|
210771
|
6.5 |
MEDIUM
Network
|
apple
|
macos
|
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. An attacker in a privileged network position may be able to perform denial of se…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-10005
|
2024-11-21 13:54 |
2021-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210772
|
7.8 |
HIGH
Local
|
adobe
|
coldfusion
|
The Adobe ColdFusion installer fails to set a secure access-control list (ACL) on the default installation directory, such as C:\ColdFusion2021\. By default, unprivileged users can create files in th…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-10145
|
2024-11-21 13:54 |
2021-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210773
|
5.3 |
MEDIUM
Local
|
zephyrproject
|
zephyr
|
Improper Handling of Insufficient Permissions or Privileges in zephyr. Zephyr versions >= v1.14.2, >= v2.2.0 contain Improper Handling of Insufficient Permissions or Privileges (CWE-280). For more in…
|
NVD-CWE-Other
|
CVE-2020-10072
|
2024-11-21 13:54 |
2021-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210774
|
6.5 |
MEDIUM
Adjacent
|
zephyrproject
|
zephyr
|
Zephyr Bluetooth unchecked packet data results in denial of service. Zephyr versions >= v1.14.2, >= v2.2.0 contain Improper Handling of Parameters (CWE-233). For more information, see https://github.…
|
NVD-CWE-Other
|
CVE-2020-10069
|
2024-11-21 13:54 |
2021-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210775
|
5.7 |
MEDIUM
Adjacent
|
zephyrproject
|
zephyr
|
Incorrect Error Handling in Bluetooth HCI core. Zephyr versions >= v1.14.2, >= v2.2.0 contain NULL Pointer Dereference (CWE-476). For more information, see https://github.com/zephyrproject-rtos/zephy…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-10066
|
2024-11-21 13:54 |
2021-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210776
|
8.8 |
HIGH
Adjacent
|
zephyrproject
|
zephyr
|
Missing Size Checks in Bluetooth HCI over SPI. Zephyr versions >= v1.14.2, >= v2.2.0 contain Improper Handling of Length Parameter Inconsistency (CWE-130). For more information, see https://github.co…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-10065
|
2024-11-21 13:54 |
2021-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210777
|
9.8 |
CRITICAL
Network
|
zephyrproject
|
zephyr
|
Improper Input Frame Validation in ieee802154 Processing. Zephyr versions >= v1.14.2, >= v2.2.0 contain Stack-based Buffer Overflow (CWE-121), Heap-based Buffer Overflow (CWE-122). For more informati…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-10064
|
2024-11-21 13:54 |
2021-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210778
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x macos
|
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-10015
|
2024-11-21 13:54 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210779
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.0.1. A malicious application with root privileges may be able to access private information.
|
NVD-CWE-noinfo
|
CVE-2020-10008
|
2024-11-21 13:54 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210780
|
5.5 |
MEDIUM
Local
|
apple debian
|
mac_os_x debian_linux
|
An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. A malicious appli…
|
CWE-20
Improper Input Validation
|
CVE-2020-10001
|
2024-11-21 13:54 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|