CVE Feed

    Dashboard / CVE

    9.8
    Critical

    CVE-2020-10886

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1750 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the tmpServer service, which listens on TCP port 20002. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-9662.

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-10885

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1750 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of DNS responses. The issue results from the lack of proper validation of DNS reponses prior to further processing. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of the root user. Was ZDI-CAN-9661.

    Published: 25 Mar 2020
    8.8
    High

    CVE-2020-10884

    Last Modified: 21 Nov 2024

    This vulnerability allows network-adjacent attackers execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1750 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the tdpServer service, which listens on UDP port 20002 by default. This issue results from the use of hard-coded encryption key. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of root. Was ZDI-CAN-9652.

    Published: 25 Mar 2020
    7.8
    High

    CVE-2020-10883

    Last Modified: 21 Nov 2024

    This vulnerability allows local attackers to escalate privileges on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1750 routers. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the file system. The issue lies in the lack of proper permissions set on the file system. An attacker can leverage this vulnerability to escalate privileges. Was ZDI-CAN-9651.

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-10881

    Last Modified: 21 Nov 2024

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1750 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of DNS responses. A crafted DNS message can trigger an overflow of a fixed-length, stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the root user. Was ZDI-CAN-9660.

    Published: 25 Mar 2020
    8.8
    High

    CVE-2020-10882

    Last Modified: 21 Nov 2024

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1750 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the tdpServer service, which listens on UDP port 20002 by default. When parsing the slave_mac parameter, the process does not properly validate a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of the root user. Was ZDI-CAN-9650.

    Published: 25 Mar 2020
    5.9
    Medium

    CVE-2020-3808

    Last Modified: 21 Nov 2024

    Creative Cloud Desktop Application versions 5.0 and earlier have a time-of-check to time-of-use (toctou) race condition vulnerability. Successful exploitation could lead to arbitrary file deletion.

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-3794

    Last Modified: 21 Nov 2024

    ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a file inclusion vulnerability. Successful exploitation could lead to arbitrary code execution of files located in the webroot or its subdirectory.

    Published: 25 Mar 2020
    7.5
    High

    CVE-2020-3761

    Last Modified: 21 Nov 2024

    ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a remote file read vulnerability. Successful exploitation could lead to arbitrary file read from the coldfusion install directory.

    Published: 25 Mar 2020
    7.8
    High

    CVE-2020-9552

    Last Modified: 21 Nov 2024

    Adobe Bridge versions 10.0 have a heap-based buffer overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 25 Mar 2020
    7.8
    High

    CVE-2020-9551

    Last Modified: 21 Nov 2024

    Adobe Bridge versions 10.0 have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 25 Mar 2020
    7.5
    High

    CVE-2020-3769

    Last Modified: 21 Nov 2024

    Adobe Experience Manager versions 6.5 and earlier have a server-side request forgery (ssrf) vulnerability. Successful exploitation could lead to sensitive information disclosure.

    Published: 25 Mar 2020
    4.1
    Medium

    CVE-2020-5277

    Last Modified: 21 Nov 2024

    PrestaShop module ps_facetedsearch versions before 3.5.0 has a reflected XSS with `url_name` parameter. The problem is fixed in 3.5.0

    Published: 25 Mar 2020
    7.2
    High

    CVE-2020-5282

    Last Modified: 21 Nov 2024

    In Nick Chan Bot before version 1.0.0-beta there is a vulnerability in the `npm` command which is part of this software package. This allows arbitrary shell execution,which can compromise the bot This is patched in version 1.0.0-beta

    Published: 25 Mar 2020
    6.2
    Medium

    CVE-2020-5281

    Last Modified: 21 Nov 2024

    In Perun before version 3.9.1, VO or group manager can modify configuration of the LDAP extSource to retrieve all from Perun LDAP. Issue is fixed in version 3.9.1 by sanitisation of the input.

    Published: 25 Mar 2020
    8.6
    High

    CVE-2020-1764

    Last Modified: 21 Nov 2024

    A hard-coded cryptographic key vulnerability in the default configuration file was found in Kiali, all versions prior to 1.15.1. A remote attacker could abuse this flaw by creating their own JWT signed tokens and bypass Kiali authentication mechanisms, possibly gaining privileges to view and alter the Istio configuration.

    Published: 25 Mar 2020
    7
    High

    CVE-2020-1762

    Last Modified: 21 Nov 2024

    An insufficient JWT validation vulnerability was found in Kiali versions 0.4.0 to 1.15.0 and was fixed in Kiali version 1.15.1, wherein a remote attacker could abuse this flaw by stealing a valid JWT cookie and using that to spoof a user session, possibly gaining privileges to view and alter the Istio configuration.

    Published: 25 Mar 2020
    7.6
    High

    CVE-2020-5280

    Last Modified: 21 Nov 2024

    http4s before versions 0.18.26, 0.20.20, and 0.21.2 has a local file inclusion vulnerability. This vulnerability applies to all users of org.http4s.server.staticcontent.FileService, org.http4s.server.staticcontent.ResourceService and org.http4s.server.staticcontent.WebjarService. URI normalization is applied incorrectly. Requests whose path info contain ../ or // can expose resources outside of the configured location. This issue is patched in versions 0.18.26, 0.20.20, and 0.21.2. Note that 0.19.0 is a deprecated release and has never been supported.

    Published: 25 Mar 2020
    7.8
    High

    CVE-2020-3766

    Last Modified: 21 Nov 2024

    Adobe Genuine Integrity Service versions Version 6.4 and earlier have an insecure file permissions vulnerability. Successful exploitation could lead to privilege escalation.

    Published: 25 Mar 2020
    7.8
    High

    CVE-2020-3803

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-3807

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a buffer overflow vulnerability. Successful exploitation could lead to arbitrary code execution .

    Published: 25 Mar 2020
    7.5
    High

    CVE-2020-3804

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .

    Published: 25 Mar 2020
    7.5
    High

    CVE-2020-3806

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .

    Published: 25 Mar 2020
    8.8
    High

    CVE-2020-3802

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution .

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-3805

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution .

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-3801

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution .

    Published: 25 Mar 2020
    7.5
    High

    CVE-2020-3800

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a memory address leak vulnerability. Successful exploitation could lead to information disclosure .

    Published: 25 Mar 2020
    4.3
    Medium

    CVE-2019-18626

    Last Modified: 21 Nov 2024

    Harris Ormed Self Service before 2019.1.4 allows an authenticated user to view W-2 forms belonging to other users via an arbitrary empNo value to the ORMEDMIS/Data/PY/T4W2Service.svc/RetrieveW2EntriesForEmployee URI, thus exposing sensitive information including employee tax information, social security numbers, home addresses, and more.

    Published: 25 Mar 2020
    7.2
    High

    CVE-2019-7630

    Last Modified: 21 Nov 2024

    An issue was discovered in gdrv.sys in Gigabyte APP Center before 19.0227.1. The vulnerable driver exposes a wrmsr instruction via IOCTL 0xC3502580 and does not properly filter the target Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.

    Published: 25 Mar 2020
    7.2
    High

    CVE-2019-7244

    Last Modified: 21 Nov 2024

    An issue was discovered in kerneld.sys in AIDA64 before 5.99. The vulnerable driver exposes a wrmsr instruction via IOCTL 0x80112084 and does not properly filter the Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.

    Published: 25 Mar 2020
    7.2
    High

    CVE-2019-7240

    Last Modified: 21 Nov 2024

    An issue was discovered in WinRing0x64.sys in Moo0 System Monitor 1.83. The vulnerable driver exposes a wrmsr instruction via IOCTL 0x9C402088 and does not properly filter the Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.

    Published: 25 Mar 2020
    7.2
    High

    CVE-2019-7245

    Last Modified: 21 Nov 2024

    An issue was discovered in GPU-Z.sys in TechPowerUp GPU-Z before 2.23.0. The vulnerable driver exposes a wrmsr instruction via an IOCTL and does not properly filter the Model Specific Register (MSR). Allowing arbitrary MSR writes can lead to Ring-0 code execution and escalation of privileges.

    Published: 25 Mar 2020
    7.8
    High

    CVE-2020-10649

    Last Modified: 21 Nov 2024

    DevActSvc.exe in ASUS Device Activation before 1.0.7.0 for Windows 10 notebooks and PCs could lead to unsigned code execution with no additional restrictions when a user puts an application at a particular path with a particular file name.

    Published: 25 Mar 2020
    8.8
    High

    CVE-2020-2171

    Last Modified: 21 Nov 2024

    Jenkins RapidDeploy Plugin 4.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.

    Published: 25 Mar 2020
    5.4
    Medium

    CVE-2020-2170

    Last Modified: 21 Nov 2024

    Jenkins RapidDeploy Plugin 4.2 and earlier does not escape package names in the table of packages obtained from a remote server, resulting in a stored XSS vulnerability.

    Published: 25 Mar 2020
    6.1
    Medium

    CVE-2020-2169

    Last Modified: 21 Nov 2024

    A form validation endpoint in Jenkins Queue cleanup Plugin 1.3 and earlier does not properly escape a query parameter displayed in an error message, resulting in a reflected XSS vulnerability.

    Published: 25 Mar 2020
    8.8
    High

    CVE-2020-2166

    Last Modified: 21 Nov 2024

    Jenkins Pipeline: AWS Steps Plugin 1.40 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.

    Published: 25 Mar 2020
    8.8
    High

    CVE-2020-2168

    Last Modified: 21 Nov 2024

    Jenkins Azure Container Service Plugin 1.0.1 and earlier does not configure its YAML parser to prevent the instantiation of arbitrary types, resulting in a remote code execution vulnerability.

    Published: 25 Mar 2020
    7.5
    High

    CVE-2020-2165

    Last Modified: 21 Nov 2024

    Jenkins Artifactory Plugin 3.6.0 and earlier transmits configured passwords in plain text as part of its global Jenkins configuration form, potentially resulting in their exposure.

    Published: 25 Mar 2020
    6.5
    Medium

    CVE-2020-2164

    Last Modified: 21 Nov 2024

    Jenkins Artifactory Plugin 3.5.0 and earlier stores its Artifactory server password unencrypted in its global configuration file on the Jenkins master where it can be viewed by users with access to the master file system.

    Published: 25 Mar 2020
    5.4
    Medium

    CVE-2020-2163

    Last Modified: 21 Nov 2024

    Jenkins 2.227 and earlier, LTS 2.204.5 and earlier improperly processes HTML content of list view column headers, resulting in a stored XSS vulnerability exploitable by users able to control column headers.

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-3797

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution .

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-3799

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a stack-based buffer overflow vulnerability. Successful exploitation could lead to arbitrary code execution .

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-3795

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution .

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-3793

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution .

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-3792

    Last Modified: 21 Nov 2024

    Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have a use-after-free vulnerability. Successful exploitation could lead to arbitrary code execution .

    Published: 25 Mar 2020
    8.1
    High

    CVE-2019-19127

    Last Modified: 21 Nov 2024

    An authentication bypass vulnerability is present in the standalone SITS:Vision 9.7.0 component of Tribal SITS in its default configuration, related to unencrypted communications sent by the client each time it is launched. This occurs because the Uniface TLS Driver is not enabled by default. This vulnerability allows attackers to gain access to credentials or execute arbitrary SQL queries on the SITS backend as long as they have access to the client executable or can intercept traffic from a user who does.

    Published: 25 Mar 2020
    7.5
    High

    CVE-2020-9375

    Last Modified: 5 Mar 2026

    TP-Link Archer C50 V3 devices before Build 200318 Rel. 62209 allows remote attackers to cause a denial of service via a crafted HTTP Header containing an unexpected Referer field.

    Published: 25 Mar 2020
    9.1
    Critical

    CVE-2020-10788

    Last Modified: 21 Nov 2024

    openITCOCKPIT before 3.7.3 uses the 1fea123e07f730f76e661bced33a94152378611e API key rather than generating a random API Key for WebSocket connections.

    Published: 25 Mar 2020
    9.8
    Critical

    CVE-2020-10789

    Last Modified: 21 Nov 2024

    openITCOCKPIT before 3.7.3 has a web-based terminal that allows attackers to execute arbitrary OS commands via shell metacharacters that are mishandled on an su command line in app/Lib/SudoMessageInterface.php.

    Published: 25 Mar 2020