CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2020-0424

    Last Modified: 21 Nov 2024

    In send_vc of res_send.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-9 Android-10Android ID: A-161362564

    Published: 10 Nov 2020
    5.5
    Medium

    CVE-2020-0453

    Last Modified: 21 Nov 2024

    In updateNotification of BeamTransferManager.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-8.0 Android-8.1Android ID: A-159060474

    Published: 10 Nov 2020
    8.8
    High

    CVE-2020-0451

    Last Modified: 21 Nov 2024

    In sbrDecoder_AssignQmfChannels2SbrChannels of sbrdecoder.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9 Android-8.0 Android-8.1Android ID: A-158762825

    Published: 10 Nov 2020
    7.5
    High

    CVE-2020-0441

    Last Modified: 21 Nov 2024

    In Message and toBundle of Notification.java, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service requiring a device reset to fix with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-158304295

    Published: 10 Nov 2020
    6.5
    Medium

    CVE-2020-0450

    Last Modified: 21 Nov 2024

    In rw_i93_sm_format of rw_i93.cc, there is a possible out of bounds read due to uninitialized data. This could lead to remote information disclosure over NFC with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10 Android-11Android ID: A-157650336

    Published: 10 Nov 2020
    7.8
    High

    CVE-2020-0409

    Last Modified: 21 Nov 2024

    In create of FileMap.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-8.0 Android-8.1 Android-9Android ID: A-156997193

    Published: 10 Nov 2020
    5.5
    Medium

    CVE-2020-0448

    Last Modified: 21 Nov 2024

    In getPhoneAccountsForPackage of TelecomServiceImpl.java, there is a possible way to access a tracking identifier due to a missing permission check. This could lead to local information disclosure of the identifier, which could be used to track an account across devices, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10 Android-11Android ID: A-153995334

    Published: 10 Nov 2020
    7.8
    High

    CVE-2020-0418

    Last Modified: 21 Nov 2024

    In getPermissionInfosForGroup of Utils.java, there is a logic error. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-153879813

    Published: 10 Nov 2020
    5.5
    Medium

    CVE-2020-0443

    Last Modified: 21 Nov 2024

    In LocaleList of LocaleList.java, there is a possible forced reboot due to an uncaught exception. This could lead to local denial of service requiring factory reset to restore with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-152410253

    Published: 10 Nov 2020
    7.5
    High

    CVE-2020-0442

    Last Modified: 21 Nov 2024

    In Message and toBundle of Notification.java, there is a possible UI slowdown or crash due to improper input validation. This could lead to remote denial of service if a malicious contact file is received, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-8.0 Android-8.1 Android-9Android ID: A-147358092

    Published: 10 Nov 2020
    7.8
    High

    CVE-2020-0439

    Last Modified: 21 Nov 2024

    In generatePackageInfo of PackageManagerService.java, there is a possible permissions bypass due to an incorrect permission check. This could lead to local escalation of privilege that allows instant apps access to permissions not allowed for instant apps, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11 Android-8.0Android ID: A-140256621

    Published: 10 Nov 2020
    5.5
    Medium

    CVE-2020-8695

    Last Modified: 21 Nov 2024

    Observable discrepancy in the RAPL interface for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.

    Published: 10 Nov 2020
    6.6
    Medium

    CVE-2020-17049

    Last Modified: 21 Nov 2024

    A security feature bypass vulnerability exists in the way Key Distribution Center (KDC) determines if a service ticket can be used for delegation via Kerberos Constrained Delegation (KCD). To exploit the vulnerability, a compromised service that is configured to use KCD could tamper with a service ticket that is not valid for delegation to force the KDC to accept it. The update addresses this vulnerability by changing how the KDC validates service tickets used with KCD.

    Published: 10 Nov 2020
    5.5
    Medium

    CVE-2020-8694

    Last Modified: 21 Nov 2024

    Insufficient access control in the Linux kernel driver for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

    Published: 10 Nov 2020
    9.8
    Critical

    CVE-2020-0452

    Last Modified: 21 Nov 2024

    In exif_entry_get_value of exif-entry.c, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution if a third party app used this library to process remote image data with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11 Android-8.0Android ID: A-159625731

    Published: 10 Nov 2020
    7.2
    High

    CVE-2020-16125

    Last Modified: 21 Nov 2024

    gdm3 versions before 3.36.2 or 3.38.2 would start gnome-initial-setup if gdm3 can't contact the accountservice service via dbus in a timely manner; on Ubuntu (and potentially derivatives) this could be be chained with an additional issue that could allow a local user to create a new privileged account.

    Published: 10 Nov 2020
    4.4
    Medium

    CVE-2020-28368

    Last Modified: 21 Nov 2024

    Xen through 4.14.x allows guest OS administrators to obtain sensitive information (such as AES keys from outside the guest) via a side-channel attack on a power/energy monitoring interface, aka a "Platypus" attack. NOTE: there is only one logically independent fix: to change the access control for each such interface in Xen.

    Published: 10 Nov 2020
    9.8
    Critical

    CVE-2020-13927

    Last Modified: 23 Oct 2025

    The previous default setting for Airflow's Experimental API was to allow all API requests without authentication, but this poses security risks to users who miss this fact. From Airflow 1.10.11 the default has been changed to deny all requests by default and is documented at https://airflow.apache.org/docs/1.10.11/security.html#api-authentication. Note this change fixes it for new installs but existing users need to change their config to default `[api]auth_backend = airflow.api.auth.backend.deny_all` as mentioned in the Updating Guide: https://github.com/apache/airflow/blob/1.10.11/UPDATING.md#experimental-api-will-deny-all-request-by-default

    Published: 10 Nov 2020
    4.4
    Medium

    CVE-2020-27693

    Last Modified: 21 Nov 2024

    Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 stores administrative passwords using a hash that is considered outdated.

    Published: 9 Nov 2020
    8.8
    High

    CVE-2020-27694

    Last Modified: 21 Nov 2024

    Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 has updated a specific critical library that may vulnerable to attack.

    Published: 9 Nov 2020
    5.5
    Medium

    CVE-2020-27019

    Last Modified: 21 Nov 2024

    Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to an information disclosure vulnerability which could allow an attacker to access a specific database and key.

    Published: 9 Nov 2020
    5.5
    Medium

    CVE-2020-27018

    Last Modified: 21 Nov 2024

    Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to a server side request forgery vulnerability which could allow an authenticated attacker to abuse the product's web server and grant access to web resources or parts of local files. An attacker must already have obtained authenticated privileges on the product to exploit this vulnerability.

    Published: 9 Nov 2020
    4.9
    Medium

    CVE-2020-27017

    Last Modified: 21 Nov 2024

    Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to an XML External Entity Processing (XXE) vulnerability which could allow an authenticated administrator to read arbitrary local files. An attacker must already have obtained product administrator/root privileges to exploit this vulnerability.

    Published: 9 Nov 2020
    8.8
    High

    CVE-2020-27016

    Last Modified: 21 Nov 2024

    Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to a cross-site request forgery (CSRF) vulnerability which could allow an attacker to modify policy rules by tricking an authenticated administrator into accessing an attacker-controlled web page. An attacker must already have obtained product administrator/root privileges to exploit this vulnerability.

    Published: 9 Nov 2020
    9.8
    Critical

    CVE-2020-14189

    Last Modified: 21 Nov 2024

    The execute function in in the Atlassian gajira-comment GitHub Action before version 2.0.2 allows remote attackers to execute arbitrary code in the context of a GitHub runner by creating a specially crafted GitHub issue comment.

    Published: 9 Nov 2020
    9.8
    Critical

    CVE-2020-14188

    Last Modified: 21 Nov 2024

    The preprocessArgs function in the Atlassian gajira-create GitHub Action before version 2.0.1 allows remote attackers to execute arbitrary code in the context of a GitHub runner by creating a specially crafted GitHub issue.

    Published: 9 Nov 2020
    8.8
    High

    CVE-2020-28373

    Last Modified: 21 Nov 2024

    upnpd on certain NETGEAR devices allows remote (LAN) attackers to execute arbitrary code via a stack-based buffer overflow. This affects R6400v2 V1.0.4.102_10.0.75, R6400 V1.0.1.62_1.0.41, R7000P V1.3.2.126_10.1.66, XR300 V1.0.3.50_10.3.36, R8000 V1.0.4.62, R8300 V1.0.2.136, R8500 V1.0.2.136, R7300DST V1.0.0.74, R7850 V1.0.5.64, R7900 V1.0.4.30, RAX20 V1.0.2.64, RAX80 V1.0.3.102, and R6250 V1.0.4.44.

    Published: 9 Nov 2020
    9.8
    Critical

    CVE-2020-26168

    Last Modified: 21 Nov 2024

    The LDAP authentication method in LdapLoginModule in Hazelcast IMDG Enterprise 4.x before 4.0.3, and Jet Enterprise 4.x through 4.2, doesn't verify properly the password in some system-user-dn scenarios. As a result, users (clients/members) can be authenticated even if they provide invalid passwords.

    Published: 9 Nov 2020
    9.8
    Critical

    CVE-2020-28371

    Last Modified: 21 Nov 2024

    An issue was discovered in ReadyTalk Avian 1.2.0 before 2020-10-27. The FileOutputStream.write() method in FileOutputStream.java has a boundary check to prevent out-of-bounds memory read/write operations. However, an integer overflow leads to bypassing this check and achieving the out-of-bounds access. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

    Published: 9 Nov 2020
    7.8
    High

    CVE-2020-4759

    Last Modified: 21 Nov 2024

    IBM FileNet Content Manager 5.5.4 and 5.5.5 is potentially vulnerable to CVS Injection. A remote attacker could execute arbitrary commands on the system, caused by improper validation of csv file contents. IBM X-Force ID: 188736.

    Published: 9 Nov 2020
    4.8
    Medium

    CVE-2020-4651

    Last Modified: 21 Nov 2024

    IBM Maximo Spatial Asset Management 7.6.0.3, 7.6.0.4, 7.6.0.5, and 7.6.1.0 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 186024.

    Published: 9 Nov 2020
    3.3
    Low

    CVE-2020-4650

    Last Modified: 21 Nov 2024

    IBM Maximo Spatial Asset Management 7.6.0.3, 7.6.0.4, 7.6.0.5, and 7.6.1.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 186023.

    Published: 9 Nov 2020
    7.8
    High

    CVE-2020-27977

    Last Modified: 21 Nov 2024

    CapaSystems CapaInstaller before 6.0.101 does not properly assign, modify, or check privileges for an actor who attempts to edit registry values, allowing an attacker to escalate privileges.

    Published: 9 Nov 2020
    6.1
    Medium

    CVE-2020-28364

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability affects the Web UI in Locust before 1.3.2, if the installation violates the usage expectations by exposing this UI to outside users.

    Published: 9 Nov 2020
    9.8
    Critical

    CVE-2020-26542

    Last Modified: 21 Nov 2024

    An issue was discovered in the MongoDB Simple LDAP plugin through 2020-10-02 for Percona Server when using the SimpleLDAP authentication in conjunction with Microsoft’s Active Directory, Percona has discovered a flaw that would allow authentication to complete when passing a blank value for the account password, leading to access against the service integrated with which Active Directory is deployed at the level granted to the authenticating account.

    Published: 9 Nov 2020
    8.1
    High

    CVE-2020-23140

    Last Modified: 21 Nov 2024

    Microweber 1.1.18 is affected by insufficient session expiration. When changing passwords, both sessions for when a user changes email and old sessions in any other browser or device, the session does not expire and remains active.

    Published: 9 Nov 2020
    5.5
    Medium

    CVE-2020-23139

    Last Modified: 21 Nov 2024

    Microweber 1.1.18 is affected by broken authentication and session management. Local session hijacking may occur, which could result in unauthorized access to system data or functionality, or a complete system compromise.

    Published: 9 Nov 2020
    9.8
    Critical

    CVE-2020-23138

    Last Modified: 21 Nov 2024

    An unrestricted file upload vulnerability was discovered in the Microweber 1.1.18 admin account page. An attacker can upload PHP code or any extension (eg- .exe) to the web server by providing image data and the image/jpeg content type with a .php extension.

    Published: 9 Nov 2020
    5.5
    Medium

    CVE-2020-23136

    Last Modified: 21 Nov 2024

    Microweber v1.1.18 is affected by no session expiry after log-out.

    Published: 9 Nov 2020
    5.4
    Medium

    CVE-2020-9299

    Last Modified: 21 Nov 2024

    There were XSS vulnerabilities discovered and reported in the Dispatch application, affecting name and description parameters of Incident Priority, Incident Type, Tag Type, and Incident Filter. This vulnerability can be exploited by an authenticated user.

    Published: 9 Nov 2020
    6.5
    Medium

    CVE-2020-9300

    Last Modified: 21 Nov 2024

    The Access Control issues include allowing a regular user to view a restricted incident, user role escalation to admin, users adding themselves as a participant in a restricted incident, and users able to view restricted incidents via the search feature. If your install has followed the secure deployment guidelines the risk of this is lowered, as this may only be exploited by an authenticated user.

    Published: 9 Nov 2020
    5.3
    Medium

    CVE-2020-8133

    Last Modified: 21 Nov 2024

    A wrong generation of the passphrase for the encrypted block in Nextcloud Server 19.0.1 allowed an attacker to overwrite blocks in a file.

    Published: 9 Nov 2020
    4.1
    Medium

    CVE-2020-8150

    Last Modified: 21 Nov 2024

    A cryptographic issue in Nextcloud Server 19.0.1 allowed an attacker to downgrade the encryption scheme and break the integrity of encrypted files.

    Published: 9 Nov 2020
    7.5
    High

    CVE-2020-8268

    Last Modified: 21 Nov 2024

    Prototype pollution vulnerability in json8-merge-patch npm package < 1.0.3 may allow attackers to inject or modify methods and properties of the global object constructor.

    Published: 9 Nov 2020
    5.5
    Medium

    CVE-2020-8276

    Last Modified: 21 Nov 2024

    The implementation of Brave Desktop's privacy-preserving analytics system (P3A) between 1.1 and 1.18.35 logged the timestamp of when the user last opened an incognito window, including Tor windows. The intended behavior was to log the timestamp for incognito windows excluding Tor windows. Note that if a user has P3A enabled, the timestamp is not sent to Brave's server, but rather a value from:Used in last 24hUsed in last week but not 24hUsed in last 28 days but not weekEver used but not in last 28 daysNever usedThe privacy risk is low because a local attacker with disk access cannot tell if the timestamp corresponds to a Tor window or a non-Tor incognito window.

    Published: 9 Nov 2020
    6.1
    Medium

    CVE-2020-24353

    Last Modified: 21 Nov 2024

    Pega Platform before 8.4.0 has a XSS issue via stream rule parameters used in the request header.

    Published: 9 Nov 2020
    7.1
    High

    CVE-2020-15297

    Last Modified: 21 Nov 2024

    Insufficient validation in the Bitdefender Update Server and BEST Relay components of Bitdefender Endpoint Security Tools versions prior to 6.6.20.294 allows an unprivileged attacker to bypass the in-place mitigations and interact with hosts on the network. This issue affects: Bitdefender Update Server versions prior to 6.6.20.294.

    Published: 9 Nov 2020
    6.1
    Medium

    CVE-2020-28351

    Last Modified: 21 Nov 2024

    The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack (via the PATH_INFO to index.php) due to insufficient validation for the time_zone object in the HOME_MEETING& page.

    Published: 9 Nov 2020
    6.5
    Medium

    CVE-2020-28349

    Last Modified: 21 Nov 2024

    An inaccurate frame deduplication process in ChirpStack Network Server 3.9.0 allows a malicious gateway to perform uplink Denial of Service via malformed frequency attributes in CollectAndCallOnceCollect in internal/uplink/collect.go. NOTE: the vendor's position is that there are no "guarantees that allowing untrusted LoRa gateways to the network should still result in a secure network.

    Published: 9 Nov 2020
    2.7
    Low

    CVE-2020-24404

    Last Modified: 21 Nov 2024

    Magento version 2.4.0 and 2.3.5p1 (and earlier) are affected by an incorrect permissions vulnerability within the Integrations component. This vulnerability could be abused by users with permissions to the Pages resource to delete cms pages via the REST API without authorization.

    Published: 9 Nov 2020