Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-09 CVE-2021-25461 Out-of-bounds Write vulnerability in Google Android 8.1
An improper length check in APAService prior to SMR Sep-2021 Release 1 results in stack based Buffer Overflow.
local
low complexity
google CWE-787
7.8
2021-09-09 CVE-2021-25465 Improper Input Validation vulnerability in Samsung Themes
An improper scheme check vulnerability in Samsung Themes prior to version 5.2.01 allows attackers to perform Man-in-the-middle attack.
local
high complexity
samsung CWE-20
7.0
2021-09-09 CVE-2021-38324 SQL Injection vulnerability in Smartypantsplugins SP Rental Manager 1.5.3
The SP Rental Manager WordPress plugin is vulnerable to SQL Injection via the orderby parameter found in the ~/user/shortcodes.php file which allows attackers to retrieve information contained in a site's database, in versions up to and including 1.5.3.
network
low complexity
smartypantsplugins CWE-89
7.5
2021-09-09 CVE-2020-19263 Cross-Site Request Forgery (CSRF) vulnerability in Mipcms 5.0.1
A cross-site request forgery (CSRF) in MipCMS v5.0.1 allows attackers to arbitrarily escalate user privileges to administrator via index.php?s=/user/ApiAdminUser/itemEdit.
network
low complexity
mipcms CWE-352
8.8
2021-09-09 CVE-2021-28910 Server-Side Request Forgery (SSRF) vulnerability in Bab-Technologie Eibport Firmware 3.8.2/3.8.3
BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 contains basic SSRF vulnerability.
network
low complexity
bab-technologie CWE-918
7.5
2021-09-09 CVE-2021-28912 Weak Password Requirements vulnerability in Bab-Technologie Eibport Firmware 3.8.2/3.8.3
BAB TECHNOLOGIE GmbH eibPort V3.
network
low complexity
bab-technologie CWE-521
7.2
2021-09-09 CVE-2021-32484 Out-of-bounds Write vulnerability in Mediatek Modem Lr12A/Lr13
In modem 2G RRM, there is a possible system crash due to a heap buffer overflow.
network
low complexity
mediatek CWE-787
7.5
2021-09-09 CVE-2021-32485 Out-of-bounds Write vulnerability in Mediatek Modem Lr12A/Lr13
In modem 2G RRM, there is a possible system crash due to a heap buffer overflow.
network
low complexity
mediatek CWE-787
7.5
2021-09-09 CVE-2021-32486 Out-of-bounds Write vulnerability in Mediatek Modem Lr12A/Lr13
In modem 2G RRM, there is a possible system crash due to a heap buffer overflow.
network
low complexity
mediatek CWE-787
7.5
2021-09-09 CVE-2021-32487 Out-of-bounds Write vulnerability in Mediatek Modem Lr12A/Lr13
In modem 2G RRM, there is a possible system crash due to a heap buffer overflow.
network
low complexity
mediatek CWE-787
7.5