Exploit Database

149,752 exploits tracked across all sources.

Sort: Activity Stars
CVE-2021-40347 WRITEUP MEDIUM
GNU Mailman Postorius <1.3.5 - Info Disclosure
An issue was discovered in views/list.py in GNU Mailman Postorius before 1.3.5. An attacker (logged into any account) can send a crafted POST request to unsubscribe any user from a mailing list, also revealing whether that address was subscribed in the first place.
CVSS 5.4
CVE-2021-41847 WRITEUP HIGH
3xLogic Infinias Access Control < 6.7.10708.0 - Authorization Bypass via Modified API Requests
An issue was discovered in 3xLogic Infinias Access Control through 6.7.10708.0, affecting physical security. Users with login credentials assigned to a specific zone can send modified HTTP GET and POST requests, allowing them to view user data such as personal information and Prox card credentials. Also, an authorized user of one zone can send API requests to unlock electronic locks associated with zones they are unauthorized to have access to. They can also create new user logins for zones they were not authorized to access, including the root zone of the software.
CVSS 8.8
CVE-2021-4122 WRITEUP MEDIUM
cryptsetup < 2.3.7 - Insufficient Verification of Data Authenticity in LUKS Header
It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device. An attacker with physical access to the medium, such as a flash disk, could use this flaw to force a user into permanently disabling the encryption layer of that medium.
CVSS 4.3
CVE-2021-4145 WRITEUP MEDIUM
QEMU < 6.2.0 - Denial of Service via NULL Pointer Dereference in Block Mirror Layer
A NULL pointer dereference issue was found in the block mirror layer of QEMU in versions prior to 6.2.0. The `self` pointer is dereferenced in mirror_wait_on_conflicts() without ensuring that it's not NULL. A malicious unprivileged user within the guest could use this flaw to crash the QEMU process on the host when writing data reaches the threshold of mirroring node.
CVSS 6.5
CVE-2021-4158 WRITEUP MEDIUM
QEMU 6.0.0-6.99 - Denial of Service via ACPI NULL Pointer Dereference
A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition.
CVSS 6.0
CVE-2021-4181 WRITEUP HIGH
Wireshark 3.4.0-3.4.10 - Denial of Service via Sysdig Event Dissector
Crash in the Sysdig Event dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
CVSS 7.5
CVE-2021-4182 WRITEUP HIGH
Wireshark 3.4.0-3.4.10 and 3.6.0 - Denial of Service via RFC 7468 Dissector
Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
CVSS 7.5
CVE-2021-4183 WRITEUP MEDIUM
Wireshark 3.6.0 - Denial of Service in pcapng File Parser
Crash in the pcapng file parser in Wireshark 3.6.0 allows denial of service via crafted capture file
CVSS 5.5
CVE-2021-4184 WRITEUP HIGH
Wireshark 3.4.0-3.4.10 and 3.6.0 - Denial of Service via BitTorrent DHT Dissector Infinite Loop
Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
CVSS 7.5
CVE-2021-4185 WRITEUP HIGH
Wireshark 3.4.0-3.4.10 and 3.6.0 - Denial of Service via RTMPT Dissector Infinite Loop
Infinite loop in the RTMPT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
CVSS 7.5
CVE-2021-4186 WRITEUP MEDIUM
Wireshark 3.4.0-3.4.10 - Denial of Service via Gryphon Dissector Packet Injection
Crash in the Gryphon dissector in Wireshark 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
CVSS 6.3
CVE-2021-4190 WRITEUP HIGH
Wireshark 3.6.0 - Denial of Service via Kafka Dissector Excessive Iteration
Large loop in the Kafka dissector in Wireshark 3.6.0 allows denial of service via packet injection or crafted capture file
CVSS 7.5
CVE-2021-4209 WRITEUP MEDIUM
GnuTLS < 3.7.3 - Denial of Service via Zero-Length Input to Hash Update
A NULL pointer dereference flaw was found in GnuTLS. As Nettle's hash update functions internally call memcpy, providing zero-length input may cause undefined behavior. This flaw leads to a denial of service after authentication in rare circumstances.
CVSS 6.5
CVE-2021-43466 WRITEUP CRITICAL
thymeleaf-spring5 < 3.0.13.RELEASE - Remote Code Execution via Template Injection
In the thymeleaf-spring5:3.0.12 component, thymeleaf combined with specific scenarios in template injection may lead to remote code execution.
CVSS 9.8
CVE-2021-44565 WRITEUP MEDIUM
RosarioSIS < 7.6.1 - Cross-Site Scripting via Markdown Input Fields
A Cross Site Scripting (XSS) vulnerability exists in RosarioSIS before 7.6.1 via the xss_clean function in classes/Security.php, which allows remote malicious users to inject arbitrary JavaScript or HTML. An example of affected components are all Markdown input fields.
CVSS 5.4
CVE-2021-44566 WRITEUP MEDIUM
RosarioSIS < 4.3 - Cross-Site Scripting via SanitizeMarkDown Function
A Cross Site Scripting (XSS) vulnerability exists in RosarioSIS before 4.3 via the SanitizeMarkDown function in ProgramFunctions/MarkDownHTML.fnc.php.
CVSS 5.4
CVE-2021-46848 WRITEUP CRITICAL
GNU Libtasn1 <4.19.0 - Buffer Overflow
GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects asn1_encode_simple_der.
CVSS 9.1
CVE-2022-0090 WRITEUP MEDIUM
GitLab <14.4.5, 14.5.0-14.5.3, 14.6.0-14.6.1 - Improper Privilege Management via Git Sub-Command Replacement References
An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. GitLab is configured in a way that it doesn't ignore replacement references with git sub-commands, allowing a malicious user to spoof the contents of their commits in the UI.
CVSS 6.5
CVE-2022-0093 WRITEUP LOW
GitLab <14.4.5, 14.5.0-14.5.3, 14.6.0-14.6.1 - Info Disclosure
An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. GitLab allows a user with an expired password to access sensitive information through RSS feeds.
CVSS 3.5
CVE-2022-0124 WRITEUP MEDIUM
GitLab <14.4.5, 14.5.0-14.5.3, 14.6.0-14.6.1 - Open Redirect
An issue has been discovered affecting GitLab versions prior to 14.4.5, between 14.5.0 and 14.5.3, and between 14.6.0 and 14.6.1. Gitlab's Slack integration is incorrectly validating user input and allows to craft malicious URLs that are sent to slack.
CVSS 4.3
CVE-2022-0125 WRITEUP MEDIUM
GitLab <14.4.5-14.6.2 - Privilege Escalation
An issue has been discovered in GitLab affecting all versions starting from 12.0 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. GitLab was not verifying that a maintainer of a project had the right access to import members from a target project.
CVSS 4.3
CVE-2022-0151 WRITEUP MEDIUM
GitLab 12.10-14.4.4, 14.5.0-14.5.2, 14.6.0-14.6.1 - Denial of Service via Package Deletion Request
An issue has been discovered in GitLab affecting all versions starting from 12.10 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. GitLab was not correctly handling requests to delete existing packages which could result in a Denial of Service under specific conditions.
CVSS 6.5
CVE-2022-0152 WRITEUP MEDIUM
GitLab <14.4.5-14.6.2 - Info Disclosure
An issue has been discovered in GitLab affecting all versions starting from 13.10 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. GitLab was vulnerable to unauthorized access to some particular fields through the GraphQL API.
CVSS 6.5
CVE-2022-0154 WRITEUP HIGH
GitLab <14.4.5, <14.5.3, <14.6.2 - CSRF
An issue has been discovered in GitLab affecting all versions starting from 7.7 before 14.4.5, all versions starting from 14.5.0 before 14.5.3, all versions starting from 14.6.0 before 14.6.2. GitLab was vulnerable to a Cross-Site Request Forgery attack that allows a malicious user to have their GitHub project imported on another GitLab user account.
CVSS 7.5
CVE-2022-0172 WRITEUP MEDIUM
GitLab CE/EE <12.3 - Info Disclosure
An issue has been discovered in GitLab CE/EE affecting all versions starting with 12.3. Under certain conditions it was possible to bypass the IP restriction for public projects through GraphQL allowing unauthorised users to read titles of issues, merge requests and milestones.
CVSS 5.3