CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2020-5748

    Last Modified: 21 Nov 2024

    Insufficient output sanitization in TCExam 14.2.2 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks via the self-registration feature.

    Published: 7 May 2020
    7.4
    High

    CVE-2020-5745

    Last Modified: 21 Nov 2024

    Cross-site request forgery in TCExam 14.2.2 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.

    Published: 7 May 2020
    9.1
    Critical

    CVE-2020-11431

    Last Modified: 21 Nov 2024

    The documentation component in i-net Clear Reports 16.0 to 19.2, HelpDesk 8.0 to 8.3, and PDFC 4.3 to 6.2 allows a remote unauthenticated attacker to read arbitrary system files and directories on the target server via Directory Traversal.

    Published: 7 May 2020
    5.4
    Medium

    CVE-2020-5746

    Last Modified: 21 Nov 2024

    Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted test.

    Published: 7 May 2020
    4.3
    Medium

    CVE-2020-5743

    Last Modified: 21 Nov 2024

    Improper Control of Resource Identifiers in TCExam 14.2.2 allows a remote, authenticated attacker to access test metadata for which they don't have permission.

    Published: 7 May 2020
    4.9
    Medium

    CVE-2020-5744

    Last Modified: 21 Nov 2024

    Relative Path Traversal in TCExam 14.2.2 allows a remote, authenticated attacker to read the contents of arbitrary files on disk.

    Published: 7 May 2020
    5.4
    Medium

    CVE-2020-5747

    Last Modified: 21 Nov 2024

    Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted test.

    Published: 7 May 2020
    5.4
    Medium

    CVE-2020-12683

    Last Modified: 21 Nov 2024

    Katyshop2 before 2.12 has multiple stored XSS issues.

    Published: 7 May 2020
    8.8
    High

    CVE-2020-6651

    Last Modified: 21 Nov 2024

    Improper Input Validation in Eaton's Intelligent Power Manager (IPM) v 1.67 & prior on file name during configuration file import functionality allows attackers to perform command injection or code execution via specially crafted file names while uploading the configuration file in the application.

    Published: 7 May 2020
    7.8
    High

    CVE-2020-6652

    Last Modified: 21 Nov 2024

    Incorrect Privilege Assignment vulnerability in Eaton's Intelligent Power Manager (IPM) v1.67 & prior allow non-admin users to upload the system configuration files by sending specially crafted requests. This can result in non-admin users manipulating the system configurations via uploading the configurations with incorrect parameters.

    Published: 7 May 2020
    6.5
    Medium

    CVE-2020-12687

    Last Modified: 21 Nov 2024

    An issue was discovered in Serpico before 1.3.3. The /admin/attacments_backup endpoint can be requested by non-admin authenticated users. This means that an attacker with a user account can retrieve all of the attachments of all users (including administrators) from the database.

    Published: 7 May 2020
    7.5
    High

    CVE-2020-8983

    Last Modified: 21 Nov 2024

    An arbitrary file write issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020, which allows remote code execution. RCE and file access is granted to everything hosted by ShareFile, be it on-premise or inside Citrix Cloud itself (both are internet facing). NOTE: unlike most CVEs, exploitability depends on the product version that was in use when a particular setup step was performed, NOT the product version that is in use during a current assessment of a CVE consumer's product inventory. Specifically, the vulnerability can be exploited if a storage zone was created by one of these product versions: 5.9.0, 5.8.0, 5.7.0, 5.6.0, 5.5.0, or earlier. This CVE differs from CVE-2020-7473 and CVE-2020-8982.

    Published: 7 May 2020
    7.5
    High

    CVE-2020-8982

    Last Modified: 21 Nov 2024

    An unauthenticated arbitrary file read issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020. RCE and file access is granted to everything hosted by ShareFile, be it on-premise or inside Citrix Cloud itself (both are internet facing). NOTE: unlike most CVEs, exploitability depends on the product version that was in use when a particular setup step was performed, NOT the product version that is in use during a current assessment of a CVE consumer's product inventory. Specifically, the vulnerability can be exploited if a storage zone was created by one of these product versions: 5.9.0, 5.8.0, 5.7.0, 5.6.0, 5.5.0, or earlier. This CVE differs from CVE-2020-7473 and CVE-2020-8983.

    Published: 7 May 2020
    7.5
    High

    CVE-2020-7473

    Last Modified: 21 Nov 2024

    In certain situations, all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020, allow unauthenticated attackers to access the documents and folders of ShareFile users. NOTE: unlike most CVEs, exploitability depends on the product version that was in use when a particular setup step was performed, NOT the product version that is in use during a current assessment of a CVE consumer's product inventory. Specifically, the vulnerability can be exploited if a storage zone was created by one of these product versions: 5.9.0, 5.8.0, 5.7.0, 5.6.0, 5.5.0, or earlier. This CVE differs from CVE-2020-8982 and CVE-2020-8983 but has essentially the same risk.

    Published: 7 May 2020
    9.8
    Critical

    CVE-2019-18869

    Last Modified: 21 Nov 2024

    Leftover Debug Code in Blaauw Remote Kiln Control through v3.00r4 allows a user to execute arbitrary php code via /default.php?idx=17.

    Published: 7 May 2020
    8.8
    High

    CVE-2019-18871

    Last Modified: 21 Nov 2024

    A path traversal in debug.php accessed via default.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated attacker to upload arbitrary files, leading to arbitrary remote code execution.

    Published: 7 May 2020
    6.5
    Medium

    CVE-2019-18870

    Last Modified: 21 Nov 2024

    A path traversal via the iniFile parameter in excel.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated attacker to download arbitrary files from the host machine.

    Published: 7 May 2020
    7.5
    High

    CVE-2019-18872

    Last Modified: 21 Nov 2024

    Weak password requirements in Blaauw Remote Kiln Control through v3.00r4 allow a user to set short or guessable passwords (e.g., 1 or 1234).

    Published: 7 May 2020
    7.5
    High

    CVE-2019-18866

    Last Modified: 21 Nov 2024

    Unauthenticated SQL injection via the username in the login mechanism in Blaauw Remote Kiln Control through v3.00r4 allows a user to extract arbitrary data from the rkc database.

    Published: 7 May 2020
    7.5
    High

    CVE-2019-18864

    Last Modified: 21 Nov 2024

    /server-info and /server-status in Blaauw Remote Kiln Control through v3.00r4 allow an unauthenticated attacker to gain sensitive information about the host machine.

    Published: 7 May 2020
    7.5
    High

    CVE-2019-18867

    Last Modified: 21 Nov 2024

    Browsable directories in Blaauw Remote Kiln Control through v3.00r4 allow an attacker to enumerate sensitive filenames and locations, including source code. This affects /ajax/, /common/, /engine/, /flash/, /images/, /Images/, /jscripts/, /lang/, /layout/, /programs/, and /sms/.

    Published: 7 May 2020
    9.8
    Critical

    CVE-2019-18868

    Last Modified: 21 Nov 2024

    Blaauw Remote Kiln Control through v3.00r4 allows an unauthenticated attacker to access MySQL credentials in cleartext in /engine/db.inc, /lang/nl.bak, or /lang/en.bak.

    Published: 7 May 2020
    5.3
    Medium

    CVE-2019-18865

    Last Modified: 21 Nov 2024

    Information disclosure via error message discrepancies in authentication functions in Blaauw Remote Kiln Control through v3.00r4 allows an unauthenticated attacker to enumerate valid usernames.

    Published: 7 May 2020
    7.5
    High

    CVE-2018-5493

    Last Modified: 21 Nov 2024

    ATTO FibreBridge 7500N firmware versions prior to 2.90 are susceptible to a vulnerability which allows an unauthenticated remote attacker to cause Denial of Service (DoS).

    Published: 7 May 2020
    7.8
    High

    CVE-2020-5895

    Last Modified: 21 Nov 2024

    On NGINX Controller versions 3.1.0-3.3.0, AVRD uses world-readable and world-writable permissions on its socket, which allows processes or users on the local system to write arbitrary data into the socket. A local system attacker can make AVRD segmentation fault (SIGSEGV) by writing malformed messages to the socket.

    Published: 7 May 2020
    8.1
    High

    CVE-2020-5894

    Last Modified: 21 Nov 2024

    On versions 3.0.0-3.3.0, the NGINX Controller webserver does not invalidate the server-side session token after users log out.

    Published: 7 May 2020
    8.8
    High

    CVE-2020-6081

    Last Modified: 21 Nov 2024

    An exploitable code execution vulnerability exists in the PLC_Task functionality of 3S-Smart Software Solutions GmbH CODESYS Runtime 3.5.14.30. A specially crafted network request can cause remote code execution. An attacker can send a malicious packet to trigger this vulnerability.

    Published: 7 May 2020
    6.1
    Medium

    CVE-2020-12696

    Last Modified: 21 Nov 2024

    The iframe plugin before 4.5 for WordPress does not sanitize a URL.

    Published: 7 May 2020
    6.3
    Medium

    CVE-2020-10737

    Last Modified: 21 Nov 2024

    A race condition was found in the mkhomedir tool shipped with the oddjob package in versions before 0.34.5 and 0.34.6 wherein, during the home creation, mkhomedir copies the /etc/skel directory into the newly created home and changes its ownership to the home's user without properly checking the homedir path. This flaw allows an attacker to leverage this issue by creating a symlink point to a target folder, which then has its ownership transferred to the new home directory's unprivileged user.

    Published: 7 May 2020
    4.3
    Medium

    CVE-2020-15011

    Last Modified: 21 Nov 2024

    GNU Mailman before 2.1.33 allows arbitrary content injection via the Cgi/private.py private archive login page.

    Published: 7 May 2020
    7.8
    High

    CVE-2020-0110

    Last Modified: 21 Nov 2024

    In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-148159562References: Upstream kernel

    Published: 7 May 2020
    9
    Critical

    CVE-2020-11050

    Last Modified: 21 Nov 2024

    In Java-WebSocket less than or equal to 1.4.1, there is an Improper Validation of Certificate with Host Mismatch where WebSocketClient does not perform SSL hostname validation. This has been patched in 1.5.0.

    Published: 7 May 2020
    3.2
    Low

    CVE-2020-13362

    Last Modified: 21 Nov 2024

    In QEMU 5.0.0 and earlier, megasas_lookup_frame in hw/scsi/megasas.c has an out-of-bounds read via a crafted reply_queue_head field from a guest OS user.

    Published: 7 May 2020
    4.3
    Medium

    CVE-2020-1724

    Last Modified: 21 Nov 2024

    A flaw was found in Keycloak in versions before 9.0.2. This flaw allows a malicious user that is currently logged in, to see the personal information of a previously logged out user in the account manager section.

    Published: 7 May 2020
    6.5
    Medium

    CVE-2020-29373

    Last Modified: 21 Nov 2024

    An issue was discovered in fs/io_uring.c in the Linux kernel before 5.6. It unsafely handles the root directory during path lookups, and thus a process inside a mount namespace can escape to unintended filesystem locations, aka CID-ff002b30181d.

    Published: 7 May 2020
    —
    Unknown

    CVE-2020-12678

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-12677. Reason: This candidate is a reservation duplicate of CVE-2020-12677. Notes: All CVE users should reference CVE-2020-12677 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 6 May 2020
    8.8
    High

    CVE-2020-12669

    Last Modified: 21 Nov 2024

    core/get_menudiv.php in Dolibarr before 11.0.4 allows remote authenticated attackers to bypass intended access restrictions via a non-alphanumeric menu parameter.

    Published: 6 May 2020
    6.1
    Medium

    CVE-2020-11727

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in the AlgolPlus Advanced Order Export For WooCommerce plugin 3.1.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via the view/settings-form.php woe_post_type parameter.

    Published: 6 May 2020
    4.9
    Medium

    CVE-2020-3308

    Last Modified: 11 Aug 2026

    A vulnerability in the Image Signature Verification feature of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker with administrator-level credentials to install a malicious software patch on an affected device. The vulnerability is due to improper verification of digital signatures for patch images. An attacker could exploit this vulnerability by crafting an unsigned software patch to bypass signature checks and loading it on an affected device. A successful exploit could allow the attacker to boot a malicious software patch image.

    Published: 6 May 2020
    5.3
    Medium

    CVE-2020-3307

    Last Modified: 26 Nov 2024

    A vulnerability in the web UI of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to write arbitrary entries to the log file on an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to send incorrect information to the system log on the affected system.

    Published: 6 May 2020
    7.5
    High

    CVE-2020-3306

    Last Modified: 11 Aug 2026

    A vulnerability in the DHCP module of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the affected device. The vulnerability is due to incorrect processing of certain DHCP packets. An attacker could exploit this vulnerability by sending a crafted DHCP packet to the affected device. A successful exploit could allow the attacker to cause a DoS condition on the affected device.

    Published: 6 May 2020
    7.5
    High

    CVE-2020-3305

    Last Modified: 11 Aug 2026

    A vulnerability in the implementation of the Border Gateway Protocol (BGP) module in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain BGP packets. An attacker could exploit this vulnerability by sending a crafted BGP packet. A successful exploit could allow the attacker to cause a DoS condition on the affected device.

    Published: 6 May 2020
    7.5
    High

    CVE-2020-3303

    Last Modified: 11 Aug 2026

    A vulnerability in the Internet Key Exchange version 1 (IKEv1) feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper management of system memory. An attacker could exploit this vulnerability by sending malicious IKEv1 traffic to an affected device. A successful exploit could allow the attacker to cause a DoS condition on the affected device.

    Published: 6 May 2020
    8.1
    High

    CVE-2020-3302

    Last Modified: 26 Nov 2024

    A vulnerability in the web UI of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to overwrite files on the file system of an affected device. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by uploading a crafted file to the web UI on an affected device. A successful exploit could allow the attacker to overwrite files on the file system of the affected device.

    Published: 6 May 2020
    4.4
    Medium

    CVE-2020-3301

    Last Modified: 26 Nov 2024

    Multiple vulnerabilities in Cisco Firepower Management Center (FMC) Software and Cisco Firepower User Agent Software could allow an attacker to access a sensitive part of an affected system with a high-privileged account. For more information about these vulnerabilities, see the Details section of this advisory.

    Published: 6 May 2020
    7.5
    High

    CVE-2020-3298

    Last Modified: 11 Aug 2026

    A vulnerability in the Open Shortest Path First (OSPF) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to improper memory protection mechanisms while processing certain OSPF packets. An attacker could exploit this vulnerability by sending a series of malformed OSPF packets in a short period of time to an affected device. A successful exploit could allow the attacker to cause a reload of the affected device, resulting in a DoS condition for client traffic that is traversing the device.

    Published: 6 May 2020
    5.8
    Medium

    CVE-2020-3285

    Last Modified: 11 Aug 2026

    A vulnerability in the Transport Layer Security version 1.3 (TLS 1.3) policy with URL category functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured TLS 1.3 policy to block traffic for a specific URL. The vulnerability is due to a logic error with Snort handling of the connection with the TLS 1.3 policy and URL category configuration. An attacker could exploit this vulnerability by sending crafted TLS 1.3 connections to an affected device. A successful exploit could allow the attacker to bypass the TLS 1.3 policy and access URLs that are outside the affected device and normally would be dropped.

    Published: 6 May 2020
    8.6
    High

    CVE-2020-3283

    Last Modified: 11 Aug 2026

    A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Firepower Threat Defense (FTD) Software when running on the Cisco Firepower 1000 Series platform could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to a communication error between internal functions. An attacker could exploit this vulnerability by sending a crafted SSL/TLS message to an affected device. A successful exploit could allow the attacker to cause a buffer underrun, which leads to a crash. The crash causes the affected device to reload.

    Published: 6 May 2020
    7.5
    High

    CVE-2020-3259

    Last Modified: 11 Aug 2026

    A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to retrieve memory contents on an affected device, which could lead to the disclosure of confidential information. The vulnerability is due to a buffer tracking issue when the software parses invalid URLs that are requested from the web services interface. An attacker could exploit this vulnerability by sending a crafted GET request to the web services interface. A successful exploit could allow the attacker to retrieve memory contents, which could lead to the disclosure of confidential information. Note: This vulnerability affects only specific AnyConnect and WebVPN configurations. For more information, see the Vulnerable Products section.

    Published: 6 May 2020
    4.9
    Medium

    CVE-2020-3256

    Last Modified: 21 Nov 2024

    A vulnerability in the web-based management interface of Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) Software could allow an authenticated, remote attacker to gain read access to information that is stored on an affected system. To exploit this vulnerability, an attacker would need administrative privileges on the Cisco HCM-F Software. The vulnerability is due to improper handling of XML External Entity (XXE) entries when parsing certain XML files. An attacker could exploit this vulnerability by sending malicious requests that contain references in XML entities to an affected system. A successful exploit could allow the attacker to retrieve files from the local system, resulting in the disclosure of sensitive information.

    Published: 6 May 2020