|
197221
|
5.5 |
MEDIUM
Local
|
adobe
|
after_effects
|
Adobe After Effects versions 17.0.1 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .
|
CWE-125
Out-of-bounds Read
|
CVE-2020-3809
|
2024-11-21 14:31 |
2020-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197222
|
6.5 |
MEDIUM
Network
|
adobe
|
digital_editions
|
Adobe Digital Editions versions 4.5.11.187212 and below have a file enumeration (host or local network) vulnerability. Successful exploitation could lead to information disclosure.
|
NVD-CWE-noinfo
|
CVE-2020-3798
|
2024-11-21 14:31 |
2020-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197223
|
6.5 |
MEDIUM
Network
|
adobe
|
coldfusion
|
ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an improper access control vulnerability. Successful exploitation could lead to system file structure disclosure.
|
NVD-CWE-noinfo
|
CVE-2020-3796
|
2024-11-21 14:31 |
2020-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197224
|
7.8 |
HIGH
Local
|
adobe
|
coldfusion
|
ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a dll search-order hijacking vulnerability. Successful exploitation could lead to privilege escalation.
|
CWE-426
Untrusted Search Path
|
CVE-2020-3768
|
2024-11-21 14:31 |
2020-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197225
|
6.5 |
MEDIUM
Network
|
adobe
|
coldfusion
|
ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an insufficient input validation vulnerability. Successful exploitation could lead to application-level denial-of-service (dos).
|
CWE-20
Improper Input Validation
|
CVE-2020-3767
|
2024-11-21 14:31 |
2020-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197226
|
7.8 |
HIGH
Local
|
qualcomm
|
apq8096au_firmware apq8098_firmware kamorta_firmware msm8917_firmware msm8920_firmware msm8937_firmware msm8940_firmware msm8953_firmware msm8998_firmware nicobar_firmware<…
|
Possible memory corruption in perfservice due to improper validation array length taken from user application. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobil…
|
CWE-20 CWE-787
Improper Input Validation Out-of-bounds Write
|
CVE-2020-3676
|
2024-11-21 14:31 |
2020-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197227
|
7.8 |
HIGH
Local
|
qualcomm
|
apq8009_firmware apq8053_firmware apq8096au_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware mdm9615_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmwar…
|
A possible buffer overflow would occur while processing command from firmware due to the group_id obtained from the firmware being out of range in Snapdragon Auto, Snapdragon Compute, Snapdragon Conn…
|
CWE-129
Improper Validation of Array Index
|
CVE-2020-3665
|
2024-11-21 14:31 |
2020-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197228
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware kamorta_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware msm8905_firmware…
|
Buffer over-write may occur during fetching track decoder specific information if cb size exceeds buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-3663
|
2024-11-21 14:31 |
2020-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197229
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8053_firmware rennell_firmware sdx20_firmware
|
Improper access due to socket opened by the logging application without specifying localhost address in Snapdragon Consumer IOT, Snapdragon Mobile in APQ8053, Rennell, SDX20
|
NVD-CWE-noinfo
|
CVE-2020-3628
|
2024-11-21 14:31 |
2020-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197230
|
7.8 |
HIGH
Local
|
qualcomm
|
sm8150_firmware
|
Double free issue in kernel memory mapping due to lack of memory protection mechanism in Snapdragon Compute, Snapdragon Mobile, Snapdragon Voice & Music in SM8150
|
CWE-415
Double Free
|
CVE-2020-3613
|
2024-11-21 14:31 |
2020-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|