VulnSea

Tagged “exploit-available”

CVEs tagged exploit-available, newest first.

3848 CVEsRSS

CVE-2021-21975High· 7.5CISA KEVPoC
5y ago

Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to steal…

Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to steal…

▾ Abyssalvmware · cloud_foundationEPSS 78%via NVD
CVE-2021-28937High· 7.5PoC
5y ago

The /password.html page of the Web management interface of the Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) contains the administrator account password in plaintext

The /password.html page of the Web management interface of the Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) contains the administrator account password in plaintext. The page can be intercepted on HTTP.

▾ Midnightacexy · wireless-n_wifi_repeater_firmwareEPSS 4.2%via NVD
CVE-2021-27695Medium· 6.1PoC
5y ago

Multiple stored cross-site scripting (XSS) vulnerabilities in openMAINT 2.1-3.3-b allow remote attackers to inject arbitrary web script or HTML via any "Add" sections, such as Add Card Building & Floor, or others in the Name and Code Par…

Multiple stored cross-site scripting (XSS) vulnerabilities in openMAINT 2.1-3.3-b allow remote attackers to inject arbitrary web script or HTML via any "Add" sections, such as Add Card Building & Floor, or others in the Name and Code Par…

▾ Twilightopenmaint · openmaintEPSS 3.0%via NVD
CVE-2021-26411High· 8.8CISA KEV0dayPoC
5y ago

Internet Explorer Memory Corruption Vulnerability

Internet Explorer Memory Corruption Vulnerability

▾ Abyssalmicrosoft · edgeEPSS 81%via NVD
CVE-2020-29238High· 7.5PoC
5y ago

An integer buffer overflow in the Nginx webserver of ExpressVPN Router version 1 allows remote attackers to obtain sensitive information when the server running as reverse proxy via specially crafted request.

An integer buffer overflow in the Nginx webserver of ExpressVPN Router version 1 allows remote attackers to obtain sensitive information when the server running as reverse proxy via specially crafted request.

▾ Midnightexpressvpn · expressvpnEPSS 16%via NVD
CVE-2021-21337Medium· 5.7PoC
5y ago

URL Redirection to Untrusted Site ('Open Redirect') in Products.PluggableAuthService

URL Redirection to Untrusted Site ('Open Redirect') in Products.PluggableAuthService

▾ Twilightproducts-pluggableauthservice · products-pluggableauthserviceEPSS 8.4%via OSV
CVE-2021-27365High· 7.8PoC
5y ago

An issue was discovered in the Linux kernel through 5.11.3

An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not have appropriate length constraints or checks, and can exceed the PAGE_SIZE value. An unprivileged user can send a Netlink message that is a…

▾ Midnightnetapp · cloud_backupEPSS 2.1%via NVD
CVE-2020-24912Medium· 6.1PoC
5y ago

A reflected cross-site scripting (XSS) vulnerability in qcubed (all versions including 3.1.1) in profile.php via the stQuery-parameter allows unauthenticated attackers to steal sessions of authenticated users.

A reflected cross-site scripting (XSS) vulnerability in qcubed (all versions including 3.1.1) in profile.php via the stQuery-parameter allows unauthenticated attackers to steal sessions of authenticated users.

▾ Twilightqcubed · qcubedEPSS 6.3%via NVD
CVE-2020-24913Critical· 9.8PoC
5y ago

A SQL injection vulnerability in qcubed (all versions including 3.1.1) in profile.php via the strQuery parameter allows an unauthenticated attacker to access the database by injecting SQL code via a crafted POST request.

A SQL injection vulnerability in qcubed (all versions including 3.1.1) in profile.php via the strQuery parameter allows an unauthenticated attacker to access the database by injecting SQL code via a crafted POST request.

▾ Abyssalqcubed · qcubedEPSS 41%via NVD
CVE-2021-27065High· 7.8CISA KEV0dayPoC
5y ago

Microsoft Exchange Server Remote Code Execution Vulnerability

Microsoft Exchange Server Remote Code Execution Vulnerability

▾ Abyssalmicrosoft · exchange_serverEPSS 100%via NVD
CVE-2021-26857High· 7.8CISA KEV0dayPoC
5y ago

Microsoft Exchange Server Remote Code Execution Vulnerability

Microsoft Exchange Server Remote Code Execution Vulnerability

▾ Abyssalmicrosoft · exchange_serverEPSS 96%via NVD
CVE-2021-26855Critical· 9.1CISA KEV0dayPoC
5y ago

Microsoft Exchange Server Remote Code Execution Vulnerability

Microsoft Exchange Server Remote Code Execution Vulnerability

▾ Hadalmicrosoft · exchange_serverEPSS 100%via NVD
CVE-2021-27132Critical· 9.8PoC
5y ago

SerComm AG Combo VD625 AGSOT_2.1.0 devices allow CRLF injection (for HTTP header injection) in the download function via the Content-Disposition header.

SerComm AG Combo VD625 AGSOT_2.1.0 devices allow CRLF injection (for HTTP header injection) in the download function via the Content-Disposition header.

▾ Abyssalsercomm · agcombo_vd625_firmwareEPSS 16%via NVD
CVE-2021-1732High· 7.8CISA KEV0dayPoC
5y ago

Windows Win32k Elevation of Privilege Vulnerability

Windows Win32k Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10_1803EPSS 78%via NVD
CVE-2021-21972Critical· 9.8CISA KEV0dayPoC
5y ago

The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin

The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underl…

▾ Hadalvmware · cloud_foundationEPSS 100%via NVD
CVE-2021-27328Medium· 6.5PoC
5y ago

Yeastar NeoGate TG400 91.3.0.3 devices are affected by Directory Traversal

Yeastar NeoGate TG400 91.3.0.3 devices are affected by Directory Traversal. An authenticated user can decrypt firmware and can read sensitive information, such as a password or decryption key.

▾ Twilightyeastar · neogate_tg400_firmwareEPSS 6.4%via NVD
CVE-2021-25298High· 8.8CISA KEVPoC
5y ago

Nagios XI version xi-5.7.5 is affected by OS command injection

Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi/html/includes/configwizards/cloud-vm/cloud-vm.inc.php due to improper sanitization of authenticated user-controlled …

▾ Abyssalnagios · nagios_xiEPSS 75%via NVD
CVE-2021-25297High· 8.8CISA KEVPoC
5y ago

Nagios XI version xi-5.7.5 is affected by OS command injection

Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi/html/includes/configwizards/switch/switch.inc.php due to improper sanitization of authenticated user-controlled inpu…

▾ Abyssalnagios · nagios_xiEPSS 57%via NVD
CVE-2021-25296High· 8.8CISA KEVPoC
5y ago

Nagios XI version xi-5.7.5 is affected by OS command injection

Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi/html/includes/configwizards/windowswmi/windowswmi.inc.php due to improper sanitization of authenticated user-control…

▾ Abyssalnagios · nagios_xiEPSS 72%via NVD
CVE-2021-25299Medium· 6.1PoC
5y ago

Nagios XI version xi-5.7.5 is affected by cross-site scripting (XSS)

Nagios XI version xi-5.7.5 is affected by cross-site scripting (XSS). The vulnerability exists in the file /usr/local/nagiosxi/html/admin/sshterm.php due to improper sanitization of user-controlled input. A maliciously crafted URL, when …

▾ Twilightnagios · nagios_xiEPSS 98%via NVD
CVE-2021-3294Medium· 5.4PoC
5y ago

CASAP Automated Enrollment System 1.0 is affected by cross-site scripting (XSS) in users.php

CASAP Automated Enrollment System 1.0 is affected by cross-site scripting (XSS) in users.php. An attacker can steal a cookie to perform user redirection to a malicious website.

▾ Twilightcasap_automated_enrollment_system_project · casap_automated_enrollment_systemEPSS 2.8%via NVD
CVE-2020-28874High· 7.5PoC
5y ago

reset-password.php in ProjectSend before r1295 allows remote attackers to reset a password because of incorrect business logic

reset-password.php in ProjectSend before r1295 allows remote attackers to reset a password because of incorrect business logic. Errors are not properly considered (an invalid token parameter).

▾ Midnightprojectsend · projectsendEPSS 2.4%via NVD
CVE-2021-21239Medium· 6.5PoC
5y ago

Improper Verification of Cryptographic Signature in PySAML2

Improper Verification of Cryptographic Signature in PySAML2

▾ Twilightpysaml2 · pysaml2EPSS 1.3%via OSV
CVE-2020-28707Medium· 6.1PoC
5y ago

The Stockdio Historical Chart plugin before 2.8.1 for WordPress is affected by Cross Site Scripting (XSS) via stockdio_chart_historical-wp.js in wp-content/plugins/stockdio-historical-chart/assets/ because the origin of a postMessage() e…

The Stockdio Historical Chart plugin before 2.8.1 for WordPress is affected by Cross Site Scripting (XSS) via stockdio_chart_historical-wp.js in wp-content/plugins/stockdio-historical-chart/assets/ because the origin of a postMessage() e…

▾ Twilightstockdio · stockdio_historical_chartEPSS 1.0%via NVD
CVE-2020-36180High· 8.1PoC
5y ago

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS.

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS.

▾ Midnightnetapp · cloud_backupEPSS 4.0%via NVD
CVE-2020-36179High· 8.1PoC
5y ago

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS.

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS.

▾ Midnightnetapp · cloud_backupEPSS 17%via NVD
CVE-2020-36188High· 8.1PoC
5y ago

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource.

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource.

▾ Midnightfasterxml · jackson-databindEPSS 8.8%via NVD
CVE-2020-36184High· 8.1PoC
5y ago

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource.

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource.

▾ Midnightnetapp · cloud_backupEPSS 8.4%via NVD
CVE-2020-25498Medium· 4.8PoC
5y ago

Cross Site Scripting (XSS) vulnerability in Beetel router 777VR1 can be exploited via the NTP server name in System Time and "Keyword" in URL Filter.

Cross Site Scripting (XSS) vulnerability in Beetel router 777VR1 can be exploited via the NTP server name in System Time and "Keyword" in URL Filter.

▾ Twilightbeetel · 777vr1_firmwareEPSS 1.1%via NVD
CVE-2020-35262Medium· 6.1PoC
5y ago

Cross Site Scripting (XSS) vulnerability in Digisol DG-HR3400 can be exploited via the NTP server name in Time and date module and "Keyword" in URL Filter.

Cross Site Scripting (XSS) vulnerability in Digisol DG-HR3400 can be exploited via the NTP server name in Time and date module and "Keyword" in URL Filter.

▾ Twilightdigisol · dg-hr3400_firmwareEPSS 0.86%via NVD
CVEs tagged “exploit-available” — page 123 · VulnSea