CVE Feed

    Dashboard / CVE

    6.7
    Medium

    CVE-2020-27777

    Last Modified: 21 Nov 2024

    A flaw was found in the way RTAS handled memory accesses in userspace to kernel communication. On a locked down (usually due to Secure Boot) guest system running on top of PowerVM or KVM hypervisors (pseries platform) a root like local user could use this flaw to further increase their privileges to that of a running kernel.

    Published: 8 Oct 2020
    5.3
    Medium

    CVE-2020-13956

    Last Modified: 1 Dec 2025

    Apache HttpClient versions prior to version 4.5.13 and 5.0.3 can misinterpret malformed authority component in request URIs passed to the library as java.net.URI object and pick the wrong target host for request execution.

    Published: 8 Oct 2020
    5.5
    Medium

    CVE-2020-27194

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.8.15. scalar32_min_max_or in kernel/bpf/verifier.c mishandles bounds tracking during use of 64-bit values, aka CID-5b9fbeb75b6a.

    Published: 8 Oct 2020
    —
    Unknown

    CVE-2015-7380

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2015-7379

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 7 Oct 2020
    6.5
    Medium

    CVE-2020-15501

    Last Modified: 21 Nov 2024

    Smarter Coffee Maker before 2nd generation allows firmware replacement without authentication or authorization. User interaction is required to press a button. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

    Published: 7 Oct 2020
    5.3
    Medium

    CVE-2020-25867

    Last Modified: 21 Nov 2024

    SoPlanning before 1.47 doesn't correctly check the security key used to publicly share plannings. It allows a bypass to get access without authentication.

    Published: 7 Oct 2020
    5.3
    Medium

    CVE-2020-25768

    Last Modified: 21 Nov 2024

    Contao before 4.4.52, 4.9.x before 4.9.6, and 4.10.x before 4.10.1 have Improper Input Validation. It is possible to inject insert tags in front end forms which will be replaced when the page is rendered.

    Published: 7 Oct 2020
    5
    Medium

    CVE-2020-15226

    Last Modified: 21 Nov 2024

    In GLPI before version 9.5.2, there is a SQL Injection in the API's search function. Not only is it possible to break the SQL syntax, but it is also possible to utilise a UNION SELECT query to reflect sensitive information such as the current database version, or database user. The most likely scenario for this vulnerability is with someone who has an API account to the system. The issue is patched in version 9.5.2. A proof-of-concept with technical details is available in the linked advisory.

    Published: 7 Oct 2020
    5.3
    Medium

    CVE-2020-15217

    Last Modified: 21 Nov 2024

    In GLPI before version 9.5.2, there is a leakage of user information through the public FAQ. The issue was introduced in version 9.5.0 and patched in 9.5.2. As a workaround, disable public access to the FAQ.

    Published: 7 Oct 2020
    8
    High

    CVE-2020-15177

    Last Modified: 21 Nov 2024

    In GLPI before version 9.5.2, the `install/install.php` endpoint insecurely stores user input into the database as `url_base` and `url_base_api`. These settings are referenced throughout the application and allow for vulnerabilities like Cross-Site Scripting and Insecure Redirection Since authentication is not required to perform these changes,anyone could point these fields at malicious websites or form input in a way to trigger XSS. Leveraging JavaScript it's possible to steal cookies, perform actions as the user, etc. The issue is patched in version 9.5.2.

    Published: 7 Oct 2020
    8.7
    High

    CVE-2020-15176

    Last Modified: 21 Nov 2024

    In GLPI before version 9.5.2, when supplying a back tick in input that gets put into a SQL query,the application does not escape or sanitize allowing for SQL Injection to occur. Leveraging this vulnerability an attacker is able to exfiltrate sensitive information like passwords, reset tokens, personal details, and more. The issue is patched in version 9.5.2

    Published: 7 Oct 2020
    7.4
    High

    CVE-2020-15175

    Last Modified: 21 Nov 2024

    In GLPI before version 9.5.2, the `​pluginimage.send.php​` endpoint allows a user to specify an image from a plugin. The parameters can be maliciously crafted to instead delete the .htaccess file for the files directory. Any user becomes able to read all the files and folders contained in “/files/”. Some of the sensitive information that is compromised are the user sessions, logs, and more. An attacker would be able to get the Administrators session token and use that to authenticate. The issue is patched in version 9.5.2.

    Published: 7 Oct 2020
    6.6
    Medium

    CVE-2020-7316

    Last Modified: 21 Nov 2024

    Unquoted service path vulnerability in McAfee File and Removable Media Protection (FRP) prior to 5.3.0 allows local users to execute arbitrary code, with higher privileges, via execution and from a compromised folder. This issue may result in files not being encrypted when a policy is triggered.

    Published: 7 Oct 2020
    5.5
    Medium

    CVE-2020-26164

    Last Modified: 21 Nov 2024

    In kdeconnect-kde (aka KDE Connect) before 20.08.2, an attacker on the local network could send crafted packets that trigger use of large amounts of CPU, memory, or network connection slots, aka a Denial of Service attack.

    Published: 7 Oct 2020
    7.8
    High

    CVE-2020-26880

    Last Modified: 21 Nov 2024

    Sympa through 6.2.57b.2 allows a local privilege escalation from the sympa user account to full root access by modifying the sympa.conf configuration file (which is owned by sympa) and parsing it through the setuid sympa_newaliases-wrapper executable.

    Published: 7 Oct 2020
    7.5
    High

    CVE-2020-26876

    Last Modified: 21 Nov 2024

    The wp-courses plugin through 2.0.27 for WordPress allows remote attackers to bypass the intended payment step (for course videos and materials) by using the /wp-json REST API, as exploited in the wild in September 2020. This occurs because show_in_rest is enabled for custom post types (e.g., /wp-json/wp/v2/course and /wp-json/wp/v2/lesson exist).

    Published: 7 Oct 2020
    4.8
    Medium

    CVE-2020-17551

    Last Modified: 21 Nov 2024

    ImpressCMS 1.4.0 is affected by XSS in modules/system/admin.php which may result in arbitrary remote code execution.

    Published: 7 Oct 2020
    2.7
    Low

    CVE-2020-13342

    Last Modified: 21 Nov 2024

    An issue has been discovered in GitLab affecting versions prior to 13.2.10, 13.3.7 and 13.4.2: Lack of Rate Limiting at Re-Sending Confirmation Email

    Published: 7 Oct 2020
    6.1
    Medium

    CVE-2020-26870

    Last Modified: 21 Nov 2024

    Cure53 DOMPurify before 2.0.17 allows mutation XSS. This occurs because a serialize-parse roundtrip does not necessarily return the original DOM tree, and a namespace can change from HTML to MathML, as demonstrated by nesting of FORM elements.

    Published: 7 Oct 2020
    8.8
    High

    CVE-2020-26596

    Last Modified: 21 Nov 2024

    The Dynamic OOO widget for the Elementor Pro plugin through 3.0.5 for WordPress allows remote authenticated users to execute arbitrary code because only the Editor role is needed to upload executable PHP code via the PHP Raw snippet. NOTE: this issue can be mitigated by removing the Dynamic OOO widget or by restricting availability of the Editor role.

    Published: 7 Oct 2020
    7.5
    High

    CVE-2020-24246

    Last Modified: 21 Nov 2024

    Peplink Balance before 8.1.0rc1 allows an unauthenticated attacker to download PHP configuration files (/filemanager/php/connector.php) from Web Admin.

    Published: 7 Oct 2020
    7.5
    High

    CVE-2019-16160

    Last Modified: 21 Nov 2024

    An integer underflow in the SMB server of MikroTik RouterOS before 6.45.5 allows remote unauthenticated attackers to crash the service.

    Published: 7 Oct 2020
    9.8
    Critical

    CVE-2020-11800

    Last Modified: 21 Nov 2024

    Zabbix Server 2.2.x and 3.0.x before 3.0.31, and 3.2 allows remote attackers to execute arbitrary code.

    Published: 7 Oct 2020
    5.9
    Medium

    CVE-2020-24722

    Last Modified: 21 Nov 2024

    An issue was discovered in the GAEN (aka Google/Apple Exposure Notifications) protocol through 2020-10-05, as used in COVID-19 applications on Android and iOS. The encrypted metadata block with a TX value lacks a checksum, allowing bitflipping to amplify a contamination attack. This can cause metadata deanonymization and risk-score inflation. NOTE: the vendor's position is "We do not believe that TX power authentication would be a useful defense against relay attacks.

    Published: 7 Oct 2020
    5.4
    Medium

    CVE-2020-25343

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerabilities in Symphony CMS 3.0.0 allow remote attackers to inject arbitrary web script or HTML to fields['body'] param via events\event.publish_article.php

    Published: 7 Oct 2020
    6.5
    Medium

    CVE-2020-13346

    Last Modified: 21 Nov 2024

    Membership changes are not reflected in ToDo subscriptions in GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, allowing guest users to access confidential issues through API.

    Published: 7 Oct 2020
    5.9
    Medium

    CVE-2020-13334

    Last Modified: 21 Nov 2024

    In GitLab versions prior to 13.2.10, 13.3.7 and 13.4.2, improper authorization checks allow a non-member of a project/group to change the confidentiality attribute of issue via mutation GraphQL query

    Published: 7 Oct 2020
    9.1
    Critical

    CVE-2020-13347

    Last Modified: 21 Nov 2024

    A command injection vulnerability was discovered in Gitlab runner versions prior to 13.2.4, 13.3.2 and 13.4.1. When the runner is configured on a Windows system with a docker executor, which allows the attacker to run arbitrary commands on Windows host, via DOCKER_AUTH_CONFIG build variable.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-13332

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 7 Oct 2020
    4.3
    Medium

    CVE-2020-13335

    Last Modified: 21 Nov 2024

    Improper group membership validation when deleting a user account in GitLab >=7.12 allows a user to delete own account without deleting/transferring their group.

    Published: 7 Oct 2020
    8.1
    High

    CVE-2020-25985

    Last Modified: 21 Nov 2024

    MonoCMS Blog 1.0 is affected by: Arbitrary File Deletion. Any authenticated user can delete files on and off the webserver (php files can be unlinked and not deleted).

    Published: 7 Oct 2020
    7.5
    High

    CVE-2020-7742

    Last Modified: 21 Nov 2024

    This affects the package simpl-schema before 1.10.2.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26854

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26839

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26840

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26841

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26842

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26844

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26845

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26846

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26847

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26848

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26849

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26850

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26851

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26852

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26855

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26856

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020
    —
    Unknown

    CVE-2020-26857

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2020. Notes: none.

    Published: 7 Oct 2020