Search Results (359796 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-41388 2 Apple, Netskope 2 Macos, Netskope 2024-11-21 7.8 High
Netskope client prior to 89.x on macOS is impacted by a local privilege escalation vulnerability. The XPC implementation of nsAuxiliarySvc process does not perform validation on new connections before accepting the connection. Thus any low privileged user can connect and call external methods defined in XPC service as root, elevating their privilege to the highest level.
CVE-2021-41387 1 Seatd Project 1 Seatd 2024-11-21 8.8 High
seatd-launch in seatd 0.6.x before 0.6.2 allows privilege escalation because it uses execlp and may be installed setuid root.
CVE-2021-41385 1 Securonix 1 Snypr 2024-11-21 6.5 Medium
The third party intelligence connector in Securonix SNYPR 6.3.1 Build 184295_0302 allows an authenticated user to obtain access to server configuration details via SSRF.
CVE-2021-41383 1 Netgear 2 R6020, R6020 Firmware 2024-11-21 7.2 High
setup.cgi on NETGEAR R6020 1.0.0.48 devices allows an admin to execute arbitrary shell commands via shell metacharacters in the ntp_server field.
CVE-2021-41382 1 Plasticscm 1 Plastic Scm 2024-11-21 7.5 High
Plastic SCM before 10.0.16.5622 mishandles the WebAdmin server management interface.
CVE-2021-41381 1 Payara 1 Micro Community 2024-11-21 7.5 High
Payara Micro Community 5.2021.6 and below allows Directory Traversal.
CVE-2021-41380 1 Realvnc 1 Vnc Viewer 2024-11-21 6.5 Medium
RealVNC Viewer 6.21.406 allows remote VNC servers to cause a denial of service (application crash) via crafted RFB protocol data. NOTE: It is asserted that this issue requires social engineering a user into connecting to a fake VNC Server. The VNC Viewer application they are using will then hang, until terminated, but no memory leak occurs - the resources are freed once the hung process is terminated and the resource usage is constant during the hang. Only the process that is connected to the fake Server is affected. This is an application bug, not a security issue
CVE-2021-41378 1 Microsoft 12 Windows 10, Windows 10 1809, Windows 10 1909 and 9 more 2024-11-21 7.8 High
Windows NTFS Remote Code Execution Vulnerability
CVE-2021-41377 1 Microsoft 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more 2024-11-21 7.8 High
Windows Fast FAT File System Driver Elevation of Privilege Vulnerability
CVE-2021-41376 1 Microsoft 1 Azure Sphere 2024-11-21 2.3 Low
Azure Sphere Information Disclosure Vulnerability
CVE-2021-41375 1 Microsoft 1 Azure Sphere 2024-11-21 4.4 Medium
Azure Sphere Information Disclosure Vulnerability
CVE-2021-41374 1 Microsoft 1 Azure Sphere 2024-11-21 6.7 Medium
Azure Sphere Information Disclosure Vulnerability
CVE-2021-41373 1 Microsoft 1 Fslogix 2024-11-21 5.5 Medium
FSLogix Information Disclosure Vulnerability
CVE-2021-41371 1 Microsoft 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more 2024-11-21 4.4 Medium
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
CVE-2021-41370 1 Microsoft 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more 2024-11-21 7.8 High
NTFS Elevation of Privilege Vulnerability
CVE-2021-41368 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2024-11-21 6.1 Medium
Microsoft Access Remote Code Execution Vulnerability
CVE-2021-41367 1 Microsoft 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more 2024-11-21 7.8 High
NTFS Elevation of Privilege Vulnerability
CVE-2021-41366 1 Microsoft 18 Windows 10, Windows 10 1507, Windows 10 1607 and 15 more 2024-11-21 7.8 High
Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
CVE-2021-41365 1 Microsoft 1 Defender For Iot 2024-11-21 8.8 High
Microsoft Defender for IoT Remote Code Execution Vulnerability
CVE-2021-41363 1 Microsoft 1 Intune Management Extension 2024-11-21 4.2 Medium
Intune Management Extension Security Feature Bypass Vulnerability