Export limit exceeded: 347343 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Export limit exceeded: 79370 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (79370 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-39620 1 Google 1 Android 2024-11-21 7.8 High
In ipcSetDataReference of Parcel.cpp, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12Android ID: A-203847542
CVE-2021-39619 1 Google 1 Android 2024-11-21 7.8 High
In updatePackageMappingsData of UsageStatsService.java, there is a possible way to bypass security and privacy settings of app usage due to an unusual root cause. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12Android ID: A-197399948
CVE-2021-39618 1 Google 1 Android 2024-11-21 7.8 High
In multiple methods of EuiccNotificationManager.java, there is a possible way to install existing packages without user consent due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-196855999
CVE-2021-39613 1 Dlink 2 Dvg-3104ms, Dvg-3104ms Firmware 2024-11-21 8.8 High
D-Link DVG-3104MS version 1.0.2.0.3, 1.0.2.0.4, and 1.0.2.0.4E contains hard-coded credentials for undocumented user accounts in the '/etc/passwd' file. As weak passwords have been used, the plaintext passwords can be recovered from the hash values. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVE-2021-39608 1 Flatcore 1 Flatcore-cms 2024-11-21 7.2 High
Remote Code Execution (RCE) vulnerabilty exists in FlatCore-CMS 2.0.7 via the upload addon plugin, which could let a remote malicious user exeuct arbitrary php code.
CVE-2021-39595 1 Swftools 1 Swftools 2024-11-21 7.8 High
An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function rfx_alloc() located in mem.c. It allows an attacker to cause code Execution.
CVE-2021-39582 1 Swftools 1 Swftools 2024-11-21 7.8 High
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_GetPlaceObject() located in swfobject.c. It allows an attacker to cause code Execution.
CVE-2021-39579 1 Swftools 1 Swftools 2024-11-21 7.8 High
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function string_hash() located in q.c. It allows an attacker to cause code Execution.
CVE-2021-39577 1 Swftools 1 Swftools 2024-11-21 7.8 High
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function main() located in swfdump.c. It allows an attacker to cause code Execution.
CVE-2021-39574 1 Swftools 1 Swftools 2024-11-21 7.8 High
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function pool_read() located in pool.c. It allows an attacker to cause code Execution.
CVE-2021-39569 1 Swftools 1 Swftools 2024-11-21 7.8 High
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function OpAdvance() located in swfaction.c. It allows an attacker to cause code Execution.
CVE-2021-39564 1 Swftools 1 Swftools 2024-11-21 7.8 High
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_DumpActions() located in swfaction.c. It allows an attacker to cause code Execution.
CVE-2021-39561 1 Swftools 1 Swftools 2024-11-21 7.8 High
An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function Gfx::opSetFillColorN() located in Gfx.cc. It allows an attacker to cause code Execution.
CVE-2021-39558 1 Swftools 1 Swftools 2024-11-21 7.8 High
An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function VectorGraphicOutputDev::drawGeneralImage() located in VectorGraphicOutputDev.cc. It allows an attacker to cause code Execution.
CVE-2021-39552 1 Sela Project 1 Sela 2024-11-21 7.8 High
An issue was discovered in sela through 20200412. file::WavFile::readFromFile() in wav_file.c has a heap-based buffer overflow.
CVE-2021-39551 1 Sela Project 1 Sela 2024-11-21 7.8 High
An issue was discovered in sela through 20200412. file::SelaFile::readFromFile() in sela_file.c has a heap-based buffer overflow.
CVE-2021-39550 1 Sela Project 1 Sela 2024-11-21 7.8 High
An issue was discovered in sela through 20200412. file::SelaFile::readFromFile() in sela_file.cpp has a heap-based buffer overflow.
CVE-2021-39546 1 Sela Project 1 Sela 2024-11-21 7.8 High
An issue was discovered in sela through 20200412. rice::RiceDecoder::process() in rice_decoder.cpp has a heap-based buffer overflow.
CVE-2021-39544 1 Sela Project 1 Sela 2024-11-21 7.8 High
An issue was discovered in sela through 20200412. file::WavFile::writeToFile() in wav_file.c has a heap-based buffer overflow.
CVE-2021-39540 1 Pdftools Project 1 Pdftools 2024-11-21 7.8 High
An issue was discovered in pdftools through 20200714. A stack-buffer-overflow exists in the function Analyze::AnalyzePages() located in analyze.cpp. It allows an attacker to cause code Execution.