NVD disclosure day

Published threat advisories for June 11, 2021

CVE advisoryKnown Exploit

CVE-2021-22175

GitLab Webhook Server-Side Request Forgery Vulnerability

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A server-side request forgery vulnerability in GitLab enables unauthenticated attackers to make unauthorized requests to an organization's internal network. This could expose sensitive systems and data, leading to operational disruption and potential breaches. The business risk involves unauthorized access to internal

• CISA KEV

CVE advisoryKnown Exploit

CVE-2021-25395

Samsung Android Race Condition Bypass

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A race condition in the MFC charger driver on certain Samsung Android devices allows local attackers with compromised radio privileges to bypass signature checks. This could impact affected devices by allowing unauthorized system and data access. The business risk is associated with potential data integrity and system

• CISA KEV

CVE advisoryKnown Exploit

CVE-2021-25394

Samsung Android Devices: Data Write Risk in Charger Driver.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in Samsung Android devices' MFC charger driver permits unauthorized data writing when a race condition occurs. This requires compromised radio privileges, posing a risk to data integrity and system security. Organizations should prioritize applying vendor updates to mitigate this internal threat.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2021-26829

OpenPLC ScadaBR Stored Cross-Site Scripting Vulnerability

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A stored cross-site scripting vulnerability exists in OpenPLC ScadaBR, potentially allowing attackers to inject malicious code via system settings. This can impact system integrity and data confidentiality, affecting organizations by risking unauthorized access or data manipulation.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2021-26828

ScadaBR Remote Code Execution Vulnerability

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A vulnerability in OpenPLC ScadaBR permits authenticated users to upload and execute JSP files, potentially leading to unauthorized code execution. This can affect system integrity and data confidentiality for organizations. The risk to business operations and sensitive data is high.

• CISA KEV