Search
Search Results (359796 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2021-41388 | 2 Apple, Netskope | 2 Macos, Netskope | 2024-11-21 | 7.8 High |
| Netskope client prior to 89.x on macOS is impacted by a local privilege escalation vulnerability. The XPC implementation of nsAuxiliarySvc process does not perform validation on new connections before accepting the connection. Thus any low privileged user can connect and call external methods defined in XPC service as root, elevating their privilege to the highest level. | ||||
| CVE-2021-41387 | 1 Seatd Project | 1 Seatd | 2024-11-21 | 8.8 High |
| seatd-launch in seatd 0.6.x before 0.6.2 allows privilege escalation because it uses execlp and may be installed setuid root. | ||||
| CVE-2021-41385 | 1 Securonix | 1 Snypr | 2024-11-21 | 6.5 Medium |
| The third party intelligence connector in Securonix SNYPR 6.3.1 Build 184295_0302 allows an authenticated user to obtain access to server configuration details via SSRF. | ||||
| CVE-2021-41383 | 1 Netgear | 2 R6020, R6020 Firmware | 2024-11-21 | 7.2 High |
| setup.cgi on NETGEAR R6020 1.0.0.48 devices allows an admin to execute arbitrary shell commands via shell metacharacters in the ntp_server field. | ||||
| CVE-2021-41382 | 1 Plasticscm | 1 Plastic Scm | 2024-11-21 | 7.5 High |
| Plastic SCM before 10.0.16.5622 mishandles the WebAdmin server management interface. | ||||
| CVE-2021-41381 | 1 Payara | 1 Micro Community | 2024-11-21 | 7.5 High |
| Payara Micro Community 5.2021.6 and below allows Directory Traversal. | ||||
| CVE-2021-41380 | 1 Realvnc | 1 Vnc Viewer | 2024-11-21 | 6.5 Medium |
| RealVNC Viewer 6.21.406 allows remote VNC servers to cause a denial of service (application crash) via crafted RFB protocol data. NOTE: It is asserted that this issue requires social engineering a user into connecting to a fake VNC Server. The VNC Viewer application they are using will then hang, until terminated, but no memory leak occurs - the resources are freed once the hung process is terminated and the resource usage is constant during the hang. Only the process that is connected to the fake Server is affected. This is an application bug, not a security issue | ||||
| CVE-2021-41378 | 1 Microsoft | 12 Windows 10, Windows 10 1809, Windows 10 1909 and 9 more | 2024-11-21 | 7.8 High |
| Windows NTFS Remote Code Execution Vulnerability | ||||
| CVE-2021-41377 | 1 Microsoft | 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more | 2024-11-21 | 7.8 High |
| Windows Fast FAT File System Driver Elevation of Privilege Vulnerability | ||||
| CVE-2021-41376 | 1 Microsoft | 1 Azure Sphere | 2024-11-21 | 2.3 Low |
| Azure Sphere Information Disclosure Vulnerability | ||||
| CVE-2021-41375 | 1 Microsoft | 1 Azure Sphere | 2024-11-21 | 4.4 Medium |
| Azure Sphere Information Disclosure Vulnerability | ||||
| CVE-2021-41374 | 1 Microsoft | 1 Azure Sphere | 2024-11-21 | 6.7 Medium |
| Azure Sphere Information Disclosure Vulnerability | ||||
| CVE-2021-41373 | 1 Microsoft | 1 Fslogix | 2024-11-21 | 5.5 Medium |
| FSLogix Information Disclosure Vulnerability | ||||
| CVE-2021-41371 | 1 Microsoft | 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more | 2024-11-21 | 4.4 Medium |
| Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability | ||||
| CVE-2021-41370 | 1 Microsoft | 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more | 2024-11-21 | 7.8 High |
| NTFS Elevation of Privilege Vulnerability | ||||
| CVE-2021-41368 | 1 Microsoft | 3 365 Apps, Office, Office Long Term Servicing Channel | 2024-11-21 | 6.1 Medium |
| Microsoft Access Remote Code Execution Vulnerability | ||||
| CVE-2021-41367 | 1 Microsoft | 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more | 2024-11-21 | 7.8 High |
| NTFS Elevation of Privilege Vulnerability | ||||
| CVE-2021-41366 | 1 Microsoft | 18 Windows 10, Windows 10 1507, Windows 10 1607 and 15 more | 2024-11-21 | 7.8 High |
| Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability | ||||
| CVE-2021-41365 | 1 Microsoft | 1 Defender For Iot | 2024-11-21 | 8.8 High |
| Microsoft Defender for IoT Remote Code Execution Vulnerability | ||||
| CVE-2021-41363 | 1 Microsoft | 1 Intune Management Extension | 2024-11-21 | 4.2 Medium |
| Intune Management Extension Security Feature Bypass Vulnerability | ||||