Total
34640 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2021-34691 | 2 Idrive, Linux | 2 Remotepc, Linux Kernel | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
|
iDrive RemotePC before 4.0.1 on Linux allows denial of service. A remote and unauthenticated attacker can disconnect a valid user session by connecting to an ephemeral port.
|
|||||
| CVE-2021-34683 | 1 Eic | 1 E-document System | 2024-11-21 | 5.0 MEDIUM | 5.3 MEDIUM |
|
An issue was discovered in EXCELLENT INFOTEK CORPORATION (EIC) E-document System 3.0. A remote attacker can use kw/auth/bbs/asp/get_user_email_info_bbs.asp to obtain the contact information (name and e-mail address) of everyone in the entire organization. This information can allow remote attackers to perform social engineering or brute force attacks against the system login page.
|
|||||
| CVE-2021-34682 | 1 Gov | 1 Imposto De Renda Da Pessoa Fisica 2021 | 2024-11-21 | 4.3 MEDIUM | 3.7 LOW |
|
Receita Federal IRPF 2021 1.7 allows a man-in-the-middle attack against the update feature.
|
|||||
| CVE-2021-34679 | 1 Thycotic | 1 Password Reset Server | 2024-11-21 | 5.0 MEDIUM | 10.0 CRITICAL |
|
Thycotic Password Reset Server before 5.3.0 allows credential disclosure.
|
|||||
| CVE-2021-34629 | 1 Sendgrid | 1 Sendgrid | 2024-11-21 | 4.0 MEDIUM | 4.3 MEDIUM |
|
The SendGrid WordPress plugin is vulnerable to authorization bypass via the get_ajax_statistics function found in the ~/lib/class-sendgrid-statistics.php file which allows authenticated users to export statistic for a WordPress multi-site main site, in versions up to and including 1.11.8.
|
|||||
| CVE-2021-34618 | 1 Aruba | 1 Aruba Instant | 2024-11-21 | 3.3 LOW | 6.5 MEDIUM |
|
A remote denial of service (DoS) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.4.x: 6.4.4.8-4.2.4.18 and below; Aruba Instant 6.5.x: 6.5.4.18 and below; Aruba Instant 8.3.x: 8.3.0.14 and below; Aruba Instant 8.4.x: All versions; Aruba Instant 8.5.x: 8.5.0.11 and below; Aruba Instant 8.6.x: 8.6.0.7 and below; Aruba Instant 8.7.x: 8.7.1.1 and below. Aruba has released patches for Aruba Instant that address this security vulnerability.
|
|||||
| CVE-2021-34579 | 1 Phoenixcontact | 1 Fl Mguard Dm | 2024-11-21 | N/A | 7.5 HIGH |
|
In Phoenix Contact: FL MGUARD DM version 1.12.0 and 1.13.0 access to the Apache web server being installed as part of the FL MGUARD DM on Microsoft Windows does not require login credentials even if configured during installation.Attackers with network access to the Apache web server can download and therefore read mGuard configuration profiles (“ATV profiles”). Such configuration profiles may contain sensitive information, e.g. private keys associated with IPsec VPN connections.
|
|||||
| CVE-2021-34534 | 1 Microsoft | 3 Windows 10, Windows Server 2016, Windows Server 2019 | 2024-11-21 | 5.1 MEDIUM | 6.8 MEDIUM |
|
Windows MSHTML Platform Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34533 | 1 Microsoft | 8 Windows 10, Windows 7, Windows 8.1 and 5 more | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Windows Graphics Component Font Parsing Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34532 | 1 Microsoft | 2 Asp.net Core, Visual Studio 2019 | 2024-11-21 | 2.1 LOW | 5.5 MEDIUM |
|
ASP.NET Core and Visual Studio Information Disclosure Vulnerability
|
|||||
| CVE-2021-34530 | 1 Microsoft | 3 Windows 10, Windows Server 2016, Windows Server 2019 | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Windows Graphics Component Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34529 | 1 Microsoft | 1 Visual Studio Code | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Visual Studio Code Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34528 | 1 Microsoft | 1 Visual Studio Code | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Visual Studio Code Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34525 | 1 Microsoft | 3 Windows Server 2012, Windows Server 2016, Windows Server 2019 | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
|
Windows DNS Server Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34524 | 1 Microsoft | 1 Dynamics 365 | 2024-11-21 | 6.5 MEDIUM | 8.1 HIGH |
|
Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34522 | 1 Microsoft | 1 Malware Protection Engine | 2024-11-21 | 9.3 HIGH | 7.8 HIGH |
|
Microsoft Defender Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34521 | 1 Microsoft | 2 Windows 10, Windows Server 2016 | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Raw Image Extension Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34519 | 1 Microsoft | 2 Sharepoint Foundation, Sharepoint Server | 2024-11-21 | 2.3 LOW | 5.3 MEDIUM |
|
Microsoft SharePoint Server Information Disclosure Vulnerability
|
|||||
| CVE-2021-34518 | 1 Microsoft | 2 Excel, Office Web Apps Server | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Microsoft Excel Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34517 | 1 Microsoft | 2 Sharepoint Foundation, Sharepoint Server | 2024-11-21 | 5.0 MEDIUM | 5.3 MEDIUM |
|
Microsoft SharePoint Server Spoofing Vulnerability
|
|||||
| CVE-2021-34509 | 1 Microsoft | 3 Windows 10, Windows Server 2016, Windows Server 2019 | 2024-11-21 | 2.1 LOW | 5.5 MEDIUM |
|
Storage Spaces Controller Information Disclosure Vulnerability
|
|||||
| CVE-2021-34508 | 1 Microsoft | 3 Windows 10, Windows Server 2016, Windows Server 2019 | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
|
Windows Kernel Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34507 | 1 Microsoft | 8 Windows 10, Windows 7, Windows 8.1 and 5 more | 2024-11-21 | 4.3 MEDIUM | 6.5 MEDIUM |
|
Windows Remote Assistance Information Disclosure Vulnerability
|
|||||
| CVE-2021-34506 | 1 Microsoft | 1 Edge Chromium | 2024-11-21 | N/A | 6.1 MEDIUM |
|
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
|
|||||
| CVE-2021-34504 | 1 Microsoft | 8 Windows 10, Windows 7, Windows 8.1 and 5 more | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Windows Address Book Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34503 | 1 Microsoft | 2 Windows 10, Windows Server 2019 | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34501 | 1 Microsoft | 4 365 Apps, Excel, Office and 1 more | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Microsoft Excel Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34500 | 1 Microsoft | 8 Windows 10, Windows 7, Windows 8.1 and 5 more | 2024-11-21 | 4.0 MEDIUM | 6.3 MEDIUM |
|
Windows Kernel Memory Information Disclosure Vulnerability
|
|||||
| CVE-2021-34499 | 1 Microsoft | 4 Windows Server 2008, Windows Server 2012, Windows Server 2016 and 1 more | 2024-11-21 | 4.0 MEDIUM | 6.5 MEDIUM |
|
Windows DNS Server Denial of Service Vulnerability
|
|||||
| CVE-2021-34497 | 1 Microsoft | 8 Windows 10, Windows 7, Windows 8.1 and 5 more | 2024-11-21 | 6.8 MEDIUM | 6.8 MEDIUM |
|
Windows MSHTML Platform Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34496 | 1 Microsoft | 7 Windows 10, Windows 7, Windows 8.1 and 4 more | 2024-11-21 | 2.1 LOW | 5.5 MEDIUM |
|
Windows GDI Information Disclosure Vulnerability
|
|||||
| CVE-2021-34494 | 1 Microsoft | 4 Windows Server 2008, Windows Server 2012, Windows Server 2016 and 1 more | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
|
Windows DNS Server Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34492 | 1 Microsoft | 8 Windows 10, Windows 7, Windows 8.1 and 5 more | 2024-11-21 | 5.8 MEDIUM | 8.1 HIGH |
|
Windows Certificate Spoofing Vulnerability
|
|||||
| CVE-2021-34491 | 1 Microsoft | 6 Windows 10, Windows 8.1, Windows Rt 8.1 and 3 more | 2024-11-21 | 4.9 MEDIUM | 5.5 MEDIUM |
|
Win32k Information Disclosure Vulnerability
|
|||||
| CVE-2021-34490 | 1 Microsoft | 3 Windows 10, Windows Server 2016, Windows Server 2019 | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
|
Windows TCP/IP Driver Denial of Service Vulnerability
|
|||||
| CVE-2021-34489 | 1 Microsoft | 3 Windows 10, Windows Server 2016, Windows Server 2019 | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
DirectWrite Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34485 | 1 Microsoft | 5 .net, .net Core, Powershell Core and 2 more | 2024-11-21 | 2.1 LOW | 5.0 MEDIUM |
|
.NET Core and Visual Studio Information Disclosure Vulnerability
|
|||||
| CVE-2021-34479 | 1 Microsoft | 1 Visual Studio Code | 2024-11-21 | 4.3 MEDIUM | 7.8 HIGH |
|
Microsoft Visual Studio Spoofing Vulnerability
|
|||||
| CVE-2021-34478 | 1 Microsoft | 2 365 Apps, Office | 2024-11-21 | 6.8 MEDIUM | 7.8 HIGH |
|
Microsoft Office Remote Code Execution Vulnerability
|
|||||
| CVE-2021-34476 | 1 Microsoft | 7 Windows 10, Windows 7, Windows 8.1 and 4 more | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
|
Bowser.sys Denial of Service Vulnerability
|
|||||