|
210211
|
3.3 |
LOW
Local
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 9.7.1.29511. User interaction is required to exploit this vulnerability in t…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-10894
|
2024-11-21 13:56 |
2020-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210212
|
7.8 |
HIGH
Local
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.1.29511. User interaction is required to exploit this vulnerability in that the …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-10893
|
2024-11-21 13:56 |
2020-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210213
|
8.8 |
HIGH
Network
|
phproject
|
phproject
|
In Phproject before version 1.7.8, there's a vulnerability which allows users with access to file uploads to execute arbitrary code. This is patched in version 1.7.8.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-11011
|
2024-11-21 13:56 |
2020-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210214
|
8.8 |
HIGH
Network
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is required to exploit this vulnerability in that the …
|
CWE-352
Origin Validation Error
|
CVE-2020-10892
|
2024-11-21 13:56 |
2020-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210215
|
7.8 |
HIGH
Local
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is required to exploit this vulnerability in that the …
|
CWE-843
Type Confusion
|
CVE-2020-10891
|
2024-11-21 13:56 |
2020-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210216
|
8.8 |
HIGH
Network
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is required to exploit this vulnerability in that the …
|
CWE-352
Origin Validation Error
|
CVE-2020-10890
|
2024-11-21 13:56 |
2020-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210217
|
7.8 |
HIGH
Local
|
foxitsoftware
|
phantompdf reader
|
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is required to exploit this vulnerability in that the …
|
CWE-843
Type Confusion
|
CVE-2020-10889
|
2024-11-21 13:56 |
2020-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210218
|
7.5 |
HIGH
Network
|
git-scm debian canonical fedoraproject
|
git debian_linux ubuntu_linux fedora
|
Affected versions of Git have a vulnerability whereby Git can be tricked into sending private credentials to a host controlled by an attacker. This bug is similar to CVE-2020-5260(GHSA-qm7j-c969-7j4q…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-11008
|
2024-11-21 13:56 |
2020-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210219
|
8.8 |
HIGH
Network
|
vestacp
|
vesta_control_panel
|
An elevation of privilege in Vesta Control Panel through 0.9.8-26 allows an attacker to gain root system access from the admin account via v-change-user-password (aka the user password change script).
|
NVD-CWE-noinfo
|
CVE-2020-10787
|
2024-11-21 13:56 |
2020-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210220
|
8.8 |
HIGH
Network
|
vestacp
|
vesta_control_panel
|
A remote command execution in Vesta Control Panel through 0.9.8-26 allows any authenticated user to execute arbitrary commands on the system via cron jobs.
|
CWE-863
Incorrect Authorization
|
CVE-2020-10786
|
2024-11-21 13:56 |
2020-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|