VYPR

CVEs

101,977 total · page 1526 of 2,040

  • CVE-2020-3755HigFeb 13, 2020
    risk 0.49cvss 7.5epss 0.03

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .

  • CVE-2020-3753HigFeb 13, 2020
    risk 0.49cvss 7.5epss 0.02

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have a stack exhaustion vulnerability. Successful exploitation could lead to memory leak .

  • CVE-2020-3748HigFeb 13, 2020
    risk 0.51cvss 7.8epss 0.04

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .

  • CVE-2020-3747HigFeb 13, 2020
    risk 0.49cvss 7.5epss 0.03

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .

  • CVE-2020-3744HigFeb 13, 2020
    risk 0.49cvss 7.5epss 0.09

    Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, and 2015.006.30508 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .

  • CVE-2020-3741HigFeb 13, 2020
    risk 0.49cvss 7.5epss 0.03

    Adobe Experience Manager versions 6.5, and 6.4 have an uncontrolled resource consumption vulnerability. Successful exploitation could lead to denial-of-service.

  • CVE-2019-4592HigFeb 13, 2020
    risk 0.49cvss 7.5epss 0.01

    IBM Tivoli Monitoring Service 6.3.0.7.3 through 6.3.0.7.10 could allow an unauthorized user to access and modify operation aspects of the ITM monitoring server possibly leading to an effective denial of service or disabling of the monitoring server. IBM X-Force ID: 167647.

  • CVE-2020-3739HigFeb 13, 2020
    risk 0.57cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3738HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3737HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3736HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3735HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.06

    Adobe Framemaker versions 2019.0.4 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3734HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.05

    Adobe Framemaker versions 2019.0.4 and below have a buffer error vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3733HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3732HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3731HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.06

    Adobe Framemaker versions 2019.0.4 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3730HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3729HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3728HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3727HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3726HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3725HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3724HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3723HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3722HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3721HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-3720HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.04

    Adobe Framemaker versions 2019.0.4 and below have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

  • CVE-2020-0030HigFeb 13, 2020
    risk 0.46cvss 7.0epss 0.00

    In binder_thread_release of binder.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android…

  • CVE-2020-0027HigFeb 13, 2020
    risk 0.51cvss 7.8epss 0.00

    In HidRawSensor::batch of HidRawSensor.cpp, there is a possible out of bounds write due to an unexpected switch fallthrough. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product:…

  • CVE-2020-0026HigFeb 13, 2020
    risk 0.51cvss 7.8epss 0.00

    In Parcel::continueWrite of Parcel.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions:…

  • CVE-2020-0022HigFeb 13, 2020
    risk 0.58cvss 8.8epss 0.05

    In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2020-0015HigFeb 13, 2020
    risk 0.51cvss 7.8epss 0.00

    In onCreate of CertInstaller.java, there is a possible way to overlay the Certificate Installation dialog by a malicious application. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for…

  • CVE-2019-2200HigFeb 13, 2020
    risk 0.47cvss 7.3epss 0.00

    In updatePermissions of PermissionManagerService.java, it may be possible for a malicious app to obtain a custom permission from another app due to a permission bypass. This could lead to local escalation of privilege with User execution privileges needed. User interaction is…

  • CVE-2020-5239HigFeb 13, 2020
    risk 0.57cvss 8.7epss 0.01

    In Mailu before version 1.7, an authenticated user can exploit a vulnerability in Mailu fetchmail script and gain full access to a Mailu instance. Mailu servers that have open registration or untrusted users are most impacted. The master and 1.7 branches are patched on our git…

  • CVE-2020-5241HigFeb 13, 2020
    risk 0.43cvss 7.7epss 0.01

    matestack-ui-core (RubyGem) before 0.7.4 is vulnerable to XSS/Script injection. This vulnerability is patched in version 0.7.4.

  • CVE-2019-5322HigFeb 13, 2020
    risk 0.49cvss 7.5epss 0.01

    A remotely exploitable information disclosure vulnerability is present in Aruba Intelligent Edge Switch models 5400, 3810, 2920, 2930, 2530 with GigT port, 2530 10/100 port, or 2540. The vulnerability impacts firmware 16.08.* before 16.08.0009, 16.09.* before 16.09.0007 and…

  • CVE-2019-18915HigFeb 13, 2020
    risk 0.54cvss 7.8epss 0.01

    A potential security vulnerability has been identified with certain versions of HP System Event Utility prior to version 1.4.33. This vulnerability may allow a local attacker to execute arbitrary code via an HP System Event Utility system service.

  • CVE-2020-1977HigFeb 12, 2020
    risk 0.49cvss 7.5epss 0.01

    Insufficient Cross-Site Request Forgery (XSRF) protection on Expedition Migration Tool allows remote unauthenticated attackers to hijack the authentication of administrators and to perform actions on the Expedition Migration Tool. This issue affects Expedition Migration Tool…

  • CVE-2013-5106HigFeb 12, 2020
    risk 0.57cvss 8.8epss 0.02

    A Code Execution vulnerability exists in select.py when using python-mode 2012-12-19.

  • CVE-2020-5399HigFeb 12, 2020
    risk 0.48cvss 7.4epss 0.01

    Cloud Foundry CredHub, versions prior to 2.5.10, connects to a MySQL database without TLS even when configured to use TLS. A malicious user with access to the network between CredHub and its MySQL database may eavesdrop on database connections and thereby gain unauthorized…

  • CVE-2020-8950HigFeb 12, 2020
    risk 0.51cvss 7.8epss 0.01

    The AUEPLauncher service in Radeon AMD User Experience Program Launcher through 1.0.0.1 on Windows allows elevation of privilege by placing a crafted file in %PROGRAMDATA%\AMD\PPC\upload and then creating a symbolic link in %PROGRAMDATA%\AMD\PPC\temp that points to an arbitrary…

  • CVE-2020-6192HigFeb 12, 2020
    risk 0.47cvss 7.2epss 0.02

    SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious commands with root privileges in SAP Host Agent via SAP Landscape Management.

  • CVE-2020-6191HigFeb 12, 2020
    risk 0.47cvss 7.2epss 0.02

    SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious executables with root privileges in SAP Host Agent via SAP Landscape Management due to Missing Input Validation.

  • CVE-2020-6188HigFeb 12, 2020
    risk 0.57cvss 8.8epss 0.01

    VAT Pro-Rata reports in SAP ERP (SAP_APPL versions 600, 602, 603, 604, 605, 606, 616 and SAP_FIN versions 617, 618, 700, 720, 730) and SAP S/4 HANA (versions 100, 101, 102, 103, 104) do not perform necessary authorization checks for an authenticated user leading to Missing…

  • CVE-2020-6186HigFeb 12, 2020
    risk 0.49cvss 7.5epss 0.01

    SAP Host Agent, version 7.21, allows an attacker to cause a slowdown in processing of username/password-based authentication requests of the SAP Host Agent, leading to Denial of Service.

  • CVE-2011-3901HigFeb 12, 2020
    risk 0.49cvss 7.5epss 0.01

    Android SQLite Journal before 4.0.1 has an information disclosure vulnerability.

  • CVE-2011-3336HigFeb 12, 2020
    risk 0.52cvss 7.5epss 0.06

    regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.

  • CVE-2020-8949HigFeb 12, 2020
    risk 0.57cvss 8.8epss 0.03

    Gocloud S2A_WL 4.2.7.16471, S2A 4.2.7.17278, S2A 4.3.0.15815, S2A 4.3.0.17193, S3A K2P MTK 4.2.7.16528, S3A 4.3.0.16572, and ISP3000 4.3.0.17190 devices allows remote attackers to execute arbitrary OS commands via shell metacharacters in a ping operation, as demonstrated by the…

  • CVE-2019-17519HigFeb 12, 2020
    risk 0.57cvss 8.8epss 0.01

    The Bluetooth Low Energy implementation on NXP SDK through 2.2.1 for KW41Z devices does not properly restrict the Link Layer payload length, allowing attackers in radio range to cause a buffer overflow via a crafted packet.

  • CVE-2011-4338HigFeb 12, 2020
    risk 0.51cvss 7.8epss 0.00

    Shaman 1.0.9: Users can add the line askforpwd=false to his shaman.conf file, without entering the root password in shaman. The next time shaman is run, root privileges are granted despite the fact that the user never entered the root password.