|
197921
|
3.7 |
LOW
Network
|
ucweb
|
ucweb_uc
|
UCWeb UC 12.12.3.1219 through 12.12.3.1226 uses cleartext HTTP, and thus man-in-the-middle attackers can discover visited URLs.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2020-36473
|
2024-11-21 14:29 |
2021-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197922
|
9.8 |
CRITICAL
Network
|
amazon
|
amazon_cloudfront
|
Amazon AWS CloudFront TLSv1.2_2019 allows TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 and TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, which some entities consider to be weak ciphers.
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2020-36363
|
2024-11-21 14:29 |
2021-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197923
|
5.9 |
MEDIUM
Network
|
max7301_project
|
max7301
|
An issue was discovered in the max7301 crate before 0.2.0 for Rust. The ImmediateIO and TransactionalIO types implement Sync for all Expander<EI> types that they contain.
|
NVD-CWE-noinfo
|
CVE-2020-36472
|
2024-11-21 14:29 |
2021-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197924
|
5.9 |
MEDIUM
Network
|
generator_project
|
generator
|
An issue was discovered in the generator crate before 0.7.0 for Rust. It does not ensure that a function (for yielding values) has Send bounds.
|
NVD-CWE-noinfo
|
CVE-2020-36471
|
2024-11-21 14:29 |
2021-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197925
|
5.9 |
MEDIUM
Network
|
disrustor_project
|
disrustor
|
An issue was discovered in the disrustor crate through 2020-12-17 for Rust. RingBuffer doe not properly limit the number of mutable references.
|
NVD-CWE-noinfo
|
CVE-2020-36470
|
2024-11-21 14:29 |
2021-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197926
|
5.9 |
MEDIUM
Network
|
appendix_project
|
appendix
|
An issue was discovered in the appendix crate through 2020-11-15 for Rust. For the generic K and V type parameters, Send and Sync are implemented unconditionally.
|
NVD-CWE-noinfo
|
CVE-2020-36469
|
2024-11-21 14:29 |
2021-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197927
|
5.9 |
MEDIUM
Network
|
cgc_project
|
cgc
|
An issue was discovered in the cgc crate through 2020-12-10 for Rust. Ptr::write performs non-atomic write operations on an underlying pointer.
|
NVD-CWE-noinfo
|
CVE-2020-36468
|
2024-11-21 14:29 |
2021-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197928
|
5.9 |
MEDIUM
Network
|
cgc_project
|
cgc
|
An issue was discovered in the cgc crate through 2020-12-10 for Rust. Ptr::get returns more than one mutable reference to the same object.
|
NVD-CWE-noinfo
|
CVE-2020-36467
|
2024-11-21 14:29 |
2021-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197929
|
5.9 |
MEDIUM
Network
|
cgc_project
|
cgc
|
An issue was discovered in the cgc crate through 2020-12-10 for Rust. Ptr implements Send and Sync for all types.
|
NVD-CWE-noinfo
|
CVE-2020-36466
|
2024-11-21 14:29 |
2021-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197930
|
7.5 |
HIGH
Network
|
generic-array_project
|
generic-array
|
An issue was discovered in the generic-array crate before 0.13.3 for Rust. It violates soundness by using the arr! macro to extend lifetimes.
|
NVD-CWE-noinfo
|
CVE-2020-36465
|
2024-11-21 14:29 |
2021-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|