CVE Feed

    Dashboard / CVE

    4.8
    Medium

    CVE-2017-18821

    Last Modified: 21 Nov 2024

    Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.

    Published: 21 Apr 2020
    7.5
    High

    CVE-2020-11828

    Last Modified: 21 Nov 2024

    In ColorOS (oppo mobile phone operating system, based on AOSP frameworks/native code position/services/surfaceflinger surfaceflinger.CPP), RGB is defined on the stack but uninitialized, so when the screenShot function to RGB value assignment, will not initialize the value is returned to the attackers, leading to values on the stack information leakage, the vulnerability can be used to bypass attackers ALSR.

    Published: 21 Apr 2020
    —
    Unknown

    CVE-2020-8842

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 21 Apr 2020
    9.8
    Critical

    CVE-2020-11967

    Last Modified: 21 Nov 2024

    In IQrouter through 3.3.1, remote attackers can control the device (restart network, reboot, upgrade, reset) because of Incorrect Access Control. Note: The vendor claims that this vulnerability can only occur on a brand-new network that, after initiating the forced initial configuration (which has a required step for setting a secure password on the system), makes this CVE invalid. This vulnerability is “true for any unconfigured release of OpenWRT, and true of many other new Linux distros prior to being configured for the first time”

    Published: 21 Apr 2020
    7.5
    High

    CVE-2020-11968

    Last Modified: 21 Nov 2024

    In the web-panel in IQrouter through 3.3.1, remote attackers can read system logs because of Incorrect Access Control. Note: The vendor claims that this vulnerability can only occur on a brand-new network that, after initiating the forced initial configuration (which has a required step for setting a secure password on the system), makes this CVE invalid. This vulnerability is “true for any unconfigured release of OpenWRT, and true of many other new Linux distros prior to being configured for the first time”

    Published: 21 Apr 2020
    9.8
    Critical

    CVE-2020-11966

    Last Modified: 21 Nov 2024

    In IQrouter through 3.3.1, the Lua function reset_password in the web-panel allows remote attackers to change the root password arbitrarily. Note: The vendor claims that this vulnerability can only occur on a brand-new network that, after initiating the forced initial configuration (which has a required step for setting a secure password on the system), makes this CVE invalid. This vulnerability is “true for any unconfigured release of OpenWRT, and true of many other new Linux distros prior to being configured for the first time”

    Published: 21 Apr 2020
    9.8
    Critical

    CVE-2020-11965

    Last Modified: 21 Nov 2024

    In IQrouter through 3.3.1, there is a root user without a password, which allows attackers to gain full remote access via SSH. Note: The vendor claims that this vulnerability can only occur on a brand-new network that, after initiating the forced initial configuration (which has a required step for setting a secure password on the system), makes this CVE invalid. This vulnerability is “true for any unconfigured release of OpenWRT, and true of many other new Linux distros prior to being configured for the first time”

    Published: 21 Apr 2020
    7.5
    High

    CVE-2020-11964

    Last Modified: 21 Nov 2024

    In IQrouter through 3.3.1, the Lua function diag_set_password in the web-panel allows remote attackers to change the root password arbitrarily. Note: The vendor claims that this vulnerability can only occur on a brand-new network that, after initiating the forced initial configuration (which has a required step for setting a secure password on the system), makes this CVE invalid. This vulnerability is “true for any unconfigured release of OpenWRT, and true of many other new Linux distros prior to being configured for the first time”

    Published: 21 Apr 2020
    9.8
    Critical

    CVE-2020-11963

    Last Modified: 21 Nov 2024

    IQrouter through 3.3.1, when unconfigured, has multiple remote code execution vulnerabilities in the web-panel because of Bash Shell Metacharacter Injection. Note: The vendor claims that this vulnerability can only occur on a brand-new network that, after initiating the forced initial configuration (which has a required step for setting a secure password on the system), makes this CVE invalid. This vulnerability is “true for any unconfigured release of OpenWRT, and true of many other new Linux distros prior to being configured for the first time”

    Published: 21 Apr 2020
    7.1
    High

    CVE-2020-8099

    Last Modified: 21 Nov 2024

    A vulnerability in the improper handling of junctions in Bitdefender Antivirus Free can allow an unprivileged user to substitute a quarantined file, and restore it to a privileged location. This issue affects: Bitdefender Antivirus Free versions prior to 1.0.17.

    Published: 21 Apr 2020
    7.5
    High

    CVE-2020-1967

    Last Modified: 21 Nov 2024

    Server or client applications that call the SSL_check_chain() function during or after a TLS 1.3 handshake may crash due to a NULL pointer dereference as a result of incorrect handling of the "signature_algorithms_cert" TLS extension. The crash occurs if an invalid or unrecognised signature algorithm is received from the peer. This could be exploited by a malicious peer in a Denial of Service attack. OpenSSL version 1.1.1d, 1.1.1e, and 1.1.1f are affected by this issue. This issue did not affect OpenSSL versions prior to 1.1.1d. Fixed in OpenSSL 1.1.1g (Affected 1.1.1d-1.1.1f).

    Published: 21 Apr 2020
    7
    High

    CVE-2020-10712

    Last Modified: 21 Nov 2024

    A flaw was found in OpenShift Container Platform version 4.1 and later. Sensitive information was found to be logged by the image registry operator allowing an attacker able to gain access to those logs, to read and write to the storage backing the internal image registry. The highest threat from this vulnerability is to data integrity.

    Published: 21 Apr 2020
    5.5
    Medium

    CVE-2020-36310

    Last Modified: 21 Nov 2024

    An issue was discovered in the Linux kernel before 5.8. arch/x86/kvm/svm/svm.c allows a set_memory_region_test infinite loop for certain nested page faults, aka CID-e72436bc3a52.

    Published: 21 Apr 2020
    8.8
    High

    CVE-2020-6458

    Last Modified: 21 Nov 2024

    Out of bounds read and write in PDFium in Google Chrome prior to 81.0.4044.122 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.

    Published: 21 Apr 2020
    8.8
    High

    CVE-2020-6459

    Last Modified: 21 Nov 2024

    Use after free in payments in Google Chrome prior to 81.0.4044.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 21 Apr 2020
    6.5
    Medium

    CVE-2020-6460

    Last Modified: 21 Nov 2024

    Insufficient data validation in URL formatting in Google Chrome prior to 81.0.4044.122 allowed a remote attacker to perform domain spoofing via a crafted domain name.

    Published: 21 Apr 2020
    8.8
    High

    CVE-2020-6463

    Last Modified: 21 Nov 2024

    Use after free in ANGLE in Google Chrome prior to 81.0.4044.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published: 21 Apr 2020
    9.8
    Critical

    CVE-2020-9279

    Last Modified: 21 Nov 2024

    An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. A hard-coded account allows management-interface login with high privileges. The logged-in user can perform critical tasks and take full control of the device.

    Published: 20 Apr 2020
    9.1
    Critical

    CVE-2020-9278

    Last Modified: 21 Nov 2024

    An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. The device can be reset to its default configuration by accessing an unauthenticated URL.

    Published: 20 Apr 2020
    9.8
    Critical

    CVE-2020-9277

    Last Modified: 21 Nov 2024

    An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. Authentication can be bypassed when accessing cgi modules. This allows one to perform administrative tasks (e.g., modify the admin password) with no authentication.

    Published: 20 Apr 2020
    8.8
    High

    CVE-2020-9276

    Last Modified: 21 Nov 2024

    An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. The function do_cgi(), which processes cgi requests supplied to the device's web servers, is vulnerable to a remotely exploitable stack-based buffer overflow. Unauthenticated exploitation is possible by combining this vulnerability with CVE-2020-9277.

    Published: 20 Apr 2020
    9.8
    Critical

    CVE-2020-9275

    Last Modified: 21 Nov 2024

    An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. A cfm UDP service listening on port 65002 allows remote, unauthenticated exfiltration of administrative credentials.

    Published: 20 Apr 2020
    6.3
    Medium

    CVE-2020-11010

    Last Modified: 21 Nov 2024

    In Tortoise ORM before versions 0.15.23 and 0.16.6, various forms of SQL injection have been found for MySQL and when filtering or doing mass-updates on char/text fields. SQLite & PostgreSQL are only affected when filtering with contains, starts_with, or ends_with filters (and their case-insensitive counterparts).

    Published: 20 Apr 2020
    6.1
    Medium

    CVE-2020-11944

    Last Modified: 21 Nov 2024

    Abe (aka bitcoin-abe) through 0.7.2, and 0.8pre, allows XSS in __call__ in abe.py because the PATH_INFO environment variable is mishandled during a PageNotFound exception.

    Published: 20 Apr 2020
    9.4
    Critical

    CVE-2019-19108

    Last Modified: 21 Nov 2024

    An authentication weakness in the SNMP service in B&R Automation Runtime versions 2.96, 3.00, 3.01, 3.06 to 3.10, 4.00 to 4.63, 4.72 and above allows unauthenticated users to modify the configuration of B&R products via SNMP.

    Published: 20 Apr 2020
    7.5
    High

    CVE-2020-11946

    Last Modified: 21 Nov 2024

    Zoho ManageEngine OpManager before 125120 allows an unauthenticated user to retrieve an API key via a servlet call.

    Published: 20 Apr 2020
    6.1
    Medium

    CVE-2020-9445

    Last Modified: 21 Nov 2024

    Zulip Server before 2.1.3 allows XSS via the modal_link feature in the Markdown functionality.

    Published: 20 Apr 2020
    6.1
    Medium

    CVE-2020-9444

    Last Modified: 21 Nov 2024

    Zulip Server before 2.1.3 allows reverse tabnabbing via the Markdown functionality.

    Published: 20 Apr 2020
    5.4
    Medium

    CVE-2020-10935

    Last Modified: 21 Nov 2024

    Zulip Server before 2.1.3 allows XSS via a Markdown link, with resultant account takeover.

    Published: 20 Apr 2020
    5.3
    Medium

    CVE-2020-1803

    Last Modified: 21 Nov 2024

    Huawei smartphones Honor V20 with versions earlier than 10.0.0.179(C636E3R4P3),versions earlier than 10.0.0.180(C185E3R3P3),versions earlier than 10.0.0.180(C432E10R3P4) have an information disclosure vulnerability. The device does not sufficiently validate the identity of smart wearable device in certain specific scenario, the attacker need to gain certain information in the victim's smartphone to launch the attack, successful exploit could cause information disclosure.

    Published: 20 Apr 2020
    5.5
    Medium

    CVE-2020-9070

    Last Modified: 21 Nov 2024

    Huawei smartphones Taurus-AL00B with versions earlier than 10.0.0.205(C00E201R7P2) have an improper authentication vulnerability. The software insufficiently validate the user's identity when a user wants to do certain operation. An attacker can trick user into installing a malicious application to exploit this vulnerability. Successful exploit may cause some information disclosure.

    Published: 20 Apr 2020
    —
    Unknown

    CVE-2019-10148

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-12779. Reason: This candidate is a reservation duplicate of CVE-2019-12779. Notes: All CVE users should reference CVE- CVE-2019-12779 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 20 Apr 2020
    7.5
    High

    CVE-2020-3946

    Last Modified: 21 Nov 2024

    InstallBuilder AutoUpdate tool and regular installers enabling <checkForUpdates> built with versions earlier than 19.11 are vulnerable to Billion laughs attack (denial-of-service).

    Published: 20 Apr 2020
    8.8
    High

    CVE-2020-11753

    Last Modified: 22 Sept 2026

    An issue was discovered in Sonatype Nexus Repository Manager in versions 3.21.1 and 3.22.0. It is possible for a user with appropriate privileges to create, modify, and execute scripting tasks without use of the UI or API. NOTE: in 3.22.0, scripting is disabled by default (making this not exploitable).

    Published: 20 Apr 2020
    4
    Medium

    CVE-2020-11008

    Last Modified: 21 Nov 2024

    Affected versions of Git have a vulnerability whereby Git can be tricked into sending private credentials to a host controlled by an attacker. This bug is similar to CVE-2020-5260(GHSA-qm7j-c969-7j4q). The fix for that bug still left the door open for an exploit where _some_ credential is leaked (but the attacker cannot control which one). Git uses external "credential helper" programs to store and retrieve passwords or other credentials from secure storage provided by the operating system. Specially-crafted URLs that are considered illegal as of the recently published Git versions can cause Git to send a "blank" pattern to helpers, missing hostname and protocol fields. Many helpers will interpret this as matching _any_ URL, and will return some unspecified stored password, leaking the password to an attacker's server. The vulnerability can be triggered by feeding a malicious URL to `git clone`. However, the affected URLs look rather suspicious; the likely vector would be through systems which automatically clone URLs not visible to the user, such as Git submodules, or package systems built around Git. The root of the problem is in Git itself, which should not be feeding blank input to helpers. However, the ability to exploit the vulnerability in practice depends on which helpers are in use. Credential helpers which are known to trigger the vulnerability: - Git's "store" helper - Git's "cache" helper - the "osxkeychain" helper that ships in Git's "contrib" directory Credential helpers which are known to be safe even with vulnerable versions of Git: - Git Credential Manager for Windows Any helper not in this list should be assumed to trigger the vulnerability.

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5286

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.7.4.0 and 1.7.6.5, there is a reflected XSS when uploading a wrong file. The problem is fixed in 1.7.6.5

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5287

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.5.5.0 and 1.7.6.5, there is improper access control on customers search. The problem is fixed in 1.7.6.5.

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5288

    Last Modified: 21 Nov 2024

    "In PrestaShop between versions 1.7.0.0 and 1.7.6.5, there is improper access controls on product attributes page. The problem is fixed in 1.7.6.5.

    Published: 20 Apr 2020
    6.5
    Medium

    CVE-2020-5293

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.7.0.0 and 1.7.6.5, there are improper access controls on product page with combinations, attachments and specific prices. The problem is fixed in 1.7.6.5.

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5271

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.6.0.0 and 1.7.6.5, there is a reflected XSS with `date_from` and `date_to` parameters in the dashboard page This problem is fixed in 1.7.6.5

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5272

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.5.5.0 and 1.7.6.5, there is a reflected XSS on Search page with `alias` and `search` parameters. The problem is patched in 1.7.6.5

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5276

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.7.1.0 and 1.7.6.5, there is a reflected XSS on AdminCarts page with `cartBox` parameter The problem is fixed in 1.7.6.5

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5278

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.5.4.0 and 1.7.6.5, there is a reflected XSS on Exception page The problem is fixed in 1.7.6.5

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5279

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.5.0.0 and 1.7.6.5, there are improper access control since the the version 1.5.0.0 for legacy controllers. - admin-dev/index.php/configure/shop/customer-preferences/ - admin-dev/index.php/improve/international/translations/ - admin-dev/index.php/improve/international/geolocation/ - admin-dev/index.php/improve/international/localization - admin-dev/index.php/configure/advanced/performance - admin-dev/index.php/sell/orders/delivery-slips/ - admin-dev/index.php?controller=AdminStatuses The problem is fixed in 1.7.6.5

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5285

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.7.6.0 and 1.7.6.5, there is a reflected XSS with `back` parameter. The problem is fixed in 1.7.6.5

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5269

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.7.6.1 and 1.7.6.5, there is a reflected XSS on AdminFeatures page by using the `id_feature` parameter. The problem is fixed in 1.7.6.5

    Published: 20 Apr 2020
    4.1
    Medium

    CVE-2020-5270

    Last Modified: 21 Nov 2024

    In PrestaShop between versions 1.7.6.0 and 1.7.6.5, there is an open redirection when using back parameter. The impacts can be many, and vary from the theft of information and credentials to the redirection to malicious websites containing attacker-controlled content, which in some cases even cause XSS attacks. So even though an open redirection might sound harmless at first, the impacts of it can be severe should it be exploitable. The problem is fixed in 1.7.6.5

    Published: 20 Apr 2020
    7.8
    High

    CVE-2017-18822

    Last Modified: 21 Nov 2024

    Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.

    Published: 20 Apr 2020
    5.5
    Medium

    CVE-2017-18823

    Last Modified: 21 Nov 2024

    Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.

    Published: 20 Apr 2020
    3.3
    Low

    CVE-2017-18824

    Last Modified: 21 Nov 2024

    Certain NETGEAR devices are affected by directory traversal. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.

    Published: 20 Apr 2020