|
196701
|
6.1 |
MEDIUM
Network
|
mailform
|
mailform
|
Cross-site scripting vulnerability in mailform version 1.04 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2020-5552
|
2024-11-21 14:34 |
2020-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196702
|
9.8 |
CRITICAL
Network
|
grandstream
|
ucm6200_firmware
|
The HTTP interface of the Grandstream UCM6200 series is vulnerable to an unauthenticated remote SQL injection via crafted HTTP request. An attacker can use this vulnerability to execute shell command…
|
CWE-89
SQL Injection
|
CVE-2020-5722
|
2024-11-21 14:34 |
2020-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196703
|
7.2 |
HIGH
Network
|
artica
|
pandora_fms
|
index.php?sec=godmode/extensions&sec2=extensions/files_repo in Pandora FMS v7.0 NG allows authenticated administrators to upload malicious PHP scripts, and execute them via base64 decoding of the fil…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-5844
|
2024-11-21 14:34 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196704
|
9.8 |
CRITICAL
Network
|
mitsubishielectric
|
iu1-1m20-d_firmware
|
Resource Management Errors vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to sto…
|
NVD-CWE-noinfo
|
CVE-2020-5547
|
2024-11-21 14:34 |
2020-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196705
|
8.8 |
HIGH
Adjacent
|
mitsubishielectric
|
iu1-1m20-d_firmware
|
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware …
|
CWE-88
Argument Injection
|
CVE-2020-5546
|
2024-11-21 14:34 |
2020-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196706
|
9.8 |
CRITICAL
Network
|
mitsubishielectric
|
iu1-1m20-d_firmware
|
TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to bypass access restriction and to stop the netwo…
|
NVD-CWE-Other
|
CVE-2020-5545
|
2024-11-21 14:34 |
2020-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196707
|
9.8 |
CRITICAL
Network
|
mitsubishielectric
|
iu1-1m20-d_firmware
|
Null Pointer Dereference vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to stop …
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-5544
|
2024-11-21 14:34 |
2020-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196708
|
9.8 |
CRITICAL
Network
|
mitsubishielectric
|
iu1-1m20-d_firmware
|
TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier does not properly manage sessions, which allows remote attackers to stop t…
|
CWE-384
Session Fixation
|
CVE-2020-5543
|
2024-11-21 14:34 |
2020-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196709
|
9.8 |
CRITICAL
Network
|
mitsubishielectric
|
iu1-1m20-d_firmware
|
Buffer error vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to stop the network …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-5542
|
2024-11-21 14:34 |
2020-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196710
|
5.5 |
MEDIUM
Local
|
nvidia
|
virtual_gpu_graphics_driver
|
NVIDIA vGPU graphics driver for guest OS contains a vulnerability in which an incorrect resource clean up on a failure path can impact the guest VM, leading to denial of service.
|
CWE-459
Incomplete Cleanup
|
CVE-2020-5961
|
2024-11-21 14:34 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|