Privilege escalation vulnerability found in ZoneAlarm Security
|
|
ZoneAlarm Security
|
Privilege escalation and DOS vulnerability found in ZoneAlarm Security 15.4.062
|
|
ZoneAlarm Security
|
Arbitrary Code Execution from Out-of-Bounds Read and Write and Memory Corruption for Adobe Illustrator 2020
|
|
Adobe Illustrator
|
Multiple Memory Corruption Vulnerabilities for Adobe Illustrator 2020
|
|
Adobe Illustrator
|
Stored Cross Site Scripting attack on Zabbix URL widget
|
|
Zabbix Agent
|
Zabbix remote code execution vulnerability
|
|
Zabbix Agent
|
Zabbix remote code execution vulnerability
|
|
Zabbix Agent
|
Multiple Arbitrary Code Execution Vulnerabilities Due to Buffer Errors and Memory Corruption for Adobe Illustrator 2020
|
|
Adobe Illustrator
|
Out-of-Bounds Write Vulnerabilities for Adobe Illustrator 2021
|
|
Adobe Illustrator
|
JetBrains YouTrack before 2021.3.24402 is vulnerable to stored XSS.
|
|
YouTrack
|
JetBrains YouTrack before 2021.3.23639 is vulnerable to Host header injection.
|
|
YouTrack
|
In JetBrains YouTrack before 2021.3.21051, stored XSS is possible.
|
|
YouTrack
|
Out-of-Bounds Write, Memory Corruption, and Path Traversal Vulnerabilities Leading to Arbitrary Code Execution for Adobe Illustrator 2021
|
|
Adobe Illustrator
|
Out-of-Bounds Write and Read, Use After Free, Access of Memory, and OS Command Injection Vulnerabilities Leading to Arbitrary Code Execution and Arbitrary File System Reading for Adobe Illustrator 2021
|
|
Adobe Illustrator
|
JetBrains Youtrack Vulnerability CVE-2020-15820
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-15821
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-15822
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-15823
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-25765
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-25767
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-25766
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-25210
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-25769
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-25768
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-12850
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-12851
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-12852
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-37549
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-25209
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-25208
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-7912
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-27625
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-27624
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-15817
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-31902
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-31903
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-11693
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-11692
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-15819
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-15818
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-37553
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-15040
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-15041
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-25770
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-25771
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-27733
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-37551
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-37550
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-16171
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-37552
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2021-37554
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-24618
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-18369
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-12867
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-12866
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-14952
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-27626
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2020-7913
|
|
YouTrack
|
JetBrains Youtrack Vulnerability CVE-2019-14956
|
|
YouTrack
|
Improper Restriction of XML External Entity Reference for 3CX Phone
|
|
3CX Phone
|
Wireshark vulnerability wnpa-sec-2021-21
|
|
Wireshark
|
Wireshark vulnerability wnpa-sec-2021-20
|
|
Wireshark
|
Wireshark vulnerability wnpa-sec-2021-19
|
|
Wireshark
|
Wireshark vulnerability wnpa-sec-2021-18
|
|
Wireshark
|
Wireshark vulnerability wnpa-sec-2021-17
|
|
Wireshark
|
Wireshark vulnerability wnpa-sec-2021-16
|
|
Wireshark
|
Intel Trusted Execution Engine with Privilege Escalation via Local Access Vulnerability
|
|
Trusted Execution Engine
|
Sensitive Information Disclosure Vulnerability for Avaya IP Office Admin
|
|
IP Office Admin
|
Local Privilege Escalation Vulnerability for ESET NOD32 Antivirus
|
|
ESET NOD32 Antivirus
|
Multiple Failure to Validate Parameters Causing Buffer Overflow and Privilege Escalation for Killer Control Center
|
|
Killer Control Center
|
Critical DLL Hijacking Vulnerability for Format Factory
|
|
Format Factory
|
Critical Denial of Service or Arbitrary Code Execution for ActivePresenter
|
|
ActivePresenter
|
Cross-Site Scripting Vulnerability for WhatsApp Desktop
|
|
WhatsApp Desktop
|
DLL Hijacking Attacks via Trojan Horse DLL for Lenovo Bluetooth with Enhanced Data Rate Software
|
|
Thinkpad Bluetooth with Enhanced Data Rate Software
|
Privilege Escalation and Malicious File Creation for Nessus Agent
|
|
Nessus Agent
|
Incorrect Permission Assignment Denial-of-Service Vulnerability for Worry-Free Business Security
|
|
Worry-Free Business Security
|
Insecure Permissions Allowing Privilege Escalation for 3CX Phone for Windows
|
|
3CX Phone for Windows
|
Login Flow, Denial of Service, Privilege Escalation, and Code Execution Vulnerabilities for NVIDIA GeForce Experience
|
|
NVIDIA GeForce Experience
|
DLL Loading Mechanism Vulnerability Leading to Potential Arbitrary Code Execution for Cisco AMP for Endpoints
|
|
Cisco AMP for Endpoints
|
Critical Improper Privilege Management Issues for Citrix Gateway Plug-in
|
|
Citrix Gateway Plug-in
|
CSV Injection Vulnerability for Netskope Client
|
|
Netskope Client
|
Malicious Code Execution Due to DLL Hijacking for TIM
|
|
TIM
|
Privilege Escalations and XML External Entity Injection Vulnerabilities for Snagit
|
|
Snagit
|
Denial of Service Vulnerability Triggering Heap-Based Buffer Overflow for Nero MediaHome
|
|
Nero MediaHome
|
DIrectory Traversal, Buffer Overflow, and Unstrusted Search Path Vulnerability for Explzh
|
|
Explzh
|
Spoofing Vulnerability for Cyberduck
|
|
Cyberduck
|
Untrusted Search Path Leading to Privilege Gain for CyberLink PhotoDirector
|
|
CyberLink PhotoDirector
|
Arbitrary File Deletion Vulnerability for Dell Command Update
|
|
Dell Command Update
|
Unstrusted Search Path Gives Privileges, Denial of Service, and Arbitrary Code Execution Vulnerabilities for LINE
|
|
LINE
|
Denial of Service for ManageEngine AssetExplorer
|
|
ManageEngine AssetExplorer
|
Stack-based Buffer Overflow Vulnerability for Omron CX-Server
|
|
CX-Server
|
Man-in-the-middle Vulnerability for EM Client
|
|
EM Client
|
Non-admin User Bypass DLP and Web Protection for Forcepoint One Endpoint
|
|
Forcepoint One Endpoint
|
Privilege Escalation Vulnerability for Plantronics Hub
|
|
Plantronics Hub
|
Remote Code Execution Issue Leads to Eval Injection for MariaDB
|
|
MariaDB
|
Arbitrary FIle Upload Vulnerability for GroupWise
|
|
GroupWise
|
Unauthenticated Attacker Gaining Access for MiCollab
|
|
MiCollab
|
Buffer Overflow Causing Denial of Service for TeamSpeak 3
|
|
TeamSpeak 3
|
Critical SYSTEM Privilege Escalation Vulnerability for TunnelBear
|
|
TunnelBear
|
DLL Preloading Vulnerability Leading to Code Execution for Autodesk Desktop App
|
|
Autodesk Desktop App
|
Specially Crafted DLL to Gain LPE, Denial of Service, Code Execution, and Privilege Gain Vulnerabilities for Check Point Endpoint Security
|
|
Check Point Endpoint Security
|
Critical Arbitrary Code Execution, DLL Hijacking via Trojan Horse, and Denial of Service for Google Earth
|
|
Google Earth
|
Buffer Overflow and Untrusted Search Path Vulnerabilities for Google Earth Pro
|
|
Google Earth Pro
|
Denial of Service for Lenovo Active Protection System
|
|
Lenovo Active Protection System
|
Denial of Service and Critical Unprivileged User Action for Carbon Black Sensor
|
|
Carbon Black Sensor
|
Privilege Escalation Vulnerability for Norton Internet Security
|
|
Norton Internet Security
|
Privilege Gain Vulnerability for Panda Endpoint Agent
|
|
Panda Endpoint Agent
|
Critical Stack-Based Buffer Overflow in Media Library for BS Player
|
|
BS Player
|
Critical Insecure Permission Leading to Privilege Escalation for Panda Dome
|
|
Panda Dome
|
XML External Entity Vulnerability for Freeplane
|
|
Freeplane
|
Privilege Gain via Trojan Horse File Vulnerability for Camtasia Studio
|
|
Camtasia Studio
|
Critical Insecure Permission Leading to Privilege Escalation for Panda Antivirus Pro
|
|
Panda Antivirus Pro
|
Lack of Cross-Site Request Forgery Protection for Zabbix Agent
|
|
Zabbix Agent
|
Multiple Privilege Escalation Vulnerabilities for Intel Computing Improvement Program
|
|
Intel Computing Improvement Program
|
Arbitrary Code Execution, XXE Attacks, Denial of Service, SQL Injection, and CSRF Vulnerabilities for Hyland OnBase
|
|
Hyland OnBase
|
Unauthorized Access and Stack-based Buffer Overflow for IBM Personal Communications
|
|
IBM Personal Communications
|
Denial of Service Vulnerability for Cisco IP Communicator
|
|
Cisco IP Communicator
|
Arbitrary Code Execution with Elevated Privilege Vulnerability for NSClient++
|
|
NSClient++
|
DLL Hijacking Vulnerability for ManageEngine Desktop Central
|
|
ManageEngine Desktop Central
|
TLS Certification Failure for Samsung Magician
|
|
Samsung Magician
|
Privilege Escalation Vulnerabilities for Intel Driver Support Assistant
|
|
Intel Driver Support Assistant
|
DLL Injection for CyberArk Endpoint Privilege Manager
|
|
CyberArk Endpoint Privilege Manager
|
Denial of Service and XML External Entity Attacks for MR Configurator2
|
|
MR Configurator2
|
Arbitrary Code Execution for Join.me
|
|
Join.me
|
Privilege Escalation for F-Secure Client Security
|
|
F-Secure Client Security
|
Privilege Escalation and Malicious File Creation for Tenable Nessus
|
|
Tenable Nessus
|
Memory Corruption Vulnerability for Adobe Premiere Pro
|
|
Adobe Premiere Pro
|
Directory Traversal for PowerDVD
|
|
PowerDVD
|
Cross-Site Scripting and Cross-Site Request Forgery Vulnerabilities for HP Power Manager
|
|
HP Power Manager
|
Prvilege Escalation for Symantec Endpoint Encryption
|
|
Symantec Endpoint Encryption
|
Critical Buffer Overflow and Spoofing Vulnerabilities for NetSupport Manager
|
|
NetSupport Manager
|
Privilege Escalation Vulnerabilities for Dragon Center
|
|
Dragon Center
|
Improper Handling of Length Parameter for GX LogViewer
|
|
GX LogViewer
|
DLL Hijacking Vulnerability for Acer Quick Access
|
|
Quick Access
|
Buffer Overflow Vulnerability for V3 Internet Security
|
|
V3 Internet Security
|
Privilege Gain Vulnerability for Dolby Audio X2
|
|
Dolby Audio X2
|
Privilege Escalation Vulnerability for Snow Inventory Agent
|
|
Snow Inventory Agent
|
Critical Privilege Escalation Vulnerbaility for Pritunl Client
|
|
Pritunl Client
|
Cross-site Scripting, Denial of Service, Directory Traversal, and Privilege Gain Vulnerabilities for Splunk Enterprise
|
|
Splunk Enterprise
|
SSRF Incorrect Access Control Issue for Grafana OSS
|
|
Grafana OSS
|
Weak Permissions Allowing Privilege Gain for CCH ProSystem fx Engagement
|
|
CCH ProSystem fx Engagement
|
Abritrary Code Execution for AWS CloudFormation Bootstrap
|
|
AWS CloudFormation Bootstrap
|
Denial of Service and XML External Entity Attacks for Mitsubishi Electric GT Designer3
|
|
GT Designer3
|
Authentication Bypass Vulnerability for McAfee Drive Encryption with ID SB10242
|
|
McAfee Drive Encryption
|
Denial of Service for Lenovo Active Protection System
|
|
Lenovo Active Protection System
|
Privilege Escalation Vulnerability for BlueStacks
|
|
BlueStacks
|
Physical Proximate Attacks for Toshiba Face Recognition
|
|
Toshiba Face Recognition
|
Code Execution and Privilege Gain Vulnerabilities for Passmark Software PerformanceTest
|
|
PerformanceTest
|
DLL Hijacking Vulnerability for Splashtop Business
|
|
Splashtop Business
|
Local Privilege Escalation Vulnerability for ESET Smart Security
|
|
ESET Smart Security
|
Arbitrary Code Execution Vulnerability for Adobe Dimension
|
|
Adobe Dimension
|
Security Vulnerability CVE-2013-0665 for AcSELerator QuickSet
|
|
AcSELerator QuickSet
|
Denial-of-Service for Trend Micro Deep Security Agent
|
|
Trend Micro Deep Security Agent
|
Authentication Bypass, Arbitrary Command Execution, Security Misconfiguration, Buffer Overflow, Denial of Service, and Cross-site Scripting Vulnerabilities for HP System Management Homepage
|
|
HP System Management Homepage
|
Privilege Gains Vulnerability for IObit Advanced SystemCare
|
|
IObit Advanced SystemCare
|
Critical Insecure File Permissions, Arbitrary Execution, and Buffer Over-read and Overflow Vulnerabilities for Solarwinds DameWare Mini Remote Control
|
|
Solarwinds DameWare Mini Remote Control
|
DLL Hijacking Vulnerability for Xilisoft Video Converter Ultimate
|
|
Xilisoft Video Converter Ultimate
|
Critical Insufficient Output Sanitization, Denial of Service, Clickjacking Attacks, and Man-In-the-Middle for Mitel MiCollab Client
|
|
MiCollab Client
|
Stack-Based Buffer Overflow, Arbitrary Code Execution, and Type-Confusion Condition Vulnerability for Omron CX-One
|
|
CX-One
|
Reflected Cross-site Scripting and Design Principles Violation Vulnerabilities for Adobe Connect
|
|
Adobe Connect
|
Local Privilege Escalation CVE-2021-35523 Vulnerability for Securepoint SSL VPN
|
|
Securepoint SSL VPN
|
Client-side Code Injection, Cross-site Request Forgery, Cross-site Scripting, and Code Execution Vulnerabilities for Zucchetti InfoBusiness
|
|
InfoBusiness
|
Untrusted Site Leading to Execution of Malicious Code for Schneider Electric Software Update
|
|
Schneider Electric Software Update
|
Insecure File Permissions Vulnerability for SolarWinds Managed Service Provider Patch Management Engine
|
|
SolarWinds Managed Service Provider Patch Management Engine
|
Denial of Service Vulnerability for Zoiper
|
|
Zoiper
|
Improper Handling of Symbolic Links for Bitdefender Antivirus Free
|
|
Bitdefender Antivirus Free
|
DLL Hijacking Vulnerability for F-Secure Computer Protection
|
|
F-Secure Computer Protection
|
Privilege Gain Vulnerability for CyberLink PowerProducer
|
|
CyberLink PowerProducer
|
Brute-Force Protection Bypass, Bypassing Intended Restrictions, Exposure of Sensitive Information, and Cross-site Scripting Vulnerabilities for Inductive Automation Ignition
|
|
Ignition
|
Improper Input Validation and NULL pointer dereference Vulnerability for UrBackup
|
|
UrBackup
|
Insufficiently Protected Credentials for RVTools
|
|
RVTools
|
Privilege Gain Vulnerability for Intel Ready Mode Technology
|
|
Intel Ready Mode Technology
|
Code Injection Vulnerability for AVG Anti-Virus FREE
|
|
AVG Anti-Virus FREE
|
Critical Server-Side Request Forgery and Cross-Site Scripting Vulnerabilities for Bitrix24
|
|
Bitrix24
|
Host Head Injection Vulnerability for Endpoint Protector
|
|
Endpoint Protector
|
Unquoted Search Path Vulnerability for Siemens SIMATIC STEP 7
|
|
SIMATIC STEP 7
|
Arbitrary Cide Execution Vulnerability for HP Smart Storage Administrator
|
|
Smart Storage Administrator
|
Uncontrolled Search Path Vulnerability for Dell Command Configure
|
|
Dell Command Configure
|
DLL Hijacking, Elevated Privilege, Arbitrary Code Execution Vulnerabilities for SonicWALL Global VPN Client
|
|
Global VPN Client
|
Uninitialized Pointer, Buffer Overflow, Use After Free Vulnerabilities for ESRI ArcGIS Pro
|
|
ArcGIS Pro
|
Critical Arbitrary Code Execution, Script Injection, Cross-site Request Forgery, and Denial of Service Vulnerabilities for PaperCut NG
|
|
PaperCut NG
|
Insecure Permissions Allowing Privilege Escalation for 3CXPhone
|
|
3CXPhone
|
Privilege Escalation Vulnerability for YSoft SafeQ
|
|
SafeQ
|
Binary Hijacking, Cross-site Scripting, and DLL Hijacking Vulnerabilities for Acronis Cyber Protect Agent
|
|
Acronis Cyber Protect Agent
|
Incorrect Default Permission Vulnerability for Schneider Electric SoMove
|
|
SoMove
|
Improper Download File Verification and Authorization Vulnerability for Sony VAIO Update
|
|
VAIO Update
|
Improper Certification Validation Vulnerability for Icinga 2
|
|
Icinga 2
|
Critical Heap-based Buffer Overflow and Stacked-based Buffer Overflow Vulnerabilities for Kepware KEPServerEX
|
|
KEPServerEX
|
Weak Algorithm Containing Hard-Coded Password Vulnerability for Lenovo Fingerprint Manager Pro
|
|
Lenovo Fingerprint Manager Pro
|
Multiple Stacked-Based Buffer Overflow Vulnerability for Toshiba Configfree Utility
|
|
Configfree Utility
|
Deserialization Mishandling and Missing Authorization Vulnerabilities for Veeam Backup and Replication
|
|
Veeam Backup and Replication
|
Weak Permissions Vulnerability for Avast SecureLine VPN
|
|
Avast SecureLine VPN
|
Insecure Permissions Vulnerability for Corsair Link 4
|
|
Corsair Link 4
|
Improper Handling of Length Parameter for Mitsubishi Electric CPU Module Logging Configuration Tool
|
|
CPU Module Logging Configuration Tool
|
Improper Handling of Length Parameter for Mitsubishi Electric CW Configurator
|
|
CW Configurator
|