|
199391
|
5.4 |
MEDIUM
Network
|
atlassian
|
confluence_server confluence_data_center
|
Affected versions of Team Calendar in Confluence Server before 7.11.0 allow attackers to inject arbitrary HTML or Javascript via a Cross Site Scripting Vulnerability in admin global setting parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2020-29444
|
2024-11-21 14:24 |
2021-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199392
|
5.4 |
MEDIUM
Network
|
orchardproject
|
orchard
|
An issue was discovered in Orchard before 1.10. The Media Settings Allowed File Types list field allows an attacker to add a XSS payload that will execute when users attempt to upload a disallowed fi…
|
CWE-79
Cross-site Scripting
|
CVE-2020-29593
|
2024-11-21 14:24 |
2021-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199393
|
9.8 |
CRITICAL
Network
|
orchardproject
|
orchard
|
An issue was discovered in Orchard before 1.10. A broken access control issue in Orchard components that use the TinyMCE HTML editor's file upload allows an attacker to upload dangerous executables t…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-29592
|
2024-11-21 14:24 |
2021-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199394
|
5.5 |
MEDIUM
Local
|
apple
|
iphone_os ipados
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.0 and iPadOS 14.0. Processing a maliciously crafted font may result in the disclosure of process memo…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-29639
|
2024-11-21 14:24 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199395
|
8.8 |
HIGH
Network
|
apple
|
mac_os_x macos
|
An authentication issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catalina, Security Update 2021-001 Mojave, macOS Big Sur 11.1…
|
NVD-CWE-noinfo
|
CVE-2020-29633
|
2024-11-21 14:24 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199396
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x macos
|
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. Processing a maliciously crafted image ma…
|
NVD-CWE-noinfo
|
CVE-2020-29625
|
2024-11-21 14:24 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199397
|
7.8 |
HIGH
Local
|
apple
|
ipados watchos tvos iphone_os mac_os_x macos
|
A memory corruption issue existed in the processing of font files. This issue was addressed with improved input validation. This issue is fixed in watchOS 7.2, macOS Big Sur 11.1, Security Update 202…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-29624
|
2024-11-21 14:24 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199398
|
3.3 |
LOW
Local
|
apple fedoraproject webkitgtk
|
ipados tvos iphone_os mac_os_x macos fedora webkitgtk
|
"Clear History and Website Data" did not clear the history. The issue was addressed with improved data deletion. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security…
|
NVD-CWE-noinfo
|
CVE-2020-29623
|
2024-11-21 14:24 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199399
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x macos
|
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. A malicious application may be able to by…
|
CWE-862
Missing Authorization
|
CVE-2020-29621
|
2024-11-21 14:24 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199400
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x macos
|
This issue was addressed with improved entitlements. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. A malicious application may be able…
|
CWE-269
Improper Privilege Management
|
CVE-2020-29620
|
2024-11-21 14:24 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|