4.6
    Medium

    CVE-2020-12702

    Last Modified: 21 Nov 2024

    Weak encryption in the Quick Pairing mode in the eWeLink mobile application (Android application V4.9.2 and earlier, iOS application V4.9.1 and earlier) allows physically proximate attackers to eavesdrop on Wi-Fi credentials and other sensitive information by monitoring the Wi-Fi spectrum during the pairing process.

    Published:24 Feb 2021
    6.1
    Medium

    CVE-2020-12696

    Last Modified: 21 Nov 2024

    The iframe plugin before 4.5 for WordPress does not sanitize a URL.

    Published:7 May 2020
    7.5
    High

    CVE-2020-12695

    Last Modified: 21 Nov 2024

    The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment than the fully qualified event-subscription URL, aka the CallStranger issue.

    Published:8 Jun 2020
    Unknown

    CVE-2020-12688

    https://github.com/TheCyberGeek/Centreon-20.04

    9.8
    Critical

    CVE-2020-12641

    Last Modified: 4 Nov 2025

    rcube_image.php in Roundcube Webmail before 1.4.4 allows attackers to execute arbitrary code via shell metacharacters in a configuration setting for im_convert_path or im_identify_path.

    Published:4 May 2020
    9.8
    Critical

    CVE-2020-12640

    Last Modified: 21 Nov 2024

    Roundcube Webmail before 1.4.4 allows attackers to include local files and execute code via directory traversal in a plugin name to rcube_plugin_api.php.

    Published:4 May 2020
    5.4
    Medium

    CVE-2020-12629

    Last Modified: 21 Nov 2024

    include/class.sla.php in osTicket before 1.14.2 allows XSS via the SLA Name.

    Published:4 May 2020
    6.1
    Medium

    CVE-2020-12625

    Last Modified: 21 Nov 2024

    An issue was discovered in Roundcube Webmail before 1.4.4. There is a cross-site scripting (XSS) vulnerability in rcube_washtml.php because JavaScript code can occur in the CDATA of an HTML message.

    Published:4 May 2020
    7.8
    High

    CVE-2020-12608

    Last Modified: 12 May 2020

    An issue was discovered in SolarWinds MSP PME (Patch Management Engine) Cache Service before 1.1.15 in the Advanced Monitoring Agent. There are insecure file permissions for %PROGRAMDATA%\SolarWinds MSP\SolarWinds.MSP.CacheService\config\. This can lead to code execution by changing the CacheService.xml SISServerURL parameter.

    Source:Jens Regel
    Published:7 May 2020
    7.5
    High

    CVE-2020-12593

    Last Modified: 21 Nov 2024

    Symantec Endpoint Detection & Response, prior to 4.5, may be susceptible to an information disclosure issue, which is a type of vulnerability that could potentially allow unauthorized access to data.

    Published:18 Nov 2020
    7.8
    High

    CVE-2020-12446

    Last Modified: 21 Nov 2024

    The ene.sys driver in G.SKILL Trident Z Lighting Control through 1.00.08 exposes mapping and un-mapping of physical memory, reading and writing to Model Specific Register (MSR) registers, and input from and output to I/O ports to local non-privileged users. This leads to privilege escalation to NT AUTHORITY\SYSTEM.

    Published:29 Apr 2020
    6.1
    Medium

    CVE-2020-12432

    Last Modified: 21 Nov 2024

    The WOPI API integration for Vereign Collabora CODE through 4.2.2 does not properly restrict delivery of JavaScript to a victim's browser, and lacks proper MIME type access control, which could lead to XSS that steals account credentials via cookies or local storage. The attacker must first obtain an API access token, which can be accomplished if the attacker is able to upload a .docx or .odt file. The associated API endpoints for exploitation are /wopi/files and /wopi/getAccessToken.

    Published:21 Jul 2020
    6.5
    Medium

    CVE-2020-12352

    Last Modified: 8 Apr 2021

    Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.

    Source:Google Security Research
    Published:14 Oct 2020
    8.8
    High

    CVE-2020-12351

    Last Modified: 8 Apr 2021

    Improper input validation in BlueZ may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

    Source:Google Security Research
    Published:14 Oct 2020
    5.4
    Medium

    CVE-2020-12261

    Last Modified: 26 May 2020

    Open-AudIT 3.3.0 allows an XSS attack after login.

    Source:Kamaljeet Kumar
    Published:28 Apr 2020
    8.8
    High

    CVE-2020-12255

    Last Modified: 21 Nov 2024

    rConfig 3.9.4 is vulnerable to remote code execution due to improper validation in the file upload functionality. vendor.crud.php accepts a file upload by checking content-type without considering the file extension and header. Thus, an attacker can exploit this by uploading a .php file to vendor.php that contains arbitrary PHP code and changing the content-type to image/gif.

    Published:18 May 2020
    7.8
    High

    CVE-2020-12242

    Last Modified: 28 Apr 2020

    Valve Source allows local users to gain privileges by writing to the /tmp/hl2_relaunch file, which is later executed in the context of a different user account.

    Source:0xEmma
    Published:27 Apr 2020
    9.8
    Critical

    CVE-2020-12124

    Last Modified: 21 Nov 2024

    A remote command-line injection vulnerability in the /cgi-bin/live_api.cgi endpoint of the WAVLINK WN530H4 M30H4.V5030.190403 allows an attacker to execute arbitrary Linux commands as root without authentication.

    Published:2 Oct 2020
    7.5
    High

    CVE-2020-12116

    Last Modified: 21 Nov 2024

    Zoho ManageEngine OpManager Stable build before 124196 and Released build before 125125 allows an unauthenticated attacker to read arbitrary files on the server by sending a crafted request.

    Published:7 May 2020
    7.5
    High

    CVE-2020-12112

    Last Modified: 21 Nov 2024

    BigBlueButton before 2.2.5 allows remote attackers to obtain sensitive files via Local File Inclusion.

    Published:23 Apr 2020
    8.8
    High

    CVE-2020-12078

    Last Modified: 21 Nov 2024

    An issue was discovered in Open-AudIT 3.3.1. There is shell metacharacter injection via attributes to an open-audit/configuration/ URI. An attacker can exploit this by adding an excluded IP address to the global discovery settings (internally called exclude_ip). This exclude_ip value is passed to the exec function in the discoveries_helper.php file (inside the all_ip_list function) without being filtered, which means that the attacker can provide a payload instead of a valid IP address.

    Published:28 Apr 2020
    8.8
    High

    CVE-2020-12077

    Last Modified: 21 Nov 2024

    The mappress-google-maps-for-wordpress plugin before 2.53.9 for WordPress does not correctly implement AJAX functions with nonces (or capability checks), leading to remote code execution.

    Published:23 Apr 2020
    9.8
    Critical

    CVE-2020-11998

    Last Modified: 21 Nov 2024

    A regression has been introduced in the commit preventing JMX re-bind. By passing an empty environment map to RMIConnectorServer, instead of the map that contains the authentication credentials, it leaves ActiveMQ open to the following attack: https://docs.oracle.com/javase/8/docs/technotes/guides/management/agent.html "A remote client could create a javax.management.loading.MLet MBean and use it to create new MBeans from arbitrary URLs, at least if there is no security manager. In other words, a rogue remote client could make your Java application execute arbitrary code." Mitigation: Upgrade to Apache ActiveMQ 5.15.13

    Published:10 Sept 2020
    7.5
    High

    CVE-2020-11996

    Last Modified: 21 Nov 2024

    A specially crafted sequence of HTTP/2 requests sent to Apache Tomcat 10.0.0-M1 to 10.0.0-M5, 9.0.0.M1 to 9.0.35 and 8.5.0 to 8.5.55 could trigger high CPU usage for several seconds. If a sufficient number of such requests were made on concurrent HTTP/2 connections, the server could become unresponsive.

    Published:25 Jun 2020
    3.3
    Low

    CVE-2020-11990

    Last Modified: 21 Nov 2024

    We have resolved a security issue in the camera plugin that could have affected certain Cordova (Android) applications. An attacker who could install (or lead the victim to install) a specially crafted (or malicious) Android application would be able to access pictures taken with the app externally.

    Published:1 Dec 2020
    9.8
    Critical

    CVE-2020-11989

    Last Modified: 21 Nov 2024

    Apache Shiro before 1.5.3, when using Apache Shiro with Spring dynamic controllers, a specially crafted request may cause an authentication bypass.

    Published:22 Jun 2020
    9.8
    Critical

    CVE-2020-11984

    Last Modified: 21 Nov 2024

    Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE

    Published:7 Aug 2020
    9.8
    Critical

    CVE-2020-11981

    Last Modified: 21 Nov 2024

    An issue was found in Apache Airflow versions 1.10.10 and below. When using CeleryExecutor, if an attacker can connect to the broker (Redis, RabbitMQ) directly, it is possible to inject commands, resulting in the celery worker running arbitrary commands.

    Published:16 Jul 2020
    8.8
    High

    CVE-2020-11978

    Last Modified: 2 Jun 2021

    An issue was found in Apache Airflow versions 1.10.10 and below. A remote code/command injection vulnerability was discovered in one of the example DAGs shipped with Airflow which would allow any authenticated user to run arbitrary commands as the user running airflow worker/scheduler (depending on the executor in use). If you already have examples disabled by setting load_examples=False in the config then you are not vulnerable.

    Source:Pepe Berba
    Published:16 Jul 2020
    9.8
    Critical

    CVE-2020-11975

    Last Modified: 21 Nov 2024

    Apache Unomi allows conditions to use OGNL scripting which offers the possibility to call static Java classes from the JDK that could execute code with the permission level of the running Java process.

    Published:5 Jun 2020
    2.3
    Low

    CVE-2020-11932

    Last Modified: 21 Nov 2024

    It was discovered that the Subiquity installer for Ubuntu Server logged the LUKS full disk encryption password if one was entered.

    Published:13 May 2020
    9.1
    Critical

    CVE-2020-11898

    Last Modified: 21 Nov 2024

    The Treck TCP/IP stack before 6.0.1.66 improperly handles an IPv4/ICMPv4 Length Parameter Inconsistency, which might allow remote attackers to trigger an information leak.

    Published:17 Jun 2020
    10
    Critical

    CVE-2020-11896

    Last Modified: 21 Nov 2024

    The Treck TCP/IP stack before 6.0.1.66 allows Remote Code Execution, related to IPv4 tunneling.

    Published:17 Jun 2020
    5.3
    Medium

    CVE-2020-11890

    Last Modified: 21 Nov 2024

    An issue was discovered in Joomla! before 3.9.17. Improper input validations in the usergroup table class could lead to a broken ACL configuration.

    Published:21 Apr 2020
    5.3
    Medium

    CVE-2020-11883

    Last Modified: 21 Nov 2024

    In Divante vue-storefront-api through 1.11.1 and storefront-api through 1.0-rc.1, as used in VueStorefront PWA, unexpected HTTP requests lead to an exception that discloses the error stack trace, with absolute file paths and Node.js module names.

    Published:17 Apr 2020
    7.5
    High

    CVE-2020-11881

    Last Modified: 21 Nov 2024

    An array index error in MikroTik RouterOS 6.41.3 through 6.46.5, and 7.x through 7.0 Beta5, allows an unauthenticated remote attacker to crash the SMB server via modified setup-request packets, aka SUP-12964.

    Published:14 Sept 2020
    9.8
    Critical

    CVE-2020-11851

    Last Modified: 21 Nov 2024

    Arbitrary code execution vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in the execution of arbitrary code.

    Published:17 Nov 2020
    9.8
    Critical

    CVE-2020-11819

    Last Modified: 18 Feb 2021

    In Rukovoditel 2.5.2, an attacker may inject an arbitrary .php file location instead of a language file and thus achieve command execution.

    Source:coiffeur
    Published:16 Apr 2020
    8.8
    High

    CVE-2020-11804

    Last Modified: 18 Sept 2020

    An issue was discovered in Titan SpamTitan 7.07. Due to improper sanitization of the parameter quid, used in the page mailqueue.php, code injection can occur. The input for this parameter is provided directly by an authenticated user via an HTTP GET request.

    Source:Felipe Molina
    Published:17 Sept 2020
    8.8
    High

    CVE-2020-11803

    Last Modified: 18 Sept 2020

    An issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter jaction when interacting with the page mailqueue.php could lead to PHP code evaluation server-side, because the user-provided input is passed directly to the php eval() function. The user has to be authenticated on the web platform before interacting with the page.

    Source:Felipe Molina
    Published:17 Sept 2020
    9.8
    Critical

    CVE-2020-11800

    Last Modified: 21 Nov 2024

    Zabbix Server 2.2.x and 3.0.x before 3.0.31, and 3.2 allows remote attackers to execute arbitrary code.

    Published:7 Oct 2020
    5.3
    Medium

    CVE-2020-11798

    Last Modified: 6 Apr 2023

    A Directory Traversal vulnerability in the web conference component of Mitel MiCollab AWV before 8.1.2.4 and 9.x before 9.1.3 could allow an attacker to access arbitrary files from restricted directories of the server via a crafted URL, due to insufficient access validation. A successful exploit could allow an attacker to access sensitive information from the restricted directories.

    Source:Kahvi-0
    Published:10 Jun 2020
    Unknown

    CVE-2020-11794

    https://github.com/w4cky/CVE-2020-11794

    9
    Critical

    CVE-2020-11749

    Last Modified: 26 Jul 2020

    Pandora FMS 7.0 NG <= 746 suffers from Multiple XSS vulnerabilities in different browser views. A network administrator scanning a SNMP device can trigger a Cross Site Scripting (XSS), which can run arbitrary code to allow Remote Code Execution as root or apache2.

    Source:AppleBois
    Published:13 Jul 2020
    7.5
    High

    CVE-2020-11738

    Last Modified: 18 Oct 2021

    The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal via ../ in the file parameter to duplicator_download or duplicator_init.

    Source:nam3lum
    Published:13 Apr 2020
    6.5
    Medium

    CVE-2020-11700

    Last Modified: 18 Sept 2020

    An issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter fname, used on the page certs-x.php, would allow an attacker to retrieve the contents of arbitrary files. The user has to be authenticated before interacting with this page.

    Source:Felipe Molina
    Published:17 Sept 2020
    8.8
    High

    CVE-2020-11699

    Last Modified: 18 Sept 2020

    An issue was discovered in Titan SpamTitan 7.07. Improper validation of the parameter fname on the page certs-x.php would allow an attacker to execute remote code on the target server. The user has to be authenticated before interacting with this page.

    Source:Felipe Molina
    Published:17 Sept 2020
    9.8
    Critical

    CVE-2020-11698

    Last Modified: 5 Oct 2020

    An issue was discovered in Titan SpamTitan 7.07. Improper input sanitization of the parameter community on the page snmp-x.php would allow a remote attacker to inject commands into the file snmpd.conf that would allow executing commands on the target server.

    Source:Felipe Molina
    Published:17 Sept 2020
    6.5
    Medium

    CVE-2020-11652

    Last Modified: 23 Feb 2021

    An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class allows access to some methods that improperly sanitize paths. These methods allow arbitrary directory access to authenticated users.

    Source:Jasper Lievisse Adriaanse
    Published:29 Apr 2020
    9.8
    Critical

    CVE-2020-11651

    Last Modified: 23 Feb 2021

    An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class does not properly validate method calls. This allows a remote user to access some methods without authentication. These methods can be used to retrieve user tokens from the salt master and/or run arbitrary commands on salt minions.

    Source:Jasper Lievisse Adriaanse
    Published:29 Apr 2020