|
196871
|
7.8 |
HIGH
Local
|
valvesoftware
|
dota_2
|
meshsystem.dll in Valve Dota 2 before 7.23f allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafted …
|
NVD-CWE-noinfo
|
CVE-2020-7950
|
2024-11-21 14:38 |
2020-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196872
|
7.8 |
HIGH
Local
|
valvesoftware
|
dota_2
|
schemasystem.dll in Valve Dota 2 before 7.23f allows remote attackers to achieve code execution or denial of service by creating a gaming server and inviting a victim to this server, because a crafte…
|
NVD-CWE-noinfo
|
CVE-2020-7949
|
2024-11-21 14:38 |
2020-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196873
|
7.5 |
HIGH
Network
|
motu
|
avb_firmware
|
AVB MOTU devices through 2020-01-22 allow /.. Directory Traversal, as demonstrated by reading the /etc/passwd file.
|
CWE-22
Path Traversal
|
CVE-2020-8009
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196874
|
5.5 |
MEDIUM
Local
|
virglrenderer_project debian
|
virglrenderer debian_linux
|
A double-free vulnerability in vrend_renderer.c in virglrenderer through 0.8.1 allows attackers to cause a denial of service by triggering texture allocation failure, because vrend_renderer_resource_…
|
CWE-415
Double Free
|
CVE-2020-8003
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196875
|
5.5 |
MEDIUM
Local
|
virglrenderer_project debian
|
virglrenderer debian_linux
|
A NULL pointer dereference in vrend_renderer.c in virglrenderer through 0.8.1 allows attackers to cause a denial of service via commands that attempt to launch a grid without previously providing a C…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-8002
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196876
|
9.8 |
CRITICAL
Network
|
intelliantech
|
aptus
|
The Intellian Aptus application 1.0.2 for Android has a hardcoded password of intellian for the masteruser FTP account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-8001
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196877
|
9.8 |
CRITICAL
Network
|
intelliantech
|
aptus_web
|
Intellian Aptus Web 1.24 has a hardcoded password of 12345678 for the intellian account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-8000
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196878
|
9.8 |
CRITICAL
Network
|
intelliantech
|
aptus
|
The Intellian Aptus application 1.0.2 for Android has hardcoded values for DOWNLOAD_API_KEY and FILE_DOWNLOAD_API_KEY.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-7999
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196879
|
6.1 |
MEDIUM
Network
|
dolibarr
|
dolibarr_erp\/crm
|
htdocs/user/passwordforgotten.php in Dolibarr 10.0.6 allows XSS via the Referer HTTP header.
|
CWE-79
Cross-site Scripting
|
CVE-2020-7996
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196880
|
9.8 |
CRITICAL
Network
|
dolibarr
|
dolibarr_erp\/crm
|
The htdocs/index.php?mainmenu=home login page in Dolibarr 10.0.6 allows an unlimited rate of failed authentication attempts.
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2020-7995
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|