|
197081
|
7.5 |
HIGH
Network
|
sonicwall
|
sonicos sonicosv
|
A vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service due to buffer overflow, which leads to a firewall crash. This vulnerability affected SonicOS Gen 6 versi…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-5133
|
2024-11-21 14:33 |
2020-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197082
|
7.8 |
HIGH
Local
|
ibm
|
informix_dynamic_server
|
IBM Informix spatial 14.10 could allow a local user to execute commands as a privileged user due to an out of bounds write vulnerability. IBM X-Force ID: 189460.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-4799
|
2024-11-21 14:33 |
2020-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197083
|
3.3 |
LOW
Local
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a local user with specialized access to obtain sensitive information from a detailed technical error message. This information coul…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2020-4629
|
2024-11-21 14:33 |
2020-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197084
|
5.3 |
MEDIUM
Network
|
sonicwall
|
sma100_firmware sonicos
|
SonicWall SSL-VPN products and SonicWall firewall SSL-VPN feature misconfiguration leads to possible DNS flaw known as domain name collision vulnerability. When the users publicly display their organ…
|
NVD-CWE-noinfo
|
CVE-2020-5132
|
2024-11-21 14:33 |
2020-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197085
|
6.1 |
MEDIUM
Network
|
ibm
|
infosphere_information_server
|
IBM InfoSphere Information Server 11.7 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit…
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2020-4727
|
2024-11-21 14:33 |
2020-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197086
|
7.5 |
HIGH
Network
|
ibm
|
data_risk_manager
|
IBM Data Risk Manager (iDNA) 2.0.6 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external compo…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-4622
|
2024-11-21 14:33 |
2020-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197087
|
8.8 |
HIGH
Network
|
ibm
|
data_risk_manager
|
IBM Data Risk Manager (iDNA) 2.0.6 could allow an authenticated user to escalate their privileges to administrator due to insufficient authorization checks. IBM X-Force ID: 184981.
|
CWE-863
Incorrect Authorization
|
CVE-2020-4621
|
2024-11-21 14:33 |
2020-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197088
|
7.5 |
HIGH
Network
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to …
|
CWE-611
XXE
|
CVE-2020-4643
|
2024-11-21 14:33 |
2020-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197089
|
6.1 |
MEDIUM
Network
|
ibm
|
aspera_shares
|
IBM Aspera Web Application 1.9.14 PL1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality …
|
CWE-79
Cross-site Scripting
|
CVE-2020-4731
|
2024-11-21 14:33 |
2020-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197090
|
5.3 |
MEDIUM
Network
|
ibm
|
security_trusteer_pinpoint_detect
|
IBM Security Trusteer Pinpoint Detect 11.6.5 could disclose some information due to using a wildcard in the Access-Control-Allow-Origin header. IBM X-Force ID: 187371.
|
NVD-CWE-noinfo
|
CVE-2020-4708
|
2024-11-21 14:33 |
2020-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|