|
209781
|
7.8 |
HIGH
Local
|
microfocus
|
operations_bridge operations_bridge_manager
|
Code execution with escalated privileges vulnerability in Micro Focus products Operation Bridge Manager and Operation Bridge (containerized). The vulneravility affects: 1.) Operation Bridge Manager v…
|
NVD-CWE-noinfo
|
CVE-2020-11858
|
2024-11-21 13:58 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209782
|
9.8 |
CRITICAL
Network
|
microfocus
|
operations_bridge operations_bridge_manager application_performance_management
|
Arbitrary code execution vlnerability in Operation bridge Manager, Application Performance Management and Operations Bridge (containerized) vulnerability in Micro Focus products products Operation Br…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-11854
|
2024-11-21 13:58 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209783
|
8.8 |
HIGH
Network
|
microfocus hp
|
operations_bridge_manager operation_bridge_manager universal_cmbd_foundation application_performance_management data_center_automation hybrid_cloud_management service_manager_automa…
|
Arbitrary code execution vulnerability affecting multiple Micro Focus products. 1.) Operation Bridge Manager affecting version: 2020.05, 2019.11, 2019.05, 2018.11, 2018.05, versions 10.6x and 10.1x a…
|
NVD-CWE-noinfo
|
CVE-2020-11853
|
2024-11-21 13:58 |
2020-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209784
|
6.7 |
MEDIUM
Local
|
sprecher-automation
|
sprecon-e
|
Sprecher SPRECON-E firmware prior to 8.64b might allow local attackers with access to engineering data to insert arbitrary code. This firmware lacks the validation of the input values on the device s…
|
CWE-20 CWE-77
Improper Input Validation Command Injection
|
CVE-2020-11496
|
2024-11-21 13:58 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209785
|
7.5 |
HIGH
Network
|
br-automation
|
automation_runtime
|
A memory leak in the TFTP service in B&R Automation Runtime versions <N4.26, <N4.34, <F4.45, <E4.53, <D4.63, <A4.73 and prior could allow an unauthenticated attacker with network access to cause a de…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-11637
|
2024-11-21 13:58 |
2020-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209786
|
4.3 |
MEDIUM
Network
|
br-automation
|
gatemanager_9250_firmware gatemanager_4260_firmware gatemanager_8250_firmware
|
A log information disclosure vulnerability in B&R GateManager 4260 and 9250 versions <9.0.20262 and GateManager 8250 versions <9.2.620236042 allows authenticated users to view log information reserve…
|
NVD-CWE-Other
|
CVE-2020-11646
|
2024-11-21 13:58 |
2020-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209787
|
6.5 |
MEDIUM
Network
|
br-automation
|
gatemanager_9250_firmware gatemanager_4260_firmware gatemanager_8250_firmware
|
A denial of service vulnerability in B&R GateManager 4260 and 9250 versions <9.0.20262 and GateManager 8250 versions <9.2.620236042 allows authenticated users to limit availability of GateManager ins…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-11645
|
2024-11-21 13:58 |
2020-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209788
|
6.5 |
MEDIUM
Network
|
br-automation
|
gatemanager_9250_firmware gatemanager_4260_firmware gatemanager_8250_firmware
|
The information disclosure vulnerability present in B&R GateManager 4260 and 9250 versions <9.0.20262 and GateManager 8250 versions <9.2.620236042 allows authenticated users to generate fake audit lo…
|
NVD-CWE-Other
|
CVE-2020-11644
|
2024-11-21 13:58 |
2020-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209789
|
6.5 |
MEDIUM
Network
|
br-automation
|
gatemanager_9250_firmware gatemanager_4260_firmware gatemanager_8250_firmware
|
An information disclosure vulnerability in B&R GateManager 4260 and 9250 versions <9.0.20262 and GateManager 8250 versions <9.2.620236042 allows authenticated users to view information of devices bel…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2020-11643
|
2024-11-21 13:58 |
2020-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209790
|
6.5 |
MEDIUM
Network
|
br-automation
|
sitemanager
|
The local file inclusion vulnerability present in B&R SiteManager versions <9.2.620236042 allows authenticated users to impact availability of SiteManager instances.
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2020-11642
|
2024-11-21 13:58 |
2020-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|