CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2020-6262

    Last Modified: 21 Nov 2024

    Service Data Download in SAP Application Server ABAP (ST-PI, before versions 2008_1_46C, 2008_1_620, 2008_1_640, 2008_1_700, 2008_1_710, 740) allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application and the whole ABAP system leading to Code Injection.

    Published: 12 May 2020
    4.3
    Medium

    CVE-2020-6256

    Last Modified: 21 Nov 2024

    SAP Master Data Governance, versions - 748, 749, 750, 751, 752, 800, 801, 802, 803, 804, allows users to display change request details without having required authorizations, due to Missing Authorization Check.

    Published: 12 May 2020
    7.2
    High

    CVE-2020-6248

    Last Modified: 21 Nov 2024

    SAP Adaptive Server Enterprise (Backup Server), version 16.0, does not perform the necessary validation checks for an authenticated user while executing DUMP or LOAD command allowing arbitrary code execution or Code Injection.

    Published: 12 May 2020
    6.5
    Medium

    CVE-2020-6251

    Last Modified: 21 Nov 2024

    Under certain conditions or error scenarios SAP Business Objects Business Intelligence Platform, version 4.2, allows an attacker to access information which would otherwise be restricted.

    Published: 12 May 2020
    7.5
    High

    CVE-2020-6247

    Last Modified: 21 Nov 2024

    SAP Business Objects Business Intelligence Platform, version 4.2, allows an unauthenticated attacker to prevent legitimate users from accessing a service. Using a specially crafted request, the attacker can crash or flood the Central Management Server, thereby impacting system availability.

    Published: 12 May 2020
    6.7
    Medium

    CVE-2020-6245

    Last Modified: 21 Nov 2024

    SAP Business Objects Business Intelligence Platform, version 4.2, allows an attacker with access to local instance, to inject file or code that can be executed by the application due to Improper Control of Resource Identifiers.

    Published: 12 May 2020
    8.8
    High

    CVE-2020-6249

    Last Modified: 21 Nov 2024

    The use of an admin backend report within SAP Master Data Governance, versions - S4CORE 101, S4FND 102, 103, 104, SAP_BS_FND 748; allows an attacker to execute crafted database queries, exposing the backend database, leading to SQL Injection.

    Published: 12 May 2020
    8.8
    High

    CVE-2020-6243

    Last Modified: 21 Nov 2024

    Under certain conditions, SAP Adaptive Server Enterprise (XP Server on Windows Platform), versions 15.7, 16.0, does not perform the necessary checks for an authenticated user while executing the extended stored procedure, allowing an attacker to read, modify, delete restricted data on connected servers, leading to Code Injection.

    Published: 12 May 2020
    7.5
    High

    CVE-2020-6240

    Last Modified: 21 Nov 2024

    SAP NetWeaver AS ABAP (Web Dynpro ABAP), versions (SAP_UI 750, 752, 753, 754 and SAP_BASIS 700, 710, 730, 731, 804) allows an unauthenticated attacker to prevent legitimate users from accessing a service, either by crashing or flooding the service leading to Denial of Service

    Published: 12 May 2020
    9.8
    Critical

    CVE-2020-12823

    Last Modified: 21 Nov 2024

    OpenConnect 8.09 has a buffer overflow, causing a denial of service (application crash) or possibly unspecified other impact, via crafted certificate data to get_cert_name in gnutls.c.

    Published: 12 May 2020
    7.2
    High

    CVE-2020-5248

    Last Modified: 21 Nov 2024

    GLPI before before version 9.4.6 has a vulnerability involving a default encryption key. GLPIKEY is public and is used on every instance. This means anyone can decrypt sensitive data stored using this key. It is possible to change the key before installing GLPI. But on existing instances, data must be reencrypted with the new key. Problem is we can not know which columns or rows in the database are using that; espcially from plugins. Changing the key without updating data would lend in bad password sent from glpi; but storing them again from the UI will work.

    Published: 12 May 2020
    5.5
    Medium

    CVE-2020-5898

    Last Modified: 21 Nov 2024

    In versions 7.1.5-7.1.9, BIG-IP Edge Client Windows Stonewall driver does not sanitize the pointer received from the userland. A local user on the Windows client system can send crafted DeviceIoControl requests to \\.\urvpndrv device causing the Windows kernel to crash.

    Published: 12 May 2020
    7.8
    High

    CVE-2020-5896

    Last Modified: 21 Nov 2024

    On versions 7.1.5-7.1.9, the BIG-IP Edge Client's Windows Installer Service's temporary folder has weak file and folder permissions.

    Published: 12 May 2020
    8.8
    High

    CVE-2020-5897

    Last Modified: 21 Nov 2024

    In versions 7.1.5-7.1.9, there is use-after-free memory vulnerability in the BIG-IP Edge Client Windows ActiveX component.

    Published: 12 May 2020
    9.8
    Critical

    CVE-2020-1939

    Last Modified: 21 Nov 2024

    The Apache NuttX (Incubating) project provides an optional separate "apps" repository which contains various optional components and example programs. One of these, ftpd, had a NULL pointer dereference bug. The NuttX RTOS itself is not affected. Users of the optional apps repository are affected only if they have enabled ftpd. Versions 6.15 to 8.2 are affected.

    Published: 12 May 2020
    —
    Unknown

    CVE-2020-10741

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-12826. Reason: This candidate is a duplicate of CVE-2020-12826. Notes: All CVE users should reference CVE-2020-12826 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 12 May 2020
    5.3
    Medium

    CVE-2020-4346

    Last Modified: 21 Nov 2024

    IBM API Connect's V2018.4.1.0 through 2018.4.1.10 management server has an unsecured api which can be exploited by an unauthenticated attacker to obtain sensitive information. IBM X-Force ID: 178322.

    Published: 12 May 2020
    5.4
    Medium

    CVE-2020-4195

    Last Modified: 21 Nov 2024

    IBM API Connect V2018.4.1.0 through 2018.4.1.10 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 174859.

    Published: 12 May 2020
    6.5
    Medium

    CVE-2019-4478

    Last Modified: 21 Nov 2024

    IBM Maximo Asset Management 7.6.0, and 7.6.1 could allow an authenticated user to obtain highly sensitive information that they should not normally have access to. IBM X-Force ID: 163998.

    Published: 12 May 2020
    —
    Unknown

    CVE-2020-9310

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 12 May 2020
    9.8
    Critical

    CVE-2020-8159

    Last Modified: 21 Nov 2024

    There is a vulnerability in actionpack_page-caching gem < v1.2.1 that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to a view.

    Published: 12 May 2020
    7.5
    High

    CVE-2020-8151

    Last Modified: 21 Nov 2024

    There is a possible information disclosure issue in Active Resource <v5.1.1 that could allow an attacker to create specially crafted requests to access data in an unexpected way and possibly leak information.

    Published: 12 May 2020
    8.1
    High

    CVE-2020-8153

    Last Modified: 21 Nov 2024

    Improper access control in Groupfolders app 4.0.3 allowed to delete hidden directories when when renaming an accessible item to the same name.

    Published: 12 May 2020
    5.4
    Medium

    CVE-2020-8155

    Last Modified: 21 Nov 2024

    An outdated 3rd party library in the Files PDF viewer for Nextcloud Server 18.0.2 caused a Cross-site scripting vulnerability when opening a malicious PDF.

    Published: 12 May 2020
    7.7
    High

    CVE-2020-8154

    Last Modified: 21 Nov 2024

    An Insecure direct object reference vulnerability in Nextcloud Server 18.0.2 allowed an attacker to remote wipe devices of other users when sending a malicious request directly to the endpoint.

    Published: 12 May 2020
    7
    High

    CVE-2020-8156

    Last Modified: 21 Nov 2024

    A missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in the middle attack.

    Published: 12 May 2020
    5.9
    Medium

    CVE-2020-10711

    Last Modified: 21 Nov 2024

    A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occurs while importing the Commercial IP Security Option (CIPSO) protocol's category bitmap into the SELinux extensible bitmap via the' ebitmap_netlbl_import' routine. While processing the CIPSO restricted bitmap tag in the 'cipso_v4_parsetag_rbm' routine, it sets the security attribute to indicate that the category bitmap is present, even if it has not been allocated. This issue leads to a NULL pointer dereference issue while importing the same category bitmap into SELinux. This flaw allows a remote network user to crash the system kernel, resulting in a denial of service.

    Published: 12 May 2020
    5.3
    Medium

    CVE-2020-12826

    Last Modified: 21 Nov 2024

    A signal access-control issue was discovered in the Linux kernel before 5.6.5, aka CID-7395ea4e65c2. Because exec_id in include/linux/sched.h is only 32 bits, an integer overflow can interfere with a do_notify_parent protection mechanism. A child process can send an arbitrary signal to a parent process in a different security domain. Exploitation limitations include the amount of elapsed time before an integer overflow occurs, and the lack of scenarios where signals to a parent process present a substantial operational threat.

    Published: 12 May 2020
    8.6
    High

    CVE-2020-11072

    Last Modified: 21 Nov 2024

    In SLP Validate (npm package slp-validate) before version 1.2.1, users could experience false-negative validation outcomes for MINT transaction operations. A poorly implemented SLP wallet could allow spending of the affected tokens which would result in the destruction of a user's minting baton. This has been fixed in slp-validate in version 1.2.1. Additonally, slpjs version 0.27.2 has a related fix under related CVE-2020-11071.

    Published: 12 May 2020
    8.6
    High

    CVE-2020-11071

    Last Modified: 21 Nov 2024

    SLPJS (npm package slpjs) before version 0.27.2, has a vulnerability where users could experience false-negative validation outcomes for MINT transaction operations. A poorly implemented SLP wallet could allow spending of the affected tokens which would result in the destruction of a user's minting baton. This is fixed in version 0.27.2.

    Published: 12 May 2020
    7.5
    High

    CVE-2020-1108

    Last Modified: 19 Aug 2026

    A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker who successfully exploited this vulnerability could cause a denial of service against a .NET Core or .NET Framework web application. The vulnerability can be exploited remotely, without authentication. A remote unauthenticated attacker could exploit this vulnerability by issuing specially crafted requests to the .NET Core or .NET Framework application. The update addresses the vulnerability by correcting how the .NET Core or .NET Framework web application handles web requests.

    Published: 12 May 2020
    7.8
    High

    CVE-2020-1066

    Last Modified: 19 Aug 2026

    An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privilege level. To exploit the vulnerability, an attacker would first have to access the local machine, and then run a malicious program. The update addresses the vulnerability by correcting how .NET Framework activates COM objects.

    Published: 12 May 2020
    8.6
    High

    CVE-2020-8161

    Last Modified: 21 Nov 2024

    A directory traversal vulnerability exists in rack < 2.2.0 that allows an attacker perform directory traversal vulnerability in the Rack::Directory app that is bundled with Rack which could result in information disclosure.

    Published: 12 May 2020
    6.5
    Medium

    CVE-2019-14900

    Last Modified: 21 Nov 2024

    A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SELECT or GROUP BY parts of the query. This flaw could allow an attacker to access unauthorized information or possibly conduct further attacks.

    Published: 12 May 2020
    7.5
    High

    CVE-2020-1161

    Last Modified: 19 Aug 2026

    A denial of service vulnerability exists when ASP.NET Core improperly handles web requests. An attacker who successfully exploited this vulnerability could cause a denial of service against an ASP.NET Core web application. The vulnerability can be exploited remotely, without authentication. A remote unauthenticated attacker could exploit this vulnerability by issuing specially crafted requests to the ASP.NET Core application. The update addresses the vulnerability by correcting how the ASP.NET Core web application handles web requests.

    Published: 12 May 2020
    5.6
    Medium

    CVE-2020-13765

    Last Modified: 21 Nov 2024

    rom_copy() in hw/core/loader.c in QEMU 4.0 and 4.1.0 does not validate the relationship between two addresses, which allows attackers to trigger an invalid memory copy operation.

    Published: 12 May 2020
    5.3
    Medium

    CVE-2020-1758

    Last Modified: 21 Nov 2024

    A flaw was found in Keycloak in versions before 10.0.0, where it does not perform the TLS hostname verification while sending emails using the SMTP server. This flaw allows an attacker to perform a man-in-the-middle (MITM) attack.

    Published: 12 May 2020
    7.1
    High

    CVE-2020-12825

    Last Modified: 21 Nov 2024

    libcroco through 0.6.13 has excessive recursion in cr_parser_parse_any_core in cr-parser.c, leading to stack consumption.

    Published: 12 May 2020
    7.1
    High

    CVE-2020-1718

    Last Modified: 21 Nov 2024

    A flaw was found in the reset credential flow in all Keycloak versions before 8.0.0. This flaw allows an attacker to gain unauthorized access to the application.

    Published: 12 May 2020
    7.5
    High

    CVE-2020-10067

    Last Modified: 21 Nov 2024

    A malicious userspace application can cause a integer overflow and bypass security checks performed by system call handlers. The impact would depend on the underlying system call and can range from denial of service to information leak to memory corruption resulting in code execution within the kernel. See NCC-ZEP-005 This issue affects: zephyrproject-rtos zephyr version 1.14.1 and later versions. version 2.1.0 and later versions.

    Published: 11 May 2020
    8
    High

    CVE-2020-10060

    Last Modified: 21 Nov 2024

    In updatehub_probe, right after JSON parsing is complete, objects\[1] is accessed from the output structure in two different places. If the JSON contained less than two elements, this access would reference unitialized stack memory. This could result in a crash, denial of service, or possibly an information leak. Provided the fix in CVE-2020-10059 is applied, the attack requires compromise of the server. See NCC-ZEP-030 This issue affects: zephyrproject-rtos zephyr version 2.1.0 and later versions. version 2.2.0 and later versions.

    Published: 11 May 2020
    4.8
    Medium

    CVE-2020-10059

    Last Modified: 21 Nov 2024

    The UpdateHub module disables DTLS peer checking, which allows for a man in the middle attack. This is mitigated by firmware images requiring valid signatures. However, there is no benefit to using DTLS without the peer checking. See NCC-ZEP-018 This issue affects: zephyrproject-rtos zephyr version 2.1.0 and later versions.

    Published: 11 May 2020
    7.8
    High

    CVE-2020-10058

    Last Modified: 21 Nov 2024

    Multiple syscalls in the Kscan subsystem perform insufficient argument validation, allowing code executing in userspace to potentially gain elevated privileges. See NCC-ZEP-006 This issue affects: zephyrproject-rtos zephyr version 2.1.0 and later versions.

    Published: 11 May 2020
    7.8
    High

    CVE-2020-10028

    Last Modified: 21 Nov 2024

    Multiple syscalls with insufficient argument validation See NCC-ZEP-006 This issue affects: zephyrproject-rtos zephyr version 1.14.0 and later versions. version 2.1.0 and later versions.

    Published: 11 May 2020
    7.8
    High

    CVE-2020-10027

    Last Modified: 21 Nov 2024

    An attacker who has obtained code execution within a user thread is able to elevate privileges to that of the kernel. See NCC-ZEP-001 This issue affects: zephyrproject-rtos zephyr version 1.14.0 and later versions. version 2.1.0 and later versions.

    Published: 11 May 2020
    —
    Unknown

    CVE-2020-10025

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-10067. Reason: This candidate is a reservation duplicate of CVE-2020-10067. Notes: All CVE users should reference CVE-2020-10067 instead of this candidate

    Published: 11 May 2020
    —
    Unknown

    CVE-2020-10026

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-10021. Reason: This candidate is a reservation duplicate of CVE-2020-10021. Notes: All CVE users should reference CVE-2020-10021 instead of this candidate

    Published: 11 May 2020
    7.8
    High

    CVE-2020-10024

    Last Modified: 21 Nov 2024

    The arm platform-specific code uses a signed integer comparison when validating system call numbers. An attacker who has obtained code execution within a user thread is able to elevate privileges to that of the kernel. See NCC-ZEP-001 This issue affects: zephyrproject-rtos zephyr version 1.14.0 and later versions. version 2.1.0 and later versions.

    Published: 11 May 2020
    6.9
    Medium

    CVE-2020-10023

    Last Modified: 21 Nov 2024

    The shell subsystem contains a buffer overflow, whereby an adversary with physical access to the device is able to cause a memory corruption, resulting in denial of service or possibly code execution within the Zephyr kernel. See NCC-NCC-019 This issue affects: zephyrproject-rtos zephyr version 1.14.0 and later versions. version 2.1.0 and later versions.

    Published: 11 May 2020
    9
    Critical

    CVE-2020-10022

    Last Modified: 21 Nov 2024

    A malformed JSON payload that is received from an UpdateHub server may trigger memory corruption in the Zephyr OS. This could result in a denial of service in the best case, or code execution in the worst case. See NCC-NCC-016 This issue affects: zephyrproject-rtos zephyr version 2.1.0 and later versions. version 2.2.0 and later versions.

    Published: 11 May 2020