CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2020-20138

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in the Showtime2 Slideshow module in CMS Made Simple (CMSMS) 2.2.4.

    Published: 17 Dec 2020
    6.1
    Medium

    CVE-2020-20139

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in the Remote JSON component Under the Connect menu in Flexmonster Pivot Table & Charts 2.7.17.

    Published: 17 Dec 2020
    6.1
    Medium

    CVE-2020-20140

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in Remote Report component under the Open menu in Flexmonster Pivot Table & Charts 2.7.17.

    Published: 17 Dec 2020
    6.1
    Medium

    CVE-2020-20141

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in the To OLAP (XMLA) component Under the Connect menu in Flexmonster Pivot Table & Charts 2.7.17.

    Published: 17 Dec 2020
    6.1
    Medium

    CVE-2020-20142

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in the "To Remote CSV" component under "Open" Menu in Flexmonster Pivot Table & Charts 2.7.17.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-8466

    Last Modified: 21 Nov 2024

    A command injection vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2, with the improved password hashing method enabled, could allow an unauthenticated attacker to execute certain commands by providing a manipulated password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-8465

    Last Modified: 21 Nov 2024

    A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to manipulate system updates using a combination of CSRF bypass (CVE-2020-8461) and authentication bypass (CVE-2020-8464) to execute code as user root.

    Published: 17 Dec 2020
    7.5
    High

    CVE-2020-8463

    Last Modified: 21 Nov 2024

    A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to bypass a global authorization check for anonymous users by manipulating request paths.

    Published: 17 Dec 2020
    7.5
    High

    CVE-2020-8464

    Last Modified: 21 Nov 2024

    A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to send requests that appear to come from the localhost which could expose the product's admin interface to users who would not normally have access.

    Published: 17 Dec 2020
    4.8
    Medium

    CVE-2020-8462

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to tamper with the web interface of the product.

    Published: 17 Dec 2020
    8.8
    High

    CVE-2020-8461

    Last Modified: 21 Nov 2024

    A CSRF protection bypass vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to get a victim's browser to send a specifically encoded request without requiring a valid CSRF token.

    Published: 17 Dec 2020
    4.8
    Medium

    CVE-2020-27010

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to tamper with the web interface of the product in a manner separate from the similar CVE-2020-8462.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35545

    Last Modified: 21 Nov 2024

    Time-based SQL injection exists in Spotweb 1.4.9 via the query string.

    Published: 17 Dec 2020
    10
    Critical

    CVE-2020-26276

    Last Modified: 21 Nov 2024

    Fleet is an open source osquery manager. In Fleet before version 3.5.1, due to issues in Go's standard library XML parsing, a valid SAML response may be mutated by an attacker to modify the trusted document. This can result in allowing unverified logins from a SAML IdP. Users that configure Fleet with SSO login may be vulnerable to this issue. This issue is patched in 3.5.1. The fix was made using https://github.com/mattermost/xml-roundtrip-validator If upgrade to 3.5.1 is not possible, users should disable SSO authentication in Fleet.

    Published: 17 Dec 2020
    2.7
    Low

    CVE-2020-4846

    Last Modified: 21 Nov 2024

    IBM Security Key Lifecycle Manager 3.0.1 and 4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190290.

    Published: 17 Dec 2020
    5.4
    Medium

    CVE-2020-4845

    Last Modified: 21 Nov 2024

    IBM Security Key Lifecycle Manager 3.0.1 and 4.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 190289.

    Published: 17 Dec 2020
    10
    Critical

    CVE-2020-35489

    Last Modified: 21 Nov 2024

    The contact-form-7 (aka Contact Form 7) plugin before 5.3.2 for WordPress allows Unrestricted File Upload and remote code execution because a filename may contain special characters.

    Published: 17 Dec 2020
    6.7
    Medium

    CVE-2020-35499

    Last Modified: 21 Nov 2024

    A NULL pointer dereference flaw in Linux kernel versions prior to 5.11 may be seen if sco_sock_getsockopt function in net/bluetooth/sco.c do not have a sanity check for a socket connection, when using BT_SNDMTU/BT_RCVMTU for SCO sockets. This could allow a local attacker with a special user privilege to crash the system (DOS) or leak kernel internal information.

    Published: 17 Dec 2020
    6.1
    Medium

    CVE-2020-15293

    Last Modified: 21 Nov 2024

    Memory corruption in IntLixCrashDumpDmesg, IntLixTaskFetchCmdLine, IntLixFileReadDentry and IntLixFileGetPath due to insufficient guest-data input validation may lead to denial of service conditions.

    Published: 17 Dec 2020
    7.8
    High

    CVE-2020-15294

    Last Modified: 21 Nov 2024

    Compiler Optimization Removal or Modification of Security-critical Code vulnerability in IntPeParseUnwindData() results in multiple dereferences to the same pointer. If the pointer is located in memory-mapped from the guest space, this may cause a race-condition where the generated code would dereference the same address twice, thus obtaining different values, which may lead to arbitrary code execution. This issue affects: Bitdefender Hypervisor Introspection versions prior to 1.132.2.

    Published: 17 Dec 2020
    5.5
    Medium

    CVE-2020-15292

    Last Modified: 21 Nov 2024

    Lack of validation on data read from guest memory in IntPeGetDirectory, IntPeParseUnwindData, IntLogExceptionRecord, IntKsymExpandSymbol and IntLixTaskDumpTree may lead to out-of-bounds read or it could cause DoS due to integer-overflor (IntPeGetDirectory), TOCTOU (IntPeParseUnwindData) or insufficient validations.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-27846

    Last Modified: 21 Nov 2024

    A signature verification vulnerability exists in crewjam/saml. This flaw allows an attacker to bypass SAML Authentication. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

    Published: 17 Dec 2020
    7.5
    High

    CVE-2020-27199

    Last Modified: 21 Nov 2024

    The Magic Home Pro application 1.5.1 for Android allows Authentication Bypass. The security control that the application currently has in place is a simple Username and Password authentication function. Using enumeration, an attacker is able to forge a User specific token without the need for correct password to gain access to the mobile application as that victim user.

    Published: 17 Dec 2020
    6.5
    Medium

    CVE-2020-35123

    Last Modified: 21 Nov 2024

    In Zimbra Collaboration Suite Network Edition versions < 9.0.0 P10 and 8.8.15 P17, there exists an XXE vulnerability in the saml consumer store extension, which is vulnerable to XXE attacks. This has been fixed in Zimbra Collaboration Suite Network edition 9.0.0 Patch 10 and 8.8.15 Patch 17.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-25011

    Last Modified: 21 Nov 2024

    A sensitive information disclosure vulnerability in Kyland KPS2204 6 Port Managed Din-Rail Programmable Serial Device Servers Software Version:R0002.P05 allows remote attackers to get username and password by request /cgi-bin/webadminget.cgi script via the browser.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-25010

    Last Modified: 21 Nov 2024

    An arbitrary code execution vulnerability in Kyland KPS2204 6 Port Managed Din-Rail Programmable Serial Device Servers Software Version:R0002.P05 allows remote attackers to upload a malicious script file by constructing a POST type request and writing a payload in the request parameters as an instruction to write a file.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-25094

    Last Modified: 21 Nov 2024

    LogRhythm Platform Manager 7.4.9 allows Command Injection. To exploit this, an attacker can inject arbitrary program names and arguments into a WebSocket. These are forwarded to any remote server with a LogRhythm Smart Response agent installed. By default, the commands are run with LocalSystem privileges.

    Published: 17 Dec 2020
    8.8
    High

    CVE-2020-25095

    Last Modified: 21 Nov 2024

    LogRhythm Platform Manager (PM) 7.4.9 allows CSRF. The Web interface is vulnerable to Cross-site WebSocket Hijacking (CSWH). If a logged-in PM user visits a malicious site in the same browser session, that site can perform a CSRF attack to create a WebSocket from the victim client to the vulnerable PM server. Once the socket is created, the malicious site can interact with the vulnerable web server in the context of the logged-in user. This can include WebSocket payloads that result in command execution.

    Published: 17 Dec 2020
    8.8
    High

    CVE-2020-25096

    Last Modified: 21 Nov 2024

    LogRhythm Platform Manager (PM) 7.4.9 has Incorrect Access Control. Users within LogRhythm can be delegated different roles and privileges, intended to limit what data and services they can interact with. However, no access control is enforced for WebSocket-based communication to the PM application server, which will forward requests to any configured back-end server, regardless of whether the user's access rights should permit this. As a result, even the most low-privileged user can interact with any back-end component that has a LogRhythm agent installed.

    Published: 17 Dec 2020
    6.5
    Medium

    CVE-2020-29436

    Last Modified: 21 Nov 2024

    Sonatype Nexus Repository Manager 3.x before 3.29.0 allows a user with admin privileges to configure the system to gain access to content outside of NXRM via an XXE vulnerability. Fixed in version 3.29.0.

    Published: 17 Dec 2020
    —
    Unknown

    CVE-2020-35194

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-5021. Reason: This candidate is a reservation duplicate of CVE-2019-5021. Notes: All CVE users should reference CVE-2019-5021 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35192

    Last Modified: 21 Nov 2024

    The official vault docker images before 0.11.6 contain a blank password for a root user. System using the vault docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35190

    Last Modified: 21 Nov 2024

    The official plone Docker images before version of 4.3.18-alpine (Alpine specific) contain a blank password for a root user. System using the plone docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35184

    Last Modified: 21 Nov 2024

    The official composer docker images before 1.8.3 contain a blank password for a root user. System using the composer docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35196

    Last Modified: 21 Nov 2024

    The official rabbitmq docker images before 3.7.13-beta.1-management-alpine (Alpine specific) contain a blank password for a root user. System using the rabbitmq docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    —
    Unknown

    CVE-2020-35188

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-5021. Reason: This candidate is a reservation duplicate of CVE-2019-5021. Notes: All CVE users should reference CVE-2019-5021 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usag

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35186

    Last Modified: 21 Nov 2024

    The official adminer docker images before 4.7.0-fastcgi contain a blank password for a root user. System using the adminer docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35195

    Last Modified: 21 Nov 2024

    The official haproxy docker images before 1.8.18-alpine (Alpine specific) contain a blank password for a root user. System using the haproxy docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35191

    Last Modified: 21 Nov 2024

    The official drupal docker images before 8.5.10-fpm-alpine (Alpine specific) contain a blank password for a root user. System using the drupal docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35197

    Last Modified: 21 Nov 2024

    The official memcached docker images before 1.5.11-alpine (Alpine specific) contain a blank password for a root user. System using the memcached docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35187

    Last Modified: 21 Nov 2024

    The official telegraf docker images before 1.9.4-alpine (Alpine specific) contain a blank password for a root user. System using the telegraf docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35189

    Last Modified: 21 Nov 2024

    The official kong docker images before 1.0.2-alpine (Alpine specific) contain a blank password for a root user. System using the kong docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-35185

    Last Modified: 21 Nov 2024

    The official ghost docker images before 2.16.1-alpine (Alpine specific) contain a blank password for a root user. System using the ghost docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.

    Published: 17 Dec 2020
    6.5
    Medium

    CVE-2020-17520

    Last Modified: 21 Nov 2024

    In the Pulsar manager 0.1.0 version, malicious users will be able to bypass pulsar-manager's admin, permission verification mechanism by constructing special URLs, thereby accessing any HTTP API.

    Published: 17 Dec 2020
    5.3
    Medium

    CVE-2020-35177

    Last Modified: 21 Nov 2024

    HashiCorp Vault and Vault Enterprise 1.4.1 and newer allowed the enumeration of users via the LDAP auth method. Fixed in 1.5.6 and 1.6.1.

    Published: 17 Dec 2020
    —
    Unknown

    CVE-2021-20223

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 17 Dec 2020
    0
    Low

    CVE-2021-20242

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-20176. Reason: This candidate is a reservation duplicate of CVE-2021-20176. Notes: All CVE users should reference CVE-2021-20176 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 17 Dec 2020
    0
    Low

    CVE-2021-20248

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 17 Dec 2020
    9.8
    Critical

    CVE-2020-22083

    Last Modified: 21 Nov 2024

    jsonpickle through 1.4.1 allows remote code execution during deserialization of a malicious payload through the decode() function. Note: It has been argued that this is expected and clearly documented behaviour. pickle is known to be capable of causing arbitrary code execution, and must not be used with un-trusted data

    Published: 17 Dec 2020
    —
    Unknown

    CVE-2020-35536

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 17 Dec 2020