|
196971
|
7.8 |
HIGH
Local
|
gonitro
|
nitro_pro
|
An exploitable vulnerability exists in the cross-reference table repairing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242. While searching for an object identifier in a malformed docum…
|
CWE-416
Use After Free
|
CVE-2020-6115
|
2024-11-21 14:35 |
2020-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196972
|
7.8 |
HIGH
Local
|
gonitro
|
nitro_pro
|
An exploitable vulnerability exists in the object stream parsing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242 when updating its cross-reference table. When processing an object strea…
|
CWE-787 CWE-190 CWE-131
Out-of-bounds Write Integer Overflow or Wraparound Incorrect Calculation of Buffer Size
|
CVE-2020-6113
|
2024-11-21 14:35 |
2020-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196973
|
7.8 |
HIGH
Local
|
gonitro
|
nitro_pro
|
An exploitable code execution vulnerability exists in the JPEG2000 Stripe Decoding functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242 when decoding sub-samples. While initializing tiles wi…
|
NVD-CWE-Other
|
CVE-2020-6112
|
2024-11-21 14:35 |
2020-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196974
|
8.8 |
HIGH
Network
|
gonitro
|
nitro_pro
|
An exploitable code execution vulnerability exists in the rendering functionality of Nitro Pro 13.13.2.242 and 13.16.2.300. When drawing the contents of a page and selecting the stroke color from an …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6146
|
2024-11-21 14:35 |
2020-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196975
|
7.5 |
HIGH
Network
|
atftp_project debian opensuse
|
atftp debian_linux leap
|
An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp 0.7.git20120829-3.1+b1. A specially crafted sequence of RRQ-Multicast requests trigger an assert() ca…
|
CWE-617
Reachable Assertion
|
CVE-2020-6097
|
2024-11-21 14:35 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196976
|
6.1 |
MEDIUM
Network
|
sap
|
netweaver_as_abap_business_server_pages
|
SAP Netweaver AS ABAP(BSP Test Application sbspext_table), version-700,701,720,730,731,740,750,751,752,753,754,755, allows an unauthenticated attacker to send polluted URL to the victim, when the vic…
|
CWE-79
Cross-site Scripting
|
CVE-2020-6324
|
2024-11-21 14:35 |
2020-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196977
|
6.5 |
MEDIUM
Network
|
sap
|
s\/4hana_for_financial_products_subledger bank_analyzer
|
Banking services from SAP 9.0 (Bank Analyzer), version - 500, and SAP S/4HANA for financial products subledger, version ? 100, does not correctly perform necessary authorization checks for an authent…
|
-
|
CVE-2020-6311
|
2024-11-21 14:35 |
2020-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196978
|
4.3 |
MEDIUM
Network
|
sap
|
3d_visual_enterprise_viewer
|
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated RLE files received from untrusted sources which results in crashing of the application and becoming temporarily unavail…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6361
|
2024-11-21 14:35 |
2020-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196979
|
4.3 |
MEDIUM
Network
|
sap
|
3d_visual_enterprise_viewer
|
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated DIB file received from untrusted sources which results in crashing of the application and becoming temporarily unavaila…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6360
|
2024-11-21 14:35 |
2020-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196980
|
4.3 |
MEDIUM
Network
|
sap
|
3d_visual_enterprise_viewer
|
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PLT file received from untrusted sources which results in crashing of the application and becoming temporarily unavaila…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6359
|
2024-11-21 14:35 |
2020-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|