|
209711
|
5.3 |
MEDIUM
Network
|
siemens
|
spectrum_power_4
|
A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8). Insecure storage of sensitive information in the configuration files could allow the retrieval of user names.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2020-15784
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209712
|
6.5 |
MEDIUM
Adjacent
|
philips
|
performancebridge_focal_point patient_information_center_ix intellivue_mp2-mp90_firmware intellivue_mx100_firmware intellivue_mx400_firmware intellivue_mx850_firmware intellivue_x2_…
|
In IntelliVue patient monitors MX100, MX400-550, MX600, MX700, MX750,
MX800, MX850, MP2-MP90, and IntelliVue X2 and X3 Versions N and prior,
the product receives input or data but does not validate…
|
-
|
CVE-2020-16216
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209713
|
5.9 |
MEDIUM
Network
|
bluetooth
|
bluetooth_core_specification
|
Devices supporting Bluetooth before 5.1 may allow man-in-the-middle attacks, aka BLURtooth. Cross Transport Key Derivation in Bluetooth Core Specification v4.2 and v5.0 may permit an unauthenticated …
|
CWE-287
Improper Authentication
|
CVE-2020-15802
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209714
|
6.4 |
MEDIUM
Adjacent
|
philips
|
performancebridge_focal_point patient_information_center_ix intellivue_mp2-mp90_firmware intellivue_mx100_firmware intellivue_mx400_firmware intellivue_mx850_firmware intellivue_x2_…
|
In Patient Information Center iX (PICiX) Versions C.02 and C.03,
PerformanceBridge Focal Point Version A.01, IntelliVue patient monitors
MX100, MX400-MX550, MX750, MX850, and IntelliVue X3 Versions…
|
-
|
CVE-2020-16228
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209715
|
6.5 |
MEDIUM
Adjacent
|
siemens
|
simatic_s7-300_cpu_312_firmware simatic_s7-300_cpu_314_firmware simatic_s7-300_cpu_315-2_dp_firmware simatic_s7-300_cpu_315-2_pn_firmware simatic_s7-300_cpu_317-2_pn_firmware simatic_s…
|
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 CPU family (incl. SIPLUS variants) (All versions), SIMAT…
|
-
|
CVE-2020-15791
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209716
|
8.1 |
HIGH
Network
|
siemens
|
polarion_subversion_webclient
|
A vulnerability has been identified in Polarion Subversion Webclient (All versions). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into a…
|
CWE-352
Origin Validation Error
|
CVE-2020-15789
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209717
|
6.1 |
MEDIUM
Network
|
siemens
|
polarion_subversion_webclient
|
A vulnerability has been identified in Polarion Subversion Webclient (All versions). The Polarion subversion web application does not filter user input in a way that prevents Cross-Site Scripting. If…
|
CWE-79
Cross-site Scripting
|
CVE-2020-15788
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209718
|
9.8 |
CRITICAL
Network
|
siemens
|
simatic_hmi_basic_panels_2nd_generation_firmware simatic_hmi_comfort_panels_firmware simatic_hmi_mobile_panels_firmware simatic_hmi_united_comfort_panels_firmware
|
A vulnerability has been identified in SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) (All versions < V16), SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions <= V16), …
|
-
|
CVE-2020-15786
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209719
|
5.5 |
MEDIUM
Local
|
canonical
|
add-apt-repository
|
Versions of add-apt-repository before 0.98.9.2, 0.96.24.32.14, 0.96.20.10, and 0.92.37.8ubuntu0.1~esm1, printed a PPA (personal package archive) description to the terminal as-is, which allowed PPA o…
|
NVD-CWE-noinfo
|
CVE-2020-15709
|
2024-11-21 14:06 |
2020-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209720
|
6.5 |
MEDIUM
Network
|
squid-cache canonical debian fedoraproject opensuse
|
squid ubuntu_linux debian_linux fedora leap
|
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Splitting attacks may succeed against HTTP and HTTPS traffic. This leads to cache poi…
|
CWE-697
Incorrect Comparison
|
CVE-2020-15811
|
2024-11-21 14:06 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|