|
209831
|
7.5 |
HIGH
Network
|
mitsubishielectric iconics
|
mc_works32 mc_works mobilehmi facility_analytix quality_analytix smart_energy_analytix energy_analytix genesis64 hyper_historian genesis32 bizviz
|
A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition due to improper deserialization. This issue affects: Mitsubishi Electric MC Works64 ver…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2020-12015
|
2024-11-21 13:59 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209832
|
9.1 |
CRITICAL
Network
|
mitsubishielectric iconics
|
mc_works32 mc_works64 mobilehmi facility_analytix quality_analytix smart_energy_analytix energy_analytix genesis64 hyper_historian genesis32 bizviz
|
A specially crafted WCF client that interfaces to the may allow the execution of certain arbitrary SQL commands remotely. This affects: Mitsubishi Electric MC Works64 Version 4.02C (10.95.208.31) and…
|
CWE-89
SQL Injection
|
CVE-2020-12013
|
2024-11-21 13:59 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209833
|
9.8 |
CRITICAL
Network
|
mitsubishielectric iconics
|
mc_works32 mc_works mobilehmi facility_analytix quality_analytix smart_energy_analytix energy_analytix genesis64 hyper_historian genesis32 bizviz
|
A specially crafted communication packet sent to the affected devices could allow remote code execution and a denial-of-service condition due to a deserialization vulnerability. This issue affects: M…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2020-12007
|
2024-11-21 13:59 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209834
|
7.5 |
HIGH
Network
|
mitsubishielectric iconics
|
mc_works32 mc_works mobilehmi facility_analytix quality_analytix smart_energy_analytix energy_analytix genesis64 hyper_historian genesis32 bizviz
|
A specially crafted communication packet sent to the affected device could cause a denial-of-service condition due to a deserialization vulnerability. This affects: Mitsubishi Electric MC Works64 Ver…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2020-12009
|
2024-11-21 13:59 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209835
|
9.8 |
CRITICAL
Network
|
mitsubishielectric iconics
|
mc_works32 mc_works mobilehmi facility_analytix quality_analytix smart_energy_analytix energy_analytix genesis64 hyper_historian genesis32 bizviz
|
A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition or allow remote code execution. This issue affects: Mitsubishi Electric MC Works64 vers…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-12011
|
2024-11-21 13:59 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209836
|
3.3 |
LOW
Local
|
rockwellautomation
|
studio_5000_logix_designer
|
Rockwell Automation Logix Designer Studio 5000 Versions 32.00, 32.01, and 32.02 vulnerable to an xml external entity (XXE) vulnerability, which may allow an attacker to view hostnames or other resour…
|
CWE-611
XXE
|
CVE-2020-12025
|
2024-11-21 13:59 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209837
|
8.8 |
HIGH
Network
|
mozilla opensuse
|
firefox leap
|
Mozilla developers and community members reported memory safety bugs present in Firefox 77. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of thes…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-12426
|
2024-11-21 13:59 |
2020-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209838
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
Due to confusion processing a hyphen character in Date.parse(), a one-byte out of bounds read could have occurred, leading to potential information disclosure. This vulnerability affects Firefox < 78.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-12425
|
2024-11-21 13:59 |
2020-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209839
|
7.8 |
HIGH
Local
|
mozilla
|
firefox
|
When the Windows DLL "webauthn.dll" was missing from the Operating System, and a malicious one was placed in a folder in the user's %PATH%, Firefox may have loaded the DLL, leading to arbitrary code …
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-12423
|
2024-11-21 13:59 |
2020-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209840
|
8.8 |
HIGH
Network
|
mozilla opensuse
|
firefox leap
|
In non-standard configurations, a JPEG image created by JavaScript could have caused an internal variable to overflow, resulting in an out of bounds write, memory corruption, and a potentially exploi…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-12422
|
2024-11-21 13:59 |
2020-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|