CVE-2021-34584

CRITICAL Year: 2021
CVSS v3 Score
9.1
Critical
CVSS v2 Score
6.4
Medium

Vulnerability Description

Crafted web server requests can be utilised to read partial stack or heap memory or may trigger a denial-of- service condition due to a crash in the CODESYS V2 web server prior to V1.1.9.22.

CVSS:9.1(Critical)

Information disclosure in Modem while processing SIB5.

CVSS:9.1(Critical)

BACnet Stack before 1.3.2 has a decode function APDU buffer over-read in bacapp_decode_application_data in bacapp.c.

CVSS:9.1(Critical)

Information Disclosure while parsing beacon frame in STA.

CVSS:9.1(Critical)

Memory corruption while decoding of OTA messages from T3448 IE.

CVSS:8.8(High)

Memory corruption in WLAN HOST while processing the WLAN scan descriptor list.

CVSS:8.8(High)

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability