|
197161
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors_next_generation doors_next
|
IBM DOORS Next Generation (DNG/RRC) 6.0.2, 6.0.6, 6.0.6.1, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alterin…
|
CWE-79
Cross-site Scripting
|
CVE-2020-4297
|
2024-11-21 14:32 |
2020-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197162
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors_next_generation doors_next
|
IBM DOORS Next Generation (DNG/RRC) 6.0.2, 6.0.6, 6.0.6.1, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alterin…
|
CWE-79
Cross-site Scripting
|
CVE-2020-4295
|
2024-11-21 14:32 |
2020-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197163
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_doors_next_generation doors_next
|
IBM DOORS Next Generation (DNG/RRC) 6.0.2, 6.0.6, 6.0.6.1, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alterin…
|
CWE-79
Cross-site Scripting
|
CVE-2020-4281
|
2024-11-21 14:32 |
2020-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197164
|
7.3 |
HIGH
Network
|
mversion_project
|
mversion
|
In mversion before 2.0.0, there is a command injection vulnerability. This issue may lead to remote code execution if a client of the library calls the vulnerable method with untrusted input. This vu…
|
-
|
CVE-2020-4059
|
2024-11-21 14:32 |
2020-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197165
|
5.3 |
MEDIUM
Network
|
ibm
|
business_automation_workflow business_process_manager
|
IBM Business Automation Workflow and IBM Business Process Manager (IBM Business Process Manager Express 8.5.5, 8.5.6, 8.5.7, and 8.6) could allow a remote attacker to obtain sensitive information whe…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2020-4532
|
2024-11-21 14:32 |
2020-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197166
|
7.3 |
HIGH
Network
|
sanitize_project
|
sanitize
|
In Sanitize (RubyGem sanitize) greater than or equal to 3.0.0 and less than 5.2.1, there is a cross-site scripting vulnerability. When HTML is sanitized using Sanitize's "relaxed" config, or a custom…
|
-
|
CVE-2020-4054
|
2024-11-21 14:32 |
2020-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197167
|
6.8 |
MEDIUM
Network
|
helm
|
helm
|
In Helm greater than or equal to 3.0.0 and less than 3.2.4, a path traversal attack is possible when installing Helm plugins from a tar archive over HTTP. It is possible for a malicious plugin author…
|
-
|
CVE-2020-4053
|
2024-11-21 14:32 |
2020-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197168
|
6.1 |
MEDIUM
Network
|
requarks
|
wiki.js
|
In Wiki.js before 2.4.107, there is a stored cross-site scripting through template injection. This vulnerability exists due to an insecure validation mechanism intended to insert v-pre tags into rend…
|
-
|
CVE-2020-4052
|
2024-11-21 14:32 |
2020-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197169
|
6.5 |
MEDIUM
Network
|
ibm
|
mq
|
IBM MQ Appliance and IBM MQ AMQP Channels 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD do not correctly block or allow clients based on the certificate distinguished name SSLPEER setting. IBM X-Force ID: 177403.
|
CWE-295
Improper Certificate Validation
|
CVE-2020-4320
|
2024-11-21 14:32 |
2020-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197170
|
7.5 |
HIGH
Network
|
ibm
|
mq websphere_mq
|
IBM MQ and MQ Appliance 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 C are vulnerable to a denial of service attack due to an error within the Data Conversion logic. IBM X-Force ID: 177081.
|
NVD-CWE-noinfo
|
CVE-2020-4310
|
2024-11-21 14:32 |
2020-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|