|
198831
|
8.8 |
HIGH
Network
|
hidglobal
|
omnikey_5427_firmware omnikey_5127_firmware
|
HID OMNIKEY 5427 and OMNIKEY 5127 readers are vulnerable to CSRF when using the EEM driver (Ethernet Emulation Mode). By persuading an authenticated user to visit a malicious Web site, a remote attac…
|
CWE-352
Origin Validation Error
|
CVE-2020-36283
|
2024-11-21 14:29 |
2021-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198832
|
9.8 |
CRITICAL
Network
|
rabbitmq
|
jms_client
|
JMS Client for RabbitMQ 1.x before 1.15.2 and 2.x before 2.2.0 is vulnerable to unsafe deserialization that can result in code execution via crafted StreamMessage data.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2020-36282
|
2024-11-21 14:29 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198833
|
7.5 |
HIGH
Network
|
leptonica debian fedoraproject
|
leptonica debian_linux fedora
|
Leptonica before 1.80.0 allows a heap-based buffer over-read in pixFewColorsOctcubeQuantMixed in colorquant1.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36281
|
2024-11-21 14:29 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198834
|
7.5 |
HIGH
Network
|
leptonica fedoraproject
|
leptonica fedora
|
Leptonica before 1.80.0 allows a heap-based buffer over-read in pixReadFromTiffStream, related to tiffio.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36280
|
2024-11-21 14:29 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198835
|
7.5 |
HIGH
Network
|
leptonica fedoraproject debian
|
leptonica fedora debian_linux
|
Leptonica before 1.80.0 allows a heap-based buffer over-read in rasteropGeneralLow, related to adaptmap_reg.c and adaptmap.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36279
|
2024-11-21 14:29 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198836
|
7.5 |
HIGH
Network
|
leptonica fedoraproject debian
|
leptonica fedora debian_linux
|
Leptonica before 1.80.0 allows a heap-based buffer over-read in findNextBorderPixel in ccbord.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-36278
|
2024-11-21 14:29 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198837
|
7.5 |
HIGH
Network
|
leptonica fedoraproject debian
|
leptonica fedora debian_linux
|
Leptonica before 1.80.0 allows a denial of service (application crash) via an incorrect left shift in pixConvert2To8 in pixconv.c.
|
CWE-670
Always-Incorrect Control Flow Implementation
|
CVE-2020-36277
|
2024-11-21 14:29 |
2021-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198838
|
7.5 |
HIGH
Network
|
identitymodel_project
|
identitymodel
|
An issue was discovered in IdentityModel (aka ScottBrady.IdentityModel) before 1.3.0. The Branca implementation allows an attacker to modify and forge authentication tokens.
|
NVD-CWE-noinfo
|
CVE-2020-36255
|
2024-11-21 14:29 |
2021-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198839
|
5.3 |
MEDIUM
Network
|
atlassian
|
crowd
|
The ResourceDownloadRewriteRule class in Crowd before version 4.0.4, and from version 4.1.0 before 4.1.2 allowed unauthenticated remote attackers to read arbitrary files within WEB-INF and META-INF d…
|
NVD-CWE-noinfo
|
CVE-2020-36240
|
2024-11-21 14:29 |
2021-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198840
|
8.1 |
HIGH
Network
|
dropbear_ssh_project
|
dropbear_ssh
|
scp.c in Dropbear before 2020.79 mishandles the filename of . or an empty filename, a related issue to CVE-2018-20685.
|
NVD-CWE-noinfo
|
CVE-2020-36254
|
2024-11-21 14:29 |
2021-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|