|
210001
|
5.5 |
MEDIUM
Local
|
redhat
|
gluster-block
|
An information-disclosure flaw was found in the way that gluster-block before 0.5.1 logs the output from gluster-block CLI operations. This includes recording passwords to the cmd_history.log file wh…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2020-10762
|
2024-11-21 13:56 |
2020-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210002
|
4.8 |
MEDIUM
Network
|
redhat
|
keycloak
|
A flaw was found in Keycloak before version 12.0.0, where it is possible to add unsafe schemes for the redirect_uri parameter. This flaw allows an attacker to perform a Cross-site scripting attack.
|
CWE-79
Cross-site Scripting
|
CVE-2020-10776
|
2024-11-21 13:56 |
2020-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210003
|
7.1 |
HIGH
Local
|
qualcomm
|
apq8009_firmware apq8096au_firmware apq8098_firmware mdm8207_firmware mdm9150_firmware mdm9205_firmware mdm9206_firmware mdm9207_firmware mdm9250_firmware mdm9607_firmware<…
|
u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-11132
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210004
|
7.8 |
HIGH
Local
|
qualcomm
|
apq8009_firmware apq8053_firmware apq8096au_firmware mdm9206_firmware mdm9250_firmware mdm9628_firmware mdm9640_firmware mdm9650_firmware msm8996au_firmware qcs405_firmware…
|
u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received from user space' in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industria…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-11131
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210005
|
7.8 |
HIGH
Local
|
qualcomm
|
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sc8180x_firmware sc8…
|
u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290,…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-11130
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210006
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9205_firmware qcm4290_firmware qcs405_firmware qcs410_firmware qcs4290_firmware qcs610_firmware qsm8250_firmware sa415m_firmware sa515m_firmware sa6145p_firmware sa61…
|
u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security metadata while processing objects to be loaded' in Sna…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-11127
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210007
|
5.5 |
MEDIUM
Local
|
qualcomm
|
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096_firmware apq8096au_firmware apq8096sg_firmware apq8098_firm…
|
u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attempts at getting user`s lock-screen password can be bypassed by performing the st…
|
NVD-CWE-Other
|
CVE-2020-11123
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210008
|
7.8 |
HIGH
Local
|
qualcomm
|
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sc8180x_firmware sc8…
|
u'Possible buffer overflow in WIFI hal process due to usage of memcpy without checking length of destination buffer' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobi…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-11121
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210009
|
7.5 |
HIGH
Network
|
protocol
|
ipfs
|
An issue was discovered in IPFS (aka go-ipfs) 0.4.23. An attacker can generate ephemeral identities (Sybils) and leverage the IPFS connection management reputation system to poison other nodes' routi…
|
NVD-CWE-noinfo
|
CVE-2020-10937
|
2024-11-21 13:56 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210010
|
8.8 |
HIGH
Adjacent
|
qualcomm
|
ar9344_firmware
|
u'Bluetooth devices does not properly restrict the L2CAP payload length allowing users in radio range to cause a buffer overflow via a crafted Link Layer packet(Equivalent to CVE-2019-17060,CVE-2019-…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-11114
|
2024-11-21 13:56 |
2020-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|