CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2020-6152

    Last Modified: 21 Nov 2024

    A code execution vulnerability exists in the DICOM parse_dicom_meta_info functionality of Accusoft ImageGear 19.7. A specially crafted malformed file can cause an out-of-bounds write. An attacker can trigger this vulnerability by providing a victim with a malicious DICOM file.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-6151

    Last Modified: 21 Nov 2024

    A memory corruption vulnerability exists in the TIFF handle_COMPRESSION_PACKBITS functionality of Accusoft ImageGear 19.7. A specially crafted malformed file can cause a memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-16204

    Last Modified: 21 Nov 2024

    The affected product is vulnerable due to an undocumented interface found on the device, which may allow an attacker to execute commands as root on the device on the N-Tron 702-W / 702M12-W (all versions).

    Published: 1 Sept 2020
    9
    Critical

    CVE-2020-16210

    Last Modified: 21 Nov 2024

    The affected product is vulnerable to reflected cross-site scripting, which may allow an attacker to remotely execute arbitrary code and perform actions in the context of an attacked user on the N-Tron 702-W / 702M12-W (all versions).

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-16208

    Last Modified: 21 Nov 2024

    The affected product is vulnerable to cross-site request forgery, which may allow an attacker to modify different configurations of a device by luring an authenticated user to click on a crafted link on the N-Tron 702-W / 702M12-W (all versions).

    Published: 1 Sept 2020
    9
    Critical

    CVE-2020-16206

    Last Modified: 21 Nov 2024

    The affected product is vulnerable to stored cross-site scripting, which may allow an attacker to remotely execute arbitrary code to gain access to sensitive data on the N-Tron 702-W / 702M12-W (all versions).

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-5776

    Last Modified: 21 Nov 2024

    Currently, all versions of MAGMI are vulnerable to CSRF due to the lack of CSRF tokens. RCE (via phpcli command) is possible in the event that a CSRF is leveraged against an existing admin session for MAGMI.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-5777

    Last Modified: 21 Nov 2024

    MAGMI versions prior to 0.7.24 are vulnerable to a remote authentication bypass due to allowing default credentials in the event there is a database connection failure. A remote attacker can trigger this connection failure if the Mysql setting max_connections (default 151) is lower than Apache (or another web server) setting MaxRequestWorkers (formerly MaxClients) (default 256). This can be done by sending at least 151 simultaneous requests to the Magento website to trigger a "Too many connections" error, then use default magmi:magmi basic authentication to remotely bypass authentication.

    Published: 1 Sept 2020
    5.3
    Medium

    CVE-2020-6873

    Last Modified: 21 Nov 2024

    A ZTE product has a DoS vulnerability. Because the equipment couldn’t distinguish the attack packets and normal packets with valid http links, the remote attackers could use this vulnerability to cause the equipment WEB/TELNET module denial of service and make the equipment be out of management. This affects: ZXR10 2800-4_ALMPUFB(LOW), all versions up to V3.00.40.

    Published: 1 Sept 2020
    9.1
    Critical

    CVE-2020-6874

    Last Modified: 21 Nov 2024

    A ZTE product is impacted by the cryptographic issues vulnerability. The encryption algorithm is not properly used, so remote attackers could use this vulnerability for account credential enumeration attack or brute-force attack for password guessing. This affects: ZXIPTV, ZXIPTV-WEB-PV5.09.08.04.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-6144

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the install functionality of OS4Ed openSIS 7.4. The username variable which is set at line 121 in install/Step5.php allows for injection of PHP code into the Data.php file that it writes. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-6143

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the install functionality of OS4Ed openSIS 7.4. The password variable which is set at line 122 in install/Step5.php allows for injection of PHP code into the Data.php file that it writes. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-25069

    Last Modified: 21 Nov 2024

    USVN (aka User-friendly SVN) before 1.0.10 allows attackers to execute arbitrary code in the commit view.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-25070

    Last Modified: 21 Nov 2024

    USVN (aka User-friendly SVN) before 1.0.10 allows CSRF, related to the lack of the SameSite Strict feature.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-6142

    Last Modified: 21 Nov 2024

    A remote code execution vulnerability exists in the Modules.php functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can cause local file inclusion. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-6140

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3. The password_stf_email parameter in the password reset page /opensis/ResetUserInfo.php is vulnerable to SQL injection. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-6139

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3. The username_stf_email parameter in the password reset page /opensis/ResetUserInfo.php is vulnerable to SQL injection. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-6138

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3. The uname parameter in the password reset page /opensis/ResetUserInfo.php is vulnerable to SQL injection An attacker can send an HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-6137

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in the password reset functionality of OS4Ed openSIS 7.3. The password_stf_email parameter in the password reset page /opensis/ResetUserInfo.php is vulnerable to SQL injection. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    7.8
    High

    CVE-2020-24557

    Last Modified: 31 Oct 2025

    A vulnerability in Trend Micro Apex One and Worry-Free Business Security 10.0 SP1 on Microsoft Windows may allow an attacker to manipulate a particular product folder to disable the security temporarily, abuse a specific Windows function and attain privilege escalation. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. Please note that version 1909 (OS Build 18363.719) of Microsoft Windows 10 mitigates hard links, but previous versions are affected.

    Published: 1 Sept 2020
    7.1
    High

    CVE-2020-24558

    Last Modified: 21 Nov 2024

    A vulnerability in an Trend Micro Apex One, Worry-Free Business Security 10.0 SP1 and Worry-Free Business Security Services dll may allow an attacker to manipulate it to cause an out-of-bounds read that crashes multiple processes in the product. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

    Published: 1 Sept 2020
    7.8
    High

    CVE-2020-24559

    Last Modified: 21 Nov 2024

    A vulnerability in Trend Micro Apex One, Worry-Free Business Security 10.0 SP1 and Worry-Free Business Security Services on macOS may allow an attacker to manipulate a certain binary to load and run a script from a user-writable folder, which then would allow them to execute arbitrary code as root. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

    Published: 1 Sept 2020
    7.8
    High

    CVE-2020-24556

    Last Modified: 21 Nov 2024

    A vulnerability in Trend Micro Apex One, OfficeScan XG SP1, Worry-Free Business Security 10 SP1 and Worry-Free Business Security Services on Microsoft Windows may allow an attacker to create a hard link to any file on the system, which then could be manipulated to gain a privilege escalation and code execution. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. Please note that version 1909 (OS Build 18363.719) of Microsoft Windows 10 mitigates hard links, but previous versions are affected.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-17405

    Last Modified: 21 Nov 2024

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Senstar Symphony 7.3.2.2. Authentication is not required to exploit this vulnerability. The specific flaw exists within the SSOAuth process. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of SYSTEM. Was ZDI-CAN-10980.

    Published: 1 Sept 2020
    9.8
    Critical

    CVE-2020-6141

    Last Modified: 21 Nov 2024

    An exploitable SQL injection vulnerability exists in the login functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL injection. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-24034

    Last Modified: 21 Nov 2024

    Sagemcom F@ST 5280 routers using firmware version 1.150.61 have insecure deserialization that allows any authenticated user to perform a privilege escalation to any other user. By making a request with valid sess_id, nonce, and ha1 values inside of the serialized session cookie, an attacker may alter the user value inside of this cookie, and assume the role and permissions of the user specified. By assuming the role of the user internal, which is inaccessible to end users by default, the attacker gains the permissions of the internal account, which includes the ability to flash custom firmware to the router, allowing the attacker to achieve a complete compromise.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6136

    Last Modified: 21 Nov 2024

    An exploitable SQL injection vulnerability exists in the DownloadWindow.php functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-23829

    Last Modified: 21 Nov 2024

    interface/new/new_comprehensive_save.php in LibreHealth EHR 2.0.0 suffers from an authenticated file upload vulnerability, allowing remote attackers to achieve remote code execution (RCE) on the hosting webserver by uploading a maliciously crafted image.

    Published: 1 Sept 2020
    6.4
    Medium

    CVE-2020-23831

    Last Modified: 21 Nov 2024

    A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Stock Management System v1.0 allows remote attackers to harvest login credentials and session cookies when an unauthenticated victim clicks on a malicious URL and enters credentials.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-23836

    Last Modified: 21 Nov 2024

    A Cross-Site Request Forgery (CSRF) vulnerability in edit_user.php in OSWAPP Warehouse Inventory System (aka OSWA-INV) through 2020-08-10 allows remote attackers to change the admin's password after an authenticated admin visits a third-party site.

    Published: 1 Sept 2020
    6.4
    Medium

    CVE-2020-23835

    Last Modified: 21 Nov 2024

    A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Tailor Management System v1.0 allows remote attackers to harvest keys pressed by an unauthenticated victim who clicks on a malicious URL and begins typing.

    Published: 1 Sept 2020
    6.1
    Medium

    CVE-2020-23839

    Last Modified: 21 Nov 2024

    A Reflected Cross-Site Scripting (XSS) vulnerability in GetSimple CMS v3.3.16, in the admin/index.php login portal webpage, allows remote attackers to execute JavaScript code in the client's browser and harvest login credentials after a client clicks a link, enters credentials, and submits the login form.

    Published: 1 Sept 2020
    9
    Critical

    CVE-2020-15150

    Last Modified: 21 Nov 2024

    There is a vulnerability in Paginator (Elixir/Hex package) which makes it susceptible to Remote Code Execution (RCE) attacks via input parameters to the paginate() function. This will potentially affect all current users of Paginator prior to version 1.0.0. The vulnerability has been patched in version 1.0.0 and all users should upgrade to this version immediately. Note that this patched version uses a dependency that requires an Elixir version >=1.5.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6135

    Last Modified: 21 Nov 2024

    An exploitable SQL injection vulnerability exists in the Validator.php functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    5.4
    Medium

    CVE-2012-3341

    Last Modified: 21 Nov 2024

    IBM InfoSphere Guardium 7.0, 8.0, 8.01, and 8.2 is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability using a specially-crafted URL to execute script in a victim's Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim's cookie-based authentication credentials. IBM X-Force ID: 78294.

    Published: 1 Sept 2020
    4.3
    Medium

    CVE-2012-3340

    Last Modified: 21 Nov 2024

    IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to XML external entity injection, caused by improper validation of user-supplied input. A remote authenticated attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 78291.

    Published: 1 Sept 2020
    5.3
    Medium

    CVE-2012-3338

    Last Modified: 21 Nov 2024

    IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attacker to bypass security restrictions, caused by improper restrictions on the create new user account functionality. An attacker could exploit this vulnerability to create unprivileged user accounts. IBM X-Force ID: 78286.

    Published: 1 Sept 2020
    5.3
    Medium

    CVE-2012-3337

    Last Modified: 21 Nov 2024

    IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to download arbitrary files on the system. IBM X-Force ID: 78284.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2012-3336

    Last Modified: 21 Nov 2024

    IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to SQL injection. A remote authenticated attacker could send specially-crafted SQL statements to multiple scripts, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 78282.

    Published: 1 Sept 2020
    5.4
    Medium

    CVE-2020-23450

    Last Modified: 21 Nov 2024

    Spiceworks Version <= 7.5.00107 is affected by XSS. Any name typed on Custom Groups function is vulnerable to stored XSS as they displayed on http://127.0.0.1/inventory/groups/ without output sanitization.

    Published: 1 Sept 2020
    7.5
    High

    CVE-2020-23971

    Last Modified: 21 Nov 2024

    gmapfp.org Joomla Component GMapFP J3.30pro is affected by Insecure Permissions. An attacker can access the upload function without authenticating to the application and also can upload files due the issues of unrestricted file uploads which can be bypassed by changing the content-type and name file too double extensions.

    Published: 1 Sept 2020
    7.5
    High

    CVE-2019-5645

    Last Modified: 21 Nov 2024

    By sending a specially crafted HTTP GET request to a listening Rapid7 Metasploit HTTP handler, an attacker can register an arbitrary regular expression. When evaluated, this malicious handler can either prevent new HTTP handler sessions from being established, or cause a resource exhaustion on the Metasploit server.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6134

    Last Modified: 21 Nov 2024

    SQL injection vulnerabilities exist in the ID parameters of OS4Ed openSIS 7.3 pages. The id parameter in the page MassDropModal.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6133

    Last Modified: 21 Nov 2024

    SQL injection vulnerabilities exist in the ID parameters of OS4Ed openSIS 7.3 pages. The id parameter in the page CourseMoreInfo.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6132

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in the ID parameters of OS4Ed openSIS 7.3 pages. The id parameter in the page ChooseCP.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6128

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in the CoursePeriodModal.php page of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL injection. The meet_date parameter in the page CoursePeriodModal.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6127

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in the CoursePeriodModal.php page of OS4Ed openSIS 7.3. The id parameter in the page CoursePeriodModal.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6126

    Last Modified: 21 Nov 2024

    SQL injection vulnerability exists in the CoursePeriodModal.php page of OS4Ed openSIS 7.3. The course_period_id parameter in the page CoursePeriodModal.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger these vulnerabilities.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6125

    Last Modified: 21 Nov 2024

    An exploitable SQL injection vulnerability exists in the GetSchool.php functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020
    8.8
    High

    CVE-2020-6124

    Last Modified: 21 Nov 2024

    An exploitable sql injection vulnerability exists in the email parameter functionality of OS4Ed openSIS 7.3. The email parameter in the page EmailCheckOthers.php is vulnerable to SQL injection. An attacker can make an authenticated HTTP request to trigger this vulnerability.

    Published: 1 Sept 2020