|
210501
|
7.5 |
HIGH
Network
|
doorkeeper_project
|
doorkeeper
|
Doorkeeper version 5.0.0 and later contains an information disclosure vulnerability that allows an attacker to retrieve the client secret only intended for the OAuth application owner. After authoriz…
|
CWE-862
Missing Authorization
|
CVE-2020-10187
|
2024-11-21 13:54 |
2020-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210502
|
5.4 |
MEDIUM
Network
|
lexmark
|
cs31x_firmware cs41x_firmware cs51x_firmware cx310_firmware cx410_firmware xc2130_firmware cx510_firmware xc2132_firmware ms310_firmware ms312_firmware ms317_firmware
|
A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY4.P273; CX310 before LW74.GM2.P273; CX410 & XC2130 before LW74.GM4.P2…
|
CWE-79
Cross-site Scripting
|
CVE-2020-10094
|
2024-11-21 13:54 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210503
|
5.4 |
MEDIUM
Network
|
lexmark
|
cs31x_firmware cs41x_firmware cs51x_firmware cx310_firmware cx410_firmware xc2130_firmware cx510_firmware xc2132_firmware ms310_firmware ms312_firmware ms317_firmware
|
A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products.
|
CWE-79
Cross-site Scripting
|
CVE-2020-10093
|
2024-11-21 13:54 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210504
|
9.8 |
CRITICAL
Network
|
mitel
|
mivoice_connect_client mivoice_connect
|
A remote code execution vulnerability in UCB component of Mitel MiVoice Connect before 19.1 SP1 could allow an unauthenticated remote attacker to execute arbitrary scripts due to insufficient validat…
|
CWE-20
Improper Input Validation
|
CVE-2020-10211
|
2024-11-21 13:54 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210505
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows Update Stack Elevation of Privilege Vulnerability'. This CVE ID i…
|
NVD-CWE-noinfo
|
CVE-2020-0996
|
2024-11-21 13:54 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210506
|
6.5 |
MEDIUM
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries, aka 'Windows DNS Denial of Service Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2020-0993
|
2024-11-21 13:54 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210507
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is u…
|
NVD-CWE-noinfo
|
CVE-2020-0999
|
2024-11-21 13:54 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210508
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is u…
|
NVD-CWE-noinfo
|
CVE-2020-0995
|
2024-11-21 13:54 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210509
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is u…
|
NVD-CWE-noinfo
|
CVE-2020-0994
|
2024-11-21 13:54 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210510
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'. This CVE ID is u…
|
NVD-CWE-noinfo
|
CVE-2020-0992
|
2024-11-21 13:54 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|