|
209741
|
7.8 |
HIGH
Local
|
amd
|
radeon_pro_software radeon_software
|
An out of bounds write vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privileges or denial of service.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-12983
|
2024-11-21 14:00 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209742
|
7.8 |
HIGH
Local
|
amd
|
radeon_pro_software radeon_software
|
An invalid object pointer free vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2020-12982
|
2024-11-21 14:00 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209743
|
7.8 |
HIGH
Local
|
amd
|
radeon_pro_software radeon_software
|
An insufficient input validation in the AMD Graphics Driver for Windows 10 may allow unprivileged users to unload the driver, potentially causing memory corruptions in high privileged processes, whic…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-12981
|
2024-11-21 14:00 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209744
|
7.8 |
HIGH
Local
|
amd
|
radeon_pro_software radeon_software
|
An out of bounds write and read vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service.
|
CWE-125 CWE-787
Out-of-bounds Read Out-of-bounds Write
|
CVE-2020-12980
|
2024-11-21 14:00 |
2021-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209745
|
7.2 |
HIGH
Network
|
amd
|
epyc_7251 epyc_7261 epyc_7281 epyc_7301 epyc_7351 epyc_7351p epyc_7371 epyc_7401 epyc_7401p epyc_7451 epyc_7501 epyc_7551 epyc_7551p epyc_7601 epyc_7763 e…
|
The lack of nested page table protection in the AMD SEV/SEV-ES feature could potentially lead to arbitrary code execution within the guest VM if a malicious administrator has access to compromise the…
|
CWE-77
Command Injection
|
CVE-2020-12967
|
2024-11-21 14:00 |
2021-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209746
|
4.6 |
MEDIUM
Physics
|
coolkit
|
ewelink
|
Weak encryption in the Quick Pairing mode in the eWeLink mobile application (Android application V4.9.2 and earlier, iOS application V4.9.1 and earlier) allows physically proximate attackers to eaves…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2020-12702
|
2024-11-21 14:00 |
2021-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209747
|
8.8 |
HIGH
Network
|
atlassian
|
alfresco_enterprise_content_management
|
An issue was discovered in Alfresco Enterprise Content Management (ECM) before 6.2.1. A user with privileges to edit a FreeMarker template (e.g., a webscript) may execute arbitrary Java code or run a…
|
CWE-74
Injection
|
CVE-2020-12873
|
2024-11-21 14:00 |
2021-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209748
|
6.5 |
MEDIUM
Network
|
hubspot
|
jinjava
|
Jinjava before 2.5.4 allow access to arbitrary classes by calling Java methods on objects passed into a Jinjava context. This could allow for abuse of the application class loader, including Arbitrar…
|
CWE-863
Incorrect Authorization
|
CVE-2020-12668
|
2024-11-21 14:00 |
2021-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209749
|
7.8 |
HIGH
Local
|
digi
|
connectport_x2e_firmware
|
Digi ConnectPort X2e before 3.2.30.6 allows an attacker to escalate privileges from the python user to root via a symlink attack that uses chown, related to /etc/init.d/S50dropbear.sh and the /WEB/py…
|
CWE-59
Link Following
|
CVE-2020-12878
|
2024-11-21 14:00 |
2021-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209750
|
6.5 |
MEDIUM
Network
|
teradici
|
cloud_access_connector
|
An Anti CSRF mechanism was discovered missing in the Teradici Cloud Access Connector v31 and earlier in a specific web form, which allowed an attacker with knowledge of both a machineID and user GUID…
|
CWE-352
Origin Validation Error
|
CVE-2020-13186
|
2024-11-21 14:00 |
2021-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|