CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2020-6149

    Last Modified: 21 Nov 2024

    A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. To trigger this vulnerability, the victim needs to open an attacker-provided malformed file in an instance in USDC file format PATHS section.

    Published: 13 Nov 2020
    7.8
    High

    CVE-2020-6148

    Last Modified: 21 Nov 2024

    A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. An instance exists in USDC file format FIELDSETS section decompression heap overflow.

    Published: 13 Nov 2020
    7.8
    High

    CVE-2020-6147

    Last Modified: 21 Nov 2024

    A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. This instance exists in the USDC file format FIELDS section decompression heap overflow.

    Published: 13 Nov 2020
    7.8
    High

    CVE-2020-6156

    Last Modified: 21 Nov 2024

    A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. To trigger this vulnerability, the victim needs to open an attacker-provided malformed file in an instance USDC file format path element token index.

    Published: 13 Nov 2020
    7.8
    High

    CVE-2020-6155

    Last Modified: 21 Nov 2024

    A heap overflow vulnerability exists in the Pixar OpenUSD 20.05 while parsing compressed value rep arrays in binary USD files. A specially crafted malformed file can trigger a heap overflow, which can result in remote code execution. To trigger this vulnerability, the victim needs to access an attacker-provided malformed file.

    Published: 13 Nov 2020
    6.1
    Medium

    CVE-2020-26825

    Last Modified: 21 Nov 2024

    SAP Fiori Launchpad (News tile Application), versions - 750,751,752,753,754,755, allows an unauthorized attacker to use SAP Fiori Launchpad News tile Application to send malicious code, to a different end user (victim), because News tile does not sufficiently encode user controlled inputs, resulting in Reflected Cross-Site Scripting (XSS) vulnerability. Information maintained in the victim's web browser can be read, modified, and sent to the attacker. The malicious code cannot significantly impact the victim's browser and the victim can easily close the browser tab to terminate it.

    Published: 13 Nov 2020
    7.8
    High

    CVE-2020-6150

    Last Modified: 21 Nov 2024

    A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software USDC file format SPECS section decompression heap overflow.

    Published: 13 Nov 2020
    6.5
    Medium

    CVE-2020-7032

    Last Modified: 21 Nov 2024

    An XML external entity (XXE) vulnerability in Avaya WebLM admin interface allows authenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request. Affected versions of Avaya WebLM include: 7.0 through 7.1.3.6 and 8.0 through 8.1.2.

    Published: 13 Nov 2020
    7.4
    High

    CVE-2020-25705

    Last Modified: 21 Nov 2024

    A flaw in ICMP packets in the Linux kernel may allow an attacker to quickly scan open UDP ports. This flaw allows an off-path remote attacker to effectively bypass source port UDP randomization. Software that relies on UDP source port randomization are indirectly affected as well on the Linux Based Products (RUGGEDCOM RM1224: All versions between v5.0 and v6.4, SCALANCE M-800: All versions between v5.0 and v6.4, SCALANCE S615: All versions between v5.0 and v6.4, SCALANCE SC-600: All versions prior to v2.1.3, SCALANCE W1750D: v8.3.0.1, v8.6.0, and v8.7.0, SIMATIC Cloud Connect 7: All versions, SIMATIC MV500 Family: All versions, SIMATIC NET CP 1243-1 (incl. SIPLUS variants): Versions 3.1.39 and later, SIMATIC NET CP 1243-7 LTE EU: Version

    Published: 13 Nov 2020
    6.5
    Medium

    CVE-2020-25713

    Last Modified: 21 Nov 2024

    A malformed input file can lead to a segfault due to an out of bounds array access in raptor_xml_writer_start_element_common.

    Published: 13 Nov 2020
    5.9
    Medium

    CVE-2020-25657

    Last Modified: 21 Nov 2024

    A flaw was found in all released versions of m2crypto, where they are vulnerable to Bleichenbacher timing attacks in the RSA decryption API via the timed processing of valid PKCS#1 v1.5 Ciphertext. The highest threat from this vulnerability is to confidentiality.

    Published: 13 Nov 2020
    6.5
    Medium

    CVE-2020-25711

    Last Modified: 21 Nov 2024

    A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.

    Published: 13 Nov 2020
    6.3
    Medium

    CVE-2020-7033

    Last Modified: 21 Nov 2024

    A Cross Site Scripting (XSS) Vulnerability on the Unified Portal Client (web client) used in Avaya Equinox Conferencing can allow an authenticated user to perform XSS attacks. The affected versions of Equinox Conferencing includes all 9.x versions before 9.1.10.

    Published: 12 Nov 2020
    5.3
    Medium

    CVE-2020-17494

    Last Modified: 21 Nov 2024

    Untangle Firewall NG before 16.0 uses MD5 for passwords.

    Published: 12 Nov 2020
    9.8
    Critical

    CVE-2020-24719

    Last Modified: 21 Nov 2024

    Exposed Erlang Cookie could lead to Remote Command Execution (RCE) attack. Communication between Erlang nodes is done by exchanging a shared secret (aka "magic cookie"). There are cases where the magic cookie is included in the content of the logs. An attacker can use the cookie to attach to an Erlang node and run OS level commands on the system running the Erlang node. Affects version: 6.5.1. Fix version: 6.6.0.

    Published: 12 Nov 2020
    6.1
    Medium

    CVE-2020-27193

    Last Modified: 25 Aug 2026

    A cross-site scripting (XSS) vulnerability in the Color Dialog plugin for CKEditor 4.15.0 allows remote attackers to run arbitrary web script after persuading a user to copy and paste crafted HTML code into one of editor inputs.

    Published: 12 Nov 2020
    9.8
    Critical

    CVE-2020-13877

    Last Modified: 21 Nov 2024

    SQL Injection issues in various ASPX pages of ResourceXpress Meeting Monitor 4.9 could lead to remote code execution and information disclosure.

    Published: 12 Nov 2020
    6.1
    Medium

    CVE-2020-28414

    Last Modified: 21 Nov 2024

    A reflected cross-site scripting (XSS) vulnerability exists in the TranzWare Payment Gateway 3.1.12.3.2. A remote unauthenticated attacker is able to execute arbitrary HTML code via crafted url (different vector than CVE-2020-28415).

    Published: 12 Nov 2020
    6.1
    Medium

    CVE-2020-28415

    Last Modified: 21 Nov 2024

    A reflected cross-site scripting (XSS) vulnerability exists in the TranzWare Payment Gateway 3.1.12.3.2. A remote unauthenticated attacker is able to execute arbitrary HTML code via crafted url (different vector than CVE-2020-28414).

    Published: 12 Nov 2020
    9.9
    Critical

    CVE-2020-13774

    Last Modified: 21 Nov 2024

    An unrestricted file-upload issue in EditLaunchPadDialog.aspx in Ivanti Endpoint Manager 2019.1 and 2020.1 allows an authenticated attacker to gain remote code execution by uploading a malicious aspx file. The issue is caused by insufficient file extension validation and insecure file operations on the uploaded image, which upon failure will leave the temporarily created files in an accessible location on the server.

    Published: 12 Nov 2020
    7.5
    High

    CVE-2020-15783

    Last Modified: 2 Jun 2026

    A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC TDC CPU555 (All versions), SINUMERIK 840D sl (All versions). Sending multiple specially crafted packets to the affected devices could cause a Denial-of-Service on port 102. A cold restart is required to recover the service.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12927

    Last Modified: 21 Nov 2024

    A potential vulnerability in a dynamically loaded AMD driver in AMD VBIOS Flash Tool SDK may allow any authenticated user to escalate privileges to NT authority system.

    Published: 12 Nov 2020
    6.4
    Medium

    CVE-2020-12926

    Last Modified: 21 Nov 2024

    The Trusted Platform Modules (TPM) reference software may not properly track the number of times a failed shutdown happens. This can leave the TPM in a state where confidential key material in the TPM may be able to be compromised. AMD believes that the attack requires physical access of the device because the power must be repeatedly turned on and off. This potential attack may be used to change confidential information, alter executables signed by key material in the TPM, or create a denial of service of the device.

    Published: 12 Nov 2020
    5.5
    Medium

    CVE-2020-24460

    Last Modified: 21 Nov 2024

    Incorrect default permissions in the Intel(R) DSA before version 20.8.30.6 may allow an authenticated user to potentially enable denial of service via local access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-24456

    Last Modified: 21 Nov 2024

    Incorrect default permissions in the Intel(R) Board ID Tool version v.1.01 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    7.5
    High

    CVE-2020-24454

    Last Modified: 21 Nov 2024

    Improper Restriction of XML External Entity Reference in subsystem forIntel(R) Quartus(R) Prime Pro Edition before version 20.3 and Intel(R) Quartus(R) Prime Standard Edition before version 20.2 may allow unauthenticated user to potentially enable information disclosure via network access.

    Published: 12 Nov 2020
    6.7
    Medium

    CVE-2020-0572

    Last Modified: 21 Nov 2024

    Improper input validation in the firmware for Intel(R) Server Board S2600ST and S2600WF families may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12346

    Last Modified: 21 Nov 2024

    Improper permissions in the installer for the Intel(R) Battery Life Diagnostic Tool before version 1.0.7 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    6.5
    Medium

    CVE-2020-12349

    Last Modified: 21 Nov 2024

    Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable information disclosure via network access.

    Published: 12 Nov 2020
    6.5
    Medium

    CVE-2020-12353

    Last Modified: 21 Nov 2024

    Improper permissions in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable denial of service via network access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12345

    Last Modified: 21 Nov 2024

    Improper permissions in the installer for the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    6.5
    Medium

    CVE-2020-8669

    Last Modified: 21 Nov 2024

    Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable information disclosure via network access.

    Published: 12 Nov 2020
    8.8
    High

    CVE-2020-12347

    Last Modified: 21 Nov 2024

    Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated user to potentially enable escalation of privilege via network access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12350

    Last Modified: 21 Nov 2024

    Improper access control in the Intel(R) XTU before version 6.5.1.360 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    5.5
    Medium

    CVE-2020-0573

    Last Modified: 21 Nov 2024

    Out of bounds read in the Intel CSI2 Host Controller driver may allow an authenticated user to potentially enable information disclosure via local access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-16273

    Last Modified: 21 Nov 2024

    In Arm software implementing the Armv8-M processors (all versions), the stack selection mechanism could be influenced by a stack-underflow attack in v8-M TrustZone based processors. An attacker can cause a change to the stack pointer used by the Secure World from a non-secure application if the stack is not initialized. This vulnerability affects only the software that is based on Armv8-M processors with the Security Extension.

    Published: 12 Nov 2020
    8.8
    High

    CVE-2020-26803

    Last Modified: 21 Nov 2024

    In Sentrifugo 3.2, users can upload an image under "Assets -> Add" tab. This "Upload Images" functionality is suffered from "Unrestricted File Upload" vulnerability so attacker can upload malicious files using this functionality and control the server.

    Published: 12 Nov 2020
    8.8
    High

    CVE-2020-26804

    Last Modified: 21 Nov 2024

    In Sentrifugo 3.2, users can share an announcement under "Organization -> Announcements" tab. Also, in this page, users can upload attachments with the shared announcements. This "Upload Attachment" functionality is suffered from "Unrestricted File Upload" vulnerability so attacker can upload malicious files using this functionality and control the server.

    Published: 12 Nov 2020
    7.2
    High

    CVE-2020-26805

    Last Modified: 21 Nov 2024

    In Sentrifugo 3.2, admin can edit employee's informations via this endpoint --> /sentrifugo/index.php/empadditionaldetails/edit/userid/2. In this POST request, "employeeNumId" parameter is affected by SQLi vulnerability. Attacker can inject SQL commands into query, read data from database or write data into the database.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12329

    Last Modified: 21 Nov 2024

    Uncontrolled search path in the Intel(R) VTune(TM) Profiler before version 2020 Update 1 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    5.5
    Medium

    CVE-2020-12326

    Last Modified: 21 Nov 2024

    Improper initialization in some Intel(R) Thunderbolt(TM) DCH drivers for Windows* before version 72 may allow an authenticated user to potentially enable information disclosure via local access.

    Published: 12 Nov 2020
    4.4
    Medium

    CVE-2020-12327

    Last Modified: 21 Nov 2024

    Insecure default variable initialization in some Intel(R) Thunderbolt(TM) DCH drivers for Windows* before version 72 may allow a privileged user to potentially enable information disclosure via local access.

    Published: 12 Nov 2020
    4.4
    Medium

    CVE-2020-12328

    Last Modified: 21 Nov 2024

    Protection mechanism failure in some Intel(R) Thunderbolt(TM) DCH drivers for Windows* before version 72 may allow a privileged user to potentially enable information disclosure via local access.

    Published: 12 Nov 2020
    8.1
    High

    CVE-2020-27385

    Last Modified: 21 Nov 2024

    Incorrect Access Control in the FileEditor (/Admin/Views/FileEditor/) in FlexDotnetCMS before v1.5.11 allows an authenticated remote attacker to read and write to existing files outside the web root. The files can be accessed via directory traversal, i.e., by entering a .. (dot dot) path such as ..\..\..\..\..\<file> in the input field of the FileEditor. In FlexDotnetCMS before v1.5.8, it is also possible to access files by specifying the full path (e.g., C:\<file>). The files can then be edited via the FileEditor.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12324

    Last Modified: 21 Nov 2024

    Protection mechanism failure in some Intel(R) Thunderbolt(TM) DCH drivers for Windows* before version 72 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12325

    Last Modified: 21 Nov 2024

    Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows* before version 72 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12332

    Last Modified: 21 Nov 2024

    Improper permissions in the installer for the Intel(R) HID Event Filter Driver, all versions, may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12333

    Last Modified: 21 Nov 2024

    Insufficiently protected credentials in the Intel(R) QAT for Linux before version 1.7.l.4.10.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12335

    Last Modified: 21 Nov 2024

    Improper permissions in the installer for the Intel(R) Processor Identification Utility before version 6.4.0603 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020
    7.8
    High

    CVE-2020-12331

    Last Modified: 21 Nov 2024

    Improper access controls in Intel Unite(R) Cloud Service client before version 4.2.12212 may allow an authenticated user to potentially enable escalation of privilege via local access.

    Published: 12 Nov 2020