CVE Feed

    Dashboard / CVE

    8.6
    High

    CVE-2020-7672

    Last Modified: 21 Nov 2024

    mosc through 1.0.0 is vulnerable to Arbitrary Code Execution. User input provided to `properties` argument is executed by the `eval` function, resulting in code execution.

    Published: 10 Jun 2020
    9.8
    Critical

    CVE-2020-7674

    Last Modified: 21 Nov 2024

    access-policy through 3.1.0 is vulnerable to Arbitrary Code Execution. User input provided to the `template` function is executed by the `eval` function resulting in code execution.

    Published: 10 Jun 2020
    9.8
    Critical

    CVE-2020-7675

    Last Modified: 21 Nov 2024

    cd-messenger through 2.7.26 is vulnerable to Arbitrary Code Execution. User input provided to the `color` argument executed by the `eval` function resulting in code execution.

    Published: 10 Jun 2020
    9.8
    Critical

    CVE-2020-7673

    Last Modified: 21 Nov 2024

    node-extend through 0.2.0 is vulnerable to Arbitrary Code Execution. User input provided to the argument `A` of `extend` function`(A,B,as,isAargs)` located within `lib/extend.js` is executed by the `eval` function, resulting in code execution.

    Published: 10 Jun 2020
    6.1
    Medium

    CVE-2020-13269

    Last Modified: 21 Nov 2024

    A Reflected Cross-Site Scripting vulnerability allowed the execution of arbitrary Javascript code on the Static Site Editor in GitLab CE/EE 12.10 and later through 13.0.1

    Published: 10 Jun 2020
    7.5
    High

    CVE-2020-13270

    Last Modified: 21 Nov 2024

    Missing permission check on fork relation creation in GitLab CE/EE 11.3 and later through 13.0.1 allows guest users to create a fork relation on restricted public projects via API

    Published: 10 Jun 2020
    5.3
    Medium

    CVE-2020-13268

    Last Modified: 21 Nov 2024

    A specially crafted request could be used to confirm the existence of files hosted on object storage services, without disclosing their contents. This vulnerability affects GitLab CE/EE 12.10 and later through 13.0.1

    Published: 10 Jun 2020
    6.1
    Medium

    CVE-2020-13267

    Last Modified: 21 Nov 2024

    A Stored Cross-Site Scripting vulnerability allowed the execution on Javascript payloads on the Metrics Dashboard in GitLab CE/EE 12.8 and later through 13.0.1

    Published: 10 Jun 2020
    6.1
    Medium

    CVE-2020-13271

    Last Modified: 21 Nov 2024

    A Stored Cross-Site Scripting vulnerability allowed the execution of arbitrary Javascript code in the blobs API in all previous GitLab CE/EE versions through 13.0.1

    Published: 10 Jun 2020
    —
    Unknown

    CVE-2020-10708

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 10 Jun 2020
    7.5
    High

    CVE-2020-4436

    Last Modified: 21 Nov 2024

    Certain IBM Aspera applications are vulnerable to buffer overflow after valid authentication, which could allow an attacker with intimate knowledge of the system to execute arbitrary code through a service. IBM X-Force ID: 180902.

    Published: 10 Jun 2020
    7.5
    High

    CVE-2020-4435

    Last Modified: 21 Nov 2024

    Certain IBM Aspera applications are vulnerable to arbitrary memory corruption based on the product configuration, which could allow an attacker with intimate knowledge of the system to execute arbitrary code or perform a denial-of-service (DoS) through the http fallback service. IBM X-Force ID: 180901.

    Published: 10 Jun 2020
    7.5
    High

    CVE-2020-4434

    Last Modified: 21 Nov 2024

    Certain IBM Aspera applications are vulnerable to buffer overflow based on the product configuration and valid authentication, which could allow an attacker with intimate knowledge of the system to execute arbitrary code or perform a denial-of-service (DoS) through the http fallback service. IBM X-Force ID: 180900.

    Published: 10 Jun 2020
    7.5
    High

    CVE-2020-4433

    Last Modified: 21 Nov 2024

    Certain IBM Aspera applications are vulnerable to a stack-based buffer overflow, caused by improper bounds checking. This could allow a remote attacker with intimate knowledge of the server to execute arbitrary code on the system with the privileges of root or cause server to crash. IBM X-Force ID: 180814.

    Published: 10 Jun 2020
    7.5
    High

    CVE-2020-4432

    Last Modified: 21 Nov 2024

    Certain IBM Aspera applications are vulnerable to command injection after valid authentication, which could allow an attacker with intimate knowledge of the system to execute commands in a SOAP API. IBM X-Force ID: 180810.

    Published: 10 Jun 2020
    9.8
    Critical

    CVE-2019-4576

    Last Modified: 21 Nov 2024

    IBM QRadar Network Packet Capture 7.3.0 - 7.3.3 Patch 1 and 7.4.0 GA does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 166803.

    Published: 10 Jun 2020
    5.4
    Medium

    CVE-2020-6266

    Last Modified: 21 Nov 2024

    SAP Fiori for SAP S/4HANA, versions - 100, 200, 300, 400, allows an attacker to redirect users to a malicious site due to insufficient URL validation, leading to URL Redirection.

    Published: 10 Jun 2020
    7.5
    High

    CVE-2020-6264

    Last Modified: 21 Nov 2024

    SAP Commerce, versions - 6.7, 1808, 1811, 1905, may allow an attacker to access information under certain conditions which would otherwise be restricted, leading to Information Disclosure.

    Published: 10 Jun 2020
    9.8
    Critical

    CVE-2020-6263

    Last Modified: 21 Nov 2024

    Standalone clients connecting to SAP NetWeaver AS Java via P4 Protocol, versions (SAP-JEECOR 7.00, 7.01; SERVERCOR 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50; CORE-TOOLS 7.00, 7.01, 7.02, 7.05, 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50) do not perform any authentication checks for operations that require user identity leading to Authentication Bypass.

    Published: 10 Jun 2020
    5.3
    Medium

    CVE-2020-6260

    Last Modified: 21 Nov 2024

    SAP Solution Manager (Trace Analysis), version 7.20, allows an attacker to inject superflous data that can be displayed by the application, due to Incomplete XML Validation. The application shows additional data that do not actually exist.

    Published: 10 Jun 2020
    —
    Unknown

    CVE-2020-6279

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 10 Jun 2020
    9.8
    Critical

    CVE-2020-6275

    Last Modified: 21 Nov 2024

    SAP Netweaver AS ABAP, versions 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, are vulnerable for Server Side Request Forgery Attack where in an attacker can use inappropriate path names containing malicious server names in the import/export of sessions functionality and coerce the web server into authenticating with the malicious server. Furthermore, if NTLM is setup the attacker can compromise confidentiality, integrity and availability of the SAP database.

    Published: 10 Jun 2020
    8.2
    High

    CVE-2020-6271

    Last Modified: 21 Nov 2024

    SAP Solution Manager (Problem Context Manager), version 7.2, does not perform the necessary authentication, allowing an attacker to consume large amounts of memory, causing the system to crash and read restricted data (files visible for technical administration users of the diagnostics agent).

    Published: 10 Jun 2020
    6.5
    Medium

    CVE-2020-6269

    Last Modified: 21 Nov 2024

    Under certain conditions SAP Business Objects Business Intelligence Platform, version 4.2, allows an attacker to access information which would otherwise be restricted, leading to Information Disclosure.

    Published: 10 Jun 2020
    6.5
    Medium

    CVE-2020-6270

    Last Modified: 21 Nov 2024

    SAP NetWeaver AS ABAP (Banking Services), versions - 710, 711, 740, 750, 751, 752, 75A, 75B, 75C, 75D, 75E, does not perform necessary authorization checks for an authenticated user due to Missing Authorization Check, allowing wrong and unexpected change of individual conditions by a malicious user leading to wrong prices.

    Published: 10 Jun 2020
    8.1
    High

    CVE-2020-6268

    Last Modified: 21 Nov 2024

    Statutory Reporting for Insurance Companies in SAP ERP (EA-FINSERV versions - 600, 603, 604, 605, 606, 616, 617, 618, 800 and S4CORE versions 101, 102, 103, 104) does not execute the required authorization checks for an authenticated user, allowing an attacker to view and tamper with certain restricted data leading to Missing Authorization Check.

    Published: 10 Jun 2020
    6.1
    Medium

    CVE-2020-6246

    Last Modified: 21 Nov 2024

    SAP NetWeaver AS ABAP Business Server Pages Test Application SBSPEXT_TABLE, versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, 754, does not sufficiently encode user-controlled inputs, resulting in reflected Cross-Site Scripting (XSS) vulnerability.

    Published: 10 Jun 2020
    4.4
    Medium

    CVE-2020-6239

    Last Modified: 21 Nov 2024

    Under certain conditions SAP Business One (Backup service), versions 9.3, 10.0, allows an attacker with admin permissions to view SYSTEM user password in clear text, leading to Information Disclosure.

    Published: 10 Jun 2020
    7.8
    High

    CVE-2020-7280

    Last Modified: 21 Nov 2024

    Privilege Escalation vulnerability during daily DAT updates when using McAfee Virus Scan Enterprise (VSE) prior to 8.8 Patch 15 allows local users to cause the deletion and creation of files they would not normally have permission to through altering the target of symbolic links. This is timing dependent.

    Published: 10 Jun 2020
    6.3
    Medium

    CVE-2019-3588

    Last Modified: 21 Nov 2024

    Privilege Escalation vulnerability in Microsoft Windows client (McTray.exe) in McAfee VirusScan Enterprise (VSE) 8.8 prior to Patch 14 may allow unauthorized users to interact with the On-Access Scan Messages - Threat Alert Window when the Windows Login Screen is locked.

    Published: 10 Jun 2020
    7
    High

    CVE-2019-3585

    Last Modified: 21 Nov 2024

    Privilege Escalation vulnerability in Microsoft Windows client (McTray.exe) in McAfee VirusScan Enterprise (VSE) 8.8 prior to Patch 14 may allow local users to interact with the On-Access Scan Messages - Threat Alert Window with elevated privileges via running McAfee Tray with elevated privileges.

    Published: 10 Jun 2020
    4.6
    Medium

    CVE-2020-7279

    Last Modified: 21 Nov 2024

    DLL Search Order Hijacking Vulnerability in the installer component of McAfee Host Intrusion Prevention System (Host IPS) for Windows prior to 8.0.0 Patch 15 Update allows attackers with local access to execute arbitrary code via execution from a compromised folder.

    Published: 10 Jun 2020
    5.9
    Medium

    CVE-2019-3613

    Last Modified: 21 Nov 2024

    DLL Search Order Hijacking vulnerability in McAfee Agent (MA) prior to 5.6.4 allows attackers with local access to execute arbitrary code via execution from a compromised folder.

    Published: 10 Jun 2020
    7.5
    High

    CVE-2019-3617

    Last Modified: 21 Nov 2024

    Privilege escalation vulnerability in McAfee Total Protection (ToPS) for Mac OS prior to 4.6 allows local users to gain root privileges via incorrect protection of temporary files.

    Published: 10 Jun 2020
    8.1
    High

    CVE-2020-5411

    Last Modified: 1 Sept 2026

    When configured to enable default typing, Jackson contained a deserialization vulnerability that could lead to arbitrary code execution. Jackson fixed this vulnerability by blacklisting known "deserialization gadgets". Spring Batch configures Jackson with global default typing enabled which means that through the previous exploit, arbitrary code could be executed if all of the following is true: * Spring Batch's Jackson support is being leveraged to serialize a job's ExecutionContext. * A malicious user gains write access to the data store used by the JobRepository (where the data to be deserialized is stored). In order to protect against this type of attack, Jackson prevents a set of untrusted gadget classes from being deserialized. Spring Batch should be proactive against blocking unknown "deserialization gadgets" when enabling default typing.

    Published: 10 Jun 2020
    6.5
    Medium

    CVE-2018-16848

    Last Modified: 21 Nov 2024

    A Denial of Service (DoS) condition is possible in OpenStack Mistral in versions up to and including 7.0.3. Submitting a specially crafted workflow definition YAML file containing nested anchors can lead to resource exhaustion culminating in a denial of service.

    Published: 10 Jun 2020
    7.5
    High

    CVE-2020-10752

    Last Modified: 21 Nov 2024

    A flaw was found in the OpenShift API Server, where it failed to sufficiently protect OAuthTokens by leaking them into the logs when an API Server panic occurred. This flaw allows an attacker with the ability to cause an API Server error to read the logs, and use the leaked OAuthToken to log into the API Server with the leaked token.

    Published: 10 Jun 2020
    6.7
    Medium

    CVE-2020-7580

    Last Modified: 21 Nov 2024

    A vulnerability has been identified in SIMATIC Automation Tool (All versions < V4 SP2), SIMATIC NET PC Software V14 (All versions < V14 SP1 Update 14), SIMATIC NET PC Software V15 (All versions), SIMATIC NET PC Software V16 (All versions < V16 Upd3), SIMATIC PCS neo (All versions < V3.0 SP1), SIMATIC ProSave (All versions < V17), SIMATIC S7-1500 Software Controller (All versions < V21.8), SIMATIC STEP 7 (TIA Portal) V13 (All versions < V13 SP2 Update 4), SIMATIC STEP 7 (TIA Portal) V14 (All versions < V14 SP1 Update 10), SIMATIC STEP 7 (TIA Portal) V15 (All versions < V15.1 Update 5), SIMATIC STEP 7 (TIA Portal) V16 (All versions < V16 Update 2), SIMATIC STEP 7 V5 (All versions < V5.6 SP2 HF3), SIMATIC WinCC OA V3.16 (All versions < V3.16 P018), SIMATIC WinCC OA V3.17 (All versions < V3.17 P003), SIMATIC WinCC Runtime Advanced (All versions < V16 Update 2), SIMATIC WinCC Runtime Professional V13 (All versions < V13 SP2 Update 4), SIMATIC WinCC Runtime Professional V14 (All versions < V14 SP1 Update 10), SIMATIC WinCC Runtime Professional V15 (All versions < V15.1 Update 5), SIMATIC WinCC Runtime Professional V16 (All versions < V16 Update 2), SIMATIC WinCC V7.4 (All versions < V7.4 SP1 Update 14), SIMATIC WinCC V7.5 (All versions < V7.5 SP1 Update 3), SINAMICS STARTER (All Versions < V5.4 HF2), SINAMICS Startdrive (All Versions < V16 Update 3), SINEC NMS (All versions < V1.0 SP2), SINEMA Server (All versions < V14 SP3), SINUMERIK ONE virtual (All Versions < V6.14), SINUMERIK Operate (All Versions < V6.14). A common component used by the affected applications regularly calls a helper binary with SYSTEM privileges while the call path is not quoted. This could allow a local attacker to execute arbitrary code with SYTEM privileges.

    Published: 10 Jun 2020
    7.5
    High

    CVE-2020-10772

    Last Modified: 21 Nov 2024

    An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414. Vulnerable versions of Unbound could still amplify an incoming query into a large number of queries directed to a target, even with a lower amplification ratio compared to versions of Unbound that shipped before the mentioned erratum. This issue is about the incomplete fix for CVE-2020-12662, and it does not affect upstream versions of Unbound.

    Published: 10 Jun 2020
    5.3
    Medium

    CVE-2020-11798

    Last Modified: 21 Nov 2024

    A Directory Traversal vulnerability in the web conference component of Mitel MiCollab AWV before 8.1.2.4 and 9.x before 9.1.3 could allow an attacker to access arbitrary files from restricted directories of the server via a crafted URL, due to insufficient access validation. A successful exploit could allow an attacker to access sensitive information from the restricted directories.

    Published: 10 Jun 2020
    8.8
    High

    CVE-2020-13996

    Last Modified: 21 Nov 2024

    The J2Store plugin before 3.3.13 for Joomla! allows a SQL injection attack by a trusted store manager.

    Published: 9 Jun 2020
    6.7
    Medium

    CVE-2020-8337

    Last Modified: 21 Nov 2024

    An unquoted search path vulnerability was reported in versions prior to 1.0.83.0 of the Synaptics Smart Audio UWP app associated with the DCHU audio drivers on Lenovo platforms that could allow an administrative user to execute arbitrary code.

    Published: 9 Jun 2020
    6.4
    Medium

    CVE-2020-8336

    Last Modified: 21 Nov 2024

    Lenovo implemented Intel CSME Anti-rollback ARB protections on some ThinkPad models to prevent roll back of CSME Firmware in flash.

    Published: 9 Jun 2020
    6.1
    Medium

    CVE-2020-8334

    Last Modified: 21 Nov 2024

    The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access.

    Published: 9 Jun 2020
    6.4
    Medium

    CVE-2020-8323

    Last Modified: 21 Nov 2024

    A potential vulnerability in the SMI callback function used in the Legacy SD driver in some Lenovo ThinkPad, ThinkStation, and Lenovo Notebook models may allow arbitrary code execution.

    Published: 9 Jun 2020
    —
    Unknown

    CVE-2020-8331

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 9 Jun 2020
    6.4
    Medium

    CVE-2020-8322

    Last Modified: 21 Nov 2024

    A potential vulnerability in the SMI callback function used in the Legacy USB driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution.

    Published: 9 Jun 2020
    6.4
    Medium

    CVE-2020-8321

    Last Modified: 21 Nov 2024

    A potential vulnerability in the SMI callback function used in the System Lock Preinstallation driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution.

    Published: 9 Jun 2020
    6.4
    Medium

    CVE-2020-8320

    Last Modified: 21 Nov 2024

    An internal shell was included in BIOS image in some ThinkPad models that could allow escalation of privilege.

    Published: 9 Jun 2020
    6.7
    Medium

    CVE-2019-6196

    Last Modified: 21 Nov 2024

    A symbolic link vulnerability in some Lenovo installation packages, prior to version 1.2.9.3, could allow privileged file operations during file extraction and installation.

    Published: 9 Jun 2020