|
209221
|
9.8 |
CRITICAL
Network
|
hp
|
intelligent_management_center
|
A legend expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
|
CWE-917
Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
|
CVE-2020-24650
|
2024-11-21 14:15 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209222
|
9.8 |
CRITICAL
Network
|
hp
|
intelligent_management_center
|
A remote bytemessageresource transformentity" input validation code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
|
CWE-20
Improper Input Validation
|
CVE-2020-24649
|
2024-11-21 14:15 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209223
|
9.8 |
CRITICAL
Network
|
hp
|
intelligent_management_center
|
A accessmgrservlet classname deserialization of untrusted data remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P0…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2020-24648
|
2024-11-21 14:15 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209224
|
9.8 |
CRITICAL
Network
|
hp
|
intelligent_management_center
|
A remote accessmgrservlet classname input validation code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
|
CWE-20
Improper Input Validation
|
CVE-2020-24647
|
2024-11-21 14:15 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209225
|
9.8 |
CRITICAL
Network
|
hp
|
intelligent_management_center
|
A tftpserver stack-based buffer overflow remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
|
CWE-787
Out-of-bounds Write
|
CVE-2020-24646
|
2024-11-21 14:15 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209226
|
8.8 |
HIGH
Network
|
hp
|
intelligent_management_center
|
A remote operatoronlinelist_content privilege escalation vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
|
NVD-CWE-noinfo
|
CVE-2020-24630
|
2024-11-21 14:15 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209227
|
9.8 |
CRITICAL
Network
|
hp
|
intelligent_management_center
|
A remote urlaccesscontroller authentication bypass vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
|
CWE-287
Improper Authentication
|
CVE-2020-24629
|
2024-11-21 14:15 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209228
|
5.9 |
MEDIUM
Network
|
exposure_notifications_project
|
exposure_notifications
|
An issue was discovered in the GAEN (aka Google/Apple Exposure Notifications) protocol through 2020-10-05, as used in COVID-19 applications on Android and iOS. The encrypted metadata block with a TX …
|
CWE-294
Authentication Bypass by Capture-replay
|
CVE-2020-24722
|
2024-11-21 14:15 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209229
|
8.8 |
HIGH
Network
|
hpe
|
kvm_ip_console_switch_g2_firmware
|
A remote code injection vulnerability was discovered in HPE KVM IP Console Switches version(s): G2 4x1Ex32 Prior to 2.8.3.
|
CWE-94
Code Injection
|
CVE-2020-24628
|
2024-11-21 14:15 |
2020-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209230
|
5.4 |
MEDIUM
Network
|
hpe
|
kvm_ip_console_switch_g2_firmware
|
A remote stored xss vulnerability was discovered in HPE KVM IP Console Switches version(s): G2 4x1Ex32 Prior to 2.8.3.
|
CWE-79
Cross-site Scripting
|
CVE-2020-24627
|
2024-11-21 14:15 |
2020-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|