Search Results (81141 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-38651 1 Microsoft 3 Sharepoint Enterprise Server, Sharepoint Foundation, Sharepoint Server 2024-11-21 7.6 High
Microsoft SharePoint Server Spoofing Vulnerability
CVE-2021-38650 1 Microsoft 2 365 Apps, Office 2024-11-21 7.6 High
Microsoft Office Spoofing Vulnerability
CVE-2021-38644 1 Microsoft 1 Mpeg-2 Video Extension 2024-11-21 7.8 High
Microsoft MPEG-2 Video Extension Remote Code Execution Vulnerability
CVE-2021-38639 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2024-11-21 7.8 High
Win32k Elevation of Privilege Vulnerability
CVE-2021-38634 1 Microsoft 12 Windows 10, Windows 10 1507, Windows 10 1607 and 9 more 2024-11-21 7.1 High
Microsoft Windows Update Client Elevation of Privilege Vulnerability
CVE-2021-38633 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2024-11-21 7.8 High
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2021-38630 1 Microsoft 19 Windows 10, Windows 10 1507, Windows 10 1607 and 16 more 2024-11-21 7.8 High
Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-38628 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2024-11-21 7.8 High
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2021-38626 1 Microsoft 2 Windows Server 2008, Windows Server 2008 Sp2 2024-11-21 7.8 High
Windows Kernel Elevation of Privilege Vulnerability
CVE-2021-38625 1 Microsoft 2 Windows Server 2008, Windows Server 2008 Sp2 2024-11-21 7.8 High
Windows Kernel Elevation of Privilege Vulnerability
CVE-2021-38623 1 Deferred Image Processing Project 1 Deferred Image Processing 2024-11-21 7.5 High
The deferred_image_processing (aka Deferred image processing) extension before 1.0.2 for TYPO3 allows Denial of Service via the FAL API because of /var/transient disk consumption.
CVE-2021-38614 1 Polipo Project 1 Polipo 2024-11-21 7.5 High
Polipo through 1.1.1, when NDEBUG is used, allows a heap-based buffer overflow during parsing of a Range header. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVE-2021-38612 1 Nascent 1 Remkon Device Manager 2024-11-21 7.5 High
In NASCENT RemKon Device Manager 4.0.0.0, a Directory Traversal vulnerability in a log-reading function in maintenance/readLog.php allows an attacker to read any file via a specialized URL.
CVE-2021-38608 1 Tranquil 1 Wapt 2024-11-21 7.8 High
Incorrect Access Control in Tranquil WAPT Enterprise - before 1.8.2.7373 and before 2.0.0.9450 allows guest OS users to escalate privileges via WAPT Agent.
CVE-2021-38599 1 Wal-g Project 1 Wal-g 2024-11-21 7.5 High
WAL-G before 1.1, when a non-libsodium build (e.g., one of the official binary releases published as GitHub Releases) is used, silently ignores the libsodium encryption key and uploads cleartext backups. This is arguably a Principle of Least Surprise violation because "the user likely wanted to encrypt all file activity."
CVE-2021-38593 3 Fedoraproject, Qt, Redhat 3 Fedora, Qt, Enterprise Linux 2024-11-21 7.5 High
Qt 5.x before 5.15.6 and 6.x through 6.1.2 has an out-of-bounds write in QOutlineMapper::convertPath (called from QRasterPaintEngine::fill and QPaintEngineEx::stroke).
CVE-2021-38592 1 Wasm3 Project 1 Wasm3 2024-11-21 7.5 High
Wasm3 0.5.0 has a heap-based buffer overflow in op_Const64 (called from EvaluateExpression and m3_LoadModule).
CVE-2021-38589 1 Cpanel 1 Cpanel 2024-11-21 8.1 High
In cPanel before 96.0.13, scripts/fix-cpanel-perl does not properly restrict the overwriting of files (SEC-588).
CVE-2021-38588 1 Cpanel 1 Cpanel 2024-11-21 8.1 High
In cPanel before 96.0.13, fix_cpanel_perl lacks verification of the integrity of downloads (SEC-587).
CVE-2021-38587 1 Cpanel 1 Cpanel 2024-11-21 7.5 High
In cPanel before 96.0.13, scripts/fix-cpanel-perl mishandles the creation of temporary files (SEC-586).