CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2020-13768

    Last Modified: 21 Nov 2024

    In MiniShare before 1.4.2, there is a stack-based buffer overflow via an HTTP PUT request, which allows an attacker to achieve arbitrary code execution, a similar issue to CVE-2018-19861, CVE-2018-19862, and CVE-2019-17601. NOTE: this product is discontinued.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2020-13849

    Last Modified: 21 Nov 2024

    The MQTT protocol 3.1.1 requires a server to set a timeout value of 1.5 times the Keep-Alive value specified by a client, which allows remote attackers to cause a denial of service (loss of the ability to establish new connections), as demonstrated by SlowITe.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2020-13848

    Last Modified: 21 Nov 2024

    Portable UPnP SDK (aka libupnp) 1.12.1 and earlier allows remote attackers to cause a denial of service (crash) via a crafted SSDP message due to a NULL pointer dereference in the functions FindServiceControlURLPath and FindServiceEventURLPath in genlib/service_table/service_table.c.

    Published: 4 Jun 2020
    7.2
    High

    CVE-2020-12847

    Last Modified: 21 Nov 2024

    Pydio Cells 2.0.4 web application offers an administrative console named “Cells Console” that is available to users with an administrator role. This console provides an administrator user with the possibility of changing several settings, including the application’s mailer configuration. It is possible to configure a few engines to be used by the mailer application to send emails. If the user selects the “sendmail” option as the default one, the web application offers to edit the full path where the sendmail binary is hosted. Since there is no restriction in place while editing this value, an attacker authenticated as an administrator user could force the web application into executing any arbitrary binary.

    Published: 4 Jun 2020
    8.1
    High

    CVE-2020-12851

    Last Modified: 21 Nov 2024

    Pydio Cells 2.0.4 allows an authenticated user to write or overwrite existing files in another user’s personal and cells folders (repositories) by uploading a custom generated ZIP file and leveraging the file extraction feature present in the web application. The extracted files will be placed in the targeted user folders.

    Published: 4 Jun 2020
    6.8
    Medium

    CVE-2020-12852

    Last Modified: 21 Nov 2024

    The update feature for Pydio Cells 2.0.4 allows an administrator user to set a custom update URL and the public RSA key used to validate the downloaded update package. The update process involves downloading the updated binary file from a URL indicated in the update server response, validating its checksum and signature with the provided public key and finally replacing the current application binary. To complete the update process, the application’s service or appliance needs to be restarted. An attacker with administrator access can leverage the software update feature to force the application to download a custom binary that will replace current Pydio Cells binary. When the server or service is eventually restarted the attacker will be able to execute code under the privileges of the user running the application. In the Pydio Cells enterprise appliance this is with the privileges of the user named “pydio”.

    Published: 4 Jun 2020
    6.5
    Medium

    CVE-2020-11682

    Last Modified: 21 Nov 2024

    Castel NextGen DVR v1.0.0 is vulnerable to CSRF in all state-changing request. A __RequestVerificationToken is set by the web interface, and included in requests sent by web interface. However, this token is not verified by the application: the token can be removed from all requests and the request will succeed.

    Published: 4 Jun 2020
    6.1
    Medium

    CVE-2020-12853

    Last Modified: 21 Nov 2024

    Pydio Cells 2.0.4 allows XSS. A malicious user can either upload or create a new file that contains potentially malicious HTML and JavaScript code to personal folders or accessible cells.

    Published: 4 Jun 2020
    8.1
    High

    CVE-2020-11681

    Last Modified: 21 Nov 2024

    Castel NextGen DVR v1.0.0 stores and displays credentials for the associated SMTP server in cleartext. Low privileged users can exploit this to create an administrator user and obtain the SMTP credentials.

    Published: 4 Jun 2020
    6.5
    Medium

    CVE-2020-11680

    Last Modified: 21 Nov 2024

    Castel NextGen DVR v1.0.0 is vulnerable to authorization bypass on all administrator functionality. The application fails to check that a request was submitted by an administrator. Consequently, a normal user can perform actions including, but not limited to, creating/modifying the file store, creating/modifying alerts, creating/modifying users, etc.

    Published: 4 Jun 2020
    8.8
    High

    CVE-2020-11679

    Last Modified: 21 Nov 2024

    Castel NextGen DVR v1.0.0 is vulnerable to privilege escalation through the Adminstrator/Users/Edit/:UserId functionality. Adminstrator/Users/Edit/:UserId fails to check that the request was submitted by an Administrator. This allows a normal user to escalate their privileges by adding additional roles to their account.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2020-7661

    Last Modified: 21 Nov 2024

    all versions of url-regex are vulnerable to Regular Expression Denial of Service. An attacker providing a very long string in String.test can cause a Denial of Service.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2020-13829

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Attackers can disable the SEAndroid protection mechanism in the RKP. The Samsung ID is SVE-2019-15998 (June 2020).

    Published: 4 Jun 2020
    7.5
    High

    CVE-2020-13830

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with P(9.0) software. One UI HOME logging can leak information. The Samsung ID is SVE-2019-16382 (June 2020).

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2020-13831

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (Exynos 7570 chipsets) software. The Trustonic Kinibi component allows arbitrary memory mapping. The Samsung ID is SVE-2019-16665 (June 2020).

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2020-13832

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with Q(10.0) (with TEEGRIS on Exynos chipsets) software. The Widevine Trustlet allows arbitrary code execution because of memory disclosure, The Samsung IDs are SVE-2020-17117, SVE-2020-17118, SVE-2020-17119, and SVE-2020-17161 (June 2020).

    Published: 4 Jun 2020
    9.1
    Critical

    CVE-2020-13833

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The system area allows arbitrary file overwrites via a symlink attack. The Samsung ID is SVE-2020-17183 (June 2020).

    Published: 4 Jun 2020
    7.5
    High

    CVE-2020-13834

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (with TEEGRIS) software. Secure Folder does not properly restrict use of Android Debug Bridge (adb) for arbitrary installations. The Samsung ID is SVE-2020-17369 (June 2020).

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2020-13835

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x) (with TEEGRIS) software. The Gatekeeper Trustlet allows a brute-force attack on user credentials. The Samsung ID is SVE-2020-16908 (June 2020).

    Published: 4 Jun 2020
    7.5
    High

    CVE-2020-13836

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. HWRResProvider allows path traversal for data exposure. The Samsung ID is SVE-2020-16954 (June 2020).

    Published: 4 Jun 2020
    3.5
    Low

    CVE-2020-13837

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with Q(10.0) software. The Lockscreen feature does not block Quick Panel access to Music Share. The Samsung ID is SVE-2020-17145 (June 2020).

    Published: 4 Jun 2020
    3.5
    Low

    CVE-2020-13838

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. The DeX Lockscreen feature does not block access to Quick Panel and notifications. The Samsung ID is SVE-2020-17187 (June 2020).

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20823

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.11. It has a buffer overflow because a looping correction does not occur after JavaScript updates Field APs.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20824

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.11. It has a NULL pointer dereference via FXSYS_wcslen in an Epub file.

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2019-20825

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.11. It has an out-of-bounds write when Internet Explorer is used.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20826

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF Mac 3.3 and Foxit Reader for Mac before 3.3. It has a NULL pointer dereference.

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2019-20827

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF Mac 3.3 and Foxit Reader for Mac before 3.3. It allows stack consumption because of interaction between ICC-Based color space and Alternate color space.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20828

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit Reader and PhantomPDF before 9.6. It has a buffer overflow because a looping correction does not occur after JavaScript updates Field APs.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20829

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit Reader and PhantomPDF before 9.6. It has a NULL pointer dereference via FXSYS_wcslen in an Epub file.

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2019-20830

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit Reader and PhantomPDF before 9.6. It has an out-of-bounds write when Internet Explorer is used.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20831

    Last Modified: 21 Nov 2024

    An issue was discovered in the 3D Plugin Beta for Foxit Reader and PhantomPDF before 9.5.0.20733. It has void data mishandling, causing a crash.

    Published: 4 Jun 2020
    4.3
    Medium

    CVE-2019-20832

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.10. It has homograph mishandling.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20833

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.10. It has mishandling of cloud credentials, as demonstrated by Google Drive.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20834

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.10. It allows signature validation bypass via a modified file or a file with non-standard signatures.

    Published: 4 Jun 2020
    4.3
    Medium

    CVE-2019-20835

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It has homograph mishandling.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20836

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It has mishandling of cloud credentials, as demonstrated by Google Drive.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20837

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It allows signature validation bypass via a modified file or a file with non-standard signatures.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2018-21235

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit E-mail advertising system before September 2018. It allows authentication bypass and information disclosure, related to Interspire Email Marketer.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2018-21236

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit Reader before 2.4.4. It has a NULL pointer dereference.

    Published: 4 Jun 2020
    5.3
    Medium

    CVE-2018-21237

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.7. It allows NTLM credential theft via a GoToE or GoToR action.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2018-21238

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.7. It allows memory consumption via an ArrayBuffer(0xfffffffe) call.

    Published: 4 Jun 2020
    5.3
    Medium

    CVE-2018-21239

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit Reader and PhantomPDF before 9.2. It allows NTLM credential theft via a GoToE or GoToR action.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2018-21240

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit Reader and PhantomPDF before 9.2. It allows memory consumption via an ArrayBuffer(0xfffffffe) call.

    Published: 4 Jun 2020
    7.8
    High

    CVE-2018-21241

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.6. It has an untrusted search path that allows a DLL to execute remote code.

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2018-21242

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.6. It allows Remote Code Execution via a GoToE or GoToR action.

    Published: 4 Jun 2020
    6.5
    Medium

    CVE-2018-21243

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.6. It has COM object mishandling when Microsoft Word is used.

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2018-21244

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF before 8.3.6. It allows arbitrary application execution via an embedded executable file in a PDF portfolio, aka FG-VD-18-029.

    Published: 4 Jun 2020
    4.3
    Medium

    CVE-2020-9462

    Last Modified: 21 Nov 2024

    An issue was discovered in all Athom Homey and Homey Pro devices up to the current version 4.2.0. An attacker within RF range can obtain a cleartext copy of the network configuration of the device, including the Wi-Fi PSK, during device setup. Upon success, the attacker is able to further infiltrate the target's Wi-Fi networks.

    Published: 4 Jun 2020
    9.8
    Critical

    CVE-2019-20822

    Last Modified: 21 Nov 2024

    An issue was discovered in the 3D Plugin Beta for Foxit Reader and PhantomPDF before 9.7.0.29430. It has an out-of-bounds write via incorrect image data.

    Published: 4 Jun 2020
    7.5
    High

    CVE-2019-20821

    Last Modified: 21 Nov 2024

    An issue was discovered in Foxit PhantomPDF Mac before 3.4. It has a NULL pointer dereference.

    Published: 4 Jun 2020