|
210111
|
9.8 |
CRITICAL
Network
|
tendacn
|
ac6_firmware ac9_firmware ac15_firmware ac18_firmware
|
An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devi…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-13391
|
2024-11-21 14:01 |
2020-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210112
|
9.8 |
CRITICAL
Network
|
tendacn
|
ac6_firmware ac9_firmware ac15_firmware ac18_firmware
|
An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devi…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-13390
|
2024-11-21 14:01 |
2020-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210113
|
9.8 |
CRITICAL
Network
|
tendacn
|
ac6_firmware ac9_firmware ac15_firmware ac18_firmware
|
An issue was discovered on Tenda AC6 V1.0 V15.03.05.19_multi_TD01, AC9 V1.0 V15.03.05.19(6318)_CN, AC9 V3.0 V15.03.06.42_multi, AC15 V1.0 V15.03.05.19_multi_TD01, and AC18 V15.03.05.19(6318_)_CN devi…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-13389
|
2024-11-21 14:01 |
2020-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210114
|
8.8 |
HIGH
Network
|
monstra
|
monstra
|
Monstra CMS 3.0.4 allows remote authenticated users to upload and execute arbitrary PHP code via admin/index.php?id=filesmanager because, for example, .php filenames are blocked but .php7 filenames a…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-13384
|
2024-11-21 14:01 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210115
|
7.8 |
HIGH
Local
|
amd
|
enterprise_driver radeon_pro_software radeon_software ryzen_3_2200ge_firmware ryzen_3_2200g_firmware ryzen_5_2400ge_firmware ryzen_5_2400g_firmware ryzen_3_3100_firmware ryzen…
|
Improper parameters handling in the AMD Secure Processor (ASP) kernel may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity.
|
NVD-CWE-Other
|
CVE-2020-12931
|
2024-11-21 14:00 |
2022-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210116
|
7.8 |
HIGH
Local
|
amd
|
enterprise_driver radeon_pro_software radeon_software radeon_rx_vega_56_firmware radeon_rx_vega_64_firmware ryzen_3_2200ge_firmware ryzen_3_2200g_firmware ryzen_5_2400ge_firmware…
|
Improper parameters handling in AMD Secure Processor (ASP) drivers may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity.
|
NVD-CWE-Other
|
CVE-2020-12930
|
2024-11-21 14:00 |
2022-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210117
|
7.8 |
HIGH
Local
|
verint
|
desktop_and_process_analytics
|
The MSI installer in Verint Desktop Resources 15.2 allows an unprivileged local user to elevate their privileges during install or repair.
|
CWE-281
Improper Preservation of Permissions
|
CVE-2020-12744
|
2024-11-21 14:00 |
2022-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210118
|
9.8 |
CRITICAL
Network
|
moica
|
hicos
|
Hicos citizen certificate client-side component does not filter special characters for command parameters in specific web URLs. An unauthenticated remote attacker can exploit this vulnerability to pe…
|
CWE-78
OS Command
|
CVE-2020-12775
|
2024-11-21 14:00 |
2022-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210119
|
5.5 |
MEDIUM
Local
|
amd
|
epyc_7763_firmware epyc_7713p_firmware epyc_7713_firmware epyc_7663_firmware epyc_7643_firmware epyc_75f3_firmware epyc_7543p_firmware epyc_7543_firmware epyc_7513_firmware
|
AMD EPYC™ Processors contain an information disclosure vulnerability in the Secure Encrypted Virtualization with Encrypted State (SEV-ES) and Secure Encrypted Virtualization with Secure Nested Paging…
|
CWE-200
Information Exposure
|
CVE-2020-12966
|
2024-11-21 14:00 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210120
|
7.8 |
HIGH
Local
|
amd
|
radeon_software radeon_pro_software
|
AMD Radeon Software may be vulnerable to DLL Hijacking through path variable. An unprivileged user may be able to drop its malicious DLL file in any location which is in path environment variable.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-12891
|
2024-11-21 14:00 |
2022-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|