|
197431
|
5.4 |
MEDIUM
Network
|
openmrs
|
appointment_scheduling_module
|
A vulnerability was found in OpenMRS Appointment Scheduling Module up to 1.12.x. It has been classified as problematic. This affects the function validateFieldName of the file api/src/main/java/org/o…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36635
|
2024-11-21 14:29 |
2022-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197432
|
9.1 |
CRITICAL
Network
|
unzip_project
|
unzip
|
Due to improper path sanitization, archives containing relative file paths can cause files to be written (or overwritten) outside of the target directory.
|
CWE-22
Path Traversal
|
CVE-2020-36561
|
2024-11-21 14:29 |
2022-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197433
|
5.4 |
MEDIUM
Network
|
indeed
|
util
|
A vulnerability classified as problematic has been found in Indeed Engineering util up to 1.0.33. Affected is the function visit/appendTo of the file varexport/src/main/java/com/indeed/util/varexport…
|
-
|
CVE-2020-36634
|
2024-11-21 14:29 |
2022-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197434
|
5.3 |
MEDIUM
Network
|
labstack
|
echo
|
Due to improper sanitization of user input on Windows, the static file handler allows for directory traversal, allowing an attacker to read files outside of the target directory that the server has p…
|
CWE-22
Path Traversal
|
CVE-2020-36565
|
2024-11-21 14:29 |
2022-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197435
|
4.4 |
MEDIUM
Local
|
hitachi
|
infrastructure_analytics_advisor ops_center_analyzer ops_center_viewpoint
|
Incorrect Default Permissions vulnerability in Hitachi Infrastructure Analytics Advisor on Linux (Analytics probe component), Hitachi Ops Center Analyzer on Linux (Analyzer probe component), Hitachi …
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-36605
|
2024-11-21 14:29 |
2022-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197436
|
7.8 |
HIGH
Local
|
apple
|
macos
|
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.0.1. Processing a maliciously crafted font may lead to arbitrary code execution.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36615
|
2024-11-21 14:29 |
2023-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197437
|
7.1 |
HIGH
Local
|
hitachi
|
tuning_manager
|
Incorrect Default Permissions vulnerability in Hitachi Tuning Manager on Linux (Hitachi Tuning Manager server, Hitachi Tuning Manager - Agent for RAID, Hitachi Tuning Manager - Agent for NAS, Hitachi…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-36611
|
2024-11-21 14:29 |
2023-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197438
|
5.3 |
MEDIUM
Network
|
yunohost
|
transmission_ynh
|
A vulnerability classified as critical has been found in YunoHost-Apps transmission_ynh. Affected is an unknown function of the file conf/nginx.conf. The manipulation leads to path traversal. The pat…
|
CWE-22
Path Traversal
|
CVE-2020-36647
|
2024-11-21 14:29 |
2023-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197439
|
7.5 |
HIGH
Network
|
mediaarea
|
zenlib
|
A vulnerability classified as problematic has been found in MediaArea ZenLib up to 0.4.38. This affects the function Ztring::Date_From_Seconds_1970_Local of the file Source/ZenLib/Ztring.cpp. The man…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-36646
|
2024-11-21 14:29 |
2023-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197440
|
9.8 |
CRITICAL
Network
|
square
|
squalor
|
A vulnerability, which was classified as critical, was found in square squalor. This affects an unknown part. The manipulation leads to sql injection. Upgrading to version v0.0.0 is able to address t…
|
-
|
CVE-2020-36645
|
2024-11-21 14:29 |
2023-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|