CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2020-16032

    Last Modified: 21 Nov 2024

    Insufficient data validation in sharing in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

    Published: 17 Nov 2020
    4.3
    Medium

    CVE-2020-26953

    Last Modified: 21 Nov 2024

    It was possible to cause the browser to enter fullscreen mode without displaying the security UI; thus making it possible to attempt a phishing attack or otherwise confuse the user. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

    Published: 17 Nov 2020
    6.1
    Medium

    CVE-2020-26956

    Last Modified: 21 Nov 2024

    In some cases, removing HTML elements during sanitization would keep existing SVG event handlers and therefore lead to XSS. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

    Published: 17 Nov 2020
    6.1
    Medium

    CVE-2020-26958

    Last Modified: 21 Nov 2024

    Firefox did not block execution of scripts with incorrect MIME types when the response was intercepted and cached through a ServiceWorker. This could lead to a cross-site script inclusion vulnerability, or a Content Security Policy bypass. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

    Published: 17 Nov 2020
    8.8
    High

    CVE-2020-26959

    Last Modified: 21 Nov 2024

    During browser shutdown, reference decrementing could have occured on a previously freed object, resulting in a use-after-free, memory corruption, and a potentially exploitable crash. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.

    Published: 17 Nov 2020
    8.7
    High

    CVE-2020-26225

    Last Modified: 21 Nov 2024

    In PrestaShop Product Comments before version 4.2.0, an attacker could inject malicious web code into the users' web browsers by creating a malicious link. The problem was introduced in version 4.0.0 and is fixed in 4.2.0

    Published: 16 Nov 2020
    7.5
    High

    CVE-2020-26224

    Last Modified: 21 Nov 2024

    In PrestaShop before version 1.7.6.9 an attacker is able to list all the orders placed on the website without being logged by abusing the function that allows a shopping cart to be recreated from an order already placed. The problem is fixed in 1.7.6.9.

    Published: 16 Nov 2020
    9.9
    Critical

    CVE-2020-27483

    Last Modified: 21 Nov 2024

    Garmin Forerunner 235 before 8.20 is affected by: Array index error. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerability, the attacker must upload a malicious ConnectIQ application to the ConnectIQ store. The ConnectIQ program interpreter trusts the offset provided for the stack value duplication instruction, DUP. The offset is unchecked and memory prior to the start of the execution stack can be read and treated as a TVM object. A successful exploit could use the vulnerability to leak runtime information such as the heap handle or pointer for a number of TVM context variables. Some reachable values may be controlled enough to forge a TVM object on the stack, leading to possible remote code execution.

    Published: 16 Nov 2020
    9.9
    Critical

    CVE-2020-27484

    Last Modified: 21 Nov 2024

    Garmin Forerunner 235 before 8.20 is affected by: Integer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerability, the attacker must upload a malicious ConnectIQ application to the ConnectIQ store. The ConnectIQ program interpreter fails to check for overflow when allocating the array for the NEWA instruction. This a constrained read/write primitive across the entire MAX32630 address space. A successful exploit would allow a ConnectIQ app store application to escape and perform activities outside the restricted application execution environment.

    Published: 16 Nov 2020
    9.9
    Critical

    CVE-2020-27485

    Last Modified: 21 Nov 2024

    Garmin Forerunner 235 before 8.20 is affected by: Array index error. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerability, the attacker must upload a malicious ConnectIQ application to the ConnectIQ store. The ConnectIQ program interpreter fails to check the index provided when accessing the local variable in the LGETV and LPUTV instructions. This provides the ability to both read and write memory outside the bounds of the TVM context allocation. It can be leveraged to construct a use-after-free scenario, leading to a constrained read/write primitive across the entire MAX32630 address space. A successful exploit would allow a ConnectIQ app store application to escape and perform activities outside the restricted application execution environment.

    Published: 16 Nov 2020
    9.9
    Critical

    CVE-2020-27486

    Last Modified: 21 Nov 2024

    Garmin Forerunner 235 before 8.20 is affected by: Buffer Overflow. The component is: ConnectIQ TVM. The attack vector is: To exploit the vulnerability, the attacker must upload a malicious ConnectIQ application to the ConnectIQ store. The ConnectIQ program interpreter trusts the string length provided in the data section of the PRG file. It allocates memory for the string immediately, and then copies the string into the TVM object by using a function similar to strcpy. This copy can exceed the length of the allocated string data and overwrite heap data. A successful exploit would allow a ConnectIQ app store application to escape and perform activities outside the restricted application execution environment.

    Published: 16 Nov 2020
    8.8
    High

    CVE-2020-28693

    Last Modified: 21 Nov 2024

    An unrestricted file upload issue in HorizontCMS 1.0.0-beta allows an authenticated remote attacker to upload PHP code through a zip file by uploading a theme, and executing the PHP file via an HTTP GET request to /themes/<php_file_name>

    Published: 16 Nov 2020
    —
    Unknown

    CVE-2020-5424

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 16 Nov 2020
    8
    High

    CVE-2020-26217

    Last Modified: 23 May 2025

    XStream before version 1.4.14 is vulnerable to Remote Code Execution.The vulnerability may allow a remote attacker to run arbitrary shell commands only by manipulating the processed input stream. Only users who rely on blocklists are affected. Anyone using XStream's Security Framework allowlist is not affected. The linked advisory provides code workarounds for users who cannot upgrade. The issue is fixed in version 1.4.14.

    Published: 16 Nov 2020
    9.8
    Critical

    CVE-2020-26510

    Last Modified: 21 Nov 2024

    Airleader Master <= 6.21 devices have default credentials that can be used to access the exposed Tomcat Manager for deployment of a new .war file, with resultant remote code execution.

    Published: 16 Nov 2020
    7.5
    High

    CVE-2020-26509

    Last Modified: 21 Nov 2024

    Airleader Master and Easy <= 6.21 devices have default credentials that can be used for a denial of service.

    Published: 16 Nov 2020
    9.8
    Critical

    CVE-2020-26508

    Last Modified: 21 Nov 2024

    The WebTools component on Canon Oce ColorWave 3500 5.1.1.0 devices allows attackers to retrieve stored SMB credentials via the export feature, even though these are intentionally inaccessible in the UI.

    Published: 16 Nov 2020
    7.2
    High

    CVE-2020-28692

    Last Modified: 21 Nov 2024

    In Gila CMS 1.16.0, an attacker can upload a shell to tmp directy and abuse .htaccess through the logs function for executing PHP files.

    Published: 16 Nov 2020
    8.8
    High

    CVE-2020-23489

    Last Modified: 21 Nov 2024

    The import.json.php file before 8.9 for Avideo is vulnerable to a File Deletion vulnerability. This allows the deletion of configuration.php, which leads to certain privilege checks not being in place, and therefore a user can escalate privileges to admin.

    Published: 16 Nov 2020
    7.5
    High

    CVE-2020-23490

    Last Modified: 21 Nov 2024

    There was a local file disclosure vulnerability in AVideo < 8.9 via the proxy streaming. An unauthenticated attacker can exploit this issue to read an arbitrary file on the server. Which could leak database credentials or other sensitive information such as /etc/passwd file.

    Published: 16 Nov 2020
    5.4
    Medium

    CVE-2020-27991

    Last Modified: 21 Nov 2024

    Nagios XI before 5.7.5 is vulnerable to XSS in Account Information (Email field).

    Published: 16 Nov 2020
    5.4
    Medium

    CVE-2020-27990

    Last Modified: 21 Nov 2024

    Nagios XI before 5.7.5 is vulnerable to XSS in the Deployment tool (add agent).

    Published: 16 Nov 2020
    5.4
    Medium

    CVE-2020-27989

    Last Modified: 21 Nov 2024

    Nagios XI before 5.7.5 is vulnerable to XSS in Dashboard Tools (Edit Dashboard).

    Published: 16 Nov 2020
    5.4
    Medium

    CVE-2020-27988

    Last Modified: 21 Nov 2024

    Nagios XI before 5.7.5 is vulnerable to XSS in Manage Users (Username field).

    Published: 16 Nov 2020
    7.5
    High

    CVE-2020-28723

    Last Modified: 21 Nov 2024

    Memory leak in IPv6Param::setAddress in CloudAvid PParam 1.3.1.

    Published: 16 Nov 2020
    4.3
    Medium

    CVE-2020-4763

    Last Modified: 21 Nov 2024

    IBM Sterling File Gateway 6.0.0.0 through 6.0.3.2 and 2.2.0.0 through 2.2.6.5 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. IBM X-Force ID: 188897.

    Published: 16 Nov 2020
    4.8
    Medium

    CVE-2020-4705

    Last Modified: 21 Nov 2024

    IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 187190.

    Published: 16 Nov 2020
    8.8
    High

    CVE-2020-4700

    Last Modified: 21 Nov 2024

    IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 could allow an authenticated user belonging to a specific user group to create a user or group with administrative privileges. IBM X-Force ID: 187077.

    Published: 16 Nov 2020
    6.5
    Medium

    CVE-2020-4692

    Last Modified: 21 Nov 2024

    IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 could allow an authenticated user to obtain sensitive information from the Dashboard UI. IBM X-Force ID: 186780.

    Published: 16 Nov 2020
    5.4
    Medium

    CVE-2020-4672

    Last Modified: 21 Nov 2024

    IBM Business Automation Workflow 20.0.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 186285.

    Published: 16 Nov 2020
    6.5
    Medium

    CVE-2020-4671

    Last Modified: 21 Nov 2024

    IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 stores potentially sensitive information in log files that could be read by an authenticatedl user. IBM X-Force ID: 186284.

    Published: 16 Nov 2020
    4.3
    Medium

    CVE-2020-4665

    Last Modified: 21 Nov 2024

    IBM Sterling File Gateway 2.2.0.0 through 2.2.6.5 and 6.0.0.0 through 6.0.3.2 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. IBM X-Force ID: 186280.

    Published: 16 Nov 2020
    8.8
    High

    CVE-2020-4655

    Last Modified: 21 Nov 2024

    IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 186091.

    Published: 16 Nov 2020
    8.8
    High

    CVE-2020-4647

    Last Modified: 21 Nov 2024

    IBM Sterling File Gateway 2.2.0.0 through 2.2.6.5 and 6.0.0.0 through 6.0.3.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.

    Published: 16 Nov 2020
    6.5
    Medium

    CVE-2020-4566

    Last Modified: 21 Nov 2024

    IBM Sterling B2B Integrator Standard Edition 5.2.6.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.2 stores potentially highly sensitive information in log files that could be read by an authenticated user. IBM X-Force ID: 184083.

    Published: 16 Nov 2020
    7.5
    High

    CVE-2020-4476

    Last Modified: 21 Nov 2024

    IBM Sterling File Gateway 2.2.0.0 through 2.2.6.5 and 6.0.0.0 through 6.0.3.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 181778.

    Published: 16 Nov 2020
    6.5
    Medium

    CVE-2020-4475

    Last Modified: 21 Nov 2024

    IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.

    Published: 16 Nov 2020
    9.8
    Critical

    CVE-2020-27422

    Last Modified: 21 Nov 2024

    In Anuko Time Tracker v1.19.23.5311, the password reset link emailed to the user doesn't expire once used, allowing an attacker to use the same link to takeover the account.

    Published: 16 Nov 2020
    7.5
    High

    CVE-2020-27423

    Last Modified: 21 Nov 2024

    Anuko Time Tracker v1.19.23.5311 lacks rate limit on the password reset module which allows attacker to perform Denial of Service attack on any legitimate user's mailbox

    Published: 16 Nov 2020
    9.8
    Critical

    CVE-2020-25952

    Last Modified: 27 Dec 2024

    SQL injection vulnerability in PHPGurukul User Registration & Login and User Management System With admin panel 2.1 allows remote attackers to execute arbitrary SQL commands and bypass authentication.

    Published: 16 Nov 2020
    5.4
    Medium

    CVE-2020-13773

    Last Modified: 21 Nov 2024

    Ivanti Endpoint Manager through 2020.1.1 allows XSS via /LDMS/frm_splitfrm.aspx, /LDMS/licensecheck.aspx, /LDMS/frm_splitcollapse.aspx, /LDMS/alert_log.aspx, /LDMS/ServerList.aspx, /LDMS/frm_coremainfrm.aspx, /LDMS/frm_findfrm.aspx, /LDMS/frm_taskfrm.aspx, and /LDMS/query_browsecomp.aspx.

    Published: 16 Nov 2020
    8.8
    High

    CVE-2020-13769

    Last Modified: 21 Nov 2024

    LDMS/alert_log.aspx in Ivanti Endpoint Manager through 2020.1 allows SQL Injection via a /remotecontrolauth/api/device request.

    Published: 16 Nov 2020
    5.3
    Medium

    CVE-2020-13772

    Last Modified: 21 Nov 2024

    In /ldclient/ldprov.cgi in Ivanti Endpoint Manager through 2020.1.1, an attacker is able to disclose information about the server operating system, local pathnames, and environment variables with no authentication required.

    Published: 16 Nov 2020
    7.5
    High

    CVE-2020-27191

    Last Modified: 21 Nov 2024

    LionWiki before 3.2.12 allows an unauthenticated user to read files as the web server user via crafted string in the index.php f1 variable, aka Local File Inclusion. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

    Published: 16 Nov 2020
    7.5
    High

    CVE-2020-27623

    Last Modified: 21 Nov 2024

    JetBrains IdeaVim before version 0.58 might have caused an information leak in limited circumstances.

    Published: 16 Nov 2020
    5.3
    Medium

    CVE-2020-27622

    Last Modified: 21 Nov 2024

    In JetBrains IntelliJ IDEA before 2020.2, the built-in web server could expose information about the IDE version.

    Published: 16 Nov 2020
    6.5
    Medium

    CVE-2020-26129

    Last Modified: 21 Nov 2024

    In JetBrains Ktor before 1.4.1, HTTP request smuggling was possible.

    Published: 16 Nov 2020
    6.1
    Medium

    CVE-2020-27627

    Last Modified: 21 Nov 2024

    JetBrains TeamCity before 2020.1.2 was vulnerable to URL injection.

    Published: 16 Nov 2020
    4.3
    Medium

    CVE-2020-27628

    Last Modified: 21 Nov 2024

    In JetBrains TeamCity before 2020.1.5, the Guest user had access to audit records.

    Published: 16 Nov 2020
    5.3
    Medium

    CVE-2020-27629

    Last Modified: 21 Nov 2024

    In JetBrains TeamCity before 2020.1.5, secure dependency parameters could be not masked in depending builds when there are no internal artifacts.

    Published: 16 Nov 2020