|
197211
|
9.8 |
CRITICAL
Network
|
tobesoft
|
miplatform
|
A vulnerability exists that could allow the execution of operating system commands on systems running MiPlatform 2019.05.16 and earlier. An attacker could execute arbitrary remote command by sending …
|
CWE-78
OS Command
|
CVE-2020-7825
|
2024-11-21 14:37 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197212
|
5.3 |
MEDIUM
Network
|
react-native-fast-image_project
|
react-native-fast-image
|
This affects all versions of package react-native-fast-image. When an image with source={{uri: "...", headers: { host: "somehost.com", authorization: "..." }} is loaded, all other subsequent images w…
|
CWE-200
Information Exposure
|
CVE-2020-7696
|
2024-11-21 14:37 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197213
|
9.8 |
CRITICAL
Network
|
rollup-plugin-serve_project
|
rollup-plugin-serve
|
This affects all versions of package rollup-plugin-serve. There is no path sanitization in readFile operation.
|
CWE-22
Path Traversal
|
CVE-2020-7684
|
2024-11-21 14:37 |
2020-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197214
|
4.3 |
MEDIUM
Network
|
mcafee
|
web_gateway
|
Inappropriate Encoding for output context vulnerability in McAfee Web Gateway (MWG) prior to 9.2.1 allows a remote attacker to cause MWG to return an ambiguous redirect response via getting a user to…
|
CWE-838
Inappropriate Encoding for Output Context
|
CVE-2020-7292
|
2024-11-21 14:37 |
2020-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197215
|
9.8 |
CRITICAL
Network
|
siemens
|
logo\!_8_bm_firmware
|
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (V1.81.01 - V1.81.03), LOGO! 8 BM (incl. SIPLUS variants) (V1.82.01), LOGO! 8 BM (incl. SIPLUS variants) (V1.82.02). A buffer…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-7593
|
2024-11-21 14:37 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197216
|
7.5 |
HIGH
Network
|
siemens
|
simatic_s7-200_smart_sr_cpu_firmware simatic_s7-200_smart_st_cpu_firmware
|
A vulnerability has been identified in SIMATIC S7-200 SMART CPU family (All versions >= V2.2 < V2.5.1). Affected devices do not properly handle large numbers of new incomming connections and could cr…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-7584
|
2024-11-21 14:37 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197217
|
6.5 |
MEDIUM
Adjacent
|
siemens
|
simatic_wincc_runtime_advanced simatic_hmi_basic_panels_1st_generation simatic_hmi_basic_panels_2nd_generation simatic_hmi_comfort_panels_firmware simatic_hmi_ktp700f_mobile_arctic_firmwa…
|
A vulnerability has been identified in SIMATIC HMI Basic Panels 1st Generation (incl. SIPLUS variants) (All versions), SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) (All versions), …
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2020-7592
|
2024-11-21 14:37 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197218
|
5.3 |
MEDIUM
Network
|
siemens
|
simatic_pcs_neo opcenter_execution_discrete opcenter_execution_foundation opcenter_execution_process opcenter_intelligence opcenter_quality opcenter_rd\&l simatic_step_7 s…
|
A vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation (All versions < V3.2), Opcenter Execution Process (All versions < V3.2), Opcent…
|
-
|
CVE-2020-7588
|
2024-11-21 14:37 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197219
|
8.2 |
HIGH
Network
|
siemens
|
opcenter_execution_discrete opcenter_execution_foundation opcenter_execution_process opcenter_quality opcenter_rd\&l simatic_step_7 simatic_notifier_server soft_starter_es
|
A vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation (All versions < V3.2), Opcenter Execution Process (All versions < V3.2), Opcent…
|
-
|
CVE-2020-7587
|
2024-11-21 14:37 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197220
|
8.1 |
HIGH
Network
|
siemens
|
opcenter_execution_core
|
A vulnerability has been identified in Camstar Enterprise Platform (All versions), Opcenter Execution Core (All versions < V8.2). Authenticated users could have access to resources they normally woul…
|
CWE-269
Improper Privilege Management
|
CVE-2020-7578
|
2024-11-21 14:37 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|