CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2020-6273

    Last Modified: 21 Nov 2024

    SAP S/4 HANA (Fiori UI for General Ledger Accounting), versions 103, 104, does not perform necessary authorization checks for an authenticated user working with attachment service, allowing the attacker to delete attachments due to Missing Authorization Check.

    Published: 12 Aug 2020
    9.8
    Critical

    CVE-2020-17496

    Last Modified: 7 Nov 2025

    vBulletin 5.5.4 through 5.6.2 allows remote command execution via crafted subWidgets data in an ajax/render/widget_tabbedcontainer_tab_panel request. NOTE: this issue exists because of an incomplete fix for CVE-2019-16759.

    Published: 12 Aug 2020
    5.4
    Medium

    CVE-2020-16266

    Last Modified: 21 Nov 2024

    An XSS issue was discovered in MantisBT before 2.24.2. Improper escaping on view_all_bug_page.php allows a remote attacker to inject arbitrary HTML into the page by saving it into a text Custom Field, leading to possible code execution in the browser of any user subsequently viewing the issue (if CSP settings allow it).

    Published: 12 Aug 2020
    6.1
    Medium

    CVE-2020-16145

    Last Modified: 21 Nov 2024

    Roundcube Webmail before 1.3.15 and 1.4.8 allows stored XSS in HTML messages during message display via a crafted SVG document. This issue has been fixed in 1.4.8 and 1.3.15.

    Published: 12 Aug 2020
    5.3
    Medium

    CVE-2020-17373

    Last Modified: 21 Nov 2024

    SugarCRM before 10.1.0 (Q3 2020) allows SQL Injection.

    Published: 12 Aug 2020
    5.4
    Medium

    CVE-2020-17372

    Last Modified: 21 Nov 2024

    SugarCRM before 10.1.0 (Q3 2020) allows XSS.

    Published: 12 Aug 2020
    10
    Critical

    CVE-2020-6932

    Last Modified: 22 Aug 2025

    An information disclosure and remote code execution vulnerability in the slinger web server of the BlackBerry QNX Software Development Platform versions 6.4.0 to 6.6.0 could allow an attacker to potentially read arbitrary files and run arbitrary executables in the context of the web server.

    Published: 12 Aug 2020
    7.5
    High

    CVE-2020-12100

    Last Modified: 21 Nov 2024

    In Dovecot before 2.3.11.3, uncontrolled recursion in submission, lmtp, and lda allows remote attackers to cause a denial of service (resource consumption) via a crafted e-mail message with deeply nested MIME parts.

    Published: 12 Aug 2020
    7.5
    High

    CVE-2020-12673

    Last Modified: 21 Nov 2024

    In Dovecot before 2.3.11.3, sending a specially formatted NTLM request will crash the auth service because of an out-of-bounds read.

    Published: 12 Aug 2020
    7.5
    High

    CVE-2020-12674

    Last Modified: 21 Nov 2024

    In Dovecot before 2.3.11.3, sending a specially formatted RPA request will crash the auth service because a length of zero is mishandled.

    Published: 12 Aug 2020
    8.8
    High

    CVE-2020-8913

    Last Modified: 21 Nov 2024

    A local, arbitrary code execution vulnerability exists in the SplitCompat.install endpoint in Android's Play Core Library versions prior to 1.7.2. A malicious attacker could create an apk which targets a specific application, and if a victim were to install this apk, the attacker could perform a directory traversal, execute code as the targeted application and access the targeted application's data on the Android device. We recommend all users update Play Core to version 1.7.2 or later.

    Published: 12 Aug 2020
    6.5
    Medium

    CVE-2020-17498

    Last Modified: 21 Nov 2024

    In Wireshark 3.2.0 to 3.2.5, the Kafka protocol dissector could crash. This was addressed in epan/dissectors/packet-kafka.c by avoiding a double free during LZ4 decompression.

    Published: 12 Aug 2020
    5.4
    Medium

    CVE-2020-2230

    Last Modified: 21 Nov 2024

    Jenkins 2.251 and earlier, LTS 2.235.3 and earlier does not escape the project naming strategy description, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by users with Overall/Manage permission.

    Published: 12 Aug 2020
    5.3
    Medium

    CVE-2020-17507

    Last Modified: 21 Nov 2024

    An issue was discovered in Qt through 5.12.9, and 5.13.x through 5.15.x before 5.15.1. read_xbm_body in gui/image/qxbmhandler.cpp has a buffer over-read.

    Published: 12 Aug 2020
    5.4
    Medium

    CVE-2020-2229

    Last Modified: 21 Nov 2024

    Jenkins 2.251 and earlier, LTS 2.235.3 and earlier does not escape the tooltip content of help icons, resulting in a stored cross-site scripting (XSS) vulnerability.

    Published: 12 Aug 2020
    5.4
    Medium

    CVE-2020-2231

    Last Modified: 21 Nov 2024

    Jenkins 2.251 and earlier, LTS 2.235.3 and earlier does not escape the remote address of the host starting a build via 'Trigger builds remotely', resulting in a stored cross-site scripting (XSS) vulnerability exploitable by users with Job/Configure permission or knowledge of the Authentication Token.

    Published: 12 Aug 2020
    3.2
    Low

    CVE-2020-25723

    Last Modified: 21 Nov 2024

    A reachable assertion issue was found in the USB EHCI emulation code of QEMU. It could occur while processing USB requests due to missing handling of DMA memory map failure. A malicious privileged user within the guest may abuse this flaw to send bogus USB requests and crash the QEMU process on the host, resulting in a denial of service.

    Published: 12 Aug 2020
    6.4
    Medium

    CVE-2020-7029

    Last Modified: 21 Nov 2024

    A Cross-Site Request Forgery (CSRF) vulnerability was discovered in the System Management Interface Web component of Avaya Aura Communication Manager and Avaya Aura Messaging. This vulnerability could allow an unauthenticated remote attacker to perform Web administration actions with the privileged level of the authenticated user. Affected versions of Communication Manager are 7.0.x, 7.1.x prior to 7.1.3.5 and 8.0.x. Affected versions of Messaging are 7.0.x, 7.1 and 7.1 SP1.

    Published: 11 Aug 2020
    7.5
    High

    CVE-2020-17495

    Last Modified: 21 Nov 2024

    django-celery-results through 1.2.1 stores task results in the database. Among the data it stores are the variables passed into the tasks. The variables may contain sensitive cleartext information that does not belong unencrypted in the database.

    Published: 11 Aug 2020
    7.5
    High

    CVE-2020-17487

    Last Modified: 21 Nov 2024

    radare2 4.5.0 misparses signature information in PE files, causing a segmentation fault in r_x509_parse_algorithmidentifier in libr/util/x509.c. This is due to a malformed object identifier in IMAGE_DIRECTORY_ENTRY_SECURITY.

    Published: 11 Aug 2020
    9.1
    Critical

    CVE-2020-0260

    Last Modified: 21 Nov 2024

    There is a possible out of bounds read due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-152225183

    Published: 11 Aug 2020
    7.8
    High

    CVE-2020-0259

    Last Modified: 21 Nov 2024

    In android_verity_ctr of dm-android-verity.c, there is a possible way to modify a dm-verity protected filesystem due to improperly used crypto. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-157941353References: N/A

    Published: 11 Aug 2020
    5.5
    Medium

    CVE-2020-0258

    Last Modified: 21 Nov 2024

    In stopZygoteLocked of AppZygote.java, there is an insufficient cleanup. This could lead to local information disclosure in the application that is started next with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-157598956

    Published: 11 Aug 2020
    7.8
    High

    CVE-2020-0257

    Last Modified: 21 Nov 2024

    In SpecializeCommon of com_android_internal_os_Zygote.cpp, there is a permissions bypass due to an incomplete cleanup. This could lead to local escalation of privilege in isolated processes with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-156741968

    Published: 11 Aug 2020
    6.8
    Medium

    CVE-2020-0256

    Last Modified: 21 Nov 2024

    In LoadPartitionTable of gpt.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege when inserting a malicious USB device, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-8.0Android ID: A-152874864

    Published: 11 Aug 2020
    7.5
    High

    CVE-2020-0254

    Last Modified: 21 Nov 2024

    There is a possible out of bounds read due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-152647751

    Published: 11 Aug 2020
    9.8
    Critical

    CVE-2020-0253

    Last Modified: 21 Nov 2024

    There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCAndroid ID: A-152647365

    Published: 11 Aug 2020
    9.8
    Critical

    CVE-2020-0252

    Last Modified: 21 Nov 2024

    There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCAndroid ID: A-152236803

    Published: 11 Aug 2020
    7.5
    High

    CVE-2020-0251

    Last Modified: 21 Nov 2024

    There is a possible out of bounds read due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID: A-152647626

    Published: 11 Aug 2020
    6.8
    Medium

    CVE-2019-17339

    Last Modified: 21 Nov 2024

    The VirtualRouter component of TIBCO Software Inc.'s TIBCO Silver Fabric contains a vulnerability that theoretically allows an attacker to inject scripts via URLs. The attacker could theoretically social engineer an authenticated user into submitting the URL, thus executing the script on the affected system with the privileges of the user. Affected releases are TIBCO Software Inc.'s TIBCO Silver Fabric: versions 6.0.0 and below.

    Published: 11 Aug 2020
    5.5
    Medium

    CVE-2020-0250

    Last Modified: 21 Nov 2024

    In requestCellInfoUpdateInternal of PhoneInterfaceManager.java, there is a missing permission check. This could lead to local information disclosure of location data with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-154934934

    Published: 11 Aug 2020
    5.5
    Medium

    CVE-2020-0249

    Last Modified: 21 Nov 2024

    In postInstantAppNotif of InstantAppNotifier.java, there is a possible permission bypass due to a PendingIntent error. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-8.0 Android-8.1 Android-9Android ID: A-154719656

    Published: 11 Aug 2020
    5.5
    Medium

    CVE-2020-0248

    Last Modified: 21 Nov 2024

    In postInstantAppNotif of InstantAppNotifier.java, there is a possible permission bypass due to a PendingIntent error. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-154627439

    Published: 11 Aug 2020
    5.5
    Medium

    CVE-2020-0247

    Last Modified: 21 Nov 2024

    In Threshold::getHistogram of ImageProcessHelper.java, there is a possible crash loop due to an uncaught exception. This could lead to local denial of service with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-8.0 Android-8.1Android ID: A-156087409

    Published: 11 Aug 2020
    7.8
    High

    CVE-2020-0243

    Last Modified: 21 Nov 2024

    In clearPropValue of MediaAnalyticsItem.cpp, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the media server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-8.0 Android-8.1Android ID: A-151644303

    Published: 11 Aug 2020
    7.8
    High

    CVE-2020-0242

    Last Modified: 21 Nov 2024

    In reset of NuPlayerDriver.cpp, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the media server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-151643722

    Published: 11 Aug 2020
    7.8
    High

    CVE-2020-0241

    Last Modified: 21 Nov 2024

    In NuPlayerStreamListener of NuPlayerStreamListener.cpp, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-151456667

    Published: 11 Aug 2020
    8.8
    High

    CVE-2020-0240

    Last Modified: 21 Nov 2024

    In NewFixedDoubleArray of factory.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-150706594

    Published: 11 Aug 2020
    5.5
    Medium

    CVE-2020-0239

    Last Modified: 21 Nov 2024

    In getDocumentMetadata of DocumentsContract.java, there is a possible disclosure of location metadata from a file due to a permissions bypass. This could lead to local information disclosure from a file (eg. a photo) containing location metadata with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-151095863

    Published: 11 Aug 2020
    7
    High

    CVE-2020-0238

    Last Modified: 21 Nov 2024

    In updatePreferenceIntents of AccountTypePreferenceLoader, there is a possible confused deputy attack due to a race condition. This could lead to local escalation of privilege and launching privileged activities with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-8.0Android ID: A-150946634

    Published: 11 Aug 2020
    7.8
    High

    CVE-2020-0108

    Last Modified: 21 Nov 2024

    In postNotification of ServiceRecord.java, there is a possible bypass of foreground process restrictions due to an uncaught exception. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-8.1 Android-9Android ID: A-140108616

    Published: 11 Aug 2020
    7.5
    High

    CVE-2020-16170

    Last Modified: 21 Nov 2024

    Use of Hard-coded Credentials in temi Robox OS prior to 120, temi Android app up to 1.3.7931 allows remote attackers to listen in on any ongoing calls between temi robots and their users if they can brute-force/guess a six-digit value via unspecified vectors.

    Published: 11 Aug 2020
    6.8
    Medium

    CVE-2020-16844

    Last Modified: 21 Nov 2024

    In Istio 1.5.0 though 1.5.8 and Istio 1.6.0 through 1.6.7, when users specify an AuthorizationPolicy resource with DENY actions using wildcard suffixes (e.g. *-some-suffix) for source principals or namespace fields, callers will never be denied access, bypassing the intended policy.

    Published: 11 Aug 2020
    6.8
    Medium

    CVE-2020-9244

    Last Modified: 21 Nov 2024

    HUAWEI Mate 20 versions Versions earlier than 10.1.0.160(C00E160R3P8);HUAWEI Mate 20 Pro versions Versions earlier than 10.1.0.270(C431E7R1P5),Versions earlier than 10.1.0.270(C635E3R1P5),Versions earlier than 10.1.0.273(C636E7R2P4);HUAWEI Mate 20 X versions Versions earlier than 10.1.0.160(C00E160R2P8);HUAWEI P30 versions Versions earlier than 10.1.0.160(C00E160R2P11);HUAWEI P30 Pro versions Versions earlier than 10.1.0.160(C00E160R2P8);HUAWEI Mate 20 RS versions Versions earlier than 10.1.0.160(C786E160R3P8);HonorMagic2 versions Versions earlier than 10.0.0.187(C00E61R2P11);Honor20 versions Versions earlier than 10.0.0.175(C00E58R4P11);Honor20 PRO versions Versions earlier than 10.0.0.194(C00E62R8P12);HonorMagic2 versions Versions earlier than 10.0.0.187(C00E61R2P11);HonorV20 versions Versions earlier than 10.0.0.188(C00E62R2P11) have an improper authentication vulnerability. The system does not properly sign certain encrypted file, the attacker should gain the key used to encrypt the file, successful exploit could cause certain file be forged

    Published: 11 Aug 2020
    6.3
    Medium

    CVE-2020-8918

    Last Modified: 21 Nov 2024

    An improperly initialized 'migrationAuth' value in Google's go-tpm TPM1.2 library versions prior to 0.3.0 can lead an eavesdropping attacker to discover the auth value for a key created with CreateWrapKey. An attacker listening in on the channel can collect both 'encUsageAuth' and 'encMigrationAuth', and then can calculate 'usageAuth ^ encMigrationAuth' as the 'migrationAuth' can be guessed for all keys created with CreateWrapKey. TPM2.0 is not impacted by this. We recommend updating your library to 0.3.0 or later, or, if you cannot update, to call CreateWrapKey with a random 20-byte value for 'migrationAuth'.

    Published: 11 Aug 2020
    5.5
    Medium

    CVE-2020-9403

    Last Modified: 21 Nov 2024

    In PACTware before 4.1 SP6 and 5.x before 5.0.5.31, passwords are stored in a recoverable format, and may be retrieved by any user with access to the PACTware workstation.

    Published: 11 Aug 2020
    7.1
    High

    CVE-2020-9404

    Last Modified: 21 Nov 2024

    In PACTware before 4.1 SP6 and 5.x before 5.0.5.31, passwords are stored in an insecure manner, and may be modified by an attacker with no knowledge of the current passwords.

    Published: 11 Aug 2020
    7.5
    High

    CVE-2020-11976

    Last Modified: 21 Nov 2024

    By crafting a special URL it is possible to make Wicket deliver unprocessed HTML templates. This would allow an attacker to see possibly sensitive information inside a HTML template that is usually removed during rendering. Affected are Apache Wicket versions 7.16.0, 8.8.0 and 9.0.0-M5

    Published: 11 Aug 2020
    5.5
    Medium

    CVE-2020-13179

    Last Modified: 21 Nov 2024

    Broker Protocol messages in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to 20.04.1 are not cleaned up in server memory, which may allow an attacker to read confidential information from a memory dump via forcing a crashing during the single sign-on procedure.

    Published: 11 Aug 2020
    7.8
    High

    CVE-2020-14979

    Last Modified: 21 Nov 2024

    The WinRing0.sys and WinRing0x64.sys drivers 1.2.0 in EVGA Precision X1 through 1.0.6 allow local users, including low integrity processes, to read and write to arbitrary memory locations. This allows any user to gain NT AUTHORITY\SYSTEM privileges by mapping \Device\PhysicalMemory into the calling process.

    Published: 11 Aug 2020