CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2020-4357

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 5.0.0.0 through 5.0.4.4 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 178761.

    Published: 27 May 2020
    7.5
    High

    CVE-2020-4350

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 5.0.0.0 through 5.0.4.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 178424.

    Published: 27 May 2020
    7.5
    High

    CVE-2020-4349

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 5.0.0.0 through 5.0.4.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 178423.

    Published: 27 May 2020
    6.5
    Medium

    CVE-2020-4348

    Last Modified: 21 Nov 2024

    IBM Spectrum Scale 4.2.0.0 through 4.2.3.21 and 5.0.0.0 through 5.0.4.4 could allow an authenticated GUI user to perform unauthorized actions due to missing function level access control. IBM X-Force ID: 178414

    Published: 27 May 2020
    7.5
    High

    CVE-2020-4226

    Last Modified: 21 Nov 2024

    IBM MobileFirst Platform Foundation 8.0.0.0 stores highly sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 175207.

    Published: 27 May 2020
    7.3
    High

    CVE-2020-13386

    Last Modified: 21 Nov 2024

    In SmartDraw 2020 27.0.0.0, the installer gives inherited write permissions to the Authenticated Users group on the SmartDraw 2020 installation folder. Additionally, when the product is installed, two scheduled tasks are created on the machine, SDMsgUpdate (Local) and SDMsgUpdate (TE). The scheduled tasks run in the context of the user who installed the product. Both scheduled tasks attempt to run the same binary, C:\SmartDraw 2020\Messages\SDNotify.exe. The folder Messages doesn't exist by default and (by extension) neither does SDNotify.exe. Due to the weak folder permissions, these can be created by any user. A malicious actor can therefore create a malicious SDNotify.exe binary, and have it automatically run, whenever the user who installed the product logs on to the machine. The malicious SDNotify.exe could, for example, create a new local administrator account on the machine.

    Published: 27 May 2020
    7.5
    High

    CVE-2020-12062

    Last Modified: 21 Nov 2024

    The scp client in OpenSSH 8.2 incorrectly sends duplicate responses to the server upon a utimes system call failure, which allows a malicious unprivileged user on the remote server to overwrite arbitrary files in the client's download directory by creating a crafted subdirectory anywhere on the remote server. The victim must use the command scp -rp to download a file hierarchy containing, anywhere inside, this crafted subdirectory. NOTE: the vendor points out that "this attack can achieve no more than a hostile peer is already able to achieve within the scp protocol" and "utimes does not fail under normal circumstances.

    Published: 27 May 2020
    6.5
    Medium

    CVE-2020-10756

    Last Modified: 21 Nov 2024

    An out-of-bounds read vulnerability was found in the SLiRP networking implementation of the QEMU emulator. This flaw occurs in the icmp6_send_echoreply() routine while replying to an ICMP echo request, also known as ping. This flaw allows a malicious guest to leak the contents of the host memory, resulting in possible information disclosure. This flaw affects versions of libslirp before 4.3.1.

    Published: 27 May 2020
    7.5
    High

    CVE-2020-13757

    Last Modified: 21 Nov 2024

    Python-RSA before 4.1 ignores leading '\0' bytes during decryption of ciphertext. This could conceivably have a security-relevant impact, e.g., by helping an attacker to infer that an application uses Python-RSA, or if the length of accepted ciphertext affects application behavior (such as by causing excessive memory allocation).

    Published: 27 May 2020
    4.3
    Medium

    CVE-2017-8761

    Last Modified: 21 Nov 2024

    In OpenStack Swift through 2.10.1, 2.11.0 through 2.13.0, and 2.14.0, the proxy-server logs full tempurl paths, potentially leaking reusable tempurl signatures to anyone with read access to these logs. All Swift deployments using the tempurl middleware are affected.

    Published: 27 May 2020
    6.5
    Medium

    CVE-2021-20295

    Last Modified: 21 Nov 2024

    It was discovered that the update for the virt:rhel module in the RHSA-2020:4676 (https://access.redhat.com/errata/RHSA-2020:4676) erratum released as part of Red Hat Enterprise Linux 8.3 failed to include the fix for the qemu-kvm component issue CVE-2020-10756, which was previously corrected in virt:rhel/qemu-kvm via erratum RHSA-2020:4059 (https://access.redhat.com/errata/RHSA-2020:4059). CVE-2021-20295 was assigned to that Red Hat specific security regression. For more details about the original security issue CVE-2020-10756, refer to bug 1835986 or the CVE page: https://access.redhat.com/security/cve/CVE-2020-10756.

    Published: 27 May 2020
    7.5
    High

    CVE-2020-13622

    Last Modified: 21 Nov 2024

    JerryScript 2.2.0 allows attackers to cause a denial of service (assertion failure) because a property key query for a Proxy object returns unintended data.

    Published: 26 May 2020
    7.5
    High

    CVE-2020-13623

    Last Modified: 21 Nov 2024

    JerryScript 2.2.0 allows attackers to cause a denial of service (stack consumption) via a proxy operation.

    Published: 26 May 2020
    5.9
    Medium

    CVE-2020-13614

    Last Modified: 21 Nov 2024

    An issue was discovered in ssl.c in Axel before 2.17.8. The TLS implementation lacks hostname verification.

    Published: 26 May 2020
    5.9
    Medium

    CVE-2020-13615

    Last Modified: 21 Nov 2024

    lib/QoreSocket.cpp in Qore before 0.9.4.2 lacks hostname verification for X.509 certificates.

    Published: 26 May 2020
    5.9
    Medium

    CVE-2020-13616

    Last Modified: 21 Nov 2024

    The boost ASIO wrapper in net/asio.cpp in Pichi before 1.3.0 lacks TLS hostname verification.

    Published: 26 May 2020
    8.8
    High

    CVE-2020-9046

    Last Modified: 21 Nov 2024

    A vulnerability in all versions of Kantech EntraPass Editions could potentially allow an authorized low-privileged user to gain full system-level privileges by replacing critical files with specifically crafted files.

    Published: 26 May 2020
    7.5
    High

    CVE-2020-6830

    Last Modified: 19 Aug 2026

    For native-to-JS bridging, the app requires a unique token to be passed that ensures non-app code can't call the bridging functions. That token was being used for JS-to-native also, but it isn't needed in this case, and its usage was also leaking this token. This vulnerability affects Firefox for iOS < 25.

    Published: 26 May 2020
    —
    Unknown

    CVE-2020-11970

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 26 May 2020
    8.8
    High

    CVE-2020-8168

    Last Modified: 21 Nov 2024

    We have recently released new version of AirMax AirOS firmware v6.3.0 for TI, XW and XM boards that fixes vulnerabilities found on AirMax AirOS v6.2.0 and prior TI, XW and XM boards, according to the description below:Attackers can abuse multiple end-points not protected against cross-site request forgery (CSRF), as a result authenticated users can be persuaded to visit malicious web pages, which allows attackers to perform arbitrary actions, such as downgrade the device's firmware to older versions, modify configuration, upload arbitrary firmware, exfiltrate files and tokens.Mitigation:Update to the latest AirMax AirOS firmware version available at the AirMax download page.

    Published: 26 May 2020
    9.8
    Critical

    CVE-2020-8171

    Last Modified: 21 Nov 2024

    We have recently released new version of AirMax AirOS firmware v6.3.0 for TI, XW and XM boards that fixes vulnerabilities found on AirMax AirOS v6.2.0 and prior TI, XW and XM boards, according to the description below:There are certain end-points containing functionalities that are vulnerable to command injection. It is possible to craft an input string that passes the filter check but still contains commands, resulting in remote code execution.Mitigation:Update to the latest AirMax AirOS firmware version available at the AirMax download page.

    Published: 26 May 2020
    6.1
    Medium

    CVE-2020-8170

    Last Modified: 21 Nov 2024

    We have recently released new version of AirMax AirOS firmware v6.3.0 for TI, XW and XM boards that fixes vulnerabilities found on AirMax AirOS v6.2.0 and prior TI, XW and XM boards, according to the description below:Multiple end-points with parameters vulnerable to reflected cross site scripting (XSS), allowing attackers to abuse the user' session information and/or account takeover of the admin user.Mitigation:Update to the latest AirMax AirOS firmware version available at the AirMax download page.

    Published: 26 May 2020
    4.8
    Medium

    CVE-2020-13487

    Last Modified: 21 Nov 2024

    The bbPress plugin through 2.6.4 for WordPress has stored XSS in the Forum creation section, resulting in JavaScript execution at wp-admin/edit.php?post_type=forum (aka the Forum listing page) for all users. An administrator can exploit this at the wp-admin/post.php?action=edit URI.

    Published: 26 May 2020
    7.5
    High

    CVE-2020-3811

    Last Modified: 21 Nov 2024

    qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability.

    Published: 26 May 2020
    5.5
    Medium

    CVE-2020-3812

    Last Modified: 21 Nov 2024

    qmail-verify as used in netqmail 1.06 is prone to an information disclosure vulnerability. A local attacker can test for the existence of files and directories anywhere in the filesystem because qmail-verify runs as root and tests for the existence of files in the attacker's home directory, without dropping its privileges first.

    Published: 26 May 2020
    9.1
    Critical

    CVE-2020-13485

    Last Modified: 21 Nov 2024

    The Knock Knock plugin before 1.2.8 for Craft CMS allows IP Whitelist bypass via an X-Forwarded-For HTTP header.

    Published: 25 May 2020
    6.1
    Medium

    CVE-2020-13486

    Last Modified: 21 Nov 2024

    The Knock Knock plugin before 1.2.8 for Craft CMS allows malicious redirection.

    Published: 25 May 2020
    8.8
    High

    CVE-2020-13458

    Last Modified: 21 Nov 2024

    An issue was discovered in the Image Resizer plugin before 2.0.9 for Craft CMS. There are CSRF issues with the log-clear controller action.

    Published: 25 May 2020
    5.4
    Medium

    CVE-2020-13459

    Last Modified: 21 Nov 2024

    An issue was discovered in the Image Resizer plugin before 2.0.9 for Craft CMS. There is stored XSS in the Bulk Resize action.

    Published: 25 May 2020
    9.8
    Critical

    CVE-2020-13442

    Last Modified: 21 Nov 2024

    A Remote code execution vulnerability exists in DEXT5Upload in DEXT5 through 2.7.1402870. An attacker can upload a PHP file via dext5handler.jsp handler because the uploaded file is stored under dext5uploadeddata/.

    Published: 25 May 2020
    9.8
    Critical

    CVE-2020-5537

    Last Modified: 21 Nov 2024

    Cybozu Desktop for Windows 2.0.23 to 2.2.40 allows remote code execution via unspecified vectors.

    Published: 25 May 2020
    8.1
    High

    CVE-2020-13790

    Last Modified: 21 Nov 2024

    libjpeg-turbo 2.0.4, and mozjpeg 4.0.0, has a heap-based buffer over-read in get_rgb_row() in rdppm.c via a malformed PPM input file.

    Published: 25 May 2020
    6.5
    Medium

    CVE-2020-13438

    Last Modified: 21 Nov 2024

    ffjpeg through 2020-02-24 has an invalid read in jfif_encode in jfif.c.

    Published: 24 May 2020
    6.5
    Medium

    CVE-2020-13440

    Last Modified: 21 Nov 2024

    ffjpeg through 2020-02-24 has an invalid write in bmp_load in bmp.c.

    Published: 24 May 2020
    6.5
    Medium

    CVE-2020-13439

    Last Modified: 21 Nov 2024

    ffjpeg through 2020-02-24 has a heap-based buffer over-read in jfif_decode in jfif.c.

    Published: 24 May 2020
    9.8
    Critical

    CVE-2020-13433

    Last Modified: 21 Nov 2024

    Jason2605 AdminPanel 4.0 allows SQL Injection via the editPlayer.php hidden parameter.

    Published: 24 May 2020
    5.4
    Medium

    CVE-2020-13429

    Last Modified: 21 Nov 2024

    legend.ts in the piechart-panel (aka Pie Chart Panel) plugin before 1.5.0 for Grafana allows XSS via the Values Header (aka legend header) option.

    Published: 24 May 2020
    6.1
    Medium

    CVE-2020-13430

    Last Modified: 21 Nov 2024

    Grafana before 7.0.0 allows tag value XSS via the OpenTSDB datasource.

    Published: 24 May 2020
    7.4
    High

    CVE-2020-13482

    Last Modified: 21 Nov 2024

    EM-HTTP-Request 1.1.5 uses the library eventmachine in an insecure way that allows an attacker to perform a man-in-the-middle attack against users of the library. The hostname in a TLS server certificate is not verified.

    Published: 24 May 2020
    7.1
    High

    CVE-2020-13425

    Last Modified: 21 Nov 2024

    TrackR devices through 2020-05-06 allow attackers to trigger the Beep (aka alarm) feature, which will eventually cause a denial of service when battery capacity is exhausted.

    Published: 23 May 2020
    6.5
    Medium

    CVE-2020-13424

    Last Modified: 21 Nov 2024

    The XCloner component before 3.5.4 for Joomla! allows Authenticated Local File Disclosure.

    Published: 23 May 2020
    5.5
    Medium

    CVE-2020-13434

    Last Modified: 21 Nov 2024

    SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf in printf.c.

    Published: 23 May 2020
    5.5
    Medium

    CVE-2021-3569

    Last Modified: 21 Nov 2024

    A stack corruption bug was found in libtpms in versions before 0.7.2 and before 0.8.0 while decrypting data using RSA. This flaw could result in a SIGBUS (bad memory access) and termination of swtpm. The highest threat from this vulnerability is to system availability.

    Published: 23 May 2020
    5.5
    Medium

    CVE-2020-13435

    Last Modified: 21 Nov 2024

    SQLite through 3.32.0 has a segmentation fault in sqlite3ExprCodeTarget in expr.c.

    Published: 23 May 2020
    8.8
    High

    CVE-2020-13412

    Last Modified: 21 Nov 2024

    An issue was discovered in Aviatrix Controller before 5.4.1204. An API call on the web interface lacked a session token check to control access, leading to CSRF.

    Published: 22 May 2020
    5.3
    Medium

    CVE-2020-13413

    Last Modified: 21 Nov 2024

    An issue was discovered in Aviatrix Controller before 5.4.1204. There is a Observable Response Discrepancy from the API, which makes it easier to perform user enumeration via brute force.

    Published: 22 May 2020
    7.5
    High

    CVE-2020-13414

    Last Modified: 21 Nov 2024

    An issue was discovered in Aviatrix Controller before 5.4.1204. It contains credentials unused by the software.

    Published: 22 May 2020
    7.5
    High

    CVE-2020-13415

    Last Modified: 21 Nov 2024

    An issue was discovered in Aviatrix Controller through 5.1. An attacker with any signed SAML assertion from the Identity Provider can establish a connection (even if that SAML assertion has expired or is from a user who is not authorized to access Aviatrix), aka XML Signature Wrapping.

    Published: 22 May 2020
    6.5
    Medium

    CVE-2020-13416

    Last Modified: 21 Nov 2024

    An issue was discovered in Aviatrix Controller before 5.4.1066. A Controller Web Interface session token parameter is not required on an API call, which opens the application up to a Cross Site Request Forgery (CSRF) vulnerability for password resets.

    Published: 22 May 2020
    9.8
    Critical

    CVE-2020-13417

    Last Modified: 21 Nov 2024

    An Elevation of Privilege issue was discovered in Aviatrix VPN Client before 2.10.7, because of an incomplete fix for CVE-2020-7224. This affects Linux, macOS, and Windows installations for certain OpenSSL parameters.

    Published: 22 May 2020