LiveActive security incident?Get immediate response
CVE archive

November 2020

Browse CVE records published in November 2020, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 1371 matching CVEs · Page 25 of 28.

Unknown · CVSS Not scored

CVE-2020-8267: A security issue was found in UniFi Protect controller v1.14.10 and earlier.The authentication in the UniFi...

A security issue was found in UniFi Protect controller v1.14.10 and earlier.The authentication in the UniFi Protect controller API was using “x-token” improperly, allowing attackers to use the API to send authenticated messages without a valid token.This vulnerability was fixed in UniFi Protect v1.14.11 and newer.This issue does not impact UniFi Cloud Key Gen 2 plus.This issue does not impact UDM-Pro customers with UniFi Protect stopped.Affected Products:UDM-Pro firmware 1.7.2 and earlier.UNVR firmware 1.3.12 and earlier.Mitigation:Update UniFi Protect to v1.14.11 or newer version; the UniFi Protect controller can be updated through your UniFi OS settings.Alternatively, you can update UNVR and UDM-Pro to:- UNVR firmware to 1.3.15 or newer.- UDM-Pro firmware to 1.8.0 or newer.

Published Nov 5, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7962: An issue was discovered in One Identity Password Manager 5.8.

An issue was discovered in One Identity Password Manager 5.8. An attacker could enumerate valid answers for a user. It is possible for an attacker to detect a valid answer based on the HTTP response content, and reuse this answer later for a password reset on a chosen password. The enumeration is possible because, within the HTTP response content, WRONG ID is only returned when the answer is incorrect.

Published Nov 13, 2020 · Updated Aug 4, 2024

High · CVSS 7.5

CVE-2020-7882: anySign directory traversal vulnerability

Using the parameter of getPFXFolderList function, attackers can see the information of authorization certification and delete the files. It occurs because the parameter contains path traversal characters(ie. '../../../')

Published Nov 22, 2021 · Updated Aug 4, 2024

High · CVSS 7.5

CVE-2020-7881: AfreecaTV streamer service stack-based buffer overflow

The vulnerability function is enabled when the streamer service related to the AfreecaTV communicated through web socket using 21201 port. A stack-based buffer overflow leading to remote code execution was discovered in strcpy() operate by "FanTicket" field. It is because of stored data without validation of length.

Published Nov 26, 2021 · Updated Aug 4, 2024

High · CVSS 8.8

CVE-2020-7879: ipTIME C200 IP Camera command injection vulnerability

This issue was discovered when the ipTIME C200 IP Camera was synchronized with the ipTIME NAS. It is necessary to extract value for ipTIME IP camera because the ipTIME NAS send ans setCookie('[COOKIE]') . The value is transferred to the --header option in wget binary, and there is no validation check. This vulnerability allows remote attackers to execute remote command.

Published Nov 30, 2021 · Updated Aug 4, 2024

High · CVSS 7.5

CVE-2020-7880: douzone NeoRS remote support program ActiveX vulnerability

The vulnerabilty was discovered in ActiveX module related to NeoRS remote support program. This issue allows an remote attacker to download and execute remote file. It is because of improper parameter validation of StartNeoRS function in ActiveX.

Published Nov 30, 2021 · Updated Aug 4, 2024

Medium · CVSS 6.4

CVE-2020-7842: D'live AP command injection vulnerability

Improper Input validation vulnerability exists in Netis Korea D'live AP which could cause arbitrary command injection and execution when the time setting (using ntpServerlp1 parameter) for the users. This affects D'live set-top box AP(WF2429TB) v1.1.10.

Published Nov 20, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7572: A CWE-611 Improper Restriction of XML External Entity Reference vulnerability exists in EcoStruxure Buildin...

A CWE-611 Improper Restriction of XML External Entity Reference vulnerability exists in EcoStruxure Building Operation WebReports V1.9 - V3.1 that could cause an authenticated remote user being able to inject arbitrary XML code and obtain disclosure of confidential data, denial of service, server side request forgery due to improper configuration of the XML parser.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7561: A CWE-306: Missing Authentication for Critical Function vulnerability exists in Easergy T300 (with firmware...

A CWE-306: Missing Authentication for Critical Function vulnerability exists in Easergy T300 (with firmware 2.7 and older) that could cause a wide range of problems, including information exposure, denial of service, and command execution when access to a resource from an attacker is not restricted or incorrectly restricted.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7569: A CWE-434 Unrestricted Upload of File with Dangerous Type vulnerability exists in EcoStruxure Building Oper...

A CWE-434 Unrestricted Upload of File with Dangerous Type vulnerability exists in EcoStruxure Building Operation WebReports V1.9 - V3.1 that could cause an authenticated remote user being able to upload arbitrary files due to incorrect verification of user supplied files and achieve remote code execution.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7538: A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in PLC Simulator on Ec...

A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC simulator present in EcoStruxureª Control Expert software when receiving a specially crafted request over Modbus.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7571: A CWE-79 Multiple Improper Neutralization of Input During Web Page Generation (Cross-site Scripting Reflect...

A CWE-79 Multiple Improper Neutralization of Input During Web Page Generation (Cross-site Scripting Reflected) vulnerability exists in EcoStruxure Building Operation WebReports V1.9 - V3.1 that could cause a remote attacker to inject arbitrary web script or HTML due to incorrect sanitization of user supplied data and achieve a Cross-Site Scripting reflected attack against other WebReport users.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7570: A CWE-79 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting Stored) vulnerab...

A CWE-79 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting Stored) vulnerability exists in EcoStruxure Building Operation WebReports V1.9 - V3.1 that could cause an authenticated remote user being able to inject arbitrary web script or HTML due to incorrect sanitization of user-supplied data and achieve a Cross-Site Scripting stored attack against other WebReport users.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7568: A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon M221...

A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon M221 (all references, all versions) that could allow non sensitive information disclosure when the attacker has captured the traffic between EcoStruxure Machine - Basic software and Modicon M221 controller.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7559: A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in P...

A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC simulator present in EcoStruxureª Control Expert software when receiving a specially crafted request over Modbus.

Published Nov 19, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7472: An authorization bypass and PHP local-file-include vulnerability in the installation component of SugarCRM...

An authorization bypass and PHP local-file-include vulnerability in the installation component of SugarCRM before 8.0, 8.0 before 8.0.7, 9.0 before 9.0.4, and 10.0 before 10.0.0 allows for unauthenticated remote code execution against a configured SugarCRM instance via crafted HTTP requests. (This is exploitable even after installation is completed.).

Published Nov 12, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-7207: A local elevation of privilege using physical access security vulnerability was found in HPE Proliant Gen10...

A local elevation of privilege using physical access security vulnerability was found in HPE Proliant Gen10 Servers using Intel Innovation Engine (IE). This attack requires a physical attack to the server motherboard. To mitigate this issue, ensure your server is always physically secured. HPE will not address this issue in the impacted Gen 10 servers listed. HPE recommends using appropriate physical security methods as a compensating control to disallow an attacker from having physical access to the server main circuit board.

Published Nov 5, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-6939: Tableau Server installations configured with Site-Specific SAML that allows the APIs to be used by unauthen...

Tableau Server installations configured with Site-Specific SAML that allows the APIs to be used by unauthenticated users. If exploited, this could allow a malicious user to configure Site-Specific SAML settings and could lead to account takeover for users of that site. Tableau Server versions affected on both Windows and Linux are: 2018.2 through 2018.2.27, 2018.3 through 2018.3.24, 2019.1 through 2019.1.22, 2019.2 through 2019.2.18, 2019.3 through 2019.3.14, 2019.4 through 2019.4.13, 2020.1 through 2020.1.10, 2020.2 through 2020.2.7, and 2020.3 through 2020.3.2.

Published Nov 23, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-6877: A ZTE product is impacted by an information leak vulnerability.

A ZTE product is impacted by an information leak vulnerability. An attacker could use this vulnerability to obtain the authentication password of the handheld terminal and access the device illegally for operation. This affects: ZXA10 eODN V2.3P2T1

Published Nov 5, 2020 · Updated Aug 4, 2024

Unknown · CVSS Not scored

CVE-2020-6879: Some ZTE devices have input verification vulnerabilities.

Some ZTE devices have input verification vulnerabilities. The devices support configuring a static prefix through the web management page. The restriction of the front-end code can be bypassed by constructing a POST request message and sending the request to the creation of a static routing rule configuration interface. The WEB service backend fails to effectively verify the abnormal input. As a result, the attacker can successfully use the vulnerability to tamper parameter values. This affects: ZXHN Z500 V1.0.0.2B1.1000 and ZXHN F670L V1.1.10P1N2E. This is fixed in ZXHN Z500 V1.0.1.1B1.1000 and ZXHN F670L V1.1.10P2N2.

Published Nov 19, 2020 · Updated Aug 4, 2024

Low · CVSS 2.6

CVE-2020-6317: In certain situations, an attacker with regular user credentials and local access to an ASE cockpit install...

In certain situations, an attacker with regular user credentials and local access to an ASE cockpit installation can access sensitive information which appears in the installation log files. This information although sensitive is of limited utility and cannot be used to further access, modify or render unavailable any other information in the cockpit or system. This affects SAP Adaptive Server Enterprise, Versions - 15.7, 16.0.

Published Nov 30, 2020 · Updated Aug 4, 2024

High · CVSS 8.8

CVE-2020-6155: A heap overflow vulnerability exists in the Pixar OpenUSD 20.05 while parsing compressed value rep arrays i...

A heap overflow vulnerability exists in the Pixar OpenUSD 20.05 while parsing compressed value rep arrays in binary USD files. A specially crafted malformed file can trigger a heap overflow, which can result in remote code execution. To trigger this vulnerability, the victim needs to access an attacker-provided malformed file.

Published Nov 13, 2020 · Updated Aug 4, 2024