Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2021-25902
An issue exists in the glsl-layout crate prior to 0.4.0 for Rust. When a panic occurs, map_array can perform a double drop.
Glsl-layout Project Glsl-layout
7.5
CVSSv3
CVE-2021-25904
An issue exists in the av-data crate prior to 0.3.0 for Rust. A raw pointer is dereferenced, leading to a read of an arbitrary memory address, sometimes causing a segfault.
Av-data Project Av-data
7.5
CVSSv3
CVE-2021-25906
An issue exists in the basic_dsp_matrix crate prior to 0.9.2 for Rust. When a TransformContent panic occurs, a double drop can be performed.
Basic Dsp Matrix Project Basic Dsp Matrix
9.8
CVSSv3
CVE-2021-25907
An issue exists in the containers crate prior to 0.9.11 for Rust. When a panic occurs, a util::{mutate,mutate2} double drop can be performed.
Containers Project Containers
7.5
CVSSv3
CVE-2021-25908
An issue exists in the fil-ocl crate through 2021-01-04 for Rust. From<EventList> can lead to a double free.
Fil-ocl Project Fil-ocl
6.5
CVSSv3
CVE-2021-25910
Improper Authentication vulnerability in the cookie parameter of ZIV AUTOMATION 4CCT-EA6-334126BF allows a local malicious user to perform modifications in several parameters of the affected device as an authenticated user.
Zivautomation 4cct-ea6-334126bf Firmware 3.23.77.8.33251
9.8
CVSSv3
CVE-2021-25915
Prototype pollution vulnerability in 'changeset' versions 0.0.1 up to and including 0.2.5 allows an malicious user to cause a denial of service and may lead to remote code execution.
Changeset Project Changeset
4.8
CVSSv3
CVE-2021-25917
In OpenEMR, versions 5.0.2 to 6.0.0 are vulnerable to Stored Cross-Site-Scripting (XSS) due to user input not being validated properly and rendered in the U2F USB Device authentication method page. A highly privileged attacker could inject arbitrary code into input fields when cr...
Open-emr Openemr
7.8
CVSSv3
CVE-2017-11015
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, currently, the value of SIR_MAC_AUTH_CHALLENGE_LENGTH is set to 128 which may result in buffer overflow since the frame parser allows challenge text of length up to 253...
Google Android -
2 Articles
9.8
CVSSv3
CVE-2019-18805
An issue exists in net/ipv4/sysctl_net_ipv4.c in the Linux kernel prior to 5.0.11. There is a net/ipv4/tcp_input.c signed integer overflow in tcp_ack_update_rtt() when userspace writes a very large integer to /proc/sys/net/ipv4/tcp_min_rtt_wlen, leading to a denial of service or ...
Linux Linux Kernel
Linux Linux Kernel 5.1
Opensuse Leap 15.0
Opensuse Leap 15.1
Redhat Enterprise Linux 7.0
Netapp Active Iq Unified Manager -
Netapp Data Availability Services -
Netapp E-series Santricity Os Controller
Netapp Hci Management Node -
Netapp Solidfire -
Netapp Steelstore Cloud Integrated Storage -
Netapp Hci Compute Node -
Netapp Hci Storage Node -
Broadcom Fabric Operating System -
Netapp Aff A700s Firmware -
Netapp Fas8300 Firmware -
Netapp Fas8700 Firmware -
Netapp Aff A400 Firmware -
Netapp H610s Firmware -
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »