|
197071
|
9.8 |
CRITICAL
Network
|
askey
|
ap4000w_firmware
|
An issue was discovered on Askey AP4000W TDC_V1.01.003 devices. An attacker can perform Remote Code Execution (RCE) by sending a specially crafted network packer to the bd_svr service listening on TC…
|
CWE-20
Improper Input Validation
|
CVE-2020-8614
|
2024-11-21 14:39 |
2020-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197072
|
9.8 |
CRITICAL
Network
|
dlink
|
dir-842_firmware
|
A stack-based buffer overflow was found on the D-Link DIR-842 REVC with firmware v3.13B09 HOTFIX due to the use of strcpy for LOGINPASSWORD when handling a POST request to the /MTFWU endpoint.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-8962
|
2024-11-21 14:39 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197073
|
9.8 |
CRITICAL
Network
|
openvpn
|
openvpn_access_server
|
OpenVPN Access Server 2.8.x before 2.8.1 allows LDAP authentication bypass (except when a user is enrolled in two-factor authentication).
|
CWE-287
Improper Authentication
|
CVE-2020-8953
|
2024-11-21 14:39 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197074
|
9.8 |
CRITICAL
Network
|
timetoolsltd
|
sr9850_firmware sr9750_firmware sc9705_firmware sr9210_firmware sc9205_firmware sr7110_firmware sc7105_firmware t100_firmware t300_firmware t550_firmware
|
TimeTools SC7105 1.0.007, SC9205 1.0.007, SC9705 1.0.007, SR7110 1.0.007, SR9210 1.0.007, SR9750 1.0.007, SR9850 1.0.007, T100 1.0.003, T300 1.0.003, and T550 1.0.003 devices allow remote attackers t…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-8964
|
2024-11-21 14:39 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197075
|
9.8 |
CRITICAL
Network
|
timetoolsltd
|
sr9850_firmware sr9750_firmware sc9705_firmware sr9210_firmware sc9205_firmware sr7110_firmware sc7105_firmware t100_firmware t300_firmware t550_firmware
|
TimeTools SC7105 1.0.007, SC9205 1.0.007, SC9705 1.0.007, SR7110 1.0.007, SR9210 1.0.007, SR9750 1.0.007, SR9850 1.0.007, T100 1.0.003, T300 1.0.003, and T550 1.0.003 devices allow remote attackers t…
|
CWE-78
OS Command
|
CVE-2020-8963
|
2024-11-21 14:39 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197076
|
9.8 |
CRITICAL
Network
|
weechat fedoraproject opensuse debian
|
weechat fedora leap backports_sle debian_linux
|
irc_mode_channel_update in plugins/irc/irc-mode.c in WeeChat through 2.7 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified othe…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-8955
|
2024-11-21 14:39 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197077
|
7.8 |
HIGH
Local
|
amd
|
user_experience_program
|
The AUEPLauncher service in Radeon AMD User Experience Program Launcher through 1.0.0.1 on Windows allows elevation of privilege by placing a crafted file in %PROGRAMDATA%\AMD\PPC\upload and then cre…
|
CWE-59
Link Following
|
CVE-2020-8950
|
2024-11-21 14:39 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197078
|
8.8 |
HIGH
Network
|
gocloud
|
s2a_wl_firmware s2a_firmware s3a_k2p_mtk_firmware s3a_firmware isp3000_firmware
|
Gocloud S2A_WL 4.2.7.16471, S2A 4.2.7.17278, S2A 4.3.0.15815, S2A 4.3.0.17193, S3A K2P MTK 4.2.7.16528, S3A 4.3.0.16572, and ISP3000 4.3.0.17190 devices allows remote attackers to execute arbitrary O…
|
CWE-78
OS Command
|
CVE-2020-8949
|
2024-11-21 14:39 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197079
|
7.2 |
HIGH
Network
|
artica
|
pandora_fms
|
functions_netflow.php in Artica Pandora FMS 7.0 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the index.php?operation/netflow/nf_live_view ip_dst, dst_port, or …
|
CWE-78
OS Command
|
CVE-2020-8947
|
2024-11-21 14:39 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197080
|
8.8 |
HIGH
Network
|
netis-systems
|
wf2471_firmware
|
Netis WF2471 v1.2.30142 devices allow an authenticated attacker to execute arbitrary OS commands via shell metacharacters in the /cgi-bin-igd/sys_log_clean.cgi log_3g_type parameter.
|
CWE-78
OS Command
|
CVE-2020-8946
|
2024-11-21 14:39 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|