VYPR

CVEs

38,012 total · page 562 of 761

  • CVE-2020-7206CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.02

    HP nagios plugin for iLO (nagios-plugins-hpilo v1.50 and earlier) has a php code injection vulnerability.

  • CVE-2020-5759CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.03

    Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via SSH. An authenticated remote attacker can execute commands as the root user by issuing a specially crafted "unset" command.

  • CVE-2020-5757CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.07

    Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via HTTP. An authenticated remote attacker can bypass command injection mitigations and execute commands as the root user by sending a crafted HTTP POST to the UCM's "New" HTTPS…

  • CVE-2020-0231CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.00

    There is a possible out of bounds write due to an incorrect bounds check. Product: AndroidVersions: Android SoCAndroid ID: A-156333727

  • CVE-2020-0230CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.00

    There is a possible out of bounds write due to an incorrect bounds check. Product: AndroidVersions: Android SoCAndroid ID: A-156337262

  • CVE-2020-0225CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.03

    In a2dp_vendor_ldac_decoder_decode_packet of a2dp_vendor_ldac_decoder.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2020-0224CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.02

    In FastKeyAccumulator::GetKeysSlow of keys.cc, there is a possible out of bounds write due to type confusion. This could lead to remote code execution when processing a proxy configuration with no additional execution privileges needed. User interaction is not needed for…

  • CVE-2020-1654CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.02

    On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service enabled, processing a malformed HTTP message can lead to a Denial of Service (DoS) or Remote Code Execution (RCE) Continued processing of this malformed HTTP message may result in an…

  • CVE-2020-1647CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.03

    On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service enabled, a double free vulnerability can lead to a Denial of Service (DoS) or Remote Code Execution (RCE) due to processing of a specific HTTP message. Continued processing of this…

  • CVE-2020-14001CriJul 17, 2020
    risk 0.57cvss 9.8epss 0.05

    The kramdown gem before 2.3.0 for Ruby processes the template option inside Kramdown documents by default, which allows unintended read access (such as template="/etc/passwd") or unintended embedded Ruby code execution (such as a string that begins with template="string://<%=…

  • CVE-2020-15801CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.03

    In Python 3.8.4, sys.path restrictions specified in a python38._pth file are ignored, allowing code to be loaded from arbitrary locations. The ._pth file (e.g., the python._pth file) is not affected.

  • CVE-2020-9682CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.04

    Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a symlink vulnerability vulnerability. Successful exploitation could lead to arbitrary file system write.

  • CVE-2020-9671CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.04

    Adobe Creative Cloud Desktop Application versions 5.1 and earlier have an insecure file permissions vulnerability. Successful exploitation could lead to privilege escalation.

  • CVE-2020-9670CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.04

    Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a symlink vulnerability vulnerability. Successful exploitation could lead to privilege escalation.

  • CVE-2020-9669CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.03

    Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a lack of exploit mitigations vulnerability. Successful exploitation could lead to privilege escalation.

  • CVE-2020-11982CriJul 17, 2020
    risk 0.64cvss 9.8epss 0.07

    An issue was found in Apache Airflow versions 1.10.10 and below. When using CeleryExecutor, if an attack can connect to the broker (Redis, RabbitMQ) directly, it was possible to insert a malicious payload directly to the broker which could lead to a deserialization attack (and…

  • CVE-2020-11981CriJul 17, 2020
    risk 0.60cvss 9.8epss 0.37

    An issue was found in Apache Airflow versions 1.10.10 and below. When using CeleryExecutor, if an attacker can connect to the broker (Redis, RabbitMQ) directly, it is possible to inject commands, resulting in the celery worker running arbitrary commands.

  • CVE-2020-12013CriJul 16, 2020
    risk 0.59cvss 9.1epss 0.03

    A specially crafted WCF client that interfaces to the may allow the execution of certain arbitrary SQL commands remotely. This affects: Mitsubishi Electric MC Works64 Version 4.02C (10.95.208.31) and earlier, all versions; Mitsubishi Electric MC Works32 Version 3.00A…

  • CVE-2020-12007CriJul 16, 2020
    risk 0.64cvss 9.8epss 0.04

    A specially crafted communication packet sent to the affected devices could allow remote code execution and a denial-of-service condition due to a deserialization vulnerability. This issue affects: Mitsubishi Electric MC Works64 version 4.02C (10.95.208.31) and earlier, all…

  • CVE-2020-12011CriJul 16, 2020
    risk 0.66cvss 9.8epss 0.29

    A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition or allow remote code execution. This issue affects: Mitsubishi Electric MC Works64 version 4.02C (10.95.208.31) and earlier, all versions; MC Works32 version 3.00A…

  • CVE-2020-3357CriJul 16, 2020
    risk 0.64cvss 9.8epss 0.04

    A vulnerability in the Secure Sockets Layer (SSL) VPN feature of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device or cause the device to reload,…

  • CVE-2020-3331CriJul 16, 2020
    risk 0.67cvss 9.8epss 0.42

    A vulnerability in the web-based management interface of Cisco RV110W Wireless-N VPN Firewall and Cisco RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. The vulnerability is due to improper validation…

  • CVE-2020-3330CriJul 16, 2020
    risk 0.64cvss 9.8epss 0.03

    A vulnerability in the Telnet service of Cisco Small Business RV110W Wireless-N VPN Firewall Routers could allow an unauthenticated, remote attacker to take full control of the device with a high-privileged account. The vulnerability exists because a system account has a default…

  • CVE-2020-3323CriJul 16, 2020
    risk 0.64cvss 9.8epss 0.06

    A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. The vulnerability is due to improper validation of…

  • CVE-2020-3144CriJul 16, 2020
    risk 0.64cvss 9.8epss 0.03

    A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV130W Wireless-N Multifunction VPN Router, and RV215W Wireless-N VPN Router could allow an unauthenticated, remote attacker to bypass authentication and execute…

  • CVE-2020-3140CriJul 16, 2020
    risk 0.64cvss 9.8epss 0.03

    A vulnerability in the web management interface of Cisco Prime License Manager (PLM) Software could allow an unauthenticated, remote attacker to gain unauthorized access to an affected device. The vulnerability is due to insufficient validation of user input on the web…

  • CVE-2019-20914CriJul 16, 2020
    risk 0.57cvss 9.8epss 0.02

    An issue was discovered in GNU LibreDWG through 0.9.3. There is a NULL pointer dereference in the function dwg_encode_common_entity_handle_data in common_entity_handle_data.spec.

  • CVE-2020-15027CriJul 16, 2020
    risk 0.64cvss 9.8epss 0.01

    ConnectWise Automate through 2020.x has insufficient validation on certain authentication paths, allowing authentication bypass via a series of attempts. This was patched in 2020.7 and in a hotfix for 2019.12.

  • CVE-2020-14000CriJul 16, 2020
    risk 0.64cvss 9.8epss 0.03

    MIT Lifelong Kindergarten Scratch scratch-vm before 0.2.0-prerelease.20200714185213 loads extension URLs from untrusted project.json files with certain _ characters, resulting in remote code execution because the URL's content is treated as a script and is executed as a worker.…

  • CVE-2020-10288CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.01

    IRC5 exposes an ftp server (port 21). Upon attempting to gain access you are challenged with a request of username and password, however you can input whatever you like. As long as the field isn't empty it will be accepted.

  • CVE-2020-10287CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.01

    The IRC5 family with UAS service enabled comes by default with credentials that can be found on publicly available manuals. ABB considers this a well documented functionality that helps customer set up however, out of our research, we found multiple production systems running…

  • CVE-2020-10285CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.01

    The authentication implementation on the xArm controller has very low entropy, making it vulnerable to a brute-force attack. There is no mechanism in place to mitigate or lockout automated attempts to gain access.

  • CVE-2020-12684CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.01

    XXE injection can occur in i-net Clear Reports 2019 19.0.287 (Designer), as used in i-net HelpDesk and other products, when XML input containing a reference to an external entity is processed by a weakly configured XML parser.

  • CVE-2020-11436CriJul 15, 2020
    risk 0.59cvss 9.0epss 0.01

    LibreHealth EMR v2.0.0 is vulnerable to XSS that results in the ability to force arbitrary actions on behalf of other users including administrators.

  • CVE-2020-10284CriJul 15, 2020
    risk 0.59cvss 9.1epss 0.01

    No authentication is required to control the robot inside the network, moreso the latest available user manual shows an option that lets the user to add a password to the robot but as in xarm_studio 1.3.0 the option is missing from the menu. Assuming manual control, even by…

  • CVE-2020-14705CriJul 15, 2020
    risk 0.63cvss 9.6epss 0.02

    Vulnerability in the Oracle GoldenGate product of Oracle GoldenGate (component: Process Management). The supported version that is affected is Prior to 19.1.0.0.0. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment…

  • CVE-2020-14701CriJul 15, 2020
    risk 0.65cvss 10.0epss 0.02

    Vulnerability in the Oracle SD-WAN Aware product of Oracle Communications Applications (component: User Interface). The supported version that is affected is 8.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle…

  • CVE-2020-14687CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.02

    Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to…

  • CVE-2020-14665CriJul 15, 2020
    risk 0.59cvss 9.1epss 0.02

    Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: Invoice). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to…

  • CVE-2020-14658CriJul 15, 2020
    risk 0.59cvss 9.1epss 0.02

    Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP…

  • CVE-2020-14645CriJul 15, 2020
    risk 0.67cvss 9.8epss 0.47

    Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with…

  • CVE-2020-14644CriKEVJul 15, 2020
    risk 0.83cvss 9.8epss 0.95

    Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to…

  • CVE-2020-14625CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.10

    Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to…

  • CVE-2020-14606CriJul 15, 2020
    risk 0.65cvss 10.0epss 0.03

    Vulnerability in the Oracle SD-WAN Edge product of Oracle Communications Applications (component: User Interface). Supported versions that are affected are 8.2 and 9.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise…

  • CVE-2020-14599CriJul 15, 2020
    risk 0.59cvss 9.1epss 0.02

    Vulnerability in the Oracle CRM Gateway for Mobile Devices product of Oracle E-Business Suite (component: Setup of Mobile Applications). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access…

  • CVE-2020-14598CriJul 15, 2020
    risk 0.59cvss 9.1epss 0.02

    Vulnerability in the Oracle CRM Gateway for Mobile Devices product of Oracle E-Business Suite (component: Setup of Mobile Applications). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access…

  • CVE-2020-8178CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.04

    Insufficient input validation in npm package `jison` <= 0.4.18 may lead to OS command injection attacks.

  • CVE-2020-14511CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.01

    Malicious operation of the crafted web browser cookie may cause a stack-based buffer overflow in the system web server on the EDR-G902 and EDR-G903 Series Routers (versions prior to 5.4).

  • CVE-2020-14503CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.03

    Advantech iView, versions 5.6 and prior, has an improper input validation vulnerability. Successful exploitation of this vulnerability could allow an attacker to remotely execute arbitrary code.

  • CVE-2020-14501CriJul 15, 2020
    risk 0.64cvss 9.8epss 0.02

    Advantech iView, versions 5.6 and prior, has an improper authentication for critical function (CWE-306) issue. Successful exploitation of this vulnerability may allow an attacker to obtain the information of the user table, including the administrator credentials in plain text.…