|
197241
|
5.5 |
MEDIUM
Local
|
huawei
|
taurus-al00a_firmware
|
Taurus-AL00A version 10.0.0.1(C00E1R1P1) has an out-of-bounds read vulnerability in XFRM module. An authenticated, local attacker may perform a specific operation to exploit this vulnerability. Due t…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-9087
|
2024-11-21 14:39 |
2020-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197242
|
8.1 |
HIGH
Adjacent
|
johnsoncontrols tyco
|
victor_web_client c-cure_web_client
|
A vulnerability in specified versions of American Dynamics victor Web Client and Software House CCURE Web Client could allow a remote unauthenticated attacker on the network to delete arbitrary files…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-9048
|
2024-11-21 14:39 |
2020-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197243
|
9.8 |
CRITICAL
Network
|
sierrawireless
|
aleos
|
Unauthenticated RPC server on ALEOS before 4.4.9, 4.9.5, and 4.14.0 allows remote code execution.
|
NVD-CWE-noinfo
|
CVE-2020-8782
|
2024-11-21 14:39 |
2020-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197244
|
7.8 |
HIGH
Local
|
sierrawireless
|
aleos
|
Lack of input sanitization in UpdateRebootMgr service of ALEOS 4.11 and later allow an escalation to root from a low-privilege process.
|
NVD-CWE-noinfo
|
CVE-2020-8781
|
2024-11-21 14:39 |
2020-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197245
|
5.5 |
MEDIUM
Local
|
intel
|
bios
|
Insufficient control flow management in BIOS firmware 8th, 9th Generation Intel(R) Core(TM) Processors and Intel(R) Celeron(R) Processor 4000 Series may allow an authenticated user to potentially ena…
|
NVD-CWE-noinfo
|
CVE-2020-8671
|
2024-11-21 14:39 |
2020-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197246
|
7.5 |
HIGH
Network
|
telestream
|
sentry medius
|
Telestream Tektronix Medius before 10.7.5 and Sentry before 10.7.5 have a SQL injection vulnerability allowing an unauthenticated attacker to dump database contents via the page parameter in a page=l…
|
CWE-89
SQL Injection
|
CVE-2020-8887
|
2024-11-21 14:39 |
2020-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197247
|
6.5 |
MEDIUM
Local
|
huawei
|
taurus-an00b_firmware
|
Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a use-after-free (UAF) vulnerability. An authenticated, local attacker may perform specific operations to exploit this vulnerability. S…
|
CWE-416
Use After Free
|
CVE-2020-9084
|
2024-11-21 14:39 |
2020-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197248
|
6.5 |
MEDIUM
Network
|
google debian fedoraproject canonical opensuse microsoft
|
brotli debian_linux fedora ubuntu_linux leap visual_studio_2019 .net .net_core powershell visual_studio_2022
|
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happ…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-8927
|
2024-11-21 14:39 |
2020-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197249
|
8.1 |
HIGH
Network
|
dataiku
|
data_science_studio
|
Dataiku DSS before 6.0.5 allows attackers write access to the project to modify the "Created by" metadata.
|
NVD-CWE-noinfo
|
CVE-2020-8817
|
2024-11-21 14:39 |
2020-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197250
|
9.8 |
CRITICAL
Network
|
intel netapp
|
standard_manageability active_management_technology_firmware steelstore_cloud_integrated_storage
|
Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79, 12.0.68 and 14.0.39 may allow an unauthenticated user to po…
|
NVD-CWE-noinfo
|
CVE-2020-8758
|
2024-11-21 14:39 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|