CVE-2020-14000 to CVE-2020-14999
92 CVEs with public proof-of-concept exploits.
- CVE-2020-140001 PoCMIT Lifelong Kindergarten Scratch scratch-vm before 0.2.0-prerelease.20200714185213 loads extension URLs from untrusted project.json files…
- CVE-2020-140041 PoCAn issue was discovered in Icinga2 before v2.12.0-rc1. The prepare-dirs script (run as part of the icinga2 systemd service) executes chmod…
- CVE-2020-140061 PoCSolarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows XSS via a Responsible Team.
- CVE-2020-140071 PoCSolarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows XSS via a name of an alert definition.
- CVE-2020-140084 PoCsZoho ManageEngine Applications Manager 14710 and before allows an authenticated admin user to upload a vulnerable jar in a specific…
- CVE-2020-140111 PoCLansweeper 6.0.x through 7.2.x has a default installation in which the admin password is configured for the admin account, unless…
- CVE-2020-140211 PoCAn issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The ASP.net SMS module can be used to read and validate the source code of…
- CVE-2020-140221 PoCOzeki NG SMS Gateway 4.17.1 through 4.17.6 does not check the file type when bulk importing new contacts ("Import Contacts" functionality)…
- CVE-2020-140231 PoCOzeki NG SMS Gateway through 4.17.6 allows SSRF via SMS WCF or RSS To SMS.
- CVE-2020-140241 PoCOzeki NG SMS Gateway through 4.17.6 has multiple authenticated stored and/or reflected XSS vulnerabilities via the (1) Receiver or…
- CVE-2020-140251 PoCOzeki NG SMS Gateway through 4.17.6 has multiple CSRF vulnerabilities. For example, an administrator, by following a link, can be tricked…
- CVE-2020-140261 PoCCSV Injection (aka Excel Macro Injection or Formula Injection) exists in the Export Of Contacts feature in Ozeki NG SMS Gateway through…
- CVE-2020-140271 PoCAn issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The database connection strings accept custom unsafe arguments, such as…
- CVE-2020-140281 PoCAn issue was discovered in Ozeki NG SMS Gateway through 4.17.6. By leveraging a path traversal vulnerability in the Autoreply module's…
- CVE-2020-140291 PoCAn issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The RSS To SMS module processes XML files in an unsafe manner. This opens…
- CVE-2020-140311 PoCAn issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The outbox functionality of the TXT File module can be used to delete…
- CVE-2020-140321 PoCASRock 4x4 BOX-R1000 before BIOS P1.40 allows privilege escalation via code execution in the SMM.
- CVE-2020-140421 PoC** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Cross Site Scripting (XSS) vulnerability was found in Codiad v1.7.8 and later. The…
- CVE-2020-140441 PoC** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** A Server-Side Request Forgery (SSRF) vulnerability was found in Codiad v1.7.8 and later. A user…
- CVE-2020-140641 PoCIceWarp Email Server 12.3.0.1 has Incorrect Access Control for user accounts.
- CVE-2020-140652 PoCsIceWarp Email Server 12.3.0.1 allows remote attackers to upload files and consume disk space.
- CVE-2020-140662 PoCsIceWarp Email Server 12.3.0.1 allows remote attackers to upload JavaScript files that are dangerous for clients to access.
- CVE-2020-140732 PoCsXSS exists in PRTG Network Monitor 20.1.56.1574 via crafted map properties. An attacker with Read/Write privileges can create a map, and…
- CVE-2020-140921 PoCThe CodePeople Payment Form for PayPal Pro plugin before 1.1.65 for WordPress allows SQL Injection.
- CVE-2020-141445 PoCsThe git hook feature in Gitea 1.1.0 through 1.12.5 might allow for authenticated remote code execution in customer environments where the…
- CVE-2020-141451 PoCThe client side in OpenSSH 5.7 through 8.4 has an Observable Discrepancy leading to an information leak in the algorithm negotiation. This…
- CVE-2020-141461 PoCKumbiaPHP through 1.1.1, in Development mode, allows XSS via the public/pages/kumbia PATH_INFO.
- CVE-2020-141531 PoCIn IJG JPEG (aka libjpeg) from version 8 through 9c, jdhuff.c has an out-of-bounds array read for certain table pointers.
- CVE-2020-141572 PoCsThe wireless-communication feature of the ABUS Secvest FUBE50001 device does not encrypt sensitive data such as PIN codes or IDs of used…
- CVE-2020-141661 PoCThe /servicedesk/customer/portals resource in Jira Service Desk Server and Data Center before version 4.10.0 allows remote attackers with…
- CVE-2020-141796 PoCsAffected versions of Atlassian Jira Server and Data Center allow remote, unauthenticated attackers to view custom field names and custom…
- CVE-2020-141819 PoCsAffected versions of Atlassian Jira Server and Data Center allow an unauthenticated user to enumerate users via an Information Disclosure…
- CVE-2020-141951 PoCFasterXML jackson-databind 2.x before 2.9.10.5 mishandles the interaction between serialization gadgets and typing, related to…
- CVE-2020-142011 PoCDolibarr CRM before 11.0.5 allows privilege escalation. This could allow remote authenticated attackers to upload arbitrary files via…
- CVE-2020-142092 PoCsDolibarr before 11.0.5 allows low-privilege users to upload files of dangerous types, leading to arbitrary code execution. This occurs…
- CVE-2020-142921 PoCIn the COVIDSafe application through 1.0.21 for Android, unsafe use of the Bluetooth transport option in the GATT connection allows…
- CVE-2020-142932 PoCsconf_datetime in Secudos DOMOS 5.8 allows remote attackers to execute arbitrary commands as root via shell metacharacters in the zone…
- CVE-2020-142943 PoCsAn issue was discovered in Secudos Qiata FTA 1.70.19. The comment feature allows persistent XSS that is executed when reading transfer…
- CVE-2020-142958 PoCsA SQL injection issue in color.php in Cacti 1.2.12 allows an admin to inject SQL via the filter parameter. This can lead to remote command…
- CVE-2020-143151 PoCA memory corruption vulnerability is present in bspatch as shipped in Colin Percival’s bsdiff tools version 4.3. Insufficient checks when…
- CVE-2020-143214 PoCsIn Moodle before 3.9.1, 3.8.4, 3.7.7 and 3.5.13, teachers of a course were able to assign themselves the manager role within that course.
- CVE-2020-143311 PoCA flaw was found in the Linux kernel’s implementation of the invert video code on VGA consoles when a local attacker attempts to resize…
- CVE-2020-143434 PoCsA vulnerability was discovered in the PyYAML library in versions before 5.4, where it is susceptible to arbitrary code execution when it…
- CVE-2020-143541 PoCA possible use-after-free and double-free in c-ares lib version 1.16.0 if ares_destroy() is called prior to ares_getaddrinfo() completing.…
- CVE-2020-143561 PoCA flaw null pointer dereference in the Linux kernel cgroupv2 subsystem in versions before 5.7.10 was found in the way when reboot the…
- CVE-2020-143643 PoCsAn out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while…
- CVE-2020-143681 PoCA flaw was found in Eclipse Che in versions prior to 7.14.0 that impacts CodeReady Workspaces. When configured with cookies…
- CVE-2020-143721 PoCA flaw was found in grub2 in versions prior to 2.06, where it incorrectly enables the usage of the ACPI command when Secure Boot is…
- CVE-2020-143731 PoCA use after free was found in igc_reloc_struct_ptr() of psi/igc.c of ghostscript-9.25. A local attacker could supply a specially crafted…
- CVE-2020-143811 PoCA flaw was found in the Linux kernel’s futex implementation. This flaw allows a local attacker to corrupt system memory or escalate their…
- CVE-2020-143861 PoCA flaw was found in the Linux kernel before 5.9-rc4. Memory corruption can be exploited to gain root privileges from unprivileged…
- CVE-2020-144082 PoCsAn issue was discovered in Agentejo Cockpit 0.10.2. Insufficient sanitization of the to parameter in the /auth/login route allows for…
- CVE-2020-144131 PoCNeDi 1.9C is vulnerable to XSS because of an incorrect implementation of sanitize() in inc/libmisc.php. This function attempts to escape…
- CVE-2020-144181 PoCA TOCTOU vulnerability exists in madCodeHook before 2020-07-16 that allows local attackers to elevate their privileges to SYSTEM. This…
- CVE-2020-144211 PoCaaPanel through 6.6.6 allows remote authenticated users to execute arbitrary commands via the Script Content box on the Add Cron Job screen.
- CVE-2020-144252 PoCsFoxit Reader before 10.0 allows Remote Command Execution via the app.opencPDFWebPage JavsScript API. An attacker can execute local files…
- CVE-2020-144611 PoCZyxel Armor X1 WAP6806 1.00(ABAL.6)C0 devices allow Directory Traversal via the images/eaZy/ URI.
- CVE-2020-144731 PoCStack-based buffer overflow vulnerability in Vigor3900, Vigor2960, and Vigor300B with firmware before 1.5.1.1.
- CVE-2020-144743 PoCsThe Cellebrite UFED physical device 5.0 through 7.5.0.845 relies on key material hardcoded within both the executable code supporting the…
- CVE-2020-146445 PoCsKEVVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected…
- CVE-2020-146457 PoCsVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected…
- CVE-2020-147507 PoCsKEVVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected…
- CVE-2020-147562 PoCsVulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core Components). Supported versions that are…
- CVE-2020-148152 PoCsVulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Analytics Actions).…
- CVE-2020-148642 PoCsKEVVulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Installation).…
- CVE-2020-148718 PoCsKEVVulnerability in the Oracle Solaris product of Oracle Systems (component: Pluggable authentication module). Supported versions that are…
- CVE-2020-1488247 PoCsKEVVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected…
- CVE-2020-148839 PoCsKEVVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected…
- CVE-2020-149301 PoCAn issue was discovered in BT CTROMS Terminal OS Port Portal CT-464. Account takeover can occur because the password-reset feature…
- CVE-2020-149311 PoCA stack-based buffer overflow in DMitry (Deepmagic Information Gathering Tool) 1.3a might allow remote WHOIS servers to execute arbitrary…
- CVE-2020-149381 PoCAn issue was discovered in map.c in FreedroidRPG 1.0rc2. It assumes lengths of data sets read from saved game files. It copies data from a…
- CVE-2020-149391 PoCAn issue was discovered in savestruct_internal.c in FreedroidRPG 1.0rc2. Saved game files are composed of Lua scripts that recover a…
- CVE-2020-149401 PoCAn issue was discovered in io/gpx/GPXDocumentReader.java in TuxGuitar 1.5.4. It uses misconfigured XML parsers, leading to XXE while…
- CVE-2020-149433 PoCsThe Firstname and Lastname parameters in Global RADAR BSA Radar 1.6.7234.24750 and earlier are vulnerable to stored cross-site scripting…
- CVE-2020-149443 PoCsGlobal RADAR BSA Radar 1.6.7234.24750 and earlier lacks valid authorization controls in multiple functions. This can allow for…
- CVE-2020-149452 PoCsA privilege escalation vulnerability exists within Global RADAR BSA Radar 1.6.7234.24750 and earlier that allows an authenticated,…
- CVE-2020-149463 PoCsdownloadFile.ashx in the Administrator section of the Surveillance module in Global RADAR BSA Radar 1.6.7234.24750 and earlier allows…
- CVE-2020-149473 PoCsOCS Inventory NG 2.7 allows Remote Command Execution via shell metacharacters to require/commandLine/CommandLine.php because mib_file in…
- CVE-2020-149551 PoCIn Jiangmin Antivirus 16.0.13.129, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have…
- CVE-2020-149591 PoCMultiple XSS vulnerabilities in the Easy Testimonials plugin before 3.6 for WordPress allow remote attackers to inject arbitrary web…
- CVE-2020-149601 PoCA SQL injection vulnerability in PHP-Fusion 9.03.50 affects the endpoint administration/comments.php via the ctype parameter,
- CVE-2020-149621 PoCMultiple XSS vulnerabilities in the Final Tiles Gallery plugin before 3.4.19 for WordPress allow remote attackers to inject arbitrary web…
- CVE-2020-149651 PoCOn TP-Link TL-WR740N v4 and TL-WR740ND v4 devices, an attacker with access to the admin panel can inject HTML code and change the HTML…
- CVE-2020-149661 PoCAn issue was discovered in the jsrsasign package through 8.0.18 for Node.js. It allows a malleability in ECDSA signatures by not checking…
- CVE-2020-149671 PoCAn issue was discovered in the jsrsasign package before 8.0.18 for Node.js. Its RSA PKCS1 v1.5 decryption implementation does not detect…
- CVE-2020-149681 PoCAn issue was discovered in the jsrsasign package before 8.0.17 for Node.js. Its RSASSA-PSS (RSA-PSS) implementation does not detect…
- CVE-2020-149721 PoCMultiple SQL injection vulnerabilities in Sourcecodester Pisay Online E-Learning System 1.0 allow remote unauthenticated attackers to…
- CVE-2020-149731 PoCThe loginForm within the general/login.php webpage in webTareas 2.0p8 suffers from a Reflected Cross Site Scripting (XSS) vulnerability…
- CVE-2020-149741 PoCThe driver in IOBit Unlocker 1.1.2 allows a low-privileged user to unlock a file and kill processes (even ones running as SYSTEM) that…
- CVE-2020-149831 PoCThe server in Chocolate Doom 3.0.0 and Crispy Doom 5.8.0 doesn't validate the user-controlled num_players value, leading to a buffer…
- CVE-2020-149902 PoCsIOBit Advanced SystemCare Free 13.5.0.263 allows local users to gain privileges for file deletion by manipulating the Clean & Optimize…
- CVE-2020-149931 PoCA stack-based buffer overflow on DrayTek Vigor2960, Vigor3900, and Vigor300B devices before 1.5.1.1 allows remote attackers to execute…