Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2021-08-18 CVE-2021-20761 Improper Input Validation vulnerability in Cybozu Garoon
Improper input validation vulnerability in E-mail of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker with an administrative privilege to alter the data of E-mail without the appropriate privilege.
network
low complexity
cybozu CWE-20
2.7
2021-08-16 CVE-2021-36282 Use of Uninitialized Resource vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.2.x - 9.1.0.x contain a use of uninitialized resource vulnerability.
local
low complexity
dell CWE-908
3.3
2021-08-14 CVE-2020-36473 Cleartext Storage of Sensitive Information vulnerability in Ucweb UC
UCWeb UC 12.12.3.1219 through 12.12.3.1226 uses cleartext HTTP, and thus man-in-the-middle attackers can discover visited URLs.
network
high complexity
ucweb CWE-312
3.7
2021-08-13 CVE-2021-32068 Allocation of Resources Without Limits or Throttling vulnerability in Mitel Micollab
The AWV and MiCollab Client Service components in Mitel MiCollab before 9.3 could allow an attacker to perform a Man-In-the-Middle attack by sending multiple session renegotiation requests, due to insufficient TLS session controls.
network
high complexity
mitel CWE-770
3.7
2021-08-12 CVE-2020-18463 Cross-Site Request Forgery (CSRF) vulnerability in Aikcms 2.0
Cross Site Request Forgery (CSRF) vulnerability exists in v2.0.0 in video_list.php, which can let a malicious user delete a video message.
network
low complexity
aikcms CWE-352
2.4
2021-08-12 CVE-2020-18464 Cross-Site Request Forgery (CSRF) vulnerability in Aikcms 2.0
Cross Site Request Forgery (CSRF) vulnerability in AikCms 2.0.0 in video_list.php, which can let a malicious user delete movie information.
network
low complexity
aikcms CWE-352
3.5
2021-08-12 CVE-2021-38591 Unspecified vulnerability in Google Android 10.0/9.0
An issue was discovered on LG mobile devices with Android OS P and Q software for mt6762/mt6765/mt6883.
local
low complexity
google
3.3
2021-08-11 CVE-2021-3047 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) vulnerability in Paloaltonetworks Pan-Os
A cryptographically weak pseudo-random number generator (PRNG) is used during authentication to the Palo Alto Networks PAN-OS web interface.
network
high complexity
paloaltonetworks CWE-338
3.1
2021-08-11 CVE-2021-33594 Unspecified vulnerability in F-Secure Safe 17.9
An address bar spoofing vulnerability was discovered in Safe Browser for Android.
network
low complexity
f-secure
3.5
2021-08-11 CVE-2021-33595 Unspecified vulnerability in F-Secure Safe
A address bar spoofing vulnerability was discovered in Safe Browser for iOS.
network
low complexity
f-secure
3.5