Unknown · CVSS Not scored
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. StatusBarService has insufficient DEX access control. The Samsung ID is SVE-2020-17797 (August 2020).
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9, and 10 software. The network_management service does not properly restrict configuration changes. The LG ID is LVE-SMP-200012 (July 2020).
Published Aug 31, 2020 · Updated Aug 4, 2024
High · CVSS 8.8
The Kleopatra component before 3.1.12 (and before 20.07.80) for GnuPG allows remote attackers to execute arbitrary code because openpgp4fpr: URLs are supported without safe handling of command-line options. The Qt platformpluginpath command-line option can be used to load an arbitrary DLL.
Published Aug 29, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
checkinstall 1.6.2, when used to create a package that contains a symlink, may trigger the creation of a mode 0777 executable file.
Published Aug 31, 2020 · Updated Aug 4, 2024
Low · CVSS 3.8
An attacker with physical access to Nuvoton Trusted Platform Module (NPCT75x 7.2.x before 7.2.2.0) could extract an Elliptic Curve Cryptography (ECC) private key via a side-channel attack against ECDSA, because of an Observable Timing Discrepancy.
Published Aug 10, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A service crash may occur because of incorrect input validation. The LG ID is LVE-SMP-200013 (July 2020).
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered on LG mobile devices with Android OS 4.4, 5.0, 5.1, 6.0, 7.0, 7.1, 8.0, 8.1, 9.0, and 10 software. Certain automated testing is mishandled. The LG ID is LVE-SMP-200019 (August 2020).
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. Local users can gain privileges because of LAF and SBL1 flaws. The LG ID is LVE-SMP-200015 (July 2020).
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (released in China and India) software. The S Secure application does not enforce the intended password requirement for a locked application. The Samsung IDs are SVE-2020-16746, SVE-2020-16764 (August 2020).
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Flask-CORS (aka CORS Middleware for Flask) before 3.0.9. It allows ../ directory traversal to access private resources because resource matching does not ensure that pathnames are in a canonical format.
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. H-Arx allows attackers to execute arbitrary code or cause a denial of service (memory corruption) because indexes are mishandled. The Samsung ID is SVE-2020-17426 (August 2020).
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The Blubrry subscribe-sidebar (aka Subscribe Sidebar) plugin 1.3.1 for WordPress allows subscribe_sidebar.php&status= reflected XSS.
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A safety violation was discovered in the rgb crate before 0.8.20 for Rust, leading to (for example) dereferencing of arbitrary pointers or disclosure of uninitialized memory. This occurs because structs can be treated as bytes for read and write operations.
Published Aug 29, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
managers/socketManager.ts in PreMiD through 2.1.3 has a locally hosted socketio web server (port 3020) open to all origins, which allows attackers to obtain sensitive Discord user information.
Published Aug 29, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
osTicket before 1.14.3 allows XSS via a crafted filename to DraftAjaxAPI::_uploadInlineImage() in include/ajax.draft.php.
Published Aug 30, 2020 · Updated Aug 4, 2024
High · CVSS 7.6
The Table Filter and Charts for Confluence Server app before 5.3.26 (for Atlassian Confluence) allows SSRF via the "Table from CSV" macro (URL parameter).
Published Aug 29, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability in the line_table::line_table function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted ELF file.
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The Scalyr Agent before 2.1.10 has Missing SSL Certificate Validation because, in some circumstances, native Python code is used that lacks a comparison of the hostname to commonName and subjectAltName.
Published Aug 27, 2020 · Updated Aug 4, 2024
High · CVSS 8.9
The Table Filter and Charts for Confluence Server app before 5.3.25 (for Atlassian Confluence) allow remote attackers to inject arbitrary HTML or JavaScript via cross site scripting (XSS) through the provided Markdown markup to the "Table from CSV" macro.
Published Aug 29, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A global buffer overflow issue in the dwarf::line_table::line_table function of Libelfin v0.3 allows attackers to cause a denial of service (DOS).
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The Chamber Dashboard Business Directory plugin 3.2.8 for WordPress allows XSS.
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability in the dwarf::cursor::uleb function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted ELF file.
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Zoho ManageEngine Exchange Reporter Plus before build number 5510, AD360 before build number 4228, ADSelfService Plus before build number 5817, DataSecurity Plus before build number 6033, RecoverManager Plus before build number 6017, EventLog Analyzer before build number 12136, ADAudit Plus before build number 6052, O365 Manager Plus before build number 4334, Cloud Security Plus before build number 4110, ADManager Plus before build number 7055, and Log360 before build number 5166. The remotely accessible Java servlet com.manageengine.ads.fw.servlet.UpdateProductDetails is prone to an authentication bypass. System integration properties can be modified and lead to full ManageEngine suite compromise.
Published Aug 31, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The Scalyr Agent before 2.1.10 has Missing SSL Certificate Validation because, in some circumstances, the openssl binary is called without the -verify_hostname option.
Published Aug 27, 2020 · Updated Aug 4, 2024
Medium · CVSS 6.1
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager through 3.1.0, API Manager Analytics 2.5.0, IS as Key Manager through 5.10.0, Identity Server through 5.10.0, Identity Server Analytics through 5.6.0, and IoT Server 3.1.0.
Published Aug 27, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability in the elf::section::as_strtab function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted ELF file.
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in the DTLS handshake implementation in wolfSSL before 4.5.0. Clear DTLS application_data messages in epoch 0 do not produce an out-of-order error. Instead, these messages are returned to the application.
Published Aug 21, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability in the dwarf::cursor::skip_form function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted ELF file.
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OpenZFS before 2.0.0-rc1, when used on FreeBSD, allows execute permissions for all directories.
Published Aug 27, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was discovered in Joomla! before 3.9.21. Lack of input validation in the vote feature of com_content leads to an open redirect.
Published Aug 26, 2020 · Updated Aug 4, 2024
High · CVSS 8.8
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Session Hijacking. This affects API Manager 2.2.0, API Manager Analytics 2.2.0, API Microgateway 2.2.0, Data Analytics Server 3.2.0, Enterprise Integrator through 6.6.0, IS as Key Manager 5.5.0, Identity Server 5.5.0 and 5.8.0, Identity Server Analytics 5.5.0, and IoT Server 3.3.0 and 3.3.1.
Published Aug 27, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability in the dwarf::cursor::skip_form function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted ELF file.
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A vulnerability in the dwarf::to_string function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted ELF file.
Published Aug 4, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
OpenZFS before 2.0.0-rc1, when used on FreeBSD, misinterprets group permissions as user permissions, as demonstrated by mode 0770 being equivalent to mode 0777.
Published Aug 27, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.
Published Aug 9, 2021 · Updated Aug 4, 2024
High · CVSS 8.8
An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an attacker-controlled server if the victim submits a crafted Try It request, aka Session Hijacking. This affects API Manager through 3.1.0, API Manager Analytics 2.5.0, IS as Key Manager through 5.10.0, Identity Server through 5.10.0, Identity Server Analytics through 5.6.0, and IoT Server 3.1.0.
Published Aug 27, 2020 · Updated Aug 4, 2024
Medium · CVSS 6.1
An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager 2.2.0, API Manager Analytics 2.2.0, API Microgateway 2.2.0, Data Analytics Server 3.2.0, Enterprise Integrator through 6.6.0, IS as Key Manager 5.5.0, Identity Server 5.5.0 and 5.8.0, Identity Server Analytics 5.5.0, and IoT Server 3.3.0 and 3.3.1.
Published Aug 27, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Maltego before 4.2.12 allows XXE attacks.
Published Aug 26, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
wolfSSL before 4.5.0 mishandles TLS 1.3 server data in the WAIT_CERT_CR state, within SanityCheckTls13MsgReceived() in tls13.c. This is an incorrect implementation of the TLS 1.3 client state machine. This allows attackers in a privileged network position to completely impersonate any TLS 1.3 servers, and read or modify potentially sensitive information between clients using the wolfSSL library and these TLS servers.
Published Aug 24, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The client (aka GalaxyClientService.exe) in GOG GALAXY through 2.0.41 (as of 12:58 AM Eastern, 9/26/21) allows local privilege escalation from any authenticated user to SYSTEM by instructing the Windows service to execute arbitrary commands. This occurs because the attacker can inject a DLL into GalaxyClient.exe, defeating the TCP-based "trusted client" protection mechanism.
Published Aug 21, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
GNOME Geary before 3.36.3 mishandles pinned TLS certificate verification for IMAP and SMTP services using invalid TLS certificates (e.g., self-signed certificates) when the client system is not configured to use a system-provided PKCS#11 store. This allows a meddler in the middle to present a different invalid certificate to intercept incoming and outgoing mail.
Published Aug 26, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
secure-store in Expo through 2.16.1 on iOS provides the insecure kSecAttrAccessibleAlwaysThisDeviceOnly policy when WHEN_UNLOCKED_THIS_DEVICE_ONLY is used.
Published Aug 26, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In JetBrains YouTrack versions before 2020.3.4313, 2020.2.11008, 2020.1.11011, 2019.1.65514, 2019.2.65515, and 2019.3.65516, an attacker can retrieve an issue description without appropriate access.
Published Aug 27, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
FasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource (aka Anteros-DBCP).
Published Aug 25, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Netskope Client through 77 allows low-privileged users to elevate their privileges to NT AUTHORITY\SYSTEM.
Published Aug 12, 2021 · Updated Aug 4, 2024
Medium · CVSS 6.5
The Management Console in certain WSO2 products allows XXE attacks during EventReceiver updates. This affects API Manager through 3.0.0, API Manager Analytics 2.2.0 and 2.5.0, API Microgateway 2.2.0, Enterprise Integrator 6.2.0 and 6.3.0, and Identity Server Analytics through 5.6.0.
Published Aug 21, 2020 · Updated Aug 4, 2024
Medium · CVSS 6.7
An issue was discovered in the selinux-policy (aka Reference Policy) package 3.14 through 2020-08-24 because the .config/Yubico directory is mishandled. Consequently, when SELinux is in enforced mode, pam-u2f is not allowed to read the user's U2F configuration file. If configured with the nouserok option (the default when configured by the authselect tool), and that file cannot be read, the second factor is disabled. An attacker with only the knowledge of the password can then log in, bypassing 2FA.
Published Aug 24, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Fossil before 2.10.2, 2.11.x before 2.11.2, and 2.12.x before 2.12.1 allows remote authenticated users to execute arbitrary code. An attacker must have check-in privileges on the repository.
Published Aug 25, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
TechKshetra Info Solutions Pvt. Ltd Savsoft Quiz 5.5 and earlier has XSS which can result in an attacker injecting the XSS payload in the User Registration section and each time the admin visits the manage user section from the admin panel, the XSS triggers and the attacker can steal the cookie via crafted payload.
Published Aug 25, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In Sonatype Nexus Repository 3.26.1, an S3 secret key can be exposed by an admin user.
Published Aug 25, 2020 · Updated Aug 4, 2024