High · CVSS 7.5
A Red Hat only CVE-2020-12351 regression issue was found in the way the Linux kernel's Bluetooth implementation handled L2CAP packets with A2MP CID. This flaw allows a remote attacker in an adjacent range to crash the system, causing a denial of service or potentially executing arbitrary code on the system by sending a specially crafted L2CAP packet. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Published Nov 5, 2020 · Updated Aug 4, 2024
Medium · CVSS 5.7
An issue was discovered in ManagedClusterView API, that could allow secrets to be disclosed to users without the correct permissions. Views created for an admin user would be made available for a short time to users with only view permission. In this short time window the user with view permission could read cluster secrets that should only be disclosed to admin users.
Published Nov 9, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged local guest user to become the active agent for spice-vdagentd, possibly resulting in a denial of service or information leakage from the host. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.
Published Nov 26, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A flaw was found in the way the spice-vdagentd daemon handled file transfers from the host system to the virtual machine. Any unprivileged local guest user with access to the UNIX domain socket path `/run/spice-vdagentd/spice-vdagent-sock` could use this flaw to perform a memory denial of service for spice-vdagentd or even other processes in the VM system. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and previous versions.
Published Nov 25, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A flaw was found in the spice-vdagentd daemon, where it did not properly handle client connections that can be established via the UNIX domain socket in `/run/spice-vdagentd/spice-vdagent-sock`. Any unprivileged local guest user could use this flaw to prevent legitimate agents from connecting to the spice-vdagentd daemon, resulting in a denial of service. The highest threat from this vulnerability is to system availability. This flaw affects spice-vdagent versions 0.20 and prior.
Published Nov 26, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A flaw was discovered in WildFly before 21.0.0.Final where, Resource adapter logs plain text JMS password at warning level on connection error, inserting sensitive information in the log file.
Published Nov 24, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A flaw was found in the SPICE file transfer protocol. File data from the host system can end up in full or in parts in the client connection of an illegitimate local user in the VM system. Active file transfers from other users could also be interrupted, resulting in a denial of service. The highest threat from this vulnerability is to data confidentiality as well as system availability. This flaw affects spice-vdagent versions 0.20 and prior.
Published Nov 26, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
hw/usb/hcd-ohci.c in QEMU 5.0.0 has a stack-based buffer over-read via values obtained from the host controller driver.
Published Nov 30, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An authenticated attacker can inject malicious code into "lang" parameter in /uno/central.php file in CMSuno 1.6.2 and run this PHP code in the web page. In this way, attacker can takeover the control of the server.
Published Nov 13, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In SaltStack Salt through 3002, salt-netapi improperly validates eauth credentials and tokens. A user can bypass authentication and invoke Salt SSH.
Published Nov 6, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In CMSuno 1.6.2, an attacker can inject malicious PHP code as a "username" while changing his/her username & password. After that, when attacker logs in to the application, attacker's code will be run. As a result of this vulnerability, authenticated user can run command on the server.
Published Nov 13, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SimplePHPscripts News Script PHP Pro 2.3 is affected by a Cross Site Request Forgery (CSRF) vulnerability, which allows attackers to add new users.
Published Nov 24, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
File upload vulnerability exists in UCMS 1.5.0, and the attacker can take advantage of this vulnerability to obtain server management permission.
Published Nov 30, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SimplePHPscripts News Script PHP Pro 2.3 is affected by a SQL Injection via the id parameter in an editNews action.
Published Nov 24, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
app\admin\controller\sys\Uploads.php in lemocms 1.8.x allows users to upload files to upload executable files.
Published Nov 18, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Cross-site Scripting (XSS) vulnerability in grocy 2.7.1 via the add recipe module, which gets executed when deleting the recipe.
Published Nov 18, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SimplePHPscripts News Script PHP Pro 2.3 is affected by a Cross Site Scripting (XSS) vulnerability via the editor_name parameter.
Published Nov 24, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SimplePHPscripts News Script PHP Pro 2.3 does not properly set the HttpOnly Flag from Session Cookies.
Published Nov 24, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
CSV Injection exists in InterMind iMind Server through 3.13.65 via the csv export functionality.
Published Nov 5, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Stored XSS in InterMind iMind Server through 3.13.65 allows any user to hijack another user's session by sending a malicious file in the chat.
Published Nov 5, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Cross domain policies in Taskcafe Project Management tool before version 0.1.0 and 0.1.1 allows remote attackers to access sensitive data such as access token.
Published Nov 17, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An XSS issue exists in the question-pool file-upload preview feature in ILIAS 6.4.
Published Nov 10, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Remote Code Execution can occur via the external news feed in ILIAS 6.4 because of incorrect parameter sanitization for Magpie RSS data.
Published Nov 10, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In JetBrains YouTrack before 2020.3.6638, improper access control for some subresources leads to information disclosure via the REST API.
Published Nov 16, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
HashiCorp Consul Enterprise version 1.7.0 up to 1.8.4 includes a namespace replication bug which can be triggered to cause denial of service via infinite Raft writes. Fixed in 1.7.9 and 1.8.5.
Published Nov 4, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
JetBrains ToolBox before version 1.18 is vulnerable to Remote Code Execution via a browser protocol handler.
Published Nov 16, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
In JetBrains YouTrack before 2020.3.7955, an attacker could access workflow rules without appropriate access grants.
Published Nov 16, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The affected product is vulnerable to three stack-based buffer overflows, which may allow an unauthenticated attacker to remotely execute arbitrary code on the IP150 (firmware versions 5.02.09).
Published Nov 21, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The affected product is vulnerable to five post-authentication buffer overflows, which may allow a logged in user to remotely execute arbitrary code on the IP150 (firmware versions 5.02.09).
Published Nov 21, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The affected product transmits unencrypted sensitive information, which may allow an attacker to access this information on the NIO 50 (all versions).
Published Nov 13, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The affected product does not properly validate input, which may allow an attacker to execute a denial-of-service attack on the NIO 50 (all versions).
Published Nov 13, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
BD Alaris PC Unit, Model 8015, Versions 9.33.1 and earlier and BD Alaris Systems Manager, Versions 4.33 and earlier The affected products are vulnerable to a network session authentication vulnerability within the authentication process between specified versions of the BD Alaris PC Unit and the BD Alaris Systems Manager. If exploited, an attacker could perform a denial-of-service attack on the BD Alaris PC Unit by modifying the configuration headers of data in transit. A denial-of-service attack could lead to a drop in the wireless capability of the BD Alaris PC Unit, resulting in manual operation of the PC Unit.
Published Nov 13, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
The cache action in action/cache.py in MoinMoin through 1.9.10 allows directory traversal through a crafted HTTP request. An attacker who can upload attachments to the wiki can use this to achieve remote code execution.
Published Nov 10, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
JetBrains ToolBox before version 1.18 is vulnerable to a Denial of Service attack via a browser protocol handler.
Published Nov 16, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A stack-based buffer overflow in fbwifi_continue.cgi on Zyxel UTM and VPN series of gateways running firmware version V4.30 through to V4.55 allows remote unauthenticated attackers to execute arbitrary code via a crafted http packet.
Published Nov 27, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
SSRF exists in osTicket before 1.14.3, where an attacker can add malicious file to server or perform port scanning.
Published Nov 2, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Exposed Erlang Cookie could lead to Remote Command Execution (RCE) attack. Communication between Erlang nodes is done by exchanging a shared secret (aka "magic cookie"). There are cases where the magic cookie is included in the content of the logs. An attacker can use the cookie to attach to an Erlang node and run OS level commands on the system running the Erlang node. Affects version: 6.5.1. Fix version: 6.6.0.
Published Nov 12, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A remote code execution vulnerability is identified in FruityWifi through 2.4. Due to improperly escaped shell metacharacters obtained from the POST request at the page_config_adv.php page, it is possible to perform remote code execution by an authenticated attacker. This is similar to CVE-2018-17317.
Published Nov 5, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
An issue was found in /showReports.do Zoho ManageEngine Applications Manager up to 14550, allows attackers to gain escalated privileges via the resourceid parameter.
Published Nov 3, 2021 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Cross Site Scripting (XSS) vulnerability in the Registration page of the admin panel in PHPGurukul User Registration & Login and User Management System With admin panel 2.1.
Published Nov 18, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
BAB TECHNOLOGIE GmbH eibPort V3 prior to 3.8.3 devices allow denial of service (Uncontrolled Resource Consumption) via requests to the lighttpd component.
Published Nov 12, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Improper Restriction of XML External Entity Reference in subsystem forIntel(R) Quartus(R) Prime Pro Edition before version 20.3 and Intel(R) Quartus(R) Prime Standard Edition before version 20.2 may allow unauthenticated user to potentially enable information disclosure via network access.
Published Nov 12, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Insecure inherited permissions in firmware update tool for some Intel(R) NUCs may allow an authenticated user to potentially enable escalation of privilege via local access.
Published Nov 12, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Incorrect default permissions in the Intel(R) Board ID Tool version v.1.01 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published Nov 12, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Incorrect default permissions in the Intel(R) DSA before version 20.8.30.6 may allow an authenticated user to potentially enable denial of service via local access.
Published Nov 12, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Incorrect file permissions in BlueStacks 4 through 4.230 on Windows allow a local attacker to escalate privileges by modifying a file that is later executed by a higher-privileged user.
Published Nov 10, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Sensitive information could be disclosed in the JetBrains YouTrack application before 2020.2.0 for Android via application backups.
Published Nov 16, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
Pega Platform before 8.4.0 has a XSS issue via stream rule parameters used in the request header.
Published Nov 9, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
A10 Networks ACOS and aGalaxy management Graphical User Interfaces (GUIs) have an unauthenticated Remote Code Execution (RCE) vulnerability that could be used to compromise affected ACOS systems. ACOS versions 3.2.x (including and after 3.2.2), 4.x, and 5.1.x are affected. aGalaxy versions 3.0.x, 3.2.x, and 5.0.x are affected.
Published Nov 10, 2020 · Updated Aug 4, 2024
Unknown · CVSS Not scored
httpd on TP-Link TL-WPA4220 devices (versions 2 through 4) allows remote authenticated users to execute arbitrary OS commands by sending crafted POST requests to the endpoint /admin/powerline. Fixed version: TL-WPA4220(EU)_V4_201023
Published Nov 18, 2020 · Updated Aug 4, 2024