CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2020-12014

    Last Modified: 21 Nov 2024

    Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Input is not properly sanitized and may allow an attacker to inject SQL commands.

    Published: 8 May 2020
    8.8
    High

    CVE-2020-7264

    Last Modified: 21 Nov 2024

    Privilege Escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 Hotfix 199847 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.

    Published: 8 May 2020
    9.8
    Critical

    CVE-2020-12006

    Last Modified: 21 Nov 2024

    Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple relative path traversal vulnerabilities exist that may allow a low privilege user to overwrite files outside the application’s control.

    Published: 8 May 2020
    7.1
    High

    CVE-2020-12010

    Last Modified: 21 Nov 2024

    Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple relative path traversal vulnerabilities exist that may allow an authenticated user to use a specially crafted file to delete files outside the application’s control.

    Published: 8 May 2020
    9.8
    Critical

    CVE-2020-12022

    Last Modified: 21 Nov 2024

    Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. An improper validation vulnerability exists that could allow an attacker to inject specially crafted input into memory where it can be executed.

    Published: 8 May 2020
    9.8
    Critical

    CVE-2020-12735

    Last Modified: 21 Nov 2024

    reset.php in DomainMOD 4.13.0 uses insufficient entropy for password reset requests, leading to account takeover.

    Published: 8 May 2020
    5
    Medium

    CVE-2012-0953

    Last Modified: 21 Nov 2024

    A race condition was discovered in the Linux drivers for Nvidia graphics which allowed an attacker to exfiltrate kernel memory to userspace. This issue was fixed in version 295.53.

    Published: 8 May 2020
    5
    Medium

    CVE-2012-0952

    Last Modified: 21 Nov 2024

    A heap buffer overflow was discovered in the device control ioctl in the Linux driver for Nvidia graphics cards, which may allow an attacker to overflow 49 bytes. This issue was fixed in version 295.53.

    Published: 8 May 2020
    9.8
    Critical

    CVE-2020-12720

    Last Modified: 21 Nov 2024

    vBulletin before 5.5.6pl1, 5.6.0 before 5.6.0pl1, and 5.6.1 before 5.6.1pl1 has incorrect access control.

    Published: 7 May 2020
    7.2
    High

    CVE-2020-12719

    Last Modified: 21 Nov 2024

    XXE during an EventPublisher update can occur in Management Console in WSO2 API Manager 3.0.0 and earlier, API Manager Analytics 2.5.0 and earlier, API Microgateway 2.2.0, Enterprise Integrator 6.4.0 and earlier, IS as Key Manager 5.9.0 and earlier, Identity Server 5.9.0 and earlier, and Identity Server Analytics 5.6.0 and earlier.

    Published: 7 May 2020
    5.4
    Medium

    CVE-2020-12718

    Last Modified: 21 Nov 2024

    In administration/comments.php in PHP-Fusion 9.03.50, an authenticated attacker can take advantage of a stored XSS vulnerability in the Preview Comment feature. The protection mechanism can be bypassed by using HTML event handlers such as ontoggle.

    Published: 7 May 2020
    5.9
    Medium

    CVE-2014-1423

    Last Modified: 21 Nov 2024

    signond before 8.57+15.04.20141127.1-0ubuntu1, as used in Ubuntu Touch, did not properly restrict applications from querying oath tokens due to incorrect checks and the missing installation of the signon-apparmor-extension. An attacker could use this create a malicious click app that collects oauth tokens for other applications, exposing sensitive information.

    Published: 7 May 2020
    8
    High

    CVE-2020-10916

    Last Modified: 21 Nov 2024

    This vulnerability allows network-adjacent attackers to escalate privileges on affected installations of TP-Link TL-WA855RE Firmware Ver: 855rev4-up-ver1-0-1-P1[20191213-rel60361] Wi-Fi extenders. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the first-time setup process. The issue results from the lack of proper validation on first-time setup requests. An attacker can leverage this vulnerability to reset the password for the Admin account and execute code in the context of the device. Was ZDI-CAN-10003.

    Published: 7 May 2020
    7.3
    High

    CVE-2015-7946

    Last Modified: 21 Nov 2024

    Information Exposure vulnerability in Unity8 as used on the Ubuntu phone and possibly also in Unity8 shipped elsewhere. This allows an attacker to enable the MTP service by opening the emergency dialer. Fixed in 8.11+16.04.20160111.1-0ubuntu1 and 8.11+15.04.20160122-0ubuntu1.

    Published: 7 May 2020
    7.4
    High

    CVE-2020-11056

    Last Modified: 21 Nov 2024

    In Sprout Forms before 3.9.0, there is a potential Server-Side Template Injection vulnerability when using custom fields in Notification Emails which could lead to the execution of Twig code. This has been fixed in 3.9.0.

    Published: 7 May 2020
    6.3
    Medium

    CVE-2020-11055

    Last Modified: 21 Nov 2024

    In BookStack greater than or equal to 0.18.0 and less than 0.29.2, there is an XSS vulnerability in comment creation. A user with permission to create comments could POST HTML directly to the system to be saved in a comment, which would then be executed/displayed to others users viewing the comment. Through this vulnerability custom JavaScript code could be injected and therefore ran on other user machines. This most impacts scenarios where not-trusted users are given permission to create comments. This has been fixed in 0.29.2.

    Published: 7 May 2020
    9.8
    Critical

    CVE-2020-10176

    Last Modified: 21 Nov 2024

    ASSA ABLOY Yale WIPC-301W 2.x.2.29 through 2.x.2.43_p1 devices allow Eval Injection of commands.

    Published: 7 May 2020
    3.5
    Low

    CVE-2020-11054

    Last Modified: 21 Nov 2024

    In qutebrowser versions less than 1.11.1, reloading a page with certificate errors shows a green URL. After a certificate error was overridden by the user, qutebrowser displays the URL as yellow (colors.statusbar.url.warn.fg). However, when the affected website was subsequently loaded again, the URL was mistakenly displayed as green (colors.statusbar.url.success_https). While the user already has seen a certificate error prompt at this point (or set content.ssl_strict to false, which is not recommended), this could still provide a false sense of security. This has been fixed in 1.11.1 and 1.12.0. All versions of qutebrowser are believed to be affected, though versions before v0.11.x couldn't be tested. Backported patches for older versions (greater than or equal to 1.4.0 and less than or equal to 1.10.2) are available, but no further releases are planned.

    Published: 7 May 2020
    7.2
    High

    CVE-2020-10795

    Last Modified: 21 Nov 2024

    Gira TKS-IP-Gateway 4.0.7.7 is vulnerable to authenticated remote code execution via the backup functionality of the web frontend. This can be combined with CVE-2020-10794 for remote root access.

    Published: 7 May 2020
    9.8
    Critical

    CVE-2020-10794

    Last Modified: 21 Nov 2024

    Gira TKS-IP-Gateway 4.0.7.7 is vulnerable to unauthenticated path traversal that allows an attacker to download the application database. This can be combined with CVE-2020-10795 for remote root access.

    Published: 7 May 2020
    7.1
    High

    CVE-2020-11053

    Last Modified: 21 Nov 2024

    In OAuth2 Proxy before 5.1.1, there is an open redirect vulnerability. Users can provide a redirect address for the proxy to send the authenticated user to at the end of the authentication flow. This is expected to be the original URL that the user was trying to access. This redirect URL is checked within the proxy and validated before redirecting the user to prevent malicious actors providing redirects to potentially harmful sites. However, by crafting a redirect URL with HTML encoded whitespace characters the validation could be bypassed and allow a redirect to any URL provided. This has been patched in 5.1.1.

    Published: 7 May 2020
    7
    High

    CVE-2020-9475

    Last Modified: 21 Nov 2024

    The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 allows local privilege escalation via a race condition in logrotate. By using an exploit chain, an attacker with access to the network can get root access on the gateway.

    Published: 7 May 2020
    8.3
    High

    CVE-2020-11052

    Last Modified: 21 Nov 2024

    In Sorcery before 0.15.0, there is a brute force vulnerability when using password authentication via Sorcery. The brute force protection submodule will prevent a brute force attack for the defined lockout period, but once expired, protection will not be re-enabled until a user or malicious actor logs in successfully. This does not affect users that do not use the built-in brute force protection submodule, nor users that use permanent account lockout. This has been patched in 0.15.0.

    Published: 7 May 2020
    8.8
    High

    CVE-2020-9474

    Last Modified: 21 Nov 2024

    The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 allows remote code execution via the backup functionality in the web frontend. By using an exploit chain, an attacker with access to the network can get root access on the gateway.

    Published: 7 May 2020
    4.3
    Medium

    CVE-2020-4430

    Last Modified: 14 Jan 2026

    IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authenticated attacker to traverse directories on the system. An attacker could send a specially-crafted URL request to download arbitrary files from the system. IBM X-Force ID: 180535.

    Published: 7 May 2020
    9.8
    Critical

    CVE-2020-4429

    Last Modified: 3 Nov 2025

    IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 contains a default password for an IDRM administrative account. A remote attacker could exploit this vulnerability to login and execute arbitrary code on the system with root privileges. IBM X-Force ID: 180534.

    Published: 7 May 2020
    9.1
    Critical

    CVE-2020-4428

    Last Modified: 4 Nov 2025

    IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authenticated attacker to execute arbitrary commands on the system. IBM X-Force ID: 180533.

    Published: 7 May 2020
    9.8
    Critical

    CVE-2020-4427

    Last Modified: 4 Nov 2025

    IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, and 2.0.6 could allow a remote attacker to bypass security restrictions when configured with SAML authentication. By sending a specially crafted HTTP request, an attacker could exploit this vulnerability to bypass the authentication process and gain full administrative access to the system. IBM X-Force ID: 180532.

    Published: 7 May 2020
    7.5
    High

    CVE-2020-12116

    Last Modified: 21 Nov 2024

    Zoho ManageEngine OpManager Stable build before 124196 and Released build before 125125 allows an unauthenticated attacker to read arbitrary files on the server by sending a crafted request.

    Published: 7 May 2020
    6.1
    Medium

    CVE-2020-12703

    Last Modified: 21 Nov 2024

    UliCMS before 2020.2 has XSS during PackageController uninstall.

    Published: 7 May 2020
    6.1
    Medium

    CVE-2020-12704

    Last Modified: 21 Nov 2024

    UliCMS before 2020.2 has PageController stored XSS.

    Published: 7 May 2020
    6.1
    Medium

    CVE-2020-12705

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting (XSS) vulnerabilities exist in LeptonCMS before 4.6.0.

    Published: 7 May 2020
    5.4
    Medium

    CVE-2020-12706

    Last Modified: 21 Nov 2024

    Multiple Cross-site scripting vulnerabilities in PHP-Fusion 9.03.50 allow remote attackers to inject arbitrary web script or HTML via the go parameter to faq/faq_admin.php or shoutbox_panel/shoutbox_admin.php

    Published: 7 May 2020
    6.1
    Medium

    CVE-2020-12707

    Last Modified: 21 Nov 2024

    An XSS vulnerability exists in modules/wysiwyg/save.php of LeptonCMS 4.5.0. This can be exploited because the only security measure used against XSS is the stripping of SCRIPT elements. A malicious actor can use HTML event handlers to run JavaScript instead of using SCRIPT elements.

    Published: 7 May 2020
    6.1
    Medium

    CVE-2020-12708

    Last Modified: 21 Nov 2024

    Multiple cross-site scripting vulnerabilities in PHP-Fusion 9.03.50 allow remote attackers to inject arbitrary web script or HTML via the cat_id parameter to downloads/downloads.php or article.php. NOTE: this might overlap CVE-2012-6043.

    Published: 7 May 2020
    7.8
    High

    CVE-2020-14381

    Last Modified: 25 Feb 2026

    A flaw was found in the Linux kernel’s futex implementation. This flaw allows a local attacker to corrupt system memory or escalate their privileges when creating a futex on a filesystem that is about to be unmounted. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

    Published: 7 May 2020
    7.8
    High

    CVE-2019-19164

    Last Modified: 21 Nov 2024

    dext5.ocx ActiveX Control in Dext5 Upload 5.0.0.112 and earlier versions contains a vulnerability that could allow remote files to be executed by setting the arguments to the activex method. A remote attacker could induce a user to access a crafted web page, causing damage such as malicious code infection.

    Published: 7 May 2020
    8.8
    High

    CVE-2020-10971

    Last Modified: 21 Nov 2024

    An issue was discovered on Wavlink Jetstream devices where a crafted POST request can be sent to adm.cgi that will result in the execution of the supplied command if there is an active session at the same time. The POST request itself is not validated to ensure it came from the active session. Affected devices are: Wavlink WN530HG4, Wavlink WN575A3, Wavlink WN579G3,Wavlink WN531G3, Wavlink WN533A8, Wavlink WN531A6, Wavlink WN551K1, Wavlink WN535G3, Wavlink WN530H4, Wavlink WN57X93, WN572HG3, Wavlink WN578A2, Wavlink WN579G3, Wavlink WN579X3, and Jetstream AC3000/ERAC3000

    Published: 7 May 2020
    7.5
    High

    CVE-2020-10972

    Last Modified: 21 Nov 2024

    An issue was discovered where a page is exposed that has the current administrator password in cleartext in the source code of the page. No authentication is required in order to reach the page (a certain live_?.shtml page with the variable syspasswd). Affected Devices: Wavlink WN530HG4, Wavlink WN531G3, and Wavlink WN572HG3

    Published: 7 May 2020
    7.5
    High

    CVE-2020-10973

    Last Modified: 21 Nov 2024

    An issue was discovered in Wavlink WN530HG4, Wavlink WN531G3, Wavlink WN533A8, and Wavlink WN551K1 affecting /cgi-bin/ExportAllSettings.sh where a crafted POST request returns the current configuration of the device, including the administrator password. No authentication is required. The attacker must perform a decryption step, but all decryption information is readily available.

    Published: 7 May 2020
    7.8
    High

    CVE-2020-7803

    Last Modified: 21 Nov 2024

    IMGTech Co,Ltd ZInsX.ocx ActiveX Control in Zoneplayer 2.0.1.3, version 2.0.1.4 and prior versions on Windows. File Donwload vulnerability in ZInsX.ocx of IMGTech Co,Ltd Zoneplayer allows attacker to cause arbitrary code execution.

    Published: 7 May 2020
    7.5
    High

    CVE-2020-10974

    Last Modified: 21 Nov 2024

    An issue was discovered affecting a backup feature where a crafted POST request returns the current configuration of the device in cleartext, including the administrator password. No authentication is required. Affected devices: Wavlink WN575A3, Wavlink WN579G3, Wavlink WN531A6, Wavlink WN535G3, Wavlink WN530H4, Wavlink WN57X93, Wavlink WN572HG3, Wavlink WN575A4, Wavlink WN578A2, Wavlink WN579G3, Wavlink WN579X3, and Jetstream AC3000/ERAC3000

    Published: 7 May 2020
    9.8
    Critical

    CVE-2020-7805

    Last Modified: 21 Nov 2024

    An issue was discovered on KT Slim egg IML500 (R7283, R8112, R8424) and IML520 (R8112, R8368, R8411) wifi device. This issue is a command injection allowing attackers to execute arbitrary OS commands.

    Published: 7 May 2020
    6.1
    Medium

    CVE-2020-12679

    Last Modified: 21 Nov 2024

    A reflected cross-site scripting (XSS) vulnerability in the Mitel ShoreTel Conference Web Application 19.50.1000.0 before MiVoice Connect 18.7 SP2 allows remote attackers to inject arbitrary JavaScript and HTML via the PATH_INFO to home.php.

    Published: 7 May 2020
    9.8
    Critical

    CVE-2020-7646

    Last Modified: 21 Nov 2024

    curlrequest through 1.0.1 allows reading any file by populating the file parameter with user input.

    Published: 7 May 2020
    7.8
    High

    CVE-2020-12608

    Last Modified: 21 Nov 2024

    An issue was discovered in SolarWinds MSP PME (Patch Management Engine) Cache Service before 1.1.15 in the Advanced Monitoring Agent. There are insecure file permissions for %PROGRAMDATA%\SolarWinds MSP\SolarWinds.MSP.CacheService\config\. This can lead to code execution by changing the CacheService.xml SISServerURL parameter.

    Published: 7 May 2020
    5.3
    Medium

    CVE-2020-12448

    Last Modified: 21 Nov 2024

    GitLab EE 12.8 and later allows Exposure of Sensitive Information to an Unauthorized Actor via NuGet.

    Published: 7 May 2020
    6.1
    Medium

    CVE-2020-5750

    Last Modified: 21 Nov 2024

    Insufficient output sanitization in TCExam 14.2.2 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks via the self-registration feature.

    Published: 7 May 2020
    5.4
    Medium

    CVE-2020-5749

    Last Modified: 21 Nov 2024

    Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted group.

    Published: 7 May 2020
    5.4
    Medium

    CVE-2020-5751

    Last Modified: 21 Nov 2024

    Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted operator.

    Published: 7 May 2020