CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2020-13909

    Last Modified: 21 Nov 2024

    The Ignition component before 2.0.5 for Laravel mishandles globals, _get, _post, _cookie, and _env. NOTE: in the 1.x series, versions 1.16.15 and later are unaffected as a consequence of the CVE-2021-43996 fix.

    Published: 7 Jun 2020
    5.5
    Medium

    CVE-2020-13904

    Last Modified: 21 Nov 2024

    FFmpeg 2.8 and 4.2.3 has a use-after-free via a crafted EXTINF duration in an m3u8 file because parse_playlist in libavformat/hls.c frees a pointer, and later that pointer is accessed in av_probe_input_format3 in libavformat/format.c.

    Published: 7 Jun 2020
    5.5
    Medium

    CVE-2020-13844

    Last Modified: 21 Nov 2024

    Arm Armv8-A core implementations utilizing speculative execution past unconditional changes in control flow may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka "straight-line speculation."

    Published: 7 Jun 2020
    6.1
    Medium

    CVE-2020-13897

    Last Modified: 21 Nov 2024

    HESK before 3.1.10 allows reflected XSS.

    Published: 7 Jun 2020
    8.8
    High

    CVE-2020-13895

    Last Modified: 21 Nov 2024

    Crypt::Perl::ECDSA in the Crypt::Perl (aka p5-Crypt-Perl) module before 0.32 for Perl fails to verify correct ECDSA signatures when r and s are small and when s = 1. This happens when using the curve secp256r1 (prime256v1). This could conceivably have a security-relevant impact if an attacker wishes to use public r and s values when guessing whether signature verification will fail.

    Published: 7 Jun 2020
    7.5
    High

    CVE-2020-13894

    Last Modified: 21 Nov 2024

    handler/upload_handler.jsp in DEXT5 Editor through 3.5.1402961 allows an attacker to download arbitrary files via the savefilepath field.

    Published: 7 Jun 2020
    7.1
    High

    CVE-2020-13902

    Last Modified: 21 Nov 2024

    ImageMagick 7.0.9-27 through 7.0.10-17 has a heap-based buffer over-read in BlobToStringInfo in MagickCore/string.c during TIFF image decoding.

    Published: 7 Jun 2020
    5.4
    Medium

    CVE-2020-13890

    Last Modified: 21 Nov 2024

    The Neon theme 2.0 before 2020-06-03 for Bootstrap allows XSS via an Add Task Input operation in a dashboard.

    Published: 6 Jun 2020
    5.4
    Medium

    CVE-2020-13889

    Last Modified: 21 Nov 2024

    showAlert() in the administration panel in Bludit 3.12.0 allows XSS.

    Published: 6 Jun 2020
    6.7
    Medium

    CVE-2020-13883

    Last Modified: 21 Nov 2024

    In WSO2 API Manager 3.0.0 and earlier, WSO2 API Microgateway 2.2.0, and WSO2 IS as Key Manager 5.9.0 and earlier, Management Console allows XXE during addition or update of a Lifecycle.

    Published: 6 Jun 2020
    7.5
    High

    CVE-2020-13881

    Last Modified: 21 Nov 2024

    In support.c in pam_tacplus 1.3.8 through 1.5.1, the TACACS+ shared secret gets logged via syslog if the DEBUG loglevel and journald are used.

    Published: 6 Jun 2020
    5.4
    Medium

    CVE-2020-13865

    Last Modified: 21 Nov 2024

    The Elementor Page Builder plugin before 2.9.9 for WordPress suffers from multiple stored XSS vulnerabilities. An author user can create posts that result in stored XSS vulnerabilities, by using a crafted link in the custom URL or by applying custom attributes.

    Published: 5 Jun 2020
    5.4
    Medium

    CVE-2020-13864

    Last Modified: 21 Nov 2024

    The Elementor Page Builder plugin before 2.9.9 for WordPress suffers from a stored XSS vulnerability. An author user can create posts that result in a stored XSS by using a crafted payload in custom links.

    Published: 5 Jun 2020
    6.1
    Medium

    CVE-2020-11696

    Last Modified: 21 Nov 2024

    In Combodo iTop a menu shortcut name can be exploited with a stored XSS payload. This is fixed in all iTop packages (community, essential, professional) in version 2.7.0 and iTop essential and iTop professional in version 2.6.4.

    Published: 5 Jun 2020
    6.1
    Medium

    CVE-2020-11697

    Last Modified: 21 Nov 2024

    In Combodo iTop, dashboard ids can be exploited with a reflective XSS payload. This is fixed in all iTop packages (community, essential, professional) for version 2.7.0 and in iTop essential and iTop professional packages for version 2.6.4.

    Published: 5 Jun 2020
    7.8
    High

    CVE-2020-13646

    Last Modified: 21 Nov 2024

    In Cheetah free WiFi 5.1, the driver file (liebaonat.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x830020f8, 0x830020E0, 0x830020E4, or 0x8300210c.

    Published: 5 Jun 2020
    6.5
    Medium

    CVE-2020-13868

    Last Modified: 21 Nov 2024

    An issue was discovered in the Comments plugin before 1.5.5 for Craft CMS. CSRF affects comment integrity.

    Published: 5 Jun 2020
    5.4
    Medium

    CVE-2020-13869

    Last Modified: 21 Nov 2024

    An issue was discovered in the Comments plugin before 1.5.6 for Craft CMS. There is stored XSS via a guest name.

    Published: 5 Jun 2020
    5.4
    Medium

    CVE-2020-13870

    Last Modified: 21 Nov 2024

    An issue was discovered in the Comments plugin before 1.5.5 for Craft CMS. There is stored XSS via an asset volume name.

    Published: 5 Jun 2020
    9
    Critical

    CVE-2020-10071

    Last Modified: 21 Nov 2024

    The Zephyr MQTT parsing code performs insufficient checking of the length field on publish messages, allowing a buffer overflow and potentially remote code execution. NCC-ZEP-031 This issue affects: zephyrproject-rtos zephyr version 2.2.0 and later versions.

    Published: 5 Jun 2020
    9
    Critical

    CVE-2020-10070

    Last Modified: 21 Nov 2024

    In the Zephyr Project MQTT code, improper bounds checking can result in memory corruption and possibly remote code execution. NCC-ZEP-031 This issue affects: zephyrproject-rtos zephyr version 2.2.0 and later versions.

    Published: 5 Jun 2020
    5.1
    Medium

    CVE-2020-10068

    Last Modified: 21 Nov 2024

    In the Zephyr project Bluetooth subsystem, certain duplicate and back-to-back packets can cause incorrect behavior, resulting in a denial of service. This issue affects: zephyrproject-rtos zephyr version 2.2.0 and later versions, and version 1.14.0 and later versions.

    Published: 5 Jun 2020
    6.8
    Medium

    CVE-2020-10063

    Last Modified: 21 Nov 2024

    A remote adversary with the ability to send arbitrary CoAP packets to be parsed by Zephyr is able to cause a denial of service. This issue affects: zephyrproject-rtos zephyr version 2.2.0 and later versions.

    Published: 5 Jun 2020
    9
    Critical

    CVE-2020-10062

    Last Modified: 21 Nov 2024

    An off-by-one error in the Zephyr project MQTT packet length decoder can result in memory corruption and possible remote code execution. NCC-ZEP-031 This issue affects: zephyrproject-rtos zephyr version 2.2.0 and later versions.

    Published: 5 Jun 2020
    8.1
    High

    CVE-2020-10061

    Last Modified: 21 Nov 2024

    Improper handling of the full-buffer case in the Zephyr Bluetooth implementation can result in memory corruption. This issue affects: zephyrproject-rtos zephyr version 2.2.0 and later versions, and version 1.14.0 and later versions.

    Published: 5 Jun 2020
    5.5
    Medium

    CVE-2020-14314

    Last Modified: 21 Nov 2024

    A memory out-of-bounds read flaw was found in the Linux kernel before 5.9-rc2 with the ext3/ext4 file system, in the way it accesses a directory with broken indexing. This flaw allows a local user to crash the system if the directory exists. The highest threat from this vulnerability is to system availability.

    Published: 5 Jun 2020
    —
    Unknown

    CVE-2020-13816

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-13817. Reason: This candidate is a reservation duplicate of CVE-2020-13817. Notes: All CVE users should reference CVE-2020-13817 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 5 Jun 2020
    7.8
    High

    CVE-2020-9859

    Last Modified: 23 Oct 2025

    A memory consumption issue was addressed with improved memory handling. This issue is fixed in iOS 13.5.1 and iPadOS 13.5.1, macOS Catalina 10.15.5 Supplemental Update, tvOS 13.4.6, watchOS 6.2.6. An application may be able to execute arbitrary code with kernel privileges.

    Published: 5 Jun 2020
    4.9
    Medium

    CVE-2020-1883

    Last Modified: 21 Nov 2024

    Huawei products NIP6800;Secospace USG6600;USG9500 have a memory leak vulnerability. An attacker with high privileges exploits this vulnerability by continuously performing specific operations. Successful exploitation of this vulnerability can cause service abnormal.

    Published: 5 Jun 2020
    5.3
    Medium

    CVE-2020-9074

    Last Modified: 21 Nov 2024

    Huawei Smartphones HONOR 20 PRO;Honor View 20;HONOR 20 have an improper handling of exceptional condition Vulnerability. A component cannot deal with an exception correctly. Attackers can exploit this vulnerability by sending malformed message. This could compromise normal service of affected phones.

    Published: 5 Jun 2020
    9.8
    Critical

    CVE-2020-11975

    Last Modified: 21 Nov 2024

    Apache Unomi allows conditions to use OGNL scripting which offers the possibility to call static Java classes from the JDK that could execute code with the permission level of the running Java process.

    Published: 5 Jun 2020
    7.8
    High

    CVE-2020-11492

    Last Modified: 21 Nov 2024

    An issue was discovered in Docker Desktop through 2.2.0.5 on Windows. If a local attacker sets up their own named pipe prior to starting Docker with the same name, this attacker can intercept a connection attempt from Docker Service (which runs as SYSTEM), and then impersonate their privileges.

    Published: 5 Jun 2020
    5.4
    Medium

    CVE-2020-12848

    Last Modified: 21 Nov 2024

    In Pydio Cells 2.0.4, once an authenticated user shares a file selecting the create a public link option, a hidden shared user account is created in the backend with a random username. An anonymous user that obtains a valid public link can get the associated hidden account username and password and proceed to login to the web application. Once logged into the web application with the hidden user account, some actions that were not available with the public share link can now be performed.

    Published: 5 Jun 2020
    9.8
    Critical

    CVE-2020-4450

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 8.5 and 9.0 traditional could allow a remote attacker to execute arbitrary code on the system with a specially-crafted sequence of serialized objects. IBM X-Force ID: 181231.

    Published: 5 Jun 2020
    7.5
    High

    CVE-2020-4449

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 traditional could allow a remote attacker to obtain sensitive information with a specially-crafted sequence of serialized objects. IBM X-Force ID: 181230.

    Published: 5 Jun 2020
    9.8
    Critical

    CVE-2020-4448

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server Network Deployment 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to execute arbitrary code on the system with a specially-crafted sequence of serialized objects from untrusted sources. IBM X-Force ID: 181228.

    Published: 5 Jun 2020
    7.3
    High

    CVE-2020-4229

    Last Modified: 21 Nov 2024

    IBM Worklight/MobileFoundation 8.0.0.0 does not properly invalidate session cookies when a user logs out of a session, which could allow another user to gain unauthorized access to a user's session. IBM X-Force ID: 175211.

    Published: 5 Jun 2020
    5.4
    Medium

    CVE-2020-12849

    Last Modified: 21 Nov 2024

    Pydio Cells 2.0.4 allows any user to upload a profile image to the web application, including standard and shared user roles. These profile pictures can later be accessed directly with the generated URL by any unauthenticated or authenticated user.

    Published: 5 Jun 2020
    7.2
    High

    CVE-2020-8103

    Last Modified: 21 Nov 2024

    A vulnerability in the improper handling of symbolic links in Bitdefender Antivirus Free can allow an unprivileged user to substitute a quarantined file, and restore it to a privileged location. This issue affects Bitdefender Antivirus Free versions prior to 1.0.17.178.

    Published: 5 Jun 2020
    7.5
    High

    CVE-2020-5591

    Last Modified: 21 Nov 2024

    XACK DNS 1.11.0 to 1.11.4, 1.10.0 to 1.10.8, 1.8.0 to 1.8.23, 1.7.0 to 1.7.18, and versions before 1.7.0 allow remote attackers to cause a denial of service condition resulting in degradation of the recursive resolver's performance or compromising the recursive resolver as a reflector in a reflection attack.

    Published: 5 Jun 2020
    7.5
    High

    CVE-2020-13871

    Last Modified: 21 Nov 2024

    SQLite 3.32.2 has a use-after-free in resetAccumulator in select.c because the parse tree rewrite for window functions is too late.

    Published: 5 Jun 2020
    7.1
    High

    CVE-2020-24394

    Last Modified: 21 Nov 2024

    In the Linux kernel before 5.7.8, fs/nfsd/vfs.c (in the NFS server) can set incorrect permissions on new filesystem objects when the filesystem lacks ACL support, aka CID-22cf8419f131. This occurs because the current umask is not considered.

    Published: 5 Jun 2020
    6
    Medium

    CVE-2020-10759

    Last Modified: 21 Nov 2024

    A PGP signature bypass flaw was found in fwupd (all versions), which could lead to the installation of unsigned firmware. As per upstream, a signature bypass is theoretically possible, but not practical because the Linux Vendor Firmware Service (LVFS) is either not implemented or enabled in versions of fwupd shipped with Red Hat Enterprise Linux 7 and 8. The highest threat from this vulnerability is to confidentiality and integrity.

    Published: 5 Jun 2020
    5.5
    Medium

    CVE-2020-13867

    Last Modified: 21 Nov 2024

    Open-iSCSI targetcli-fb through 2.1.52 has weak permissions for /etc/target (and for the backup directory and backup files).

    Published: 5 Jun 2020
    5.5
    Medium

    CVE-2020-27784

    Last Modified: 21 Nov 2024

    A vulnerability was found in the Linux kernel, where accessing a deallocated instance in printer_ioctl() printer_ioctl() tries to access of a printer_dev instance. However, use-after-free arises because it had been freed by gprinter_free().

    Published: 5 Jun 2020
    5.5
    Medium

    CVE-2020-13843

    Last Modified: 21 Nov 2024

    An issue was discovered on LG mobile devices with Android OS software before 2020-06-01. Local users can cause a denial of service because checking of the userdata partition is mishandled. The LG ID is LVE-SMP-200014 (June 2020).

    Published: 4 Jun 2020
    7.8
    High

    CVE-2020-13842

    Last Modified: 21 Nov 2024

    An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). A dangerous AT command was made available even though it is unused. The LG ID is LVE-SMP-200010 (June 2020).

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2020-13841

    Last Modified: 21 Nov 2024

    An issue was discovered on LG mobile devices with Android OS 9 and 10 (MTK chipsets). An AT command handler allows attackers to bypass intended access restrictions. The LG ID is LVE-SMP-200009 (June 2020).

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2020-13840

    Last Modified: 21 Nov 2024

    An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via an MTK AT command handler buffer overflow. The LG ID is LVE-SMP-200008 (June 2020).

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2020-13839

    Last Modified: 21 Nov 2024

    An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can occur via a custom AT command handler buffer overflow. The LG ID is LVE-SMP-200007 (June 2020).

    Published: 4 Jun 2020