CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2020-15032

    Last Modified: 21 Nov 2024

    NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the Monitoring-Incidents.php id parameter.

    Published: 7 Jul 2020
    5.4
    Medium

    CVE-2020-15033

    Last Modified: 21 Nov 2024

    NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the snmpget.php ip parameter.

    Published: 7 Jul 2020
    5.4
    Medium

    CVE-2020-15034

    Last Modified: 21 Nov 2024

    NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the Monitoring-Setup.php tet parameter.

    Published: 7 Jul 2020
    5.4
    Medium

    CVE-2020-15035

    Last Modified: 21 Nov 2024

    NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the Monitoring-Map.php hde parameter.

    Published: 7 Jul 2020
    8.8
    High

    CVE-2020-15515

    Last Modified: 21 Nov 2024

    The turn extension through 0.3.2 for TYPO3 allows Remote Code Execution.

    Published: 7 Jul 2020
    4.3
    Medium

    CVE-2019-4323

    Last Modified: 21 Nov 2024

    "HCL AppScan Enterprise advisory API documentation is susceptible to clickjacking, which could allow an attacker to embed the contents of untrusted web pages in a frame."

    Published: 7 Jul 2020
    6.1
    Medium

    CVE-2019-4324

    Last Modified: 21 Nov 2024

    "HCL AppScan Enterprise is susceptible to Cross-Site Scripting while importing a specially crafted test policy."

    Published: 7 Jul 2020
    5.4
    Medium

    CVE-2020-15036

    Last Modified: 21 Nov 2024

    NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the Topology-Linked.php dv parameter.

    Published: 7 Jul 2020
    5.4
    Medium

    CVE-2020-15037

    Last Modified: 21 Nov 2024

    NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the Reports-Devices.php page st[] parameter.

    Published: 7 Jul 2020
    9.8
    Critical

    CVE-2020-15367

    Last Modified: 21 Nov 2024

    Venki Supravizio BPM 10.1.2 does not limit the number of authentication attempts. An unauthenticated user may exploit this vulnerability to launch a brute-force authentication attack against the Login page.

    Published: 7 Jul 2020
    5.3
    Medium

    CVE-2020-15392

    Last Modified: 21 Nov 2024

    A user enumeration vulnerability flaw was found in Venki Supravizio BPM 10.1.2. This issue occurs during password recovery, where a difference in error messages could allow an attacker to determine if a username is valid or not, enabling a brute-force attack with valid usernames.

    Published: 7 Jul 2020
    6.5
    Medium

    CVE-2020-15509

    Last Modified: 21 Nov 2024

    Nordic Semiconductor Android BLE Library through 2.2.1 and DFU Library through 1.10.4 for Android (as used by nRF Connect and other applications) can engage in unencrypted communication while showing the user that the communication is purportedly encrypted. The problem is in bond creation (e.g., internalCreateBond in BleManagerHandler).

    Published: 7 Jul 2020
    5.3
    Medium

    CVE-2020-15525

    Last Modified: 21 Nov 2024

    GitLab EE 11.3 through 13.1.2 has Incorrect Access Control because of the Maven package upload endpoint.

    Published: 7 Jul 2020
    5.3
    Medium

    CVE-2020-15513

    Last Modified: 21 Nov 2024

    The typo3_forum extension before 1.2.1 for TYPO3 has Incorrect Access Control.

    Published: 7 Jul 2020
    5.4
    Medium

    CVE-2020-15514

    Last Modified: 21 Nov 2024

    The jh_captcha extension through 2.1.3, and 3.x through 3.0.2, for TYPO3 allows XSS.

    Published: 7 Jul 2020
    5.4
    Medium

    CVE-2020-15516

    Last Modified: 21 Nov 2024

    The mm_forum extension through 1.9.5 for TYPO3 allows XSS that can be exploited via CSRF.

    Published: 7 Jul 2020
    5.4
    Medium

    CVE-2020-15517

    Last Modified: 21 Nov 2024

    The ke_search (aka Faceted Search) extension through 2.8.2, and 3.x through 3.1.3, for TYPO3 allows XSS.

    Published: 7 Jul 2020
    5.5
    Medium

    CVE-2020-15577

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Cameralyzer allows attackers to write files to the SD card. The Samsung ID is SVE-2020-16830 (July 2020).

    Published: 7 Jul 2020
    5.5
    Medium

    CVE-2020-15578

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x) software. FactoryCamera does not properly restrict runtime permissions. The Samsung ID is SVE-2020-17270 (July 2020).

    Published: 7 Jul 2020
    7.5
    High

    CVE-2020-15579

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) via the KNOX API. The Samsung ID is SVE-2020-17318 (July 2020).

    Published: 7 Jul 2020
    5.5
    Medium

    CVE-2020-15580

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) by enrolling a new lock password. The Samsung ID is SVE-2020-17328 (July 2020).

    Published: 7 Jul 2020
    5.3
    Medium

    CVE-2020-15581

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The kernel logging feature allows attackers to discover virtual addresses via vectors involving shared memory. The Samsung ID is SVE-2020-17605 (July 2020).

    Published: 7 Jul 2020
    5.5
    Medium

    CVE-2020-15582

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 7885 chipsets) software. The Bluetooth Low Energy (BLE) component has a buffer overflow with a resultant deadlock or crash. The Samsung ID is SVE-2020-16870 (July 2020).

    Published: 7 Jul 2020
    5.5
    Medium

    CVE-2020-15583

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. StickerProvider allows directory traversal for access to system files. The Samsung ID is SVE-2020-17665 (July 2020).

    Published: 7 Jul 2020
    5.5
    Medium

    CVE-2020-15584

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access and device reset via a 4K wallpaper image because ImageProcessHelper mishandles boundary checks. The Samsung ID is SVE-2020-18056 (July 2020).

    Published: 7 Jul 2020
    6.1
    Medium

    CVE-2020-15573

    Last Modified: 21 Nov 2024

    SolarWinds Serv-U File Server before 15.2.1 has a "Cross-script vulnerability," aka Case Numbers 00041778 and 00306421.

    Published: 7 Jul 2020
    7.5
    High

    CVE-2020-15574

    Last Modified: 21 Nov 2024

    SolarWinds Serv-U File Server before 15.2.1 mishandles the Same-Site cookie attribute, aka Case Number 00331893.

    Published: 7 Jul 2020
    6.1
    Medium

    CVE-2020-15575

    Last Modified: 21 Nov 2024

    SolarWinds Serv-U File Server before 15.2.1 allows XSS as demonstrated by Tenable Scan, aka Case Number 00484194.

    Published: 7 Jul 2020
    7.5
    High

    CVE-2020-15576

    Last Modified: 21 Nov 2024

    SolarWinds Serv-U File Server before 15.2.1 allows information disclosure via an HTTP response.

    Published: 7 Jul 2020
    6.5
    Medium

    CVE-2020-15564

    Last Modified: 21 Nov 2024

    An issue was discovered in Xen through 4.13.x, allowing Arm guest OS users to cause a hypervisor crash because of a missing alignment check in VCPUOP_register_vcpu_info. The hypercall VCPUOP_register_vcpu_info is used by a guest to register a shared region with the hypervisor. The region will be mapped into Xen address space so it can be directly accessed. On Arm, the region is accessed with instructions that require a specific alignment. Unfortunately, there is no check that the address provided by the guest will be correctly aligned. As a result, a malicious guest could cause a hypervisor crash by passing a misaligned address. A malicious guest administrator may cause a hypervisor crash, resulting in a Denial of Service (DoS). All Xen versions are vulnerable. Only Arm systems are vulnerable. x86 systems are not affected.

    Published: 7 Jul 2020
    8.8
    High

    CVE-2020-15565

    Last Modified: 21 Nov 2024

    An issue was discovered in Xen through 4.13.x, allowing x86 Intel HVM guest OS users to cause a host OS denial of service or possibly gain privileges because of insufficient cache write-back under VT-d. When page tables are shared between IOMMU and CPU, changes to them require flushing of both TLBs. Furthermore, IOMMUs may be non-coherent, and hence prior to flushing IOMMU TLBs, a CPU cache also needs writing back to memory after changes were made. Such writing back of cached data was missing in particular when splitting large page mappings into smaller granularity ones. A malicious guest may be able to retain read/write DMA access to frames returned to Xen's free pool, and later reused for another purpose. Host crashes (leading to a Denial of Service) and privilege escalation cannot be ruled out. Xen versions from at least 3.2 onwards are affected. Only x86 Intel systems are affected. x86 AMD as well as Arm systems are not affected. Only x86 HVM guests using hardware assisted paging (HAP), having a passed through PCI device assigned, and having page table sharing enabled can leverage the vulnerability. Note that page table sharing will be enabled (by default) only if Xen considers IOMMU and CPU large page size support compatible.

    Published: 7 Jul 2020
    6.5
    Medium

    CVE-2020-15566

    Last Modified: 21 Nov 2024

    An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a host OS crash because of incorrect error handling in event-channel port allocation. The allocation of an event-channel port may fail for multiple reasons: (1) port is already in use, (2) the memory allocation failed, or (3) the port we try to allocate is higher than what is supported by the ABI (e.g., 2L or FIFO) used by the guest or the limit set by an administrator (max_event_channels in xl cfg). Due to the missing error checks, only (1) will be considered an error. All the other cases will provide a valid port and will result in a crash when trying to access the event channel. When the administrator configured a guest to allow more than 1023 event channels, that guest may be able to crash the host. When Xen is out-of-memory, allocation of new event channels will result in crashing the host rather than reporting an error. Xen versions 4.10 and later are affected. All architectures are affected. The default configuration, when guests are created with xl/libxl, is not vulnerable, because of the default event-channel limit.

    Published: 7 Jul 2020
    7.8
    High

    CVE-2020-15567

    Last Modified: 21 Nov 2024

    An issue was discovered in Xen through 4.13.x, allowing Intel guest OS users to gain privileges or cause a denial of service because of non-atomic modification of a live EPT PTE. When mapping guest EPT (nested paging) tables, Xen would in some circumstances use a series of non-atomic bitfield writes. Depending on the compiler version and optimisation flags, Xen might expose a dangerous partially written PTE to the hardware, which an attacker might be able to race to exploit. A guest administrator or perhaps even an unprivileged guest user might be able to cause denial of service, data corruption, or privilege escalation. Only systems using Intel CPUs are vulnerable. Systems using AMD CPUs, and Arm systems, are not vulnerable. Only systems using nested paging (hap, aka nested paging, aka in this case Intel EPT) are vulnerable. Only HVM and PVH guests can exploit the vulnerability. The presence and scope of the vulnerability depends on the precise optimisations performed by the compiler used to build Xen. If the compiler generates (a) a single 64-bit write, or (b) a series of read-modify-write operations in the same order as the source code, the hypervisor is not vulnerable. For example, in one test build using GCC 8.3 with normal settings, the compiler generated multiple (unlocked) read-modify-write operations in source-code order, which did not constitute a vulnerability. We have not been able to survey compilers; consequently we cannot say which compiler(s) might produce vulnerable code (with which code-generation options). The source code clearly violates the C rules, and thus should be considered vulnerable.

    Published: 7 Jul 2020
    6.5
    Medium

    CVE-2020-15563

    Last Modified: 21 Nov 2024

    An issue was discovered in Xen through 4.13.x, allowing x86 HVM guest OS users to cause a hypervisor crash. An inverted conditional in x86 HVM guests' dirty video RAM tracking code allows such guests to make Xen de-reference a pointer guaranteed to point at unmapped space. A malicious or buggy HVM guest may cause the hypervisor to crash, resulting in Denial of Service (DoS) affecting the entire host. Xen versions from 4.8 onwards are affected. Xen versions 4.7 and earlier are not affected. Only x86 systems are affected. Arm systems are not affected. Only x86 HVM guests using shadow paging can leverage the vulnerability. In addition, there needs to be an entity actively monitoring a guest's video frame buffer (typically for display purposes) in order for such a guest to be able to leverage the vulnerability. x86 PV guests, as well as x86 HVM guests using hardware assisted paging (HAP), cannot leverage the vulnerability.

    Published: 7 Jul 2020
    7.5
    High

    CVE-2020-5600

    Last Modified: 21 Nov 2024

    TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains a resource management error vulnerability, which may allow a remote attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.

    Published: 7 Jul 2020
    7.5
    High

    CVE-2020-5598

    Last Modified: 21 Nov 2024

    TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains an improper access control vulnerability, which may which may allow a remote attacker tobypass access restriction and stop the network functions of the products or execute a malicious program via a specially crafted packet.

    Published: 7 Jul 2020
    9.8
    Critical

    CVE-2020-5599

    Last Modified: 21 Nov 2024

    TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains an improper neutralization of argument delimiters in a command ('Argument Injection') vulnerability, which may allow a remote attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.

    Published: 7 Jul 2020
    9.8
    Critical

    CVE-2020-5595

    Last Modified: 21 Nov 2024

    TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains a buffer overflow vulnerability, which may allow a remote attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.

    Published: 7 Jul 2020
    7.5
    High

    CVE-2020-5596

    Last Modified: 21 Nov 2024

    TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) does not properly manage sessions, which may allow a remote attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.

    Published: 7 Jul 2020
    7.5
    High

    CVE-2020-5597

    Last Modified: 21 Nov 2024

    TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains a null pointer dereference vulnerability, which may allow a remote attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.

    Published: 7 Jul 2020
    9.8
    Critical

    CVE-2020-15505

    Last Modified: 7 Nov 2025

    A remote code execution vulnerability in MobileIron Core & Connector versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0; and Sentry versions 9.7.2 and earlier, and 9.8.0; and Monitor and Reporting Database (RDB) version 2.0.0.1 and earlier that allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 7 Jul 2020
    9.8
    Critical

    CVE-2020-15506

    Last Modified: 21 Nov 2024

    An authentication bypass vulnerability in MobileIron Core & Connector versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0 that allows remote attackers to bypass authentication mechanisms via unspecified vectors.

    Published: 7 Jul 2020
    7.5
    High

    CVE-2020-15507

    Last Modified: 21 Nov 2024

    An arbitrary file reading vulnerability in MobileIron Core versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0 that allows remote attackers to read files on the system via unspecified vectors.

    Published: 7 Jul 2020
    6.8
    Medium

    CVE-2020-15096

    Last Modified: 21 Nov 2024

    In Electron before versions 6.1.1, 7.2.4, 8.2.4, and 9.0.0-beta21, there is a context isolation bypass, meaning that code running in the main world context in the renderer can reach into the isolated Electron context and perform privileged actions. Apps using "contextIsolation" are affected. There are no app-side workarounds, you must update your Electron version to be protected. This is fixed in versions 6.1.1, 7.2.4, 8.2.4, and 9.0.0-beta21.

    Published: 7 Jul 2020
    6.8
    Medium

    CVE-2020-4075

    Last Modified: 21 Nov 2024

    In Electron before versions 7.2.4, 8.2.4, and 9.0.0-beta21, arbitrary local file read is possible by defining unsafe window options on a child window opened via window.open. As a workaround, ensure you are calling `event.preventDefault()` on all new-window events where the `url` or `options` is not something you expect. This is fixed in versions 9.0.0-beta.21, 8.2.4 and 7.2.4.

    Published: 7 Jul 2020
    7.8
    High

    CVE-2020-4076

    Last Modified: 21 Nov 2024

    In Electron before versions 7.2.4, 8.2.4, and 9.0.0-beta21, there is a context isolation bypass. Code running in the main world context in the renderer can reach into the isolated Electron context and perform privileged actions. Apps using contextIsolation are affected. This is fixed in versions 9.0.0-beta.21, 8.2.4 and 7.2.4.

    Published: 7 Jul 2020
    7.7
    High

    CVE-2020-4077

    Last Modified: 21 Nov 2024

    In Electron before versions 7.2.4, 8.2.4, and 9.0.0-beta21, there is a context isolation bypass. Code running in the main world context in the renderer can reach into the isolated Electron context and perform privileged actions. Apps using both `contextIsolation` and `contextBridge` are affected. This is fixed in versions 9.0.0-beta.21, 8.2.4 and 7.2.4.

    Published: 7 Jul 2020
    4.4
    Medium

    CVE-2020-15095

    Last Modified: 21 Nov 2024

    Versions of the npm CLI prior to 6.14.6 are vulnerable to an information exposure vulnerability through log files. The CLI supports URLs like "<protocol>://[<user>[:<password>]@]<hostname>[:<port>][:][/]<path>". The password value is not redacted and is printed to stdout and also to any generated log files.

    Published: 7 Jul 2020
    5.5
    Medium

    CVE-2020-14317

    Last Modified: 21 Nov 2024

    It was found that the issue for security flaw CVE-2019-3805 appeared again in a further version of JBoss Enterprise Application Platform - Continuous Delivery (EAP-CD) introducing regression. An attacker could exploit this by modifying the PID file in /var/run/jboss-eap/ allowing the init.d script to terminate any process as root.

    Published: 7 Jul 2020
    5.3
    Medium

    CVE-2015-3207

    Last Modified: 21 Nov 2024

    In Openshift Origin 3 the cookies being set in console have no 'secure', 'HttpOnly' attributes.

    Published: 7 Jul 2020