LiveActive security incident?Get immediate response
CVE archive

March 2020

Browse CVE records published in March 2020, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 1453 matching CVEs · Page 8 of 30.

Unknown · CVSS Not scored

CVE-2020-24983: An issue was discovered in Quadbase EspressReports ES 7 Update 9.

An issue was discovered in Quadbase EspressReports ES 7 Update 9. An unauthenticated attacker can create a malicious HTML file that houses a POST request made to the DashboardBuilder within the target web application. This request will utilise the target admin session and perform the authenticated request (to change the Dashboard name) as if the victim had done so themselves, aka CSRF.

Published Mar 11, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-24772: In Dreamacro Clash for Windows v0.11.4, an attacker could embed a malicious iframe in a website with a craf...

In Dreamacro Clash for Windows v0.11.4, an attacker could embed a malicious iframe in a website with a crafted URL that would launch the Clash Windows client and force it to open a remote SMB share. Windows will perform NTLM authentication when opening the SMB share and that request can be relayed (using a tool like responder) for code execution (or captured for hash cracking).

Published Mar 21, 2022 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-24636: A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (I...

A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.5.x: 6.5.4.17 and below; Aruba Instant 8.3.x: 8.3.0.13 and below; Aruba Instant 8.5.x: 8.5.0.10 and below; Aruba Instant 8.6.x: 8.6.0.5 and below; Aruba Instant 8.7.x: 8.7.0.0 and below. Aruba has released patches for Aruba Instant that address this security vulnerability.

Published Mar 29, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-24635: A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (I...

A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.5.x: 6.5.4.17 and below; Aruba Instant 8.3.x: 8.3.0.13 and below; Aruba Instant 8.5.x: 8.5.0.10 and below; Aruba Instant 8.6.x: 8.6.0.5 and below; Aruba Instant 8.7.x: 8.7.0.0 and below. Aruba has released patches for Aruba Instant that address this security vulnerability.

Published Mar 29, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-24264: Portainer 1.24.1 and earlier is affected by incorrect access control that may lead to remote arbitrary code...

Portainer 1.24.1 and earlier is affected by incorrect access control that may lead to remote arbitrary code execution. The restriction checks for bind mounts are applied only on the client-side and not the server-side, which can lead to spawning a container with bind mount. Once such a container is spawned, it can be leveraged to break out of the container leading to complete Docker host machine takeover.

Published Mar 16, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-23722: An issue was discovered in FUEL CMS 1.4.7.

An issue was discovered in FUEL CMS 1.4.7. There is a escalation of privilege vulnerability to obtain super admin privilege via the "id" and "fuel_id" parameters.

Published Mar 10, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-17457: Fujitsu ServerView Suite iRMC before 9.62F allows XSS.

Fujitsu ServerView Suite iRMC before 9.62F allows XSS. An authenticated attacker can store an XSS payload in the PSCU_FILE_INIT field of a Save Configuration XML document. The payload is triggered in the HTTP error response pages.

Published Mar 17, 2021 · Updated Aug 4, 2024

Medium · CVSS 6.8

CVE-2020-15260: Existing TLS connections can be reused without checking remote hostname

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, STUN, TURN, and ICE. In version 2.10 and earlier, PJSIP transport can be reused if they have the same IP address + port + protocol. However, this is insufficient for secure transport since it lacks remote hostname authentication. Suppose we have created a TLS connection to `sip.foo.com`, which has an IP address `100.1.1.1`. If we want to create a TLS connection to another hostname, say `sip.bar.com`, which has the same IP address, then it will reuse that existing connection, even though `100.1.1.1` does not have certificate to authenticate as `sip.bar.com`. The vulnerability allows for an insecure interaction without user awareness. It affects users who need access to connections to different destinations that translate to the same address, and allows man-in-the-middle attack if attacker can route a connection to another destination such as in the case of DNS spoofing.

Published Mar 10, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-14987: An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2.

An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2. It allows remote attackers to execute arbitrary code because there is a mishandling of the capability for administrators to write and run Groovy scripts within the updater editor. An attacker must use an AST transforming annotation such as @Grab.

Published Mar 11, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-14988: An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2.

An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2. It allows XSS in the login page via the loginmessage parameter, the text editor via the src attribute of HTML elements, the translations menu via the foldername parameter, the author page via the link URL, or the upload image functionality via an SVG document containing JavaScript.

Published Mar 11, 2021 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-14372: A flaw was found in grub2 in versions prior to 2.06, where it incorrectly enables the usage of the ACPI com...

A flaw was found in grub2 in versions prior to 2.06, where it incorrectly enables the usage of the ACPI command when Secure Boot is enabled. This flaw allows an attacker with privileged access to craft a Secondary System Description Table (SSDT) containing code to overwrite the Linux kernel lockdown variable content directly into memory. The table is further loaded and executed by the kernel, defeating its Secure Boot lockdown and allowing the attacker to load unsigned code. The highest threat from this vulnerability is to data confidentiality and integrity, as well as system availability.

Published Mar 3, 2021 · Updated Aug 4, 2024