CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2020-8505

    Last Modified: 21 Nov 2024

    School Management Software PHP/mySQL through 2019-03-14 allows office_admin/?action=deleteadmin CSRF to delete a user.

    Published: 31 Jan 2020
    9.8
    Critical

    CVE-2014-8322

    Last Modified: 21 Nov 2024

    Stack-based buffer overflow in the tcp_test function in aireplay-ng.c in Aircrack-ng before 1.2 RC 1 allows remote attackers to execute arbitrary code via a crafted length parameter value.

    Published: 31 Jan 2020
    7.8
    High

    CVE-2014-8321

    Last Modified: 21 Nov 2024

    Stack-based buffer overflow in the gps_tracker function in airodump-ng.c in Aircrack-ng before 1.2 RC 1 allows local users to execute arbitrary code or gain privileges via unspecified vectors.

    Published: 31 Jan 2020
    7.5
    High

    CVE-2014-5236

    Last Modified: 21 Nov 2024

    Multiple absolute path traversal vulnerabilities in documentconverter in Open-Xchange (OX) AppSuite before 7.4.2-rev10 and 7.6.x before 7.6.0-rev10 allow remote attackers to read application files via a full pathname in a crafted (1) OLE Object or (2) image in an OpenDocument text file.

    Published: 31 Jan 2020
    8.8
    High

    CVE-2014-3868

    Last Modified: 21 Nov 2024

    Multiple SQL injection vulnerabilities in ZeusCart 4.x.

    Published: 31 Jan 2020
    8.8
    High

    CVE-2014-3119

    Last Modified: 21 Nov 2024

    Multiple SQL injection vulnerabilities in web2Project 3.1 and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) search_string parameter in the contacts module to index.php or allow remote attackers to execute arbitrary SQL commands via the updatekey parameter to (2) do_updatecontact.php or (3) updatecontact.php.

    Published: 31 Jan 2020
    —
    Unknown

    CVE-2016-2033

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was associated with multiple vulnerabilities. Notes: non

    Published: 31 Jan 2020
    6.5
    Medium

    CVE-2020-8503

    Last Modified: 21 Nov 2024

    Biscom Secure File Transfer (SFT) 5.0.1050 through 5.1.1067 and 6.0.1000 through 6.0.1003 allows Insecure Direct Object Reference (IDOR) by an authenticated sender because of an error in a file-upload feature. This is fixed in 5.1.1068 and 6.0.1004.

    Published: 31 Jan 2020
    7.5
    High

    CVE-2016-2032

    Last Modified: 21 Nov 2024

    A vulnerability exists in the Aruba AirWave Management Platform 8.x prior to 8.2 in the management interface of an underlying system component called RabbitMQ, which could let a malicious user obtain sensitive information. This interface listens on TCP port 15672 and 55672

    Published: 31 Jan 2020
    7.5
    High

    CVE-2019-13000

    Last Modified: 21 Nov 2024

    Eclair through 0.3 allows attackers to trigger loss of funds because of Incorrect Access Control. NOTE: README.md states "it is beta-quality software and don't put too much money in it."

    Published: 31 Jan 2020
    7.5
    High

    CVE-2019-12999

    Last Modified: 21 Nov 2024

    Lightning Network Daemon (lnd) before 0.7 allows attackers to trigger loss of funds because of Incorrect Access Control.

    Published: 31 Jan 2020
    7.5
    High

    CVE-2019-12998

    Last Modified: 21 Nov 2024

    c-lightning before 0.7.1 allows attackers to trigger loss of funds because of Incorrect Access Control. NOTE: README.md states "It can be used for testing, but it should not be used for real funds."

    Published: 31 Jan 2020
    9.8
    Critical

    CVE-2016-2031

    Last Modified: 21 Nov 2024

    Multiple vulnerabilities exists in Aruba Instate before 4.1.3.0 and 4.2.3.1 due to insufficient validation of user-supplied input and insufficient checking of parameters, which could allow a malicious user to bypass security restrictions, obtain sensitive information, perform unauthorized actions and execute arbitrary code.

    Published: 31 Jan 2020
    6.1
    Medium

    CVE-2014-2843

    Last Modified: 21 Nov 2024

    Cross-site scripting (XSS) vulnerability in infoware MapSuite MapAPI 1.0.x before 1.0.36 and 1.1.x before 1.1.49 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 31 Jan 2020
    4.8
    Medium

    CVE-2020-5234

    Last Modified: 21 Nov 2024

    MessagePack for C# and Unity before version 1.9.11 and 2.1.90 has a vulnerability where untrusted data can lead to DoS attack due to hash collisions and stack overflow. Review the linked GitHub Security Advisory for more information and remediation steps.

    Published: 31 Jan 2020
    7.8
    High

    CVE-2013-3489

    Last Modified: 21 Nov 2024

    Buffer overflow in Media Player Classic - Home Cinema (MPC-HC) before 1.7.0 allows remote attackers to execute arbitrary code via a crafted RealMedia .rm file

    Published: 31 Jan 2020
    7.8
    High

    CVE-2013-3488

    Last Modified: 21 Nov 2024

    Stack-based buffer overflow in Media Player Classic - Home Cinema (MPC-HC) before 1.7.0.7858 allows remote attackers to execute arbitrary code via a crafted MPEG-2 Transport Stream (M2TS) file.

    Published: 31 Jan 2020
    7.5
    High

    CVE-2011-4115

    Last Modified: 21 Nov 2024

    Parallel::ForkManager module before 1.0.0 for Perl does not properly handle temporary files.

    Published: 31 Jan 2020
    7.5
    High

    CVE-2011-4117

    Last Modified: 21 Nov 2024

    The Batch::BatchRun module 1.03 for Perl does not properly handle temporary files.

    Published: 31 Jan 2020
    6.5
    Medium

    CVE-2020-1700

    Last Modified: 21 Nov 2024

    A flaw was found in the way the Ceph RGW Beast front-end handles unexpected disconnects. An authenticated attacker can abuse this flaw by making multiple disconnect attempts resulting in a permanent leak of a socket connection by radosgw. This flaw could lead to a denial of service condition by pile up of CLOSE_WAIT sockets, eventually leading to the exhaustion of available resources, preventing legitimate users from connecting to the system.

    Published: 31 Jan 2020
    7.5
    High

    CVE-2019-4720

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a denial of service, caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to cause the server to consume all available memory. IBM X-Force ID: 172125.

    Published: 31 Jan 2020
    4.3
    Medium

    CVE-2020-8422

    Last Modified: 30 May 2025

    An authorization issue was discovered in the Credential Manager feature in Zoho ManageEngine Remote Access Plus before 10.0.450. A user with the Guest role can extract the collection of all defined credentials of remote machines: the credential name, credential type, user name, domain/workgroup name, and description (but not the password).

    Published: 31 Jan 2020
    6.8
    Medium

    CVE-2014-4859

    Last Modified: 21 Nov 2024

    Integer overflow in the Drive Execution Environment (DXE) phase in the Capsule Update feature in the UEFI implementation in EDK2 allows physically proximate attackers to bypass intended access restrictions via crafted data.

    Published: 31 Jan 2020
    6.8
    Medium

    CVE-2014-4860

    Last Modified: 21 Nov 2024

    Multiple integer overflows in the Pre-EFI Initialization (PEI) boot phase in the Capsule Update feature in the UEFI implementation in EDK2 allow physically proximate attackers to bypass intended access restrictions by providing crafted data that is not properly handled during the coalescing phase.

    Published: 31 Jan 2020
    7.1
    High

    CVE-2013-5116

    Last Modified: 21 Nov 2024

    Evernote prior to 5.5.1 has insecure password change

    Published: 31 Jan 2020
    6.8
    Medium

    CVE-2013-5113

    Last Modified: 21 Nov 2024

    LastPass prior to 2.5.1 has an insecure PIN implementation.

    Published: 31 Jan 2020
    6.1
    Medium

    CVE-2013-5114

    Last Modified: 21 Nov 2024

    LastPass prior to 2.5.1 allows secure wipe bypass.

    Published: 31 Jan 2020
    4.6
    Medium

    CVE-2013-5112

    Last Modified: 21 Nov 2024

    Evernote before 5.5.1 has insecure PIN storage

    Published: 31 Jan 2020
    7.5
    High

    CVE-2019-19550

    Last Modified: 21 Nov 2024

    Remote Authentication Bypass in Senior Rubiweb 6.2.34.28 and 6.2.34.37 allows admin access to sensitive information of affected users using vulnerable versions. The attacker only needs to provide the correct URL.

    Published: 31 Jan 2020
    9.8
    Critical

    CVE-2020-8440

    Last Modified: 21 Nov 2024

    controllers/page_apply.php in Simplejobscript.com SJS through 1.66 is prone to unauthenticated Remote Code Execution by uploading a PHP script as a resume.

    Published: 31 Jan 2020
    7.2
    High

    CVE-2013-3322

    Last Modified: 21 Nov 2024

    NetApp OnCommand System Manager 2.1 and earlier allows remote attackers to inject arbitrary commands in the Halt/Reboot interface.

    Published: 31 Jan 2020
    9.8
    Critical

    CVE-2020-7956

    Last Modified: 21 Nov 2024

    HashiCorp Nomad and Nomad Enterprise up to 0.10.2 incorrectly validated role/region associated with TLS certificates used for mTLS RPC, and were susceptible to privilege escalation. Fixed in 0.10.3.

    Published: 31 Jan 2020
    7.5
    High

    CVE-2020-7218

    Last Modified: 21 Nov 2024

    HashiCorp Nomad and Nonad Enterprise up to 0.10.2 HTTP/RPC services allowed unbounded resource usage, and were susceptible to unauthenticated denial of service. Fixed in 0.10.3.

    Published: 31 Jan 2020
    7.5
    High

    CVE-2020-7914

    Last Modified: 21 Nov 2024

    In JetBrains IntelliJ IDEA 2019.2, an XSLT debugger plugin misconfiguration allows arbitrary file read operations over the network. This issue was fixed in 2019.3.

    Published: 31 Jan 2020
    5.9
    Medium

    CVE-2020-5526

    Last Modified: 21 Nov 2024

    The AWMS Mobile App for Android 2.0.0 to 2.0.5 and for iOS 2.0.0 to 2.0.8 does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published: 31 Jan 2020
    6.8
    Medium

    CVE-2019-18913

    Last Modified: 21 Nov 2024

    A potential security vulnerability with pre-boot DMA may allow unauthorized UEFI code execution using open-case attacks. This industry-wide issue requires physically accessing internal expansion slots with specialized hardware and software tools to modify UEFI code in memory. This affects HP Intel-based Business PCs that support Microsoft Windows 10 Kernel DMA protection. Affected versions depend on platform (prior to 01.04.02; or prior to 02.04.01; or prior to 02.04.02).

    Published: 31 Jan 2020
    6.5
    Medium

    CVE-2019-4732

    Last Modified: 21 Nov 2024

    IBM SDK, Java Technology Edition Version 7.0.0.0 through 7.0.10.55, 7.1.0.0 through 7.1.4.55, and 8.0.0.0 through 8.0.6.0 could allow a local authenticated attacker to execute arbitrary code on the system, caused by DLL search order hijacking vulnerability in Microsoft Windows client. By placing a specially-crafted file in a compromised folder, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 172618.

    Published: 31 Jan 2020
    7.5
    High

    CVE-2020-11612

    Last Modified: 21 Nov 2024

    The ZlibDecoders in Netty 4.1.x before 4.1.46 allow for unbounded memory allocation while decoding a ZlibEncoded byte stream. An attacker could send a large ZlibEncoded byte stream to the Netty server, forcing the server to allocate all of its free memory to a single decoder.

    Published: 31 Jan 2020
    8.7
    High

    CVE-2020-5232

    Last Modified: 21 Nov 2024

    A user who owns an ENS domain can set a trapdoor, allowing them to transfer ownership to another user, and later regain ownership without the new owners consent or awareness. A new ENS deployment is being rolled out that fixes this vulnerability in the ENS registry.

    Published: 30 Jan 2020
    5.4
    Medium

    CVE-2020-8498

    Last Modified: 21 Nov 2024

    XSS exists in the shortcode functionality of the GistPress plugin before 3.0.2 for WordPress via the includes/class-gistpress.php id parameter. This allows an attacker with the WordPress Contributor role to execute arbitrary JavaScript code with the privileges of other users (e.g., ones who have the publish_posts capability).

    Published: 30 Jan 2020
    8.7
    High

    CVE-2020-5206

    Last Modified: 21 Nov 2024

    In Opencast before 7.6 and 8.1, using a remember-me cookie with an arbitrary username can cause Opencast to assume proper authentication for that user even if the remember-me cookie was incorrect given that the attacked endpoint also allows anonymous access. This way, an attacker can, for example, fake a remember-me token, assume the identity of the global system administrator and request non-public content from the search service without ever providing any proper authentication. This problem is fixed in Opencast 7.6 and Opencast 8.1

    Published: 30 Jan 2020
    4.8
    Medium

    CVE-2020-8493

    Last Modified: 21 Nov 2024

    A stored XSS vulnerability in Kronos Web Time and Attendance (webTA) affects 3.8.x and later 3.x versions before 4.0 via multiple input fields (Login Message, Banner Message, and Password Instructions) of the com.threeis.webta.H261configMenu servlet via an authenticated administrator.

    Published: 30 Jan 2020
    8.8
    High

    CVE-2020-8494

    Last Modified: 21 Nov 2024

    In Kronos Web Time and Attendance (webTA) 3.8.x and later 3.x versions before 4.0, the com.threeis.webta.H402editUser servlet allows an attacker with Timekeeper, Master Timekeeper, or HR Admin privileges to gain unauthorized administrative privileges within the application via the emp_id, userid, pw1, pw2, supervisor, and timekeeper parameters.

    Published: 30 Jan 2020
    7.5
    High

    CVE-2020-8495

    Last Modified: 21 Nov 2024

    In Kronos Web Time and Attendance (webTA) 3.8.x and later 3.x versions before 4.0, the com.threeis.webta.H491delegate servlet allows an attacker with Timekeeper or Supervisor privileges to gain unauthorized administrative privileges within the application via the delegate, delegateRole, and delegatorUserId parameters.

    Published: 30 Jan 2020
    4.8
    Medium

    CVE-2020-8496

    Last Modified: 21 Nov 2024

    In Kronos Web Time and Attendance (webTA) 4.1.x and later 4.x versions before 5.0, there is a Stored XSS vulnerability by setting the Application Banner input field of the /ApplicationBanner page as an authenticated administrator.

    Published: 30 Jan 2020
    4.8
    Medium

    CVE-2020-5231

    Last Modified: 21 Nov 2024

    In Opencast before 7.6 and 8.1, users with the role ROLE_COURSE_ADMIN can use the user-utils endpoint to create new users not including the role ROLE_ADMIN. ROLE_COURSE_ADMIN is a non-standard role in Opencast which is referenced neither in the documentation nor in any code (except for tests) but only in the security configuration. From the name – implying an admin for a specific course – users would never expect that this role allows user creation. This issue is fixed in 7.6 and 8.1 which both ship a new default security configuration.

    Published: 30 Jan 2020
    7.8
    High

    CVE-2019-20358

    Last Modified: 21 Nov 2024

    Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to place malicious files in the same directory, potentially leading to arbitrary remote code execution (RCE) when executed. Another attack vector similar to CVE-2019-9491 was idenitfied and resolved in version 1.62.0.1228 of the tool.

    Published: 30 Jan 2020
    4.9
    Medium

    CVE-2020-8095

    Last Modified: 21 Nov 2024

    A vulnerability in the improper handling of junctions before deletion in Bitdefender Total Security 2020 can allow an attacker to to trigger a denial of service on the affected device.

    Published: 30 Jan 2020
    7.7
    High

    CVE-2020-5230

    Last Modified: 21 Nov 2024

    Opencast before 8.1 and 7.6 allows almost arbitrary identifiers for media packages and elements to be used. This can be problematic for operation and security since such identifiers are sometimes used for file system operations which may lead to an attacker being able to escape working directories and write files to other locations. In addition, Opencast's Id.toString(…) vs Id.compact(…) behavior, the latter trying to mitigate some of the file system problems, can cause errors due to identifier mismatch since an identifier may unintentionally change. This issue is fixed in Opencast 7.6 and 8.1.

    Published: 30 Jan 2020
    6.8
    Medium

    CVE-2020-5222

    Last Modified: 21 Nov 2024

    Opencast before 7.6 and 8.1 enables a remember-me cookie based on a hash created from the username, password, and an additional system key. This means that an attacker getting access to a remember-me token for one server can get access to all servers which allow log-in using the same credentials without ever needing the credentials. This problem is fixed in Opencast 7.6 and Opencast 8.1

    Published: 30 Jan 2020