CVE-2020-8000 to CVE-2020-8999
209 CVEs with public proof-of-concept exploits.
- CVE-2020-80001 PoCIntellian Aptus Web 1.24 has a hardcoded password of 12345678 for the intellian account.
- CVE-2020-80011 PoCThe Intellian Aptus application 1.0.2 for Android has a hardcoded password of intellian for the masteruser FTP account.
- CVE-2020-80041 PoCSTMicroelectronics STM32F1 devices have Incorrect Access Control.
- CVE-2020-80102 PoCsCA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains an improper ACL handling vulnerability in the…
- CVE-2020-80124 PoCsCA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a buffer overflow vulnerability in the robot…
- CVE-2020-80141 PoCkopano-python-services: Local privilege escalation from kopano to root in kopano-spamd subpackage
- CVE-2020-80151 PoCLocal privilege escalation in exim package from user mail to root
- CVE-2020-80161 PoCrace condition in the packaging of texlive-filesysten
- CVE-2020-80191 PoCsyslog-ng: Local privilege escalation from new to root in %post
- CVE-2020-80231 PoCLocal privilege escalation from ldap to root when using OPENLDAP_CONFIG_BACKEND=ldap in openldap2
- CVE-2020-80291 PoCskuba: Insecure handling of private key
- CVE-2020-80361 PoCstr2tokbuf used incorrectly by print-someip.c
- CVE-2020-80871 PoCSMC Networks D3G0804W D3GNV5M-3.5.1.6.10_GA devices allow remote command execution by leveraging access to the Network Diagnostic Tools…
- CVE-2020-80901 PoCThe Username field in the Storage Service settings of A1 WLAN Box ADB VV2220v2 devices allows stored XSS (after a successful Administrator…
- CVE-2020-80912 PoCssvg.swf in TYPO3 6.2.0 to 6.2.38 ELTS and 7.0.0 to 7.1.0 could allow an unauthenticated, remote attacker to conduct a cross-site scripting…
- CVE-2020-81032 PoCsLink Resolution Privilege Escalation Vulnerability in Bitdefender Antivirus Free (VA-8604)
- CVE-2020-81121 PoCopj_t1_clbl_decode_processor in openjp2/t1.c in OpenJPEG 2.3.1 through 2020-01-28 has a heap-based buffer overflow in the qmfbid==1 case,…
- CVE-2020-81152 PoCsA reflected XSS vulnerability has been discovered in the publicly accessible afr.php delivery script of Revive Adserver <= 5.0.3 by Jacopo…
- CVE-2020-81162 PoCsPrototype pollution vulnerability in dot-prop npm package versions before 4.2.1 and versions 5.x before 5.1.1 allows an attacker to add…
- CVE-2020-81181 PoCAn authenticated server-side request forgery in Nextcloud server 16.0.1 allowed to detect local and remote services when adding a new…
- CVE-2020-81201 PoCA reflected Cross-Site Scripting vulnerability in Nextcloud Server 16.0.1 was discovered in the svg generation.
- CVE-2020-81211 PoCA bug in Nextcloud Server 14.0.4 could expose more data in reshared link shares than intended by the sharer.
- CVE-2020-81221 PoCA missing check in Nextcloud Server 14.0.3 could give recipient the possibility to extend the expiration date of a share they received.
- CVE-2020-81231 PoCA denial of service exists in strapi v3.0.0-beta.18.3 and earlier that can be abused in the admin console using admin rights can lead to…
- CVE-2020-81241 PoCInsufficient validation and sanitization of user input exists in url-parse npm package version 1.4.4 and earlier may allow attacker to…
- CVE-2020-81251 PoCFlaw in input validation in npm package klona version 1.1.0 and earlier may allow prototype pollution attack that may result in remote…
- CVE-2020-81271 PoCInsufficient validation in cross-origin communication (postMessage) in reveal.js version 3.9.1 and earlier allow attackers to perform…
- CVE-2020-81281 PoCAn unintended require and server-side request forgery vulnerabilities in jsreport version 2.5.0 and earlier allow attackers to execute…
- CVE-2020-81291 PoCAn unintended require vulnerability in script-manager npm package version 0.8.6 and earlier may allow attackers to execute arbitrary code.
- CVE-2020-81301 PoCThere is an OS command injection vulnerability in Ruby Rake < 12.3.3 in Rake::FileList when supplying a filename that begins with the pipe…
- CVE-2020-81311 PoCArbitrary filesystem write vulnerability in Yarn before 1.22.0 allows attackers to write to any path on the filesystem and potentially…
- CVE-2020-81321 PoCLack of input validation in pdf-image npm package version <= 2.0.0 may allow an attacker to run arbitrary code if PDF file path is…
- CVE-2020-81331 PoCA wrong generation of the passphrase for the encrypted block in Nextcloud Server 19.0.1 allowed an attacker to overwrite blocks in a file.
- CVE-2020-81341 PoCServer-side request forgery (SSRF) vulnerability in Ghost CMS < 3.10.0 allows an attacker to scan local or external network or otherwise…
- CVE-2020-81352 PoCsThe uppy npm package < 1.9.3 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attacker to scan local…
- CVE-2020-81361 PoCPrototype pollution vulnerability in fastify-multipart < 1.0.5 allows an attacker to crash fastify applications parsing multipart requests…
- CVE-2020-81371 PoCCode injection vulnerability in blamer 1.0.0 and earlier may result in remote code execution when the input can be controlled by an…
- CVE-2020-81381 PoCA missing check for IPv4 nested inside IPv6 in Nextcloud server < 17.0.1, < 16.0.7, and < 15.0.14 allowed a Server-Side Request Forgery…
- CVE-2020-81401 PoCA code injection in Nextcloud Desktop Client 2.6.2 for macOS allowed to load arbitrary code when starting the client with…
- CVE-2020-81411 PoCThe dot package v1.1.2 uses Function() to compile templates. This can be exploited by the attacker if they can control the given template…
- CVE-2020-81421 PoCA security restriction bypass vulnerability has been discovered in Revive Adserver version < 5.0.5 by HackerOne user hoangn144. Revive…
- CVE-2020-81431 PoCAn Open Redirect vulnerability was discovered in Revive Adserver version < 5.0.5 and reported by HackerOne user hoangn144. A remote…
- CVE-2020-81471 PoCFlaw in input validation in npm package utils-extend version 1.0.8 and earlier may allow prototype pollution attack that may result in…
- CVE-2020-81492 PoCsLack of output sanitization allowed an attack to execute arbitrary shell commands via the logkitty npm package before version 0.7.1.
- CVE-2020-81501 PoCA cryptographic issue in Nextcloud Server 19.0.1 allowed an attacker to downgrade the encryption scheme and break the integrity of…
- CVE-2020-81522 PoCsInsufficient protection of the server-side encryption keys in Nextcloud Server 19.0.1 allowed an attacker to replace the public key to…
- CVE-2020-81531 PoCImproper access control in Groupfolders app 4.0.3 allowed to delete hidden directories when when renaming an accessible item to the same…
- CVE-2020-81541 PoCAn Insecure direct object reference vulnerability in Nextcloud Server 18.0.2 allowed an attacker to remote wipe devices of other users…
- CVE-2020-81582 PoCsPrototype pollution vulnerability in the TypeORM package < 0.2.25 may allow attackers to add or modify Object properties leading to…
- CVE-2020-81621 PoCA client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and rails < 6.0.3.1 ActiveStorage's S3 adapter…
- CVE-2020-816311 PoCsThe is a code injection vulnerability in versions of Rails prior to 5.0.1 that wouldallow an attacker who controlled the `locals` argument…
- CVE-2020-81641 PoCA deserialization of untrusted data vulnerability exists in rails < 5.2.4.3, rails < 6.0.3.1 which can allow an attacker to supply…
- CVE-2020-81659 PoCsA deserialization of untrusted data vulnernerability exists in rails < 5.2.4.3, rails < 6.0.3.1 that can allow an attacker to unmarshal…
- CVE-2020-81661 PoCA CSRF forgery vulnerability exists in rails < 5.2.5, rails < 6.0.4 that makes it possible for an attacker to, given a global CSRF token…
- CVE-2020-81671 PoCA CSRF vulnerability exists in rails <= 6.0.3 rails-ujs module that could allow attackers to send CSRF tokens to wrong domains.
- CVE-2020-81691 PoCcurl 7.62.0 through 7.70.0 is vulnerable to an information disclosure vulnerability that can lead to a partial password being leaked over…
- CVE-2020-81721 PoCTLS session reuse can lead to host certificate verification bypass in node version < 12.18.0 and < 14.4.0.
- CVE-2020-81731 PoCA too small set of random characters being used for encryption in Nextcloud Server 18.0.4 allowed decryption in shorter time than intended.
- CVE-2020-81741 PoCnapi_get_value_string_*() allows various kinds of memory corruption in node < 10.21.0, 12.18.0, and < 14.4.0.
- CVE-2020-81751 PoCUncontrolled resource consumption in `jpeg-js` before 0.4.0 may allow attacker to launch denial of service attacks using specially a…
- CVE-2020-81771 PoCcurl 7.20.0 through 7.70.0 is vulnerable to improper restriction of names for files and other resources that can lead too overwriting a…
- CVE-2020-81781 PoCInsufficient input validation in npm package `jison` <= 0.4.18 may lead to OS command injection attacks.
- CVE-2020-81801 PoCA too lax check in Nextcloud Talk 6.0.4, 7.0.2 and 8.0.7 allowed a code injection when a not correctly sanitized talk command was added by…
- CVE-2020-81821 PoCImproper access control in Nextcloud Deck 0.8.0 allowed an attacker to reshare boards shared with them with more permissions than they had…
- CVE-2020-81831 PoCA logic error in Nextcloud Server 19.0.0 caused a plaintext storage of the share password when it was given on the initial create API call.
- CVE-2020-81841 PoCA reliance on cookies without validation/integrity check security vulnerability exists in rack < 2.2.3, rack < 2.1.4 that makes it is…
- CVE-2020-81861 PoCA command injection vulnerability in the `devcert` module may lead to remote code execution when users of the module pass untrusted input…
- CVE-2020-81891 PoCA cross-site scripting error in Nextcloud Desktop client 2.6.4 allowed to present any html (including local links) when responding with…
- CVE-2020-81913 PoCsImproper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18…
- CVE-2020-81922 PoCsA denial of service vulnerability exists in Fastify v2.14.1 and v3.0.0-rc.4 that allows a malicious user to trigger resource exhaustion…
- CVE-2020-81937 PoCsKEVImproper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and…
- CVE-2020-81941 PoCReflected code injection in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18…
- CVE-2020-81951 PoCKEVImproper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18…
- CVE-2020-82021 PoCImproper check of inputs in Nextcloud Preferred Providers app v1.6.0 allowed to perform a denial of service attack when using a very long…
- CVE-2020-82033 PoCsPrototype pollution attack when using _.zipObjectDeep in lodash before 4.17.20.
- CVE-2020-82052 PoCsThe uppy npm package < 1.13.2 and < 2.0.0-alpha.5 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an…
- CVE-2020-82095 PoCsImproper access control in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server…
- CVE-2020-82141 PoCA path traversal vulnerability in servey version < 3 allows an attacker to read content of any arbitrary file.
- CVE-2020-82182 PoCsKEVA code injection vulnerability exists in Pulse Connect Secure <9.1R8 that allows an attacker to crafted a URI to perform an arbitrary code…
- CVE-2020-82231 PoCA logic error in Nextcloud Server 19.0.0 caused a privilege escalation allowing malicious users to reshare with higher permissions than…
- CVE-2020-82241 PoCA code injection in Nextcloud Desktop Client 2.6.4 allowed to load arbitrary code when placing a malicious OpenSSL config into a fixed…
- CVE-2020-82271 PoCMissing sanitization of a server response in Nextcloud Desktop Client 2.6.4 for Linux allowed a malicious Nextcloud Server to store files…
- CVE-2020-82281 PoCA missing rate limit in the Preferred Providers app 1.7.0 allowed an attacker to set the password an uncontrolled amount of times.
- CVE-2020-82291 PoCA memory leak in the OCUtil.dll library used by Nextcloud Desktop Client 2.6.4 can lead to a DoS against the host system.
- CVE-2020-82311 PoCDue to use of a dangling pointer, libcurl 7.29.0 through 7.71.1 can use the wrong connection when sending data.
- CVE-2020-82351 PoCMissing access control in Nextcloud Deck 1.0.4 caused an insecure direct object reference allowing an attacker to view all attachments.
- CVE-2020-82361 PoCA wrong configuration in Nextcloud Server 19.0.1 incorrectly made the user feel the passwordless WebAuthn is also a two factor…
- CVE-2020-82371 PoCPrototype pollution in json-bigint npm package < 1.0.0 may lead to a denial-of-service (DoS) attack.
- CVE-2020-82381 PoCA vulnerability in the authenticated user web interface of Pulse Connect Secure and Pulse Policy Secure < 9.1R8.2 could allow attackers to…
- CVE-2020-82391 PoCA vulnerability in the Pulse Secure Desktop Client < 9.1R9 is vulnerable to the client registry privilege escalation attack. This fix also…
- CVE-2020-82411 PoCA vulnerability in the Pulse Secure Desktop Client < 9.1R9 could allow the attacker to perform a MITM Attack if end users are convinced to…
- CVE-2020-82442 PoCsA buffer over-read vulnerability exists in bl <4.0.3, <3.0.1, <2.2.1, and <1.2.3 which could allow an attacker to supply user input (even…
- CVE-2020-82481 PoCA vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to escalate privilege.
- CVE-2020-82491 PoCA vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to perform buffer overflow.
- CVE-2020-82501 PoCA vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to escalate privilege.
- CVE-2020-82541 PoCA vulnerability in the Pulse Secure Desktop Client < 9.1R9 has Remote Code Execution (RCE) if users can be convinced to connect to a…
- CVE-2020-82551 PoCA vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary file…
- CVE-2020-82561 PoCA vulnerability in the Pulse Connect Secure < 9.1R8.2 admin web interface could allow an authenticated attacker to gain arbitrary file…
- CVE-2020-82591 PoCInsufficient protection of the server-side encryption keys in Nextcloud Server 19.0.1 allowed an attacker to replace the encryption keys.
- CVE-2020-82602 PoCsKEVA vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary code…
- CVE-2020-82681 PoCPrototype pollution vulnerability in json8-merge-patch npm package < 1.0.3 may allow attackers to inject or modify methods and properties…
- CVE-2020-82761 PoCThe implementation of Brave Desktop's privacy-preserving analytics system (P3A) between 1.1 and 1.18.35 logged the timestamp of when the…
- CVE-2020-82773 PoCsA Node.js application that allows an attacker to trigger a DNS request for a host of their choice could trigger a Denial of Service in…
- CVE-2020-82781 PoCImproper access control in Nextcloud Social app version 0.3.1 allowed to read posts of any user.
- CVE-2020-82791 PoCMissing validation of server certificates for out-going connections in Nextcloud Social < 0.4.0 allowed a man-in-the-middle attack.
- CVE-2020-82861 PoCcurl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verification of the OCSP…
- CVE-2020-82871 PoCNode.js versions before 10.23.1, 12.20.1, 14.15.4, 15.5.1 allow two copies of a header field in an HTTP request (for example, two…
- CVE-2020-82892 PoCsBackblaze for Windows before 7.0.1.433 and Backblaze for macOS before 7.0.1.434 suffer from improper certificate validation in…
- CVE-2020-82902 PoCsBackblaze for Windows and Backblaze for macOS before 7.0.0.439 suffer from improper privilege management in `bztransmit` helper due to…
- CVE-2020-82981 PoCfs-path node module before 0.0.25 is vulnerable to command injection by way of user-supplied inputs via the `copy`, `copySync`, `remove`,…
- CVE-2020-83001 PoCCitrix ADC and Citrix/NetScaler Gateway before 13.0-82.41, 12.1-62.23, 11.1-65.20 and Citrix ADC 12.1-FIPS before 12.1-55.238 suffer from…
- CVE-2020-84162 PoCsIKTeam BearFTP before 0.2.0 allows remote attackers to achieve denial of service via a large volume of connections to the PASV mode port.
- CVE-2020-84174 PoCsThe Code Snippets plugin before 2.14.0 for WordPress allows CSRF because of the lack of a Referer check on the import menu.
- CVE-2020-84232 PoCsA buffer overflow in the httpd daemon on TP-Link TL-WR841N V10 (firmware version 3.16.9) devices allows an authenticated remote attacker…
- CVE-2020-84243 PoCsCups Easy (Purchase & Inventory) 1.0 is vulnerable to CSRF that leads to admin account takeover via passwordmychange.php.
- CVE-2020-84253 PoCsCups Easy (Purchase & Inventory) 1.0 is vulnerable to CSRF that leads to admin account deletion via userdelete.php.
- CVE-2020-84372 PoCsThe bencoding parser in BitTorrent uTorrent through 3.5.5 (build 45505) misparses nested bencoded dictionaries, which allows a remote…
- CVE-2020-84381 PoCRuckus ZoneFlex R500 104.0.0.0.1347 devices allow an authenticated attacker to execute arbitrary OS commands via the hidden…
- CVE-2020-84391 PoCMonstra CMS through 3.0.4 allows remote authenticated users to take over arbitrary user accounts via a modified login parameter to an edit…
- CVE-2020-84401 PoCcontrollers/page_apply.php in Simplejobscript.com SJS through 1.66 is prone to unauthenticated Remote Code Execution by uploading a PHP…
- CVE-2020-84421 PoCIn OSSEC-HIDS 2.7 through 3.5.0, the server component responsible for log analysis (ossec-analysisd) is vulnerable to a heap-based buffer…
- CVE-2020-84611 PoCA CSRF protection bypass vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to get a…
- CVE-2020-84621 PoCA cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to…
- CVE-2020-84631 PoCA vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to bypass a global authorization…
- CVE-2020-84641 PoCA vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to send requests that appear to…
- CVE-2020-84651 PoCA vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to manipulate system updates using…
- CVE-2020-84661 PoCA command injection vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2, with the improved password hashing…
- CVE-2020-84932 PoCsA stored XSS vulnerability in Kronos Web Time and Attendance (webTA) affects 3.8.x and later 3.x versions before 4.0 via multiple input…
- CVE-2020-84952 PoCsIn Kronos Web Time and Attendance (webTA) 3.8.x and later 3.x versions before 4.0, the com.threeis.webta.H491delegate servlet allows an…
- CVE-2020-84971 PoCIn Artica Pandora FMS through 7.42, an unauthenticated attacker can read the chat history. The file is in JSON format and it contains user…
- CVE-2020-85041 PoCSchool Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=addadmin CSRF to add an administrative user.
- CVE-2020-85051 PoCSchool Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=deleteadmin CSRF to delete a user.
- CVE-2020-85061 PoCThe Global TV application 2.3.2 for Android and 4.7.5 for iOS sends Unencrypted Analytics.
- CVE-2020-85124 PoCsIn IceWarp Webmail Server through 11.4.4.1, there is XSS in the /webmail/ color parameter.
- CVE-2020-85157 PoCsKEVDrayTek Vigor2960 1.3.1_Beta, Vigor3900 1.4.4_Beta, and Vigor300B 1.3.3_Beta, 1.4.2.1_Beta, and 1.4.4_Beta devices allow remote code…
- CVE-2020-85183 PoCsHorde Groupware Webmail Edition 5.2.22 allows injection of arbitrary PHP code via CSV data, leading to remote code execution.
- CVE-2020-85391 PoCKia Motors Head Unit with Software version: SOP.003.30.18.0703, SOP.005.7.181019, and SOP.007.1.191209 may allow an attacker to inject…
- CVE-2020-85471 PoCphpList 3.5.0 allows type juggling for admin login bypass because == is used instead of === for password hashes, which mishandles hashes…
- CVE-2020-85492 PoCsStored XSS in the Strong Testimonials plugin before 2.40.1 for WordPress can result in an attacker performing malicious actions such as…
- CVE-2020-85546 PoCsKubernetes man in the middle using LoadBalancer or ExternalIPs
- CVE-2020-85582 PoCsKubernetes node setting allows for neighboring hosts to bypass localhost boundary
- CVE-2020-85593 PoCsPrivilege escalation from compromised node to cluster
- CVE-2020-85611 PoCWebhook redirect in kube-apiserver
- CVE-2020-85621 PoCBypass of Kubernetes API Server proxy TOCTOU
- CVE-2020-85976 PoCseap.c in pppd in ppp 2.4.2 through 2.4.8 has an rhostname buffer overflow in the eap_request and eap_response functions.
- CVE-2020-86043 PoCsA vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to disclose sensitive informatoin…
- CVE-2020-86054 PoCsA vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to execute arbitrary code on…
- CVE-2020-86063 PoCsA vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to bypass authentication on…
- CVE-2020-86154 PoCsA CSRF vulnerability in the Tutor LMS plugin before 1.5.3 for WordPress can result in an attacker approving themselves as an instructor…
- CVE-2020-86174 PoCsA logic error in code which checks TSIG validity can be used to trigger an assertion failure in tsig.c
- CVE-2020-86351 PoCWing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on installation directories and configuration files. This…
- CVE-2020-86361 PoCAn issue was discovered in OpServices OpMon 9.3.2 that allows Remote Code Execution .
- CVE-2020-86371 PoCA SQL injection vulnerability in TestLink 1.9.20 allows attackers to execute arbitrary SQL commands in dragdroptreenodes.php via the…
- CVE-2020-86392 PoCsAn unrestricted file upload vulnerability in keywordsImport.php in TestLink 1.9.20 allows remote attackers to execute arbitrary code by…
- CVE-2020-86412 PoCsLotus Core CMS 1.0.1 allows authenticated Local File Inclusion of .php files via directory traversal in the index.php page_slug parameter.
- CVE-2020-86445 PoCsKEVPlaySMS before 1.4.3 does not sanitize inputs from a malicious string.
- CVE-2020-86451 PoCAn issue was discovered in Simplejobscript.com SJS through 1.66. There is an unauthenticated SQL injection via the job applications search…
- CVE-2020-86547 PoCsAn issue was discovered in EyesOfNetwork 5.3. An authenticated web user with sufficient privileges could abuse the AutoDiscovery module to…
- CVE-2020-86556 PoCsKEVAn issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege escalation vulnerability, allowing the…
- CVE-2020-86567 PoCsAn issue was discovered in EyesOfNetwork 5.3. The EyesOfNetwork API 2.4.2 is prone to SQL injection, allowing an unauthenticated attacker…
- CVE-2020-86574 PoCsKEVAn issue was discovered in EyesOfNetwork 5.3. The installation uses the same API key (hardcoded as EONAPI_KEY in include/api_functions.php…
- CVE-2020-86581 PoCThe BestWebSoft Htaccess plugin through 1.8.1 for WordPress allows wp-admin/admin.php?page=htaccess.php&action=htaccess_editor CSRF. The…
- CVE-2020-87711 PoCThe Time Capsule plugin before 1.21.16 for WordPress has an authentication bypass. Any request containing IWP_JSON_PREFIX causes the…
- CVE-2020-87722 PoCsThe InfiniteWP Client plugin before 1.9.4.5 for WordPress has a missing authorization check in iwp_mmb_set_request in init.php. Any…
- CVE-2020-87761 PoCAlfresco Enterprise before 5.2.7 and Alfresco Community before 6.2.0 (rb65251d6-b368) has XSS via the URL property of a file.
- CVE-2020-87771 PoCAlfresco Enterprise before 5.2.7 and Alfresco Community before 6.2.0 (rb65251d6-b368) has XSS via a user profile photo, as demonstrated by…
- CVE-2020-87781 PoCAlfresco Enterprise before 5.2.7 and Alfresco Community before 6.2.0 (rb65251d6-b368) has XSS via an uploaded document, when the attacker…
- CVE-2020-87881 PoCSynaptive Medical ClearCanvas ImageServer 3.0 Alpha allows XSS (and HTML injection) via the Default.aspx UserName parameter. NOTE: the…
- CVE-2020-87892 PoCsComposr 10.0.30 allows Persistent XSS via a Usergroup name under the Security configuration.
- CVE-2020-87934 PoCsOpenSMTPD before 6.6.4 allows local users to read arbitrary files (e.g., on some Linux distributions) because of a combination of an…
- CVE-2020-87945 PoCsOpenSMTPD before 6.6.4 allows remote code execution because of an out-of-bounds read in mta_io in mta_session.c for multi-line replies.…
- CVE-2020-88041 PoCSuiteCRM through 7.11.10 allows SQL Injection via the SOAP API, the EmailUIAjax interface, or the MailMerge module.
- CVE-2020-88111 PoCajax/profile-picture-upload.php in Bludit 3.10.0 allows authenticated users to change other users' profile pictures.
- CVE-2020-88121 PoCBludit 3.10.0 allows Editor or Author roles to insert malicious JavaScript on the WYSIWYG editor. NOTE: the vendor's perspective is that…
- CVE-2020-881310 PoCsgraph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a cookie, if a…
- CVE-2020-88166 PoCsKEVPi-hole Web v4.3.2 (aka AdminLTE) allows Remote Code Execution by privileged dashboard users via a crafted DHCP static lease.
- CVE-2020-88182 PoCsAn issue was discovered in the CardGate Payments plugin through 2.0.30 for Magento 2. Lack of origin authentication in the IPN callback…
- CVE-2020-88193 PoCsAn issue was discovered in the CardGate Payments plugin through 3.1.15 for WooCommerce. Lack of origin authentication in the IPN callback…
- CVE-2020-88221 PoCDigi TransPort WR21 5.2.2.3, WR44 5.1.6.4, and WR44v2 5.1.6.9 devices allow stored XSS in the web application.
- CVE-2020-88241 PoCHitron CODA-4582U 7.1.1.30 devices allow XSS via a Managed Device name on the Wireless > Access Control > Add Managed Device screen.
- CVE-2020-88253 PoCsindex.php?p=/dashboard/settings/branding in Vanilla 2.6.3 allows stored XSS.
- CVE-2020-88261 PoCAs of v1.5.0, the Argo web interface authentication system issued immutable tokens. Authentication tokens, once issued, were usable…
- CVE-2020-88271 PoCAs of v1.5.0, the Argo API does not implement anti-automation measures such as rate limiting, account lockouts, or other anti-bruteforce…
- CVE-2020-88281 PoCAs of v1.5.0, the default admin password is set to the argocd-server pod name. For insiders with access to the cluster or logs, this issue…
- CVE-2020-88331 PoCApport race condition in crash report permissions
- CVE-2020-88359 PoCsLinux kernel bpf verifier vulnerability
- CVE-2020-88382 PoCsAn issue was discovered in Zoho ManageEngine AssetExplorer 6.5. During an upgrade of the Windows agent, it does not validate the source…
- CVE-2020-88392 PoCsStored XSS was discovered on CHIYU BF-430 232/485 TCP/IP Converter devices before 1.16.00, as demonstrated by the /if.cgi TF_submask field.
- CVE-2020-88405 PoCsFasterXML jackson-databind 2.0.0 through 2.9.10.2 lacks certain xbean-reflect/JNDI blocking, as demonstrated by…
- CVE-2020-88652 PoCsThis vulnerability allows remote attackers to execute local PHP files on affected installations of Horde Groupware Webmail Edition 5.2.22.…
- CVE-2020-88662 PoCsThis vulnerability allows remote attackers to create arbitrary files on affected installations of Horde Groupware Webmail Edition 5.2.22.…
- CVE-2020-88871 PoCTelestream Tektronix Medius before 10.7.5 and Sentry before 10.7.5 have a SQL injection vulnerability allowing an unauthenticated attacker…
- CVE-2020-89031 PoCPriviged Escalation in Google Cloud Platform's Guest-OSLogin
- CVE-2020-89071 PoCPriviged Escalation in Google Cloud Platform's Guest-OSLogin
- CVE-2020-89081 PoCTemp directory permission issue in Guava
- CVE-2020-89112 PoCsCBC padding oracle in AWS S3 Crypto SDK for GoLang
- CVE-2020-89122 PoCsIn-band key negotiation issue in AWS S3 Crypto SDK for GoLang
- CVE-2020-89132 PoCsLocal arbitrary code execution in splitinstall in Android's Play Core
- CVE-2020-89331 PoCPriviged Escalation in Google Cloud Platform's Guest-OSLogin
- CVE-2020-89461 PoCNetis WF2471 v1.2.30142 devices allow an authenticated attacker to execute arbitrary OS commands via shell metacharacters in the…
- CVE-2020-89473 PoCsfunctions_netflow.php in Artica Pandora FMS 7.0 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the…
- CVE-2020-89491 PoCGocloud S2A_WL 4.2.7.16471, S2A 4.2.7.17278, S2A 4.3.0.15815, S2A 4.3.0.17193, S3A K2P MTK 4.2.7.16528, S3A 4.3.0.16572, and ISP3000…
- CVE-2020-89503 PoCsThe AUEPLauncher service in Radeon AMD User Experience Program Launcher through 1.0.0.1 on Windows allows elevation of privilege by…
- CVE-2020-89561 PoCPulse Secure Desktop Client 9.0Rx before 9.0R5 and 9.1Rx before 9.1R4 on Windows reveals users' passwords if Save Settings is enabled.
- CVE-2020-89584 PoCsGuangzhou 1GE ONU V2801RW 1.9.1-181203 through 2.9.0-181024 and V2804RGW 1.9.1-181203 through 2.9.0-181024 devices allow remote attackers…
- CVE-2020-89631 PoCTimeTools SC7105 1.0.007, SC9205 1.0.007, SC9705 1.0.007, SR7110 1.0.007, SR9210 1.0.007, SR9750 1.0.007, SR9850 1.0.007, T100 1.0.003,…
- CVE-2020-89641 PoCTimeTools SC7105 1.0.007, SC9205 1.0.007, SC9705 1.0.007, SR7110 1.0.007, SR9210 1.0.007, SR9750 1.0.007, SR9850 1.0.007, T100 1.0.003,…
- CVE-2020-89821 PoCAn unauthenticated arbitrary file read issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones) Controller,…
- CVE-2020-89942 PoCsAn issue was discovered on XIAOMI AI speaker MDZ-25-DT 1.34.36, and 1.40.14. Attackers can get root shell by accessing the UART interface…