|
209761
|
7.8 |
HIGH
Local
|
intel
|
dynamic_application_loader_software_developement_kit
|
Improper access control in Installer for Intel(R) DAL SDK before version 2.1 for Windows may allow an authenticated user to potentially enable escalation of privileges via local access.
|
NVD-CWE-noinfo
|
CVE-2020-12304
|
2024-11-21 13:59 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209762
|
7.8 |
HIGH
Local
|
intel
|
converged_security_and_manageability_engine trusted_execution_technology
|
Use after free in DAL subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE 3.1.80, 4.0.30 may allow an authenticated …
|
CWE-416
Use After Free
|
CVE-2020-12303
|
2024-11-21 13:59 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209763
|
7.8 |
HIGH
Local
|
intel
|
converged_security_and_manageability_engine trusted_execution_technology
|
Improper access control in Installer for Intel(R) CSME Driver for Windows versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel TXE 3.1.80, 4.0.30 may al…
|
NVD-CWE-noinfo
|
CVE-2020-12297
|
2024-11-21 13:59 |
2020-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209764
|
5.5 |
MEDIUM
Local
|
vivo
|
frame_touch_module
|
The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary when memory access.The vulnerability eventually leads…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-12485
|
2024-11-21 13:59 |
2020-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209765
|
8.8 |
HIGH
Network
|
silver-peak
|
unity_orchestrator
|
In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can make unauthorized MySQL queries against the Orchestrator database using the /sqlExecution R…
|
CWE-22
Path Traversal
|
CVE-2020-12147
|
2024-11-21 13:59 |
2020-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209766
|
8.8 |
HIGH
Network
|
silver-peak
|
unity_orchestrator
|
In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can access, modify, and delete restricted files on the Orchestrator server using the/debugFiles…
|
CWE-22
Path Traversal
|
CVE-2020-12146
|
2024-11-21 13:59 |
2020-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209767
|
9.8 |
CRITICAL
Network
|
silver-peak
|
unity_orchestrator
|
Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+ uses HTTP headers to authenticate REST API calls from localhost. This makes it possible to log in to Orchestrator by intr…
|
CWE-287
Improper Authentication
|
CVE-2020-12145
|
2024-11-21 13:59 |
2020-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209768
|
9.8 |
CRITICAL
Network
|
pepperl-fuchs korenix westermo
|
es7510-xt_firmware es8509-xt_firmware es8510-xt_firmware es9528-xtv2_firmware es7506_firmware es7510_firmware es7528_firmware es8508_firmware es8508f_firmware es8510_firmwa…
|
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X…
|
-
|
CVE-2020-12504
|
2024-11-21 13:59 |
2020-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209769
|
7.2 |
HIGH
Network
|
pepperl-fuchs korenix
|
es7510-xt_firmware es8509-xt_firmware es8510-xt_firmware es9528-xtv2_firmware es7506_firmware es7510_firmware es7528_firmware es8508_firmware es8508f_firmware es8510_firmwa…
|
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X…
|
-
|
CVE-2020-12503
|
2024-11-21 13:59 |
2020-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209770
|
8.8 |
HIGH
Network
|
pepperl-fuchs korenix
|
es7510-xt_firmware es8509-xt_firmware es8510-xt_firmware es9528-xtv2_firmware es7506_firmware es7510_firmware es7528_firmware es8508_firmware es8508f_firmware es8510_firmwa…
|
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X…
|
-
|
CVE-2020-12502
|
2024-11-21 13:59 |
2020-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|