Elcomplus SmartPPT SCADA and SmartPPT SCADA Server file upload | CVE-2021-43934
NAME Elcomplus SmartPPT SCADA and SmartPPT SCADA Server file upload Platforms Affected:Elcomplus SmartPPT SCADA 1.1 Elcomplus SmartPPT SCADA Server 1.4Risk...
NAME Elcomplus SmartPPT SCADA and SmartPPT SCADA Server file upload Platforms Affected:Elcomplus SmartPPT SCADA 1.1 Elcomplus SmartPPT SCADA Server 1.4Risk...
NAME Oracle JDeveloper unspecified Platforms Affected:Oracle JDeveloper 12.2.1.3.0Risk Level:9.8Exploitability:UnprovenConsequences:Other DESCRIPTION An unspecified vulnerability in Oracle JDeveloper related to the ADF...
NAME Elcomplus SmartPPT SCADA and SmartPPT SCADA Server cross-site scripting Platforms Affected:Elcomplus SmartPPT SCADA 1.1 Elcomplus SmartPPT SCADA Server 1.4Risk...
NAME Oracle Communications Billing and Revenue Management unspecified Platforms Affected:Oracle Communications Billing and Revenue Management 12.0.0.4 Oracle Communications Billing and...
NAME Git Large File Storage (Git LFS) code execution Platforms Affected:Git LFS 2.12.1 Git LFS 3.1.2Risk Level:8.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Git...
NAME VMware - Multiple Platforms Affected:MultipleRisk Level:mediumCVE Type:Privilege escalation DESCRIPTION CVE-2022-22960 is a privilege escalation vulnerability impacting multiple versions of...
NAME CachetHQ - Cachet Platforms Affected:CachetRisk Level:lowCVE Type:Unspecified DESCRIPTION CVE-2021-39173 is an unspecified vulnerability impacting CachetHQ Cachet versions 2.5.0 and...
NAME Bitrix restore.php file upload Platforms Affected:Bitrix Bitrix 7.5.0Risk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Bitrix could allow a remote attacker to upload...
NAME GeoTools code execution Platforms Affected:GeoTools GeoTools 26.3 GeoTools GeoTools 25.5 GeoTools GeoTools 24.5Risk Level:9.1Exploitability:UnprovenConsequences:Gain Access DESCRIPTION GeoTools could allow...
NAME JAI-EXT code execution Platforms Affected:JAI-EXT JAI-EXT 1.1.21Risk Level:10Exploitability:UnprovenConsequences:Gain Access DESCRIPTION JAI-EXT could allow a remote attacker to execute arbitrary...
NAME LDAP Account Manager cross-site scripting Platforms Affected:LDAP Account Manager (LAM) LDAP Account Manager (LAM) 7.9.0Risk Level:8.1Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION LDAP...
NAME Microsoft Edge privilege escalation Platforms Affected:Microsoft Edge (Chromium-based)Risk Level:8.3Exploitability:UnprovenConsequences:Gain Privileges DESCRIPTION Microsoft Edge (Chromium-based) could allow a remote attacker...
NAME CENTUM VP products command execution Platforms Affected:Yokogawa Electric Corporation CENTUM VP 4.01.00 Yokogawa Electric Corporation CENTUM VP Small 4.01.00...
NAME Synacor - Zimbra Collaboration Suite (ZCS) Platforms Affected:Zimbra Collaboration Suite (ZCS)Risk Level:mediumCVE Type:XSS DESCRIPTION CVE-2018-6882 is a cross-site scripting...
NAME Red Lion DA50N code execution Platforms Affected:Red Lion DA50NRisk Level:8.4Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Red Lion DA50N could allow a remote...
NAME Red Lion DA50N privilege escalation Platforms Affected:Red Lion DA50NRisk Level:9.6Exploitability:UnprovenConsequences:Gain Privileges DESCRIPTION Red Lion DA50N could allow a remote...
NAME SWHKD command execution Platforms Affected:SWHKD SWHKD 1.1.5Risk Level:9.8Exploitability:UnprovenConsequences:Gain Access DESCRIPTION SWHKD could allow a remote attacker to execute arbitrary...
NAME Schneider Electric EcoStruxure code execution Platforms Affected:Schneider Electric SCADAPack RemoteConnect for x70 Schneider Electric EcoStruxure Process Expert Schneider Electric...
NAME Metabase SQL injection Platforms Affected:Metabase Metabase 0.42.3 Metabase Metabase 1.42.3 Metabase Metabase 0.41.6 Metabase Metabase 1.41.6Risk Level:8Exploitability:HighConsequences:Data Manipulation DESCRIPTION...
NAME Metabase cross-site scripting Platforms Affected:Metabase Metabase 0.42.3 Metabase Metabase 1.42.3 Metabase Metabase 0.41.6 Metabase Metabase 1.41.6 Metabase Metabase 0.40.7...
NAME alvarotrigo/fullpage.js multiple cross-site scripting Platforms Affected:alvarotrigo fullpage.js 4.0.3Risk Level:9.4Exploitability:HighConsequences:Cross-Site Scripting DESCRIPTION alvarotrigo/fullpage.js is vulnerable to cross-site scripting, caused by...
NAME Composer command execution Platforms Affected:Composer Composer 1.10.25 Composer Composer 2.2.11 Composer Composer 2.3.4Risk Level:8.3Exploitability:UnprovenConsequences:Gain Access DESCRIPTION Composer could allow...
NAME MinIO privilege escalation Platforms Affected:MinIO MinIO RELEASE.2021-12-09T06-19-41ZRisk Level:8.8Exploitability:UnprovenConsequences:Gain Privileges DESCRIPTION MinIO could allow a remote authenticated attacker to gain...
NAME Microsoft Windows Kerberos code execution Platforms Affected:Microsoft Windows Server 2016 Microsoft Windows Server 2019 Microsoft Windows 10 1809 for...