|
209961
|
5.5 |
MEDIUM
Local
|
apache mcafee netapp
|
http_server epolicy_orchestrator cloud_backup
|
Apache HTTP Server versions 2.4.0 to 2.4.46 Unprivileged local users can stop httpd on Windows
|
CWE-862
Missing Authorization
|
CVE-2020-13938
|
2024-11-21 14:02 |
2021-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209962
|
5.5 |
MEDIUM
Local
|
redhat
|
wildfly jboss_enterprise_application_platform
|
It was found that the issue for security flaw CVE-2019-3805 appeared again in a further version of JBoss Enterprise Application Platform - Continuous Delivery (EAP-CD) introducing regression. An atta…
|
-
|
CVE-2020-14317
|
2024-11-21 14:02 |
2021-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209963
|
6.5 |
MEDIUM
Network
|
redhat netapp
|
libvirt enterprise_linux enterprise_linux_tus enterprise_linux_eus enterprise_linux_server_aus enterprise_linux_server_update_services_for_sap_solutions enterprise_linux_for_power_l…
|
An information disclosure vulnerability was found in libvirt in versions before 6.3.0. HTTP cookies used to access network-based disks were saved in the XML dump of the guest domain. This flaw allows…
|
-
|
CVE-2020-14301
|
2024-11-21 14:02 |
2021-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209964
|
9.8 |
CRITICAL
Network
|
codologic
|
codoforum
|
A SQL Injection vulnerability in get_topic_info() in sys/CODOF/Forum/Topic.php in Codoforum before 4.9 allows remote attackers (pre-authentication) to bypass the admin page via a leaked password-rese…
|
CWE-89
SQL Injection
|
CVE-2020-13873
|
2024-11-21 14:02 |
2021-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209965
|
6.3 |
MEDIUM
Network
|
proofpoint
|
enterprise_protection
|
Proofpoint Enterprise Protection (PPS/PoD) before 8.16.4 contains a vulnerability that could allow an attacker to deliver an email message with a malicious attachment that bypasses scanning and file-…
|
CWE-354
Improper Validation of Integrity Check Value
|
CVE-2020-14009
|
2024-11-21 14:02 |
2021-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209966
|
5.5 |
MEDIUM
Local
|
mi
|
miui
|
The application in the mobile phone can read the SNO information of the device, Xiaomi 10 MIUI < 2020.01.15.
|
NVD-CWE-noinfo
|
CVE-2020-14105
|
2024-11-21 14:02 |
2021-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209967
|
5.5 |
MEDIUM
Local
|
mi
|
miui
|
The application in the mobile phone can unauthorized access to the list of running processes in the mobile phone, Xiaomi Mobile Phone MIUI < 2021.01.26.
|
CWE-863
Incorrect Authorization
|
CVE-2020-14106
|
2024-11-21 14:02 |
2021-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209968
|
5.5 |
MEDIUM
Local
|
mi
|
miui
|
The application in the mobile phone can read the SNO information of the device, Xiaomi 10 MIUI < 2020.01.15.
|
NVD-CWE-noinfo
|
CVE-2020-14103
|
2024-11-21 14:02 |
2021-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209969
|
8.1 |
HIGH
Network
|
mi
|
ax3600_firmware
|
A RACE CONDITION on XQBACKUP causes a decompression path error on Xiaomi router AX3600 with ROM version =1.0.50.
|
CWE-362
Race Condition
|
CVE-2020-14104
|
2024-11-21 14:02 |
2021-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209970
|
7.5 |
HIGH
Network
|
mi
|
ax1800_firmware rm1800_firmware
|
On Xiaomi router AX1800 rom version < 1.0.336 and RM1800 root version < 1.0.26, the encryption scheme for a user's backup files uses hard-coded keys, which can expose sensitive information such as a …
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-14099
|
2024-11-21 14:02 |
2021-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|