CVE Feed

    Dashboard / CVE

    4.8
    Medium

    CVE-2020-9371

    Last Modified: 21 Nov 2024

    Stored XSS exists in the Appointment Booking Calendar plugin before 1.3.35 for WordPress. In the cpabc_appointments.php file, the Calendar Name input could allow attackers to inject arbitrary JavaScript or HTML.

    Published: 4 Mar 2020
    7.5
    High

    CVE-2019-19226

    Last Modified: 21 Nov 2024

    A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to enable or disable MAC address filtering by submitting a crafted Forms/WlanMacFilter_1 POST request without being authenticated on the admin interface.

    Published: 4 Mar 2020
    7.5
    High

    CVE-2019-19225

    Last Modified: 21 Nov 2024

    A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to change DNS servers without being authenticated on the admin interface by submitting a crafted Forms/dns_1 POST request.

    Published: 4 Mar 2020
    7.5
    High

    CVE-2019-19224

    Last Modified: 21 Nov 2024

    A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to download the configuration (binary file) settings by submitting a rom-0 GET request without being authenticated on the admin interface.

    Published: 4 Mar 2020
    7.5
    High

    CVE-2019-19223

    Last Modified: 21 Nov 2024

    A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to reboot the router by submitting a reboot.html GET request without being authenticated on the admin interface.

    Published: 4 Mar 2020
    5.4
    Medium

    CVE-2019-19222

    Last Modified: 21 Nov 2024

    A Stored XSS issue in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an authenticated attacker to inject arbitrary JavaScript code into the info.html administration page by sending a crafted Forms/wireless_autonetwork_1 POST request.

    Published: 4 Mar 2020
    8.8
    High

    CVE-2020-10057

    Last Modified: 21 Nov 2024

    GeniXCMS 1.1.7 is vulnerable to user privilege escalation due to broken access control. This issue exists because of an incomplete fix for CVE-2015-2680, in which "token" is used as a CSRF protection mechanism, but without validation that "token" is associated with an administrative user.

    Published: 4 Mar 2020
    8.8
    High

    CVE-2020-7988

    Last Modified: 21 Nov 2024

    An issue was discovered in tools/pass-change/result.php in phpIPAM 1.4. CSRF can be used to change the password of any user/admin, to escalate privileges, and to gain access to more data and functionality. This issue exists due to the lack of a requirement to provide the old password, and the lack of security tokens.

    Published: 4 Mar 2020
    9.8
    Critical

    CVE-2020-9761

    Last Modified: 21 Nov 2024

    An issue was discovered in UNCTAD ASYCUDA World 2001 through 2020. The Java RMI Server has an Insecure Default Configuration, leading to Java Code Execution from a remote URL because an RMI Distributed Garbage Collector method is called.

    Published: 4 Mar 2020
    9.8
    Critical

    CVE-2020-9757

    Last Modified: 21 Nov 2024

    The SEOmatic component before 3.3.0 for Craft CMS allows Server-Side Template Injection that leads to RCE via malformed data to the metacontainers controller.

    Published: 4 Mar 2020
    5.3
    Medium

    CVE-2020-9364

    Last Modified: 21 Nov 2024

    An issue was discovered in helpers/mailer.php in the Creative Contact Form extension 4.6.2 before 2019-12-03 for Joomla!. A directory traversal vulnerability resides in the filename field for uploaded attachments via the creativecontactform_upload parameter. An attacker could exploit this vulnerability with the "Send me a copy" option to receive any files of the filesystem via email.

    Published: 4 Mar 2020
    7.7
    High

    CVE-2020-5251

    Last Modified: 21 Nov 2024

    In parser-server before version 4.1.0, you can fetch all the users objects, by using regex in the NoSQL query. Using the NoSQL, you can use a regex on sessionToken and find valid accounts this way.

    Published: 4 Mar 2020
    —
    Unknown

    CVE-2019-8401

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 4 Mar 2020
    7.5
    High

    CVE-2019-3404

    Last Modified: 21 Nov 2024

    By adding some special fields to the uri ofrouter app function, the user could abuse background app cgi functions withoutauthentication. This affects 360 router P0 and F5C.

    Published: 4 Mar 2020
    8.8
    High

    CVE-2020-5535

    Last Modified: 21 Nov 2024

    OpenBlocks IoT VX2 prior to Ver.4.0.0 (Ver.3 Series) allows an attacker on the same network segment to execute arbitrary OS commands with root privileges via unspecified vectors.

    Published: 4 Mar 2020
    8.8
    High

    CVE-2020-5536

    Last Modified: 21 Nov 2024

    OpenBlocks IoT VX2 prior to Ver.4.0.0 (Ver.3 Series) allows an attacker on the same network segment to bypass authentication and to initialize the device via unspecified vectors.

    Published: 4 Mar 2020
    7.5
    High

    CVE-2020-1749

    Last Modified: 21 Nov 2024

    A flaw was found in the Linux kernel's implementation of some networking protocols in IPsec, such as VXLAN and GENEVE tunnels over IPv6. When an encrypted tunnel is created between two hosts, the kernel isn't correctly routing tunneled data over the encrypted link; rather sending the data unencrypted. This would allow anyone in between the two endpoints to read the traffic unencrypted. The main threat from this vulnerability is to data confidentiality.

    Published: 4 Mar 2020
    7.3
    High

    CVE-2020-6581

    Last Modified: 21 Nov 2024

    Nagios NRPE 3.2.1 has Insufficient Filtering because, for example, nasty_metachars interprets \n as the character \ and the character n (not as the \n newline sequence). This can cause command injection.

    Published: 4 Mar 2020
    8.8
    High

    CVE-2020-9402

    Last Modified: 21 Nov 2024

    Django 1.11 before 1.11.29, 2.2 before 2.2.11, and 3.0 before 3.0.4 allows SQL Injection if untrusted data is used as a tolerance parameter in GIS functions and aggregates on Oracle. By passing a suitably crafted tolerance to GIS functions and aggregates on Oracle, it was possible to break escaping and inject malicious SQL.

    Published: 4 Mar 2020
    7.5
    High

    CVE-2020-6582

    Last Modified: 21 Nov 2024

    Nagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small negative number as a large positive number during a bzero call.

    Published: 4 Mar 2020
    5.9
    Medium

    CVE-2019-11252

    Last Modified: 21 Nov 2024

    The Kubernetes kube-controller-manager in versions v1.0-v1.17 is vulnerable to a credential leakage via error messages in mount failure logs and events for AzureFile and CephFS volumes.

    Published: 4 Mar 2020
    7.5
    High

    CVE-2020-5403

    Last Modified: 4 Sept 2026

    Reactor Netty HttpServer, versions 0.9.3 and 0.9.4, is exposed to a URISyntaxException that causes the connection to be closed prematurely instead of producing a 400 response.

    Published: 3 Mar 2020
    7.5
    High

    CVE-2020-8661

    Last Modified: 21 Nov 2024

    CNCF Envoy through 1.13.0 may consume excessive amounts of memory when responding internally to pipelined requests.

    Published: 3 Mar 2020
    7.5
    High

    CVE-2020-8659

    Last Modified: 21 Nov 2024

    CNCF Envoy through 1.13.0 may consume excessive amounts of memory when proxying HTTP/1.1 requests or responses with many small (i.e. 1 byte) chunks.

    Published: 3 Mar 2020
    5.3
    Medium

    CVE-2020-8664

    Last Modified: 21 Nov 2024

    CNCF Envoy through 1.13.0 has incorrect Access Control when using SDS with Combined Validation Context. Using the same secret (e.g. trusted CA) across many resources together with the combined validation context could lead to the “static” part of the validation context to be not applied, even though it was visible in the active config dump.

    Published: 3 Mar 2020
    8.1
    High

    CVE-2020-1892

    Last Modified: 21 Nov 2024

    Insufficient boundary checks when decoding JSON in JSON_parser allows read access to out of bounds memory, potentially leading to information leak and DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0, 4.41.0, 4.40.0, 4.39.0, versions between 4.33.0 and 4.38.0 (inclusive), versions between 4.9.0 and 4.32.0 (inclusive), and versions prior to 4.8.7.

    Published: 3 Mar 2020
    7.5
    High

    CVE-2020-1893

    Last Modified: 21 Nov 2024

    Insufficient boundary checks when decoding JSON in TryParse reads out of bounds memory, potentially leading to DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0, 4.41.0, 4.40.0, 4.39.0, versions between 4.33.0 and 4.38.0 (inclusive), versions between 4.9.0 and 4.32.0 (inclusive), and versions prior to 4.8.7.

    Published: 3 Mar 2020
    7.5
    High

    CVE-2020-1888

    Last Modified: 21 Nov 2024

    Insufficient boundary checks when decoding JSON in handleBackslash reads out of bounds memory, potentially leading to DOS. This issue affects HHVM 4.45.0, 4.44.0, 4.43.0, 4.42.0, 4.41.0, 4.40.0, 4.39.0, versions between 4.33.0 and 4.38.0 (inclusive), versions between 4.9.0 and 4.32.0 (inclusive), and versions prior to 4.8.7.

    Published: 3 Mar 2020
    6.7
    Medium

    CVE-2019-19792

    Last Modified: 21 Nov 2024

    A permissions issue in ESET Cyber Security before 6.8.300.0 for macOS allows a local attacker to escalate privileges by appending data to root-owned files.

    Published: 3 Mar 2020
    6.5
    Medium

    CVE-2019-17549

    Last Modified: 21 Nov 2024

    ESET Cyber Security before 6.8.1.0 is vulnerable to a denial-of-service allowing any user to stop (kill) ESET processes. An attacker can abuse this bug to stop the protection from ESET and launch his attack.

    Published: 3 Mar 2020
    —
    Unknown

    CVE-2019-12916

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 3 Mar 2020
    —
    Unknown

    CVE-2019-12915

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 3 Mar 2020
    5.4
    Medium

    CVE-2020-4198

    Last Modified: 21 Nov 2024

    IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 174909.

    Published: 3 Mar 2020
    2.4
    Low

    CVE-2020-4197

    Last Modified: 21 Nov 2024

    IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 174908.

    Published: 3 Mar 2020
    5.4
    Medium

    CVE-2020-4196

    Last Modified: 21 Nov 2024

    IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 174907.

    Published: 3 Mar 2020
    9.1
    Critical

    CVE-2020-9751

    Last Modified: 21 Nov 2024

    Naver Cloud Explorer before 2.2.2.11 allows the system to download an arbitrary file from the attacker's server and execute it during the upgrade.

    Published: 3 Mar 2020
    5.3
    Medium

    CVE-2020-8660

    Last Modified: 21 Nov 2024

    CNCF Envoy through 1.13.0 TLS inspector bypass. TLS inspector could have been bypassed (not recognized as a TLS client) by a client using only TLS 1.3. Because TLS extensions (SNI, ALPN) were not inspected, those connections might have been matched to a wrong filter chain, possibly bypassing some security restrictions in the process.

    Published: 3 Mar 2020
    5.9
    Medium

    CVE-2020-5404

    Last Modified: 4 Sept 2026

    The HttpClient from Reactor Netty, versions 0.9.x prior to 0.9.5, and versions 0.8.x prior to 0.8.16, may be used incorrectly, leading to a credentials leak during a redirect to a different domain. In order for this to happen, the HttpClient must have been explicitly configured to follow redirects.

    Published: 3 Mar 2020
    8.8
    High

    CVE-2020-6420

    Last Modified: 21 Nov 2024

    Insufficient policy enforcement in media in Google Chrome prior to 80.0.3987.132 allowed a remote attacker to bypass same origin policy via a crafted HTML page.

    Published: 3 Mar 2020
    7.4
    High

    CVE-2020-13817

    Last Modified: 5 May 2025

    ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 allows remote attackers to cause a denial of service (daemon exit or system time change) by predicting transmit timestamps for use in spoofed packets. The victim must be relying on unauthenticated IPv4 time sources. There must be an off-path attacker who can query time from the victim's ntpd instance.

    Published: 3 Mar 2020
    5.5
    Medium

    CVE-2020-10251

    Last Modified: 21 Nov 2024

    In ImageMagick 7.0.9, an out-of-bounds read vulnerability exists within the ReadHEICImageByID function in coders\heic.c. It can be triggered via an image with a width or height value that exceeds the actual size of the image.

    Published: 3 Mar 2020
    7.5
    High

    CVE-2020-11868

    Last Modified: 5 May 2025

    ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 allows an off-path attacker to block unauthenticated synchronization via a server mode packet with a spoofed source IP address, because transmissions are rescheduled even when a packet lacks a valid origin timestamp.

    Published: 3 Mar 2020
    8.8
    High

    CVE-2020-10969

    Last Modified: 25 Aug 2026

    FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to javax.swing.JEditorPane.

    Published: 3 Mar 2020
    6.7
    Medium

    CVE-2020-12465

    Last Modified: 21 Nov 2024

    An array overflow was discovered in mt76_add_fragment in drivers/net/wireless/mediatek/mt76/dma.c in the Linux kernel before 5.5.10, aka CID-b102f0c522cf. An oversized packet with too many rx fragments can corrupt memory of adjacent pages.

    Published: 3 Mar 2020
    7.5
    High

    CVE-2018-5951

    Last Modified: 21 Nov 2024

    An issue was discovered in Mikrotik RouterOS. Crafting a packet that has a size of 1 byte and sending it to an IPv6 address of a RouterOS box with IP Protocol 97 will cause RouterOS to reboot imminently. All versions of RouterOS that supports EoIPv6 are vulnerable to this attack.

    Published: 2 Mar 2020
    —
    Unknown

    CVE-2018-20347

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

    Published: 2 Mar 2020
    7.8
    High

    CVE-2018-20343

    Last Modified: 21 Nov 2024

    Multiple buffer overflow vulnerabilities have been found in Ken Silverman Build Engine 1. An attacker could craft a special map file to execute arbitrary code when the map file is loaded.

    Published: 2 Mar 2020
    8.8
    High

    CVE-2018-19798

    Last Modified: 21 Nov 2024

    Fleetco Fleet Maintenance Management (FMM) 1.2 and earlier allows uploading an arbitrary ".php" file with the application/x-php Content-Type to the accidents_add.php?submit=1 URI, as demonstrated by the value_Images_1 field, which leads to remote command execution on the remote server. Any authenticated user can exploit this.

    Published: 2 Mar 2020
    5.4
    Medium

    CVE-2018-19658

    Last Modified: 21 Nov 2024

    The Markdown editor in YXBJ before 8.3.2 on macOS has stored XSS. This behavior may be encountered by some Evernote users; however, it is a vulnerability in YXBJ, not a vulnerability in Evernote.

    Published: 2 Mar 2020
    5.4
    Medium

    CVE-2018-19599

    Last Modified: 21 Nov 2024

    Monstra CMS 1.6 allows XSS via an uploaded SVG document to the admin/index.php?id=filesmanager&path=uploads/ URI. NOTE: this is a discontinued product.

    Published: 2 Mar 2020