|
200411
|
6.5 |
MEDIUM
Adjacent
|
huawei
|
ips_module_firmware ngfw_module_firmware secospace_usg6300_firmware secospace_usg6500_firmware secospace_usg6600_firmware usg9500_firmware
|
There is an out-of-bounds write vulnerability in some products. An unauthenticated attacker crafts malformed packets with specific parameter and sends the packets to the affected products. Due to ins…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-9101
|
2024-11-21 14:40 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200412
|
6.5 |
MEDIUM
Network
|
huawei
|
honor_v30_firmware
|
Huawei Honor V30 smartphones with versions earlier than 10.1.0.212(C00E210R5P1) have an improper authentication vulnerability. The system does not sufficiently validate certain parameter passed from …
|
CWE-287
Improper Authentication
|
CVE-2020-9259
|
2024-11-21 14:40 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200413
|
5.5 |
MEDIUM
Local
|
huawei
|
honor_10_firmware
|
Huawei Honor 10 smartphones with versions earlier than 10.0.0.178(C00E178R1P4) have a denial of service vulnerability. Certain service in the system does not sufficiently validate certain parameter w…
|
CWE-20
Improper Input Validation
|
CVE-2020-9255
|
2024-11-21 14:40 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200414
|
7.8 |
HIGH
Local
|
huawei
|
p30_pro_firmware
|
HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E19R2P5patch02), versions earlier than 10.1.0.126(C10E11R5P1), and versions earlier than 10.1.0.160(C00E160R2P8) have a logic chec…
|
CWE-20
Improper Input Validation
|
CVE-2020-9254
|
2024-11-21 14:40 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200415
|
5.5 |
MEDIUM
Local
|
huawei
|
moana-al00b_firmware
|
Huawei Smart Phones Moana-AL00B with versions earlier than 10.1.0.166 have a missing initialization of resource vulnerability. An attacker tricks the user into installing then running a crafted appli…
|
CWE-909
Missing Initialization of Resource
|
CVE-2020-9227
|
2024-11-21 14:40 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200416
|
8.8 |
HIGH
Network
|
huawei
|
p30_pro_firmware
|
HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E19R2P5patch02), versions earlier than 10.1.0.126(C10E11R5P1), and versions earlier than 10.1.0.160(C00E160R2P8) have a buffer ove…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-9257
|
2024-11-21 14:40 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200417
|
2.3 |
LOW
Local
|
huawei
|
mate_20_firmware mate_20_x_firmware mate_20_rs_firmware magic2_firmware
|
HUAWEI Mate 20 versions earlier than 10.1.0.160(C00E160R3P8), HUAWEI Mate 20 X versions earlier than 10.1.0.135(C00E135R2P8), HUAWEI Mate 20 RS versions earlier than 10.1.0.160(C786E160R3P8), and Hon…
|
CWE-22
Path Traversal
|
CVE-2020-9252
|
2024-11-21 14:40 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200418
|
3.3 |
LOW
Local
|
huawei
|
cloudengine_12800_firmware cloudengine_5800_firmware cloudengine_6800_firmware cloudengine_7800_firmware
|
There is a information leak vulnerability in some Huawei products, and it could allow a local attacker to get information. The vulnerability is due to the improper management of the username. An atta…
|
NVD-CWE-noinfo
|
CVE-2020-9102
|
2024-11-21 14:40 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200419
|
6.1 |
MEDIUM
Network
|
apache
|
airflow
|
An issue was found in Apache Airflow versions 1.10.10 and below. A stored XSS vulnerability was discovered in the Chart pages of the the "classic" UI.
|
CWE-79
Cross-site Scripting
|
CVE-2020-9485
|
2024-11-21 14:40 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200420
|
5.4 |
MEDIUM
Network
|
silverstripe
|
silverstripe
|
In SilverStripe through 4.5, malicious users with a valid Silverstripe CMS login (usually CMS access) can craft profile information which can lead to XSS for other users through specially crafted log…
|
CWE-79
Cross-site Scripting
|
CVE-2020-9311
|
2024-11-21 14:40 |
2020-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|