|
197921
|
7.8 |
HIGH
Local
|
anydesk
|
anydesk
|
AnyDesk before 6.1.0 on Windows, when run in portable mode on a system where the attacker has write access to the application directory, allows this attacker to compromise a local user account via a …
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-35483
|
2024-11-21 14:27 |
2021-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197922
|
5.4 |
MEDIUM
Network
|
quest
|
policy_authority_for_unified_communications
|
Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the BrowseDirs.do file via the title parameter. NOT…
|
CWE-79
Cross-site Scripting
|
CVE-2020-35727
|
2024-11-21 14:27 |
2021-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197923
|
6.1 |
MEDIUM
Network
|
quest
|
policy_authority_for_unified_communications
|
Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the /WebCM/Applications/Reports/index.jsp file via …
|
CWE-79
Cross-site Scripting
|
CVE-2020-35726
|
2024-11-21 14:27 |
2021-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197924
|
6.1 |
MEDIUM
Network
|
quest
|
policy_authority_for_unified_communications
|
Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the /WebCM/index.jsp file via the msg parameter. NO…
|
CWE-79
Cross-site Scripting
|
CVE-2020-35725
|
2024-11-21 14:27 |
2021-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197925
|
5.4 |
MEDIUM
Network
|
quest
|
policy_authority_for_unified_communications
|
Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the Error.jsp file via the err parameter (or indire…
|
CWE-79
Cross-site Scripting
|
CVE-2020-35724
|
2024-11-21 14:27 |
2021-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197926
|
5.4 |
MEDIUM
Network
|
quest
|
policy_authority_for_unified_communications
|
Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the ReportPreview.do file via the referer parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2020-35723
|
2024-11-21 14:27 |
2021-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197927
|
6.5 |
MEDIUM
Network
|
quest
|
policy_authority_for_unified_communications
|
CSRF in Web Compliance Manager in Quest Policy Authority 8.1.2.200 allows remote attackers to force user modification/creation via a specially crafted link to the submitUser.jsp file. NOTE: This vuln…
|
CWE-352
Origin Validation Error
|
CVE-2020-35722
|
2024-11-21 14:27 |
2021-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197928
|
5.4 |
MEDIUM
Network
|
quest
|
policy_authority_for_unified_communications
|
Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the BrowseAssets.do file via the title parameter. N…
|
CWE-79
Cross-site Scripting
|
CVE-2020-35721
|
2024-11-21 14:27 |
2021-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197929
|
5.4 |
MEDIUM
Network
|
quest
|
policy_authority_for_unified_communications
|
Stored XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to store malicious code in multiple fields (first name, last name, and logon name) when creating or modifying a user via the sub…
|
CWE-79
Cross-site Scripting
|
CVE-2020-35720
|
2024-11-21 14:27 |
2021-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197930
|
6.1 |
MEDIUM
Network
|
quest
|
policy_authority_for_unified_communications
|
Reflected XSS in Quest Policy Authority 8.1.2.200 allows remote attackers to inject malicious code into the browser via a specially crafted link to the /WebCM/Applications/Search/index.jsp file via t…
|
CWE-79
Cross-site Scripting
|
CVE-2020-35719
|
2024-11-21 14:27 |
2021-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|