|
196341
|
8.2 |
HIGH
Network
|
mysyngeryss
|
husky_rtu_6049-e70_firmware
|
The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Improper Check for Unusual or Exceptional Conditions (CWE-754) vulnerability. The affected produ…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2020-7800
|
2024-11-21 14:37 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196342
|
6.1 |
MEDIUM
Network
|
siemens
|
climatix_pol908_firmware climatix_pol909_firmware
|
A vulnerability has been identified in Climatix POL908 (BACnet/IP module) (All versions), Climatix POL909 (AWM module) (All versions < V11.32). A persistent cross-site scripting (XSS) vulnerability e…
|
CWE-79
Cross-site Scripting
|
CVE-2020-7575
|
2024-11-21 14:37 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196343
|
6.1 |
MEDIUM
Network
|
siemens
|
climatix_pol908_firmware climatix_pol909_firmware
|
A vulnerability has been identified in Climatix POL908 (BACnet/IP module) (All versions), Climatix POL909 (AWM module) (All versions < V11.32). A persistent cross-site scripting (XSS) vulnerability e…
|
CWE-79
Cross-site Scripting
|
CVE-2020-7574
|
2024-11-21 14:37 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196344
|
5.3 |
MEDIUM
Network
|
sds_project
|
sds
|
sds through 3.2.0 is vulnerable to Prototype Pollution.The library could be tricked into adding or modifying properties of the 'Object.prototype' by abusing the 'set' function located in 'js/set.js'.
|
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
|
CVE-2020-7618
|
2024-11-21 14:37 |
2020-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196345
|
5.3 |
MEDIUM
Network
|
express-mock-middleware_project
|
express-mock-middleware
|
express-mock-middleware through 0.0.6 is vulnerable to Prototype Pollution. Exported functions by the package can be tricked into adding or modifying properties of the `Object.prototype`. Exploitatio…
|
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
|
CVE-2020-7616
|
2024-11-21 14:37 |
2020-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196346
|
7.8 |
HIGH
Local
|
fsa_project
|
fsa
|
fsa through 0.5.1 is vulnerable to Command Injection. The first argument of 'execGitCommand()', located within 'lib/rep.js#63' can be controlled by users without any sanitization to inject arbitrary …
|
CWE-78
OS Command
|
CVE-2020-7615
|
2024-11-21 14:37 |
2020-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196347
|
9.8 |
CRITICAL
Network
|
npm-programmatic_project
|
npm-programmatic
|
npm-programmatic through 0.0.12 is vulnerable to Command Injection.The packages and option properties are concatenated together without any validation and are used by the 'exec' function directly.
|
CWE-20 CWE-78
Improper Input Validation OS Command
|
CVE-2020-7614
|
2024-11-21 14:37 |
2020-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196348
|
8.1 |
HIGH
Network
|
clamscan_project
|
clamscan
|
clamscan through 1.2.0 is vulnerable to Command Injection. It is possible to inject arbitrary commands as part of the `_is_clamav_binary` function located within `Index.js`. It should be noted that t…
|
CWE-78
OS Command
|
CVE-2020-7613
|
2024-11-21 14:37 |
2020-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196349
|
9.8 |
CRITICAL
Network
|
jooby
|
jooby
|
This affects the package io.jooby:jooby-netty before 1.6.9, from 2.0.0 and before 2.2.1. The DefaultHttpHeaders is set to false which means it does not validates that the header isn't being abused fo…
|
NVD-CWE-Other
|
CVE-2020-7622
|
2024-11-21 14:37 |
2020-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196350
|
5.3 |
MEDIUM
Network
|
dot_project
|
dot
|
eivindfjeldstad-dot below 1.0.3 is vulnerable to Prototype Pollution.The function 'set' could be tricked into adding or modifying properties of 'Object.prototype' using a '__proto__' payload.
|
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
|
CVE-2020-7639
|
2024-11-21 14:37 |
2020-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|