|
208711
|
8.8 |
HIGH
Network
|
forlogic
|
qualiex
|
ForLogic Qualiex v1 and v3 allows any authenticated customer to achieve privilege escalation via user creations, password changes, or user permission updates.
|
NVD-CWE-noinfo
|
CVE-2020-24028
|
2024-11-21 14:14 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208712
|
7.1 |
HIGH
Network
|
stock_management_system_project
|
stock_management_system
|
A Cross-Site Request Forgery (CSRF) vulnerability in changeUsername.php in SourceCodester Stock Management System v1.0 allows remote attackers to deny future logins by changing an authenticated victi…
|
CWE-352
Origin Validation Error
|
CVE-2020-23830
|
2024-11-21 14:14 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208713
|
9.8 |
CRITICAL
Network
|
zyxel
|
vmg5313-b30b_firmware
|
Zyxel VMG5313-B30B router on firmware 5.13(ABCJ.6)b3_1127, and possibly older versions of firmware are affected by insecure permissions which allows regular and other users to create new users with e…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-24355
|
2024-11-21 14:14 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208714
|
7.8 |
HIGH
Local
|
trendmicro
|
apex_one officescan worry-free_business_security worry-free_business_security_services
|
A vulnerability in Trend Micro Apex One, Worry-Free Business Security 10.0 SP1 and Worry-Free Business Security Services on macOS may allow an attacker to manipulate a certain binary to load and run …
|
CWE-59
Link Following
|
CVE-2020-24559
|
2024-11-21 14:14 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208715
|
7.1 |
HIGH
Local
|
trendmicro
|
apex_one worry-free_business_security worry-free_business_security_services
|
A vulnerability in an Trend Micro Apex One, Worry-Free Business Security 10.0 SP1 and Worry-Free Business Security Services dll may allow an attacker to manipulate it to cause an out-of-bounds read t…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-24558
|
2024-11-21 14:14 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208716
|
7.8 |
HIGH
Local
|
trendmicro
|
apex_one worry-free_business_security
|
A vulnerability in Trend Micro Apex One and Worry-Free Business Security 10.0 SP1 on Microsoft Windows may allow an attacker to manipulate a particular product folder to disable the security temporar…
|
NVD-CWE-Other
|
CVE-2020-24557
|
2024-11-21 14:14 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208717
|
7.8 |
HIGH
Local
|
trendmicro
|
apex_one worry-free_business_security worry-free_business_security_services
|
A vulnerability in Trend Micro Apex One, OfficeScan XG SP1, Worry-Free Business Security 10 SP1 and Worry-Free Business Security Services on Microsoft Windows may allow an attacker to create a hard l…
|
CWE-59
Link Following
|
CVE-2020-24556
|
2024-11-21 14:14 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208718
|
6.1 |
MEDIUM
Network
|
get-simple
|
getsimple_cms
|
A Reflected Cross-Site Scripting (XSS) vulnerability in GetSimple CMS v3.3.16, in the admin/index.php login portal webpage, allows remote attackers to execute JavaScript code in the client's browser …
|
CWE-79
Cross-site Scripting
|
CVE-2020-23839
|
2024-11-21 14:14 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208719
|
8.8 |
HIGH
Network
|
sagemcom
|
f\@st_5280_router_firmware
|
Sagemcom F@ST 5280 routers using firmware version 1.150.61 have insecure deserialization that allows any authenticated user to perform a privilege escalation to any other user. By making a request wi…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2020-24034
|
2024-11-21 14:14 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208720
|
8.8 |
HIGH
Network
|
oswapp
|
warehouse_inventory_system
|
A Cross-Site Request Forgery (CSRF) vulnerability in edit_user.php in OSWAPP Warehouse Inventory System (aka OSWA-INV) through 2020-08-10 allows remote attackers to change the admin's password after …
|
CWE-352
Origin Validation Error
|
CVE-2020-23836
|
2024-11-21 14:14 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|