CVE Feed

    Dashboard / CVE

    4.9
    Medium

    CVE-2020-14848

    Last Modified: 21 Nov 2024

    Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

    Published: 20 Oct 2020
    4.9
    Medium

    CVE-2020-14870

    Last Modified: 21 Nov 2024

    Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

    Published: 20 Oct 2020
    9.8
    Critical

    CVE-2020-15683

    Last Modified: 21 Nov 2024

    Mozilla developers and community members reported memory safety bugs present in Firefox 81 and Firefox ESR 78.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 78.4, Firefox < 82, and Thunderbird < 78.4.

    Published: 20 Oct 2020
    8.8
    High

    CVE-2020-16001

    Last Modified: 21 Nov 2024

    Use after free in media in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 20 Oct 2020
    8.8
    High

    CVE-2020-16003

    Last Modified: 21 Nov 2024

    Use after free in printing in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 20 Oct 2020
    —
    Unknown

    CVE-2020-27353

    Last Modified: 4 Jun 2024

    CVE ID was once reserved, but never used.

    Published: 20 Oct 2020
    8
    High

    CVE-2020-15261

    Last Modified: 21 Nov 2024

    On Windows the Veyon Service before version 4.4.2 contains an unquoted service path vulnerability, allowing locally authenticated users with administrative privileges to run malicious executables with LocalSystem privileges. Since Veyon users (both students and teachers) usually don't have administrative privileges, this vulnerability is only dangerous in anyway unsafe setups. The problem has been fixed in version 4.4.2. As a workaround, the exploitation of the vulnerability can be prevented by revoking administrative privileges from all potentially untrustworthy users.

    Published: 19 Oct 2020
    7.7
    High

    CVE-2020-15256

    Last Modified: 21 Nov 2024

    A prototype pollution vulnerability has been found in `object-path` <= 0.11.4 affecting the `set()` method. The vulnerability is limited to the `includeInheritedProps` mode (if version >= 0.11.0 is used), which has to be explicitly enabled by creating a new instance of `object-path` and setting the option `includeInheritedProps: true`, or by using the default `withInheritedProps` instance. The default operating mode is not affected by the vulnerability if version >= 0.11.0 is used. Any usage of `set()` in versions < 0.11.0 is vulnerable. The issue is fixed in object-path version 0.11.5 As a workaround, don't use the `includeInheritedProps: true` options or the `withInheritedProps` instance if using a version >= 0.11.0.

    Published: 19 Oct 2020
    4.3
    Medium

    CVE-2020-15245

    Last Modified: 21 Nov 2024

    In Sylius before versions 1.6.9, 1.7.9 and 1.8.3, the user may register in a shop by email [email protected], verify it, change it to the mail [email protected] and stay verified and enabled. This may lead to having accounts addressed to totally different emails, that were verified. Note, that this way one is not able to take over any existing account (guest or normal one). The issue has been patched in Sylius 1.6.9, 1.7.9 and 1.8.3. As a workaround, you may resolve this issue on your own by creating a custom event listener, which will listen to the sylius.customer.pre_update event. You can determine that email has been changed if customer email and user username are different. They are synchronized later on. Pay attention, to email changing behavior for administrators. You may need to skip this logic for them. In order to achieve this, you should either check master request path info, if it does not contain /admin prefix or adjust event triggered during customer update in the shop. You can find more information on how to customize the event here.

    Published: 19 Oct 2020
    7.5
    High

    CVE-2020-6085

    Last Modified: 21 Nov 2024

    An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause a loss of communications with the device resulting in denial-of-service. An attacker can send a malicious packet to trigger this vulnerability by sending an Electronic Key Segment with less than 0x18 bytes following the Key Format field.

    Published: 19 Oct 2020
    7.5
    High

    CVE-2020-6084

    Last Modified: 21 Nov 2024

    An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause a loss of communications with the device resulting in denial-of-service. An attacker can send a malicious packet to trigger this vulnerability by sending an Electronic Key Segment with less bytes than required by the Key Format Table.

    Published: 19 Oct 2020
    8
    High

    CVE-2020-15263

    Last Modified: 21 Nov 2024

    In platform before version 9.4.4, inline attributes are not properly escaped. If the data that came from users was not escaped, then an XSS vulnerability is possible. The issue was introduced in 9.0.0 and fixed in 9.4.4.

    Published: 19 Oct 2020
    5.3
    Medium

    CVE-2020-13937

    Last Modified: 21 Nov 2024

    Apache Kylin 2.0.0, 2.1.0, 2.2.0, 2.3.0, 2.3.1, 2.3.2, 2.4.0, 2.4.1, 2.5.0, 2.5.1, 2.5.2, 2.6.0, 2.6.1, 2.6.2, 2.6.3, 2.6.4, 2.6.5, 2.6.6, 3.0.0-alpha, 3.0.0-alpha2, 3.0.0-beta, 3.0.0, 3.0.1, 3.0.2, 3.1.0, 4.0.0-alpha has one restful api which exposed Kylin's configuration information without any authentication, so it is dangerous because some confidential information entries will be disclosed to everyone.

    Published: 19 Oct 2020
    3.7
    Low

    CVE-2020-15262

    Last Modified: 21 Nov 2024

    In webpack-subresource-integrity before version 1.5.1, all dynamically loaded chunks receive an invalid integrity hash that is ignored by the browser, and therefore the browser cannot validate their integrity. This removes the additional level of protection offered by SRI for such chunks. Top-level chunks are unaffected. This issue is patched in version 1.5.1.

    Published: 19 Oct 2020
    4.5
    Medium

    CVE-2020-9111

    Last Modified: 21 Nov 2024

    E6878-370 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP21C233) and E6878-870 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP11C233) have a denial of service vulnerability. The system does not properly check some events, an attacker could launch the events continually, successful exploit could cause reboot of the process.

    Published: 19 Oct 2020
    8
    High

    CVE-2020-9113

    Last Modified: 21 Nov 2024

    HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) have a buffer overflow vulnerability in the Bluetooth module. Due to insufficient input validation, an unauthenticated attacker may craft Bluetooth messages after successful paring, causing buffer overflow. Successful exploit may cause code execution.

    Published: 19 Oct 2020
    7.8
    High

    CVE-2020-9263

    Last Modified: 21 Nov 2024

    HUAWEI Mate 30 versions earlier than 10.1.0.150(C00E136R5P3) and HUAWEI P30 version earlier than 10.1.0.160(C00E160R2P11) have a use after free vulnerability. There is a condition exists that the system would reference memory after it has been freed, the attacker should trick the user into running a crafted application with common privilege, successful exploit could cause code execution.

    Published: 19 Oct 2020
    7.5
    High

    CVE-2020-24388

    Last Modified: 21 Nov 2024

    An issue was discovered in the _send_secure_msg() function of yubihsm-shell through 2.0.2. The function does not validate the embedded length field of a message received from the device. This could lead to an oversized memcpy() call that will crash the running process. This could be used by an attacker to cause a denial of service.

    Published: 19 Oct 2020
    7.5
    High

    CVE-2020-24387

    Last Modified: 21 Nov 2024

    An issue was discovered in the yh_create_session() function of yubihsm-shell through 2.0.2. The function does not explicitly check the returned session id from the device. An invalid session id would lead to out-of-bounds read and write operations in the session array. This could be used by an attacker to cause a denial of service attack.

    Published: 19 Oct 2020
    4.6
    Medium

    CVE-2020-9092

    Last Modified: 21 Nov 2024

    HUAWEI Mate 20 versions earlier than 10.1.0.163(C00E160R3P8) have a JavaScript injection vulnerability. A module does not verify a specific input. This could allow attackers to bypass filter mechanism to launch JavaScript injection. This could compromise normal service of the affected module.

    Published: 19 Oct 2020
    7.8
    High

    CVE-2020-9112

    Last Modified: 21 Nov 2024

    Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a privilege elevation vulnerability. Due to lack of privilege restrictions on some of the business functions of the device. An attacker could exploit this vulnerability to access the protecting information, resulting in the elevation of the privilege.

    Published: 19 Oct 2020
    6.1
    Medium

    CVE-2019-13633

    Last Modified: 21 Nov 2024

    Blinger.io v.1.0.2519 is vulnerable to Blind/Persistent XSS. An attacker can send arbitrary JavaScript code via a built-in communication channel, such as Telegram, WhatsApp, Viber, Skype, Facebook, Vkontakte, or Odnoklassniki. This is mishandled within the administration panel for conversations/all, conversations/inbox, conversations/unassigned, and conversations/closed.

    Published: 19 Oct 2020
    6.7
    Medium

    CVE-2020-11496

    Last Modified: 21 Nov 2024

    Sprecher SPRECON-E firmware prior to 8.64b might allow local attackers with access to engineering data to insert arbitrary code. This firmware lacks the validation of the input values on the device side, which is provided by the engineering software during parameterization. Attackers with access to local configuration files can therefore insert malicious commands that are executed after compiling them to valid parameter files (“PDLs”), transferring them to the device, and restarting the device.

    Published: 19 Oct 2020
    7.3
    High

    CVE-2020-15822

    Last Modified: 21 Nov 2024

    In JetBrains YouTrack before 2020.2.10514, SSRF is possible because URL filtering can be escaped.

    Published: 19 Oct 2020
    6.5
    Medium

    CVE-2020-24375

    Last Modified: 21 Nov 2024

    A DNS rebinding vulnerability in the UPnP MediaServer implementation in Freebox Server before 4.2.3.

    Published: 19 Oct 2020
    7.5
    High

    CVE-2020-16161

    Last Modified: 21 Nov 2024

    GoPro gpmf-parser 1.5 has a division-by-zero vulnerability in GPMF_ScaledData(). Parsing malicious input can result in a crash.

    Published: 19 Oct 2020
    7.5
    High

    CVE-2020-16160

    Last Modified: 21 Nov 2024

    GoPro gpmf-parser 1.5 has a division-by-zero vulnerability in GPMF_Decompress(). Parsing malicious input can result in a crash.

    Published: 19 Oct 2020
    9.1
    Critical

    CVE-2020-16159

    Last Modified: 21 Nov 2024

    GoPro gpmf-parser 1.5 has a heap out-of-bounds read and segfault in GPMF_ScaledData(). Parsing malicious input can result in a crash or information disclosure.

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7195

    Last Modified: 21 Nov 2024

    A iccselectrules expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7194

    Last Modified: 21 Nov 2024

    A perfaddormoddevicemonitor expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7193

    Last Modified: 21 Nov 2024

    A ictexpertcsvdownload expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7192

    Last Modified: 21 Nov 2024

    A devicethresholdconfig expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7191

    Last Modified: 21 Nov 2024

    A devsoftsel expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7190

    Last Modified: 21 Nov 2024

    A deviceselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7189

    Last Modified: 21 Nov 2024

    A faultflasheventselectfact expression language injectionremote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7188

    Last Modified: 21 Nov 2024

    A userselectpagingcontent expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7187

    Last Modified: 21 Nov 2024

    A reportpage index expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7186

    Last Modified: 21 Nov 2024

    A powershellconfigcontent expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7185

    Last Modified: 21 Nov 2024

    A tvxlanlegend expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7184

    Last Modified: 21 Nov 2024

    A viewbatchtaskresultdetailfact expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7183

    Last Modified: 21 Nov 2024

    A forwardredirect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7182

    Last Modified: 21 Nov 2024

    A sshconfig expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7181

    Last Modified: 21 Nov 2024

    A smsrulesdownload expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7180

    Last Modified: 21 Nov 2024

    A ictexpertdownload expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7179

    Last Modified: 21 Nov 2024

    A thirdpartyperfselecttask expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7178

    Last Modified: 21 Nov 2024

    A mediaforaction expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7177

    Last Modified: 21 Nov 2024

    A wmiconfigcontent expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-16158

    Last Modified: 21 Nov 2024

    GoPro gpmf-parser through 1.5 has a stack out-of-bounds write vulnerability in GPMF_ExpandComplexTYPE(). Parsing malicious input can result in a crash or potentially arbitrary code execution.

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7176

    Last Modified: 21 Nov 2024

    A viewtaskresultdetailfact expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020
    8.8
    High

    CVE-2020-7175

    Last Modified: 21 Nov 2024

    A iccselectdymicparam expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

    Published: 19 Oct 2020