CVE Feed

    Dashboard / CVE

    8.1
    High

    CVE-2020-10021

    Last Modified: 21 Nov 2024

    Out-of-bounds Write in the USB Mass Storage memoryWrite handler with unaligned Sizes See NCC-ZEP-024, NCC-ZEP-025, NCC-ZEP-026 This issue affects: zephyrproject-rtos zephyr version 1.14.1 and later versions. version 2.1.0 and later versions.

    Published: 11 May 2020
    8.1
    High

    CVE-2020-10019

    Last Modified: 21 Nov 2024

    USB DFU has a potential buffer overflow where the requested length (wLength) is not checked against the buffer size. This could be used by a malicious USB host to exploit the buffer overflow. See NCC-ZEP-002 This issue affects: zephyrproject-rtos zephyr version 1.14.1 and later versions. version 2.1.0 and later versions.

    Published: 11 May 2020
    —
    Unknown

    CVE-2017-14200

    Last Modified: 7 Nov 2023

    Unused CVE for 2017

    Published: 11 May 2020
    7.5
    High

    CVE-2020-9840

    Last Modified: 21 Nov 2024

    In SwiftNIO Extras before 1.4.1, a logic issue was addressed with improved restrictions.

    Published: 11 May 2020
    5.3
    Medium

    CVE-2020-7647

    Last Modified: 21 Nov 2024

    All versions before 1.6.7 and all versions after 2.0.0 inclusive and before 2.8.2 of io.jooby:jooby and org.jooby:jooby are vulnerable to Directory Traversal via two separate vectors.

    Published: 11 May 2020
    7.8
    High

    CVE-2020-5837

    Last Modified: 21 Nov 2024

    Symantec Endpoint Protection, prior to 14.3, may not respect file permissions when writing to log files that are replaced by symbolic links, which can lead to a potential elevation of privilege.

    Published: 11 May 2020
    7.8
    High

    CVE-2020-5836

    Last Modified: 21 Nov 2024

    Symantec Endpoint Protection, prior to 14.3, can potentially reset the ACLs on a file as a limited user while Symantec Endpoint Protection's Tamper Protection feature is disabled.

    Published: 11 May 2020
    7
    High

    CVE-2020-5835

    Last Modified: 21 Nov 2024

    Symantec Endpoint Protection Manager, prior to 14.3, has a race condition in client remote deployment which may result in an elevation of privilege on the remote machine.

    Published: 11 May 2020
    5.3
    Medium

    CVE-2020-5834

    Last Modified: 21 Nov 2024

    Symantec Endpoint Protection Manager, prior to 14.3, may be susceptible to a directory traversal attack that could allow a remote actor to determine the size of files in the directory.

    Published: 11 May 2020
    3.3
    Low

    CVE-2020-5833

    Last Modified: 21 Nov 2024

    Symantec Endpoint Protection Manager, prior to 14.3, may be susceptible to an out of bounds vulnerability, which is a type of issue that results in an existing application reading memory outside of the bounds of the memory that had been allocated to the program.

    Published: 11 May 2020
    7.5
    High

    CVE-2020-12790

    Last Modified: 21 Nov 2024

    In the SEOmatic plugin before 3.2.49 for Craft CMS, helpers/DynamicMeta.php does not properly sanitize the URL. This leads to Server-Side Template Injection and credentials disclosure via a crafted Twig template after a semicolon.

    Published: 11 May 2020
    7.5
    High

    CVE-2019-5500

    Last Modified: 21 Nov 2024

    Certain versions of the NetApp Service Processor and Baseboard Management Controller firmware allow a remote unauthenticated attacker to cause a Denial of Service (DoS).

    Published: 11 May 2020
    —
    Unknown

    CVE-2020-1962

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 11 May 2020
    7.8
    High

    CVE-2019-19162

    Last Modified: 21 Nov 2024

    A use-after-free vulnerability in the TOBESOFT XPLATFORM versions 9.1 to 9.2.2 may lead to code execution on a system running it.

    Published: 11 May 2020
    5.9
    Medium

    CVE-2019-4667

    Last Modified: 21 Nov 2024

    IBM UrbanCode Deploy (UCD) 7.0.5.2 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 171249.

    Published: 11 May 2020
    9.8
    Critical

    CVE-2018-1285

    Last Modified: 21 Nov 2024

    Apache log4net versions before 2.0.10 do not disable XML external entities when parsing log4net configuration files. This allows for XXE-based attacks in applications that accept attacker-controlled log4net configuration files.

    Published: 11 May 2020
    8.8
    High

    CVE-2020-12760

    Last Modified: 21 Nov 2024

    An issue was discovered in OpenNMS Horizon before 26.0.1, and Meridian before 2018.1.19 and 2019 before 2019.1.7. The ActiveMQ channel configuration allowed for arbitrary deserialization of Java objects (aka ActiveMQ Minion payload deserialization), leading to remote code execution for any authenticated channel user regardless of its assigned permissions.

    Published: 11 May 2020
    8.1
    High

    CVE-2020-12785

    Last Modified: 21 Nov 2024

    cPanel before 86.0.14 allows attackers to obtain access to the current working directory via the account backup feature (SEC-540).

    Published: 11 May 2020
    5.3
    Medium

    CVE-2020-12784

    Last Modified: 21 Nov 2024

    cPanel before 86.0.14 allows remote attackers to trigger a bandwidth suspension via mail log strings (SEC-505).

    Published: 11 May 2020
    7.8
    High

    CVE-2020-12754

    Last Modified: 21 Nov 2024

    An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A crafted application can obtain control of device input via the window system service. The LG ID is LVE-SMP-170011 (May 2020).

    Published: 11 May 2020
    9.8
    Critical

    CVE-2020-12753

    Last Modified: 21 Nov 2024

    An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. Arbitrary code execution can occur via the bootloader because of an EL1/EL3 coldboot vulnerability involving raw_resources. The LG ID is LVE-SMP-200006 (May 2020).

    Published: 11 May 2020
    7.5
    High

    CVE-2020-12752

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (with TEEGRIS) software. Attackers can determine user credentials via a brute-force attack against the Gatekeeper trustlet. The Samsung ID is SVE-2020-16908 (May 2020).

    Published: 11 May 2020
    7.8
    High

    CVE-2020-12751

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) software. The Quram image codec library allows attackers to overwrite memory and execute arbitrary code via crafted JPEG data that is mishandled during decoding. The Samsung ID is SVE-2020-16943 (May 2020).

    Published: 11 May 2020
    7.5
    High

    CVE-2020-12750

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass Factory Reset Protection (FRP) via SPEN. The Samsung ID is SVE-2020-17019 (May 2020).

    Published: 11 May 2020
    7.8
    High

    CVE-2020-12749

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with P(9.0) (Exynos chipsets) software. The S.LSI Wi-Fi drivers have a buffer overflow. The Samsung ID is SVE-2020-16906 (May 2020).

    Published: 11 May 2020
    5.3
    Medium

    CVE-2020-12748

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass the locked-state protection mechanism and designate a different preferred SIM card. The Samsung ID is SVE-2020-16594 (May 2020).

    Published: 11 May 2020
    9.8
    Critical

    CVE-2020-12747

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos980 9630 and Exynos990 9830 chipsets) software. The Bootloader has a heap-based buffer overflow because of the mishandling of specific commands. The Samsung IDs are SVE-2020-16981, SVE-2020-16991 (May 2020).

    Published: 11 May 2020
    9.8
    Critical

    CVE-2020-12746

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) (Exynos chipsets) software. Attackers can bypass the Secure Bootloader protection mechanism via a heap-based buffer overflow to execute arbitrary code. The Samsung ID is SVE-2020-16712 (May 2020).

    Published: 11 May 2020
    7.5
    High

    CVE-2020-12745

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass the locked-state protection mechanism and access clipboard content via USSD. The Samsung ID is SVE-2019-16556 (May 2020).

    Published: 11 May 2020
    —
    Unknown

    CVE-2020-12650

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was intended behavior. Notes: none

    Published: 11 May 2020
    8.8
    High

    CVE-2020-11108

    Last Modified: 21 Nov 2024

    The Gravity updater in Pi-hole through 4.4 allows an authenticated adversary to upload arbitrary files. This can be abused for Remote Code Execution by writing to a PHP file in the web directory. (Also, it can be used in conjunction with the sudo rule for the www-data user to escalate privileges to root.) The code error is in gravity_DownloadBlocklistFromUrl in gravity.sh.

    Published: 11 May 2020
    9.8
    Critical

    CVE-2020-12743

    Last Modified: 21 Nov 2024

    An issue was discovered in Gazie 7.32. A successful installation does not remove or block (or in any other way prevent use of) its own file /setup/install/setup.php, meaning that anyone can request it without authentication. This file allows arbitrary PHP file inclusion via a hidden_req POST parameter.

    Published: 11 May 2020
    7.8
    High

    CVE-2020-5538

    Last Modified: 21 Nov 2024

    Improper Access Control in PALLET CONTROL Ver. 6.3 and earlier allows authenticated attackers to execute arbitrary code with the SYSTEM privilege on the computer where PALLET CONTROL is installed via unspecified vectors. PalletControl 7 to 9.1 are not affected by this vulnerability, however under the environment where PLS Management Add-on Module is used, all versions are affected.

    Published: 11 May 2020
    8.8
    High

    CVE-2020-1714

    Last Modified: 21 Nov 2024

    A flaw was found in Keycloak before version 11.0.0, where the code base contains usages of ObjectInputStream without type checks. This flaw allows an attacker to inject arbitrarily serialized Java Objects, which would then get deserialized in a privileged context and potentially lead to remote code execution.

    Published: 11 May 2020
    7.8
    High

    CVE-2020-11866

    Last Modified: 21 Nov 2024

    libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows a use-after-free.

    Published: 11 May 2020
    7.5
    High

    CVE-2020-10705

    Last Modified: 21 Nov 2024

    A flaw was discovered in Undertow in versions before Undertow 2.1.1.Final where certain requests to the "Expect: 100-continue" header may cause an out of memory error. This flaw may potentially lead to a denial of service.

    Published: 11 May 2020
    5.5
    Medium

    CVE-2020-11863

    Last Modified: 21 Nov 2024

    libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 1 of 2).

    Published: 11 May 2020
    5.5
    Medium

    CVE-2020-11864

    Last Modified: 21 Nov 2024

    libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 2 of 2).

    Published: 11 May 2020
    7.8
    High

    CVE-2020-11865

    Last Modified: 21 Nov 2024

    libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows out-of-bounds memory access.

    Published: 11 May 2020
    7.5
    High

    CVE-2020-1763

    Last Modified: 21 Nov 2024

    An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.

    Published: 11 May 2020
    4.8
    Medium

    CVE-2020-9314

    Last Modified: 21 Nov 2024

    ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Oracle iPlanet Web Server 7.0.x allows image injection in the Administration console via the productNameSrc parameter to an admingui URI. This issue exists because of an incomplete fix for CVE-2012-0516. NOTE: a related support policy can be found in the www.oracle.com references attached to this CVE.

    Published: 10 May 2020
    7.5
    High

    CVE-2020-9315

    Last Modified: 21 Nov 2024

    ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Oracle iPlanet Web Server 7.0.x has Incorrect Access Control for admingui/version URIs in the Administration console, as demonstrated by unauthenticated read access to encryption keys. NOTE: a related support policy can be found in the www.oracle.com references attached to this CVE.

    Published: 10 May 2020
    5.5
    Medium

    CVE-2020-35535

    Last Modified: 21 Nov 2024

    In LibRaw, there is an out-of-bounds read vulnerability within the "LibRaw::parseSonySRF()" function (libraw\src\metadata\sony.cpp) when processing srf files.

    Published: 10 May 2020
    5.3
    Medium

    CVE-2020-12764

    Last Modified: 21 Nov 2024

    Gnuteca 3.8 allows file.php?folder=/&file= Directory Traversal.

    Published: 9 May 2020
    5.3
    Medium

    CVE-2020-12765

    Last Modified: 21 Nov 2024

    Solis Miolo 2.0 allows index.php?module=install&action=view&item= Directory Traversal.

    Published: 9 May 2020
    9.8
    Critical

    CVE-2020-12766

    Last Modified: 21 Nov 2024

    Gnuteca 3.8 allows action=main:search:simpleSearch SQL Injection via the exemplaryStatusId parameter.

    Published: 9 May 2020
    9.1
    Critical

    CVE-2020-12761

    Last Modified: 21 Nov 2024

    modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) via an icon with many colors in its color map.

    Published: 9 May 2020
    9.8
    Critical

    CVE-2020-12637

    Last Modified: 21 Nov 2024

    Zulip Desktop before 5.2.0 has Missing SSL Certificate Validation because all validation was inadvertently disabled during an attempt to recognize the ignoreCerts option.

    Published: 9 May 2020
    3.3
    Low

    CVE-2020-12755

    Last Modified: 21 Nov 2024

    fishProtocol::establishConnection in fish/fish.cpp in KDE kio-extras through 20.04.0 makes a cacheAuthentication call even if the user had not set the keepPassword option. This may lead to unintended KWallet storage of a password.

    Published: 9 May 2020
    4.7
    Medium

    CVE-2019-20794

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel 4.18 through 5.6.11 when unprivileged user namespaces are allowed. A user can create their own PID namespace, and mount a FUSE filesystem. Upon interaction with this FUSE filesystem, if the userspace component is terminated via a kill of the PID namespace's pid 1, it will result in a hung task, and resources being permanently locked up until system reboot. This can result in resource exhaustion.

    Published: 9 May 2020