|
208311
|
6.5 |
MEDIUM
Network
|
solarwinds
|
orion_platform
|
This vulnerability allows remote attackers to disclose sensitive information on affected installations of SolarWinds Orion Platform 2020.2.1. Authentication is required to exploit this vulnerability.…
|
-
|
CVE-2020-27870
|
2024-11-21 14:21 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208312
|
7.8 |
HIGH
Local
|
foxitsoftware
|
foxit_studio_photo
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-27857
|
2024-11-21 14:21 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208313
|
7.8 |
HIGH
Local
|
foxitsoftware
|
foxit_studio_photo
|
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in t…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27856
|
2024-11-21 14:21 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208314
|
7.8 |
HIGH
Local
|
foxitsoftware
|
foxit_studio_photo
|
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in t…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27855
|
2024-11-21 14:21 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208315
|
6.5 |
MEDIUM
Adjacent
|
netgear
|
ac2100_firmware ac2400_firmware ac2600_firmware r6700_firmware r6800_firmware r6900_firmware r7200_firmware r7350_firmware r7400_firmware r7450_firmware r6220_firmware
|
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authentication is not required to exploit thi…
|
CWE-863
Incorrect Authorization
|
CVE-2020-27873
|
2024-11-21 14:21 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208316
|
8.8 |
HIGH
Adjacent
|
netgear
|
ac2100_firmware ac2400_firmware ac2600_firmware r6700_firmware r6800_firmware r6900_firmware r7200_firmware r7350_firmware r7400_firmware r7450_firmware r6220_firmware
|
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authentication is not required to exploit this vulnera…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2020-27872
|
2024-11-21 14:21 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208317
|
7.5 |
HIGH
Network
|
honeywell
|
opc_ua_tunneller
|
The affected product has uncontrolled resource consumption issues, which may allow an attacker to cause a denial-of-service condition on the OPC UA Tunneller (versions prior to 6.3.0.8233).
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-27295
|
2024-11-21 14:21 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208318
|
9.1 |
CRITICAL
Network
|
honeywell
|
opc_ua_tunneller
|
The affected product is vulnerable to an out-of-bounds read, which may allow an attacker to obtain and disclose sensitive data information or cause the device to crash on the OPC UA Tunneller (versio…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27299
|
2024-11-21 14:21 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208319
|
9.8 |
CRITICAL
Network
|
honeywell
|
opc_ua_tunneller
|
The affected product is vulnerable to a heap-based buffer overflow, which may allow an attacker to manipulate memory with controlled values and remotely execute code on the OPC UA Tunneller (versions…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-27297
|
2024-11-21 14:21 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208320
|
7.8 |
HIGH
Local
|
uclouvain debian
|
openjpeg debian_linux
|
A heap-buffer overflow was found in the way openjpeg2 handled certain PNG format files. An attacker could use this flaw to cause an application crash or in some cases execute arbitrary code with the …
|
-
|
CVE-2020-27814
|
2024-11-21 14:21 |
2021-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|