LiveActive security incident?Get immediate response
CVE archive

November 2020

Browse CVE records published in November 2020, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 1371 matching CVEs · Page 11 of 28.

Unknown · CVSS Not scored

CVE-2020-28942: An issue exists in PrimeKey EJBCA before 7.4.3 when enrolling with EST while proxied through an RA over the...

An issue exists in PrimeKey EJBCA before 7.4.3 when enrolling with EST while proxied through an RA over the Peers protocol. As a part of EJBCA's domain security model, the peer connector allows the restriction of client certificates (for the RA, not the end user) to a limited set of allowed CAs, thus restricting the accessibility of that RA to the rights it has within a specific role. While this works for other protocols such as CMP, it was found that the EJBCA enrollment over an EST implementation bypasses this check, allowing enrollment with a valid client certificate through any functioning and authenticated RA connected to the CA. NOTE: an attacker must already have a trusted client certificate and authorization to enroll against the targeted CA.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28922: An issue was discovered in Devid Espenschied PC Analyser through 4.10.

An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL functionality that allows low-privilege users to read and write arbitrary physical memory. This could lead to arbitrary Ring-0 code execution and escalation of privileges.

Published Nov 27, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28914: An improper file permissions vulnerability affects Kata Containers prior to 1.11.5.

An improper file permissions vulnerability affects Kata Containers prior to 1.11.5. When using a Kubernetes hostPath volume and mounting either a file or directory into a container as readonly, the file/directory is mounted as readOnly inside the container, but is still writable inside the guest. For a container breakout situation, a malicious guest can potentially modify or delete files/directories expected to be read-only.

Published Nov 17, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28924: An issue was discovered in Rclone before 1.53.3.

An issue was discovered in Rclone before 1.53.3. Due to the use of a weak random number generator, the password generator has been producing weak passwords with much less entropy than advertised. The suggested passwords depend deterministically on the time the second rclone was started. This limits the entropy of the passwords enormously. These passwords are often used in the crypt backend for encryption of data. It would be possible to make a dictionary of all possible passwords with about 38 million entries per password length. This would make decryption of secret material possible with a plausible amount of effort. NOTE: all passwords generated by affected versions should be changed.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28896: Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP...

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

Published Nov 23, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28921: An issue was discovered in Devid Espenschied PC Analyser through 4.10.

An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL functionality that allows low-privilege users to read and write to arbitrary Model Specific Registers (MSRs). This could lead to arbitrary Ring-0 code execution and escalation of privileges.

Published Nov 27, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28917: An issue was discovered in the view_statistics (aka View frontend statistics) extension before 2.0.1 for TY...

An issue was discovered in the view_statistics (aka View frontend statistics) extension before 2.0.1 for TYPO3. It saves all GET and POST data of TYPO3 frontend requests to the database. Depending on the extensions used on a TYPO3 website, sensitive data (e.g., cleartext passwords if ext:felogin is installed) may be saved.

Published Nov 18, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28656: The update functionality of the Discover Media infotainment system in Volkswagen Polo 2019 vehicles allows...

The update functionality of the Discover Media infotainment system in Volkswagen Polo 2019 vehicles allows physically proximate attackers to execute arbitrary code because some unsigned parts of a metainfo file are parsed, which can cause attacker-controlled files to be written to the infotainment system and executed as root.

Published Nov 16, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28361: Kamailio before 5.4.0, as used in Sip Express Router (SER) in Sippy Softswitch 4.5 through 5.2 and other pr...

Kamailio before 5.4.0, as used in Sip Express Router (SER) in Sippy Softswitch 4.5 through 5.2 and other products, allows a bypass of a header-removal protection mechanism via whitespace characters. This occurs in the remove_hf function in the Kamailio textops module. Particular use of remove_hf in Sippy Softswitch may allow skilled attacker having a valid credential in the system to disrupt internal call start/duration accounting mechanisms leading potentially to a loss of revenue.

Published Nov 18, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28371: An issue was discovered in ReadyTalk Avian 1.2.0 before 2020-10-27.

An issue was discovered in ReadyTalk Avian 1.2.0 before 2020-10-27. The FileOutputStream.write() method in FileOutputStream.java has a boundary check to prevent out-of-bounds memory read/write operations. However, an integer overflow leads to bypassing this check and achieving the out-of-bounds access. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

Published Nov 9, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-28416: HP has identified a security vulnerability with the I.R.I.S.

HP has identified a security vulnerability with the I.R.I.S. OCR (Optical Character Recognition) software available with HP PageWide and OfficeJet printer software installations that could potentially allow unauthorized local code execution.

Published Nov 3, 2021 · Updated Aug 4, 2024