package through 1.0.6 for Python allows an infinite... |
CVE-2018-19957 | 2021-09-10 | Insufficient HTTP Security Headers in QTS, QuTS hero, and QuTScloud |
CVE-2021-28813 | 2021-09-10 | Insufficiently Protected Credentials Vulnerability in QSW-M2116P-2T2S and QuNetSwitch |
CVE-2021-28816 | 2021-09-10 | Stack Buffer Overflow Vulnerabilities in QTS, QuTS hero, and QuTScloud |
CVE-2021-34343 | 2021-09-10 | Buffer Overflow Vulnerability in QTS, QuTS hero, and QuTScloud |
CVE-2021-34344 | 2021-09-10 | Stack Buffer Overflow Vulnerability in QUSBCam2 |
CVE-2021-34345 | 2021-09-10 | Stack Based Overflow Vulnerability in NVR Storage Expansion |
CVE-2021-34346 | 2021-09-10 | Stack Based Overflow Vulnerability in NVR Storage Expansion |
CVE-2021-3645 | 2021-09-10 | Prototype Pollution in viking04/merge |
CVE-2021-35976 | 2021-09-10 | The feature to preview a website in Plesk Obsidian 18.0.0... |
CVE-2021-33011 | 2021-09-10 | All versions of the afffected TOYOPUC-PC10 Series,TOYOPUC-Plus Series,TOYOPUC-PC3J/PC2J Series, TOYOPUC-Nano... |
CVE-2021-38351 | 2021-09-10 | OSD Subscribe <= 1.2.3 Reflected Cross-Site Scripting |
CVE-2021-38350 | 2021-09-10 | spideranalyse <= 0.0.1 Reflected Cross-Site Scripting |
CVE-2021-38334 | 2021-09-10 | WP Design Maps & Places <= 1.2 Reflected Cross-Site Scripting |
CVE-2021-38330 | 2021-09-10 | Yet Another bol.com Plugin <= 1.4 Reflected Cross-Site Scripting |
CVE-2021-38337 | 2021-09-10 | RSVPMaker Excel <= 1.1 Reflected Cross-Site Scripting |
CVE-2021-38332 | 2021-09-10 | On Page SEO + Whatsapp Chat Button <= 1.0.1 Reflected Cross-Site Scripting |
CVE-2021-38348 | 2021-09-10 | Advance Search <= 1.1.2 Reflected Cross-Site Scripting |
CVE-2021-38326 | 2021-09-10 | Post Title Counter <= 1.1 Reflected Cross-Site Scripting |
CVE-2021-38353 | 2021-09-10 | Dropdown and scrollable Text <= 2.0 Reflected Cross-Site Scripting |
CVE-2021-38349 | 2021-09-10 | Integration of Moneybird for WooCommerce <= 2.1.1 Reflected Cross-Site Scripting |
CVE-2021-38340 | 2021-09-10 | Wordpress Simple Shop <= 1.2 Reflected Cross-Site Scripting |
CVE-2021-38341 | 2021-09-10 | WooCommerce Payment Gateway Per Category <= 2.0.10 Reflected Cross-Site Scripting |