CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2020-4162

    Last Modified: 21 Nov 2024

    IBM InfoSphere Information Server 11.5 and 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 174342.

    Published: 10 Mar 2020
    5.4
    Medium

    CVE-2019-4608

    Last Modified: 21 Nov 2024

    IBM Tivoli Workload Scheduler 9.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 168508.

    Published: 10 Mar 2020
    5.6
    Medium

    CVE-2020-0551

    Last Modified: 21 Nov 2024

    Load value injection in some Intel(R) Processors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. The list of affected products is provided in intel-sa-00334: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00334.html

    Published: 10 Mar 2020
    9.8
    Critical

    CVE-2020-10534

    Last Modified: 21 Nov 2024

    In the GlobalBlocking extension before 2020-03-10 for MediaWiki through 1.34.0, an issue related to IP range evaluation resulted in blocked users re-gaining escalated privileges. This is related to the case in which an IP address is contained in two ranges, one of which is locally disabled.

    Published: 10 Mar 2020
    8.8
    High

    CVE-2020-6806

    Last Modified: 21 Nov 2024

    By carefully crafting promise resolutions, it was possible to cause an out-of-bounds read off the end of an array resized during script execution. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.6, Firefox < 74, Firefox < ESR68.6, and Firefox ESR < 68.6.

    Published: 10 Mar 2020
    6.5
    Medium

    CVE-2020-6808

    Last Modified: 21 Nov 2024

    When a JavaScript URL (javascript:) is evaluated and the result is a string, this string is parsed to create an HTML document, which is then presented. Previously, this document's URL (as reported by the document.location property, for example) was the originating javascript: URL which could lead to spoofing attacks; it is now correctly the URL of the originating document. This vulnerability affects Firefox < 74.

    Published: 10 Mar 2020
    7.5
    High

    CVE-2020-6809

    Last Modified: 21 Nov 2024

    When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.

    Published: 10 Mar 2020
    9.8
    Critical

    CVE-2020-6815

    Last Modified: 21 Nov 2024

    Mozilla developers reported memory safety and script safety bugs present in Firefox 73. Some of these bugs showed evidence of memory corruption or escalation of privilege and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 74.

    Published: 10 Mar 2020
    7.7
    High

    CVE-2020-5258

    Last Modified: 21 Nov 2024

    In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution. Prototype Pollution refers to the ability to inject properties into existing JavaScript language construct prototypes, such as objects. An attacker manipulates these attributes to overwrite, or pollute, a JavaScript application object prototype of the base object by injecting other values. This has been patched in versions 1.12.8, 1.13.7, 1.14.6, 1.15.3 and 1.16.2

    Published: 10 Mar 2020
    7.5
    High

    CVE-2020-7943

    Last Modified: 21 Nov 2024

    Puppet Server and PuppetDB provide useful performance and debugging information via their metrics API endpoints. For PuppetDB this may contain things like hostnames. Puppet Server reports resource names and titles for defined types (which may contain sensitive information) as well as function names and class names. Previously, these endpoints were open to the local network. PE 2018.1.13 & 2019.5.0, Puppet Server 6.9.2 & 5.3.12, and PuppetDB 6.9.1 & 5.2.13 disable trapperkeeper-metrics /v1 metrics API and only allows /v2 access on localhost by default. This affects software versions: Puppet Enterprise 2018.1.x stream prior to 2018.1.13 Puppet Enterprise prior to 2019.5.0 Puppet Server prior to 6.9.2 Puppet Server prior to 5.3.12 PuppetDB prior to 6.9.1 PuppetDB prior to 5.2.13 Resolved in: Puppet Enterprise 2018.1.13 Puppet Enterprise 2019.5.0 Puppet Server 6.9.2 Puppet Server 5.3.12 PuppetDB 6.9.1 PuppetDB 5.2.13

    Published: 10 Mar 2020
    7.1
    High

    CVE-2020-0556

    Last Modified: 21 Nov 2024

    Improper access control in subsystem for BlueZ before version 5.54 may allow an unauthenticated user to potentially enable escalation of privilege and denial of service via adjacent access

    Published: 10 Mar 2020
    4.3
    Medium

    CVE-2020-6810

    Last Modified: 21 Nov 2024

    After a website had entered fullscreen mode, it could have used a previously opened popup to obscure the notification that indicates the browser is in fullscreen mode. Combined with spoofing the browser chrome, this could have led to confusing the user about the current origin of the page and credential theft or other attacks. This vulnerability affects Firefox < 74.

    Published: 10 Mar 2020
    8.8
    High

    CVE-2020-6811

    Last Modified: 21 Nov 2024

    The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP method of a request, which can be controlled by the website. If a user used the 'Copy as Curl' feature and pasted the command into a terminal, it could have resulted in command injection and arbitrary command execution. This vulnerability affects Thunderbird < 68.6, Firefox < 74, Firefox < ESR68.6, and Firefox ESR < 68.6.

    Published: 10 Mar 2020
    5.3
    Medium

    CVE-2020-6813

    Last Modified: 21 Nov 2024

    When protecting CSS blocks with the nonce feature of Content Security Policy, the @import statement in the CSS block could allow an attacker to inject arbitrary styles, bypassing the intent of the Content Security Policy. This vulnerability affects Firefox < 74.

    Published: 10 Mar 2020
    5.6
    Medium

    CVE-2020-7598

    Last Modified: 21 Nov 2024

    minimist before 1.2.2 could be tricked into adding or modifying properties of Object.prototype using a "constructor" or "__proto__" payload.

    Published: 10 Mar 2020
    8.8
    High

    CVE-2020-6805

    Last Modified: 21 Nov 2024

    When removing data about an origin whose tab was recently closed, a use-after-free could occur in the Quota manager, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 68.6, Firefox < 74, Firefox < ESR68.6, and Firefox ESR < 68.6.

    Published: 10 Mar 2020
    8.8
    High

    CVE-2020-6807

    Last Modified: 21 Nov 2024

    When a device was changed while a stream was about to be destroyed, the <code>stream-reinit</code> task may have been executed after the stream was destroyed, causing a use-after-free and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.6, Firefox < 74, Firefox < ESR68.6, and Firefox ESR < 68.6.

    Published: 10 Mar 2020
    5.3
    Medium

    CVE-2020-6812

    Last Modified: 21 Nov 2024

    The first time AirPods are connected to an iPhone, they become named after the user's name by default (e.g. Jane Doe's AirPods.) Websites with camera or microphone permission are able to enumerate device names, disclosing the user's name. To resolve this issue, Firefox added a special case that renames devices containing the substring 'AirPods' to simply 'AirPods'. This vulnerability affects Thunderbird < 68.6, Firefox < 74, Firefox < ESR68.6, and Firefox ESR < 68.6.

    Published: 10 Mar 2020
    9.8
    Critical

    CVE-2020-6814

    Last Modified: 21 Nov 2024

    Mozilla developers reported memory safety bugs present in Firefox and Thunderbird 68.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 68.6, Firefox < 74, Firefox < ESR68.6, and Firefox ESR < 68.6.

    Published: 10 Mar 2020
    9.8
    Critical

    CVE-2020-10257

    Last Modified: 21 Nov 2024

    The ThemeREX Addons plugin before 2020-03-09 for WordPress lacks access control on the /trx_addons/v2/get/sc_layout REST API endpoint, allowing for PHP functions to be executed by any users, because includes/plugin.rest-api.php calls trx_addons_rest_get_sc_layout with an unsafe sc parameter.

    Published: 9 Mar 2020
    7.8
    High

    CVE-2020-5342

    Last Modified: 21 Nov 2024

    Dell Digital Delivery versions prior to 3.5.2015 contain an incorrect default permissions vulnerability. A locally authenticated low-privileged malicious user could exploit this vulnerability to run an arbitrary executable with administrative privileges on the affected system.

    Published: 9 Mar 2020
    7.5
    High

    CVE-2020-10248

    Last Modified: 21 Nov 2024

    BWA DiREX-Pro 1.2181 devices allow remote attackers to discover passwords via a direct request to val_users.php3.

    Published: 9 Mar 2020
    5.3
    Medium

    CVE-2020-10249

    Last Modified: 21 Nov 2024

    BWA DiREX-Pro 1.2181 devices allow full path disclosure via an invalid name array parameter to val_soft.php3.

    Published: 9 Mar 2020
    9.8
    Critical

    CVE-2020-10250

    Last Modified: 21 Nov 2024

    BWA DiREX-Pro 1.2181 devices allow remote attackers to execute arbitrary OS commands via shell metacharacters in the PKG parameter to uninstall.php3.

    Published: 9 Mar 2020
    7.5
    High

    CVE-2020-10244

    Last Modified: 21 Nov 2024

    JPaseto before 0.3.0 generates weak hashes when using v2.local tokens.

    Published: 9 Mar 2020
    7.5
    High

    CVE-2019-19614

    Last Modified: 21 Nov 2024

    An issue was discovered in Halvotec RAQuest 10.23.10801.0. The login page is vulnerable to wildcard injection, allowing an attacker to enumerate the list of users sharing an identical password. Fixed in Release 10.24.11206.1.

    Published: 9 Mar 2020
    6.1
    Medium

    CVE-2020-10246

    Last Modified: 21 Nov 2024

    MISP 2.4.122 has reflected XSS via unsanitized URL parameters. This is related to app/View/Users/statistics_orgs.ctp.

    Published: 9 Mar 2020
    6.1
    Medium

    CVE-2020-10247

    Last Modified: 21 Nov 2024

    MISP 2.4.122 has Persistent XSS in the sighting popover tool. This is related to app/View/Elements/Events/View/sighting_field.ctp.

    Published: 9 Mar 2020
    9.6
    Critical

    CVE-2020-9758

    Last Modified: 21 Nov 2024

    An issue was discovered in chat.php in LiveZilla Live Chat 8.0.1.3 (Helpdesk). A blind JavaScript injection lies in the name parameter. Triggering this can fetch the username and passwords of the helpdesk employees in the URI. This leads to a privilege escalation, from unauthenticated to user-level access, leading to full account takeover. The attack fetches multiple credentials because they are stored in the database (stored XSS). This affects the mobile/chat URI via the lgn and psswrd parameters.

    Published: 9 Mar 2020
    8.8
    High

    CVE-2020-10190

    Last Modified: 21 Nov 2024

    An issue was discovered in MunkiReport before 5.3.0. An authenticated user could achieve SQL Injection in app/models/tablequery.php by crafting a special payload on the /datatables/data endpoint.

    Published: 9 Mar 2020
    5.4
    Medium

    CVE-2020-10191

    Last Modified: 21 Nov 2024

    An issue was discovered in MunkiReport before 5.3.0. An authenticated actor can send a custom XSS payload through the /module/comment/save endpoint. The payload will be executed by any authenticated users browsing the application. This concerns app/controllers/client.php:detail.

    Published: 9 Mar 2020
    6.1
    Medium

    CVE-2020-10192

    Last Modified: 21 Nov 2024

    An issue was discovered in Munkireport before 5.3.0.3923. An unauthenticated actor can send a custom XSS payload through the /report/broken_client endpoint. The payload will be executed by any authenticated users browsing the application. This concerns app/views/listings/default.php.

    Published: 9 Mar 2020
    7.5
    High

    CVE-2011-3269

    Last Modified: 21 Nov 2024

    Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a hidden email address in a Scan To Email shortcut.

    Published: 9 Mar 2020
    5.3
    Medium

    CVE-2011-4538

    Last Modified: 21 Nov 2024

    Lexmark X, W, T, E, and C devices before 2012-02-09 allow attackers to obtain sensitive information by reading passwords within exported settings.

    Published: 9 Mar 2020
    8.8
    High

    CVE-2016-1487

    Last Modified: 21 Nov 2024

    Lexmark Markvision Enterprise before 2.3.0 misuses the Apache Commons Collections Library, leading to remote code execution because of Java deserialization.

    Published: 9 Mar 2020
    5.4
    Medium

    CVE-2020-4084

    Last Modified: 21 Nov 2024

    HCL Connections v5.5, v6.0, and v6.5 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

    Published: 9 Mar 2020
    7.4
    High

    CVE-2020-8987

    Last Modified: 21 Nov 2024

    Avast AntiTrack before 1.5.1.172 and AVG Antitrack before 2.0.0.178 proxies traffic to HTTPS sites but does not validate certificates, and thus a man-in-the-middle can host a malicious website using a self-signed certificate. No special action necessary by the victim using AntiTrack with "Allow filtering of HTTPS traffic for tracking detection" enabled. (This is the default configuration.)

    Published: 9 Mar 2020
    9.8
    Critical

    CVE-2016-6918

    Last Modified: 21 Nov 2024

    Lexmark Markvision Enterprise (MVE) before 2.4.1 allows remote attackers to execute arbitrary commands by uploading files. (

    Published: 9 Mar 2020
    6.5
    Medium

    CVE-2016-1159

    Last Modified: 21 Nov 2024

    In ZOHO Password Manager Pro (PMP) 8.3.0 (Build 8303) and 8.4.0 (Build 8400,8401,8402), underprivileged users can obtain sensitive information (entry password history) via a vulnerable hidden service.

    Published: 9 Mar 2020
    9.8
    Critical

    CVE-2014-1634

    Last Modified: 21 Nov 2024

    SQL Injection exists in Advanced Newsletter Magento extension before 2.3.5 via the /store/advancednewsletter/index/subscribeajax/an_category_id/ PATH_INFO.

    Published: 9 Mar 2020
    7.2
    High

    CVE-2015-7338

    Last Modified: 21 Nov 2024

    SQL Injection exists in AcyMailing Joomla Component before 4.9.5 via exportgeolocorder in a geolocation_longitude request to index.php.

    Published: 9 Mar 2020
    8.8
    High

    CVE-2015-7339

    Last Modified: 21 Nov 2024

    JCE Joomla Component 2.5.0 to 2.5.2 allows arbitrary file upload via a .php file extension for an image file to the /com_jce/editor/libraries/classes/browser.php script.

    Published: 9 Mar 2020
    7.2
    High

    CVE-2015-7340

    Last Modified: 21 Nov 2024

    JEvents Joomla Component before 3.4.0 RC6 has SQL Injection via evid in a Manage Events action.

    Published: 9 Mar 2020
    8.8
    High

    CVE-2015-7341

    Last Modified: 21 Nov 2024

    JNews Joomla Component before 8.5.0 allows arbitrary File Upload via Subscribers or Templates, as demonstrated by the .php5 extension.

    Published: 9 Mar 2020
    7.2
    High

    CVE-2015-7342

    Last Modified: 21 Nov 2024

    JNews Joomla Component before 8.5.0 allows SQL injection via upload thumbnail, Queue Search Field, Subscribers Search Field, or Newsletters Search Field.

    Published: 9 Mar 2020
    5.4
    Medium

    CVE-2020-9517

    Last Modified: 21 Nov 2024

    There is an improper restriction of rendered UI layers or frames vulnerability in Micro Focus Service Manager Release Control versions 9.50 and 9.60. The vulnerability may result in the ability of malicious users to perform UI redress attacks.

    Published: 9 Mar 2020
    7.9
    High

    CVE-2020-5256

    Last Modified: 21 Nov 2024

    BookStack before version 0.25.5 has a vulnerability where a user could upload PHP files through image upload functions, which would allow them to execute code on the host system remotely. They would then have the permissions of the PHP process. This most impacts scenarios where non-trusted users are given permission to upload images in any area of the application. The issue was addressed in a series of patches in versions 0.25.3, 0.25.4 and 0.25.5. Users should upgrade to at least v0.25.5 to avoid this vulnerability.

    Published: 9 Mar 2020
    8.8
    High

    CVE-2020-10235

    Last Modified: 21 Nov 2024

    An issue was discovered in Froxlor before 0.10.14. Remote attackers with access to the installation routine could have executed arbitrary code via the database configuration options that were passed unescaped to exec, because of _backupExistingDatabase in install/lib/class.FroxlorInstall.php.

    Published: 9 Mar 2020
    5.5
    Medium

    CVE-2020-10237

    Last Modified: 21 Nov 2024

    An issue was discovered in Froxlor through 0.10.15. The installer wrote configuration parameters including passwords into files in /tmp, setting proper permissions only after writing the sensitive data. A local attacker could have disclosed the information if he read the file at the right time, because of _createUserdataConf in install/lib/class.FroxlorInstall.php.

    Published: 9 Mar 2020
    6.1
    Medium

    CVE-2020-10236

    Last Modified: 21 Nov 2024

    An issue was discovered in Froxlor before 0.10.14. It created files with static names in /tmp during installation if the installation directory was not writable. This allowed local attackers to cause DoS or disclose information out of the config files, because of _createUserdataConf in install/lib/class.FroxlorInstall.php.

    Published: 9 Mar 2020