Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2021-33199
In Expression Engine before 6.0.3, addonIcon in Addons/file/mod.file.php relies on the untrusted input value of input->get('file') instead of the fix…
Expressionengine
6.0.3+
HIGH 8.1
CVE-2021-36982
AIMANAGER before B115 on MONITORAPP Application Insight Web Application Firewall (AIWAF) devices with Manager 2.1.0 allows OS Command Injection becau…
Application Insight Manager
Mitigation only
HIGH 7.1
CVE-2021-1110
NVIDIA Linux kernel distributions on Jetson Xavier contain a vulnerability in camera firmware where a user can change input data after validation, wh…
Jetson Linux
32.6.1+
MEDIUM 5.9
CVE-2021-3048
Certain invalid URL entries contained in an External Dynamic List (EDL) cause the Device Server daemon (devsrvr) to stop responding. This condition c…
Pan Os
9.0.14 / 9.1.9+
HIGH 7.8
CVE-2021-0062
Improper input validation in some Intel(R) Graphics Drivers before version 27.20.100.8935 may allow an authenticated user to potentially enable escal…
Graphics Drivers
27.20.100.8935+
HIGH 7.8
CVE-2021-0084
Improper input validation in the Intel(R) Ethernet Controllers X722 and 800 series Linux RMDA driver before version 1.3.19 may allow an authenticated…
Ethernet Controller E810 Firmware
1.3.19 / 1.4.11+
HIGH 8.8
CVE-2021-33708
Due to insufficient input validation in Kyma, authenticated users can pass a Header of their choice and escalate privileges.
Kyma
1.24+
MEDIUM 6.5
CVE-2021-29714
IBM Content Navigator 3.0.CD could allow a malicious user to cause a denial of service due to improper input validation. IBM X-Force ID: 200968.
Content Navigator
Mitigation only
CRITICAL 9.8
CVE-2021-26606
A vulnerability in PKI Security Solution of Dream Security could allow arbitrary command execution. This vulnerability is due to insufficient validat…
Magicline4nx.exe
after 1.0.0.17
HIGH 7.5
CVE-2021-3580
A flaw was found in the way nettle's RSA decryption functions handled specially crafted ciphertext. An attacker could use this flaw to provide a mani…
Enterprise Linux
3.7.3+
CRITICAL 9.8
CVE-2021-26605
An improper input validation vulnerability in the service of ezPDFReader allows attacker to execute arbitrary command. This issue occurred when the e…
Ezpdfreader
after 3.0
HIGH 8.8
CVE-2020-7863
A vulnerability in File Transfer Solution of Raonwiz could allow arbitrary command execution as the result of viewing a specially-crafted web page. T…
Raon K Upload
2018.0.2.56+
MEDIUM 5.5
CVE-2021-25444
An IV reuse vulnerability in keymaster prior to SMR AUG-2021 Release 1 allows decryption of custom keyblob with privileged process.
Android
Mitigation only
CRITICAL 9.8
CVE-2021-1602
A vulnerability in the web-based management interface of Cisco Small Business RV160, RV160W, RV260, RV260P, and RV260W VPN Routers could allow an una…
Small Business Rv Series Router Firmware
1.0.01.04+
MEDIUM 5.5
CVE-2021-22400
Some Huawei Smartphones has an insufficient input validation vulnerability due to the lack of parameter validation. An attacker may trick a user into…
Oxfords An00a Firmware
Mitigation only
MEDIUM 6.5
CVE-2021-37914
In Argo Workflows through 3.1.3, if EXPRESSION_TEMPLATES is enabled and untrusted users are allowed to specify input parameters when running workflow…
Argo Workflows
after 3.1.3
HIGH 7.5
CVE-2021-3673
A vulnerability was found in Radare2 in version 5.3.1. Improper input validation when reading a crafted LE binary can lead to resource exhaustion and…
Fedora
Patch available
HIGH 7.5
CVE-2021-33196
In archive/zip in Go before 1.15.13 and 1.16.x before 1.16.5, a crafted file count (in an archive's header) can cause a NewReader or OpenReader panic.
Go
1.15.13 / 1.16.5+
HIGH 7.5
CVE-2021-22445
There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the system to reset.
Emui
No fix yet
MEDIUM 6.7
CVE-2021-22397
There is a privilege escalation vulnerability in Huawei ManageOne 8.0.0. External parameters of some files are lack of verification when they are be …
Manageone
No fix yet
HIGH 7.5
CVE-2021-22443
There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause random address access.
Emui
Mitigation only
CRITICAL 9.8
CVE-2021-22444
There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause code injection.
Emui
No fix yet
HIGH 7.5
CVE-2021-22381
There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause an infinite loop in DoS.
Emui
Mitigation only
CRITICAL 9.8
CVE-2021-33527
In MB connect line mbDIALUP versions <= 3.9R0.0 a remote attacker can send a specifically crafted HTTP request to the service running with NT AUTHORI…
Mbdialup
after 3.9r0.0
MEDIUM 5.3
CVE-2021-29298
Improper Input Validation in Emerson GE Automation Proficy Machine Edition v8.0 allows an attacker to cause a denial of service and application crash…
Proficy Machine Edition
Mitigation only
CRITICAL 9.8
CVE-2021-37594
In FreeRDP before 2.4.0 on Windows, wf_cliprdr_server_file_contents_request in client/Windows/wf_cliprdr.c has missing input checks for a FILECONTENT…
Freerdp
2.4.0+
CRITICAL 9.8
CVE-2021-37595
In FreeRDP before 2.4.0 on Windows, wf_cliprdr_server_file_contents_request in client/Windows/wf_cliprdr.c has missing input checks for a FILECONTENT…
Freerdp
2.4.0+
HIGH 7.8
CVE-2021-36742 KEV
A improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG and Worry-Free Business Security 10.0 SP1 all…
Officescan
Mitigation only
HIGH 7.5
CVE-2021-34432
In Eclipse Mosquitto versions 2.0.7 and earlier, the server will crash if the client tries to send a PUBLISH packet with topic length = 0.
Mosquitto
after 2.0.7
MEDIUM 5.9
CVE-2021-32795
ArchiSteamFarm is a C# application with primary purpose of idling Steam cards from multiple accounts simultaneously. In versions prior to 4.3.1.0 a D…
Archisteamfarm
4.3.1.0+