|
197321
|
6.5 |
MEDIUM
Network
|
netapp
|
hci_h610s_firmware
|
The NetApp HCI H610C, H615C and H610S Baseboard Management Controllers (BMC) are shipped with a documented default account and password that should be changed during the initial node setup. During up…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-8573
|
2024-11-21 14:39 |
2020-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197322
|
7.2 |
HIGH
Network
|
johnsoncontrols
|
exacqvision_web_service exacqvision_enterprise_manager
|
A vulnerability exists that could allow the execution of unauthorized code or operating system commands on systems running exacqVision Web Service versions 20.06.3.0 and prior and exacqVision Enterpr…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2020-9047
|
2024-11-21 14:39 |
2020-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197323
|
7.8 |
HIGH
Local
|
google opensuse
|
guest-oslogin leap
|
A vulnerability in Google Cloud Platform's guest-oslogin versions between 20190304 and 20200507 allows a user that is only granted the role "roles/compute.osLogin" to escalate privileges to root. Usi…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-8933
|
2024-11-21 14:39 |
2020-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197324
|
7.8 |
HIGH
Local
|
google opensuse
|
guest-oslogin leap
|
A vulnerability in Google Cloud Platform's guest-oslogin versions between 20190304 and 20200507 allows a user that is only granted the role "roles/compute.osLogin" to escalate privileges to root. Usi…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-8907
|
2024-11-21 14:39 |
2020-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197325
|
7.8 |
HIGH
Local
|
google opensuse
|
guest-oslogin leap
|
A vulnerability in Google Cloud Platform's guest-oslogin versions between 20190304 and 20200507 allows a user that is only granted the role "roles/compute.osLogin" to escalate privileges to root. Usi…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-8903
|
2024-11-21 14:39 |
2020-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197326
|
4.9 |
MEDIUM
Network
|
isc opensuse netapp canonical
|
bind leap steelstore_cloud_integrated_storage ubuntu_linux
|
An attacker who is permitted to send zone data to a server via zone transfer can exploit this to intentionally trigger the assertion failure with a specially constructed zone, denying service to clie…
|
CWE-617
Reachable Assertion
|
CVE-2020-8618
|
2024-11-21 14:39 |
2020-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197327
|
4.9 |
MEDIUM
Network
|
isc fedoraproject opensuse debian canonical netapp
|
bind fedora leap debian_linux ubuntu_linux steelstore_cloud_integrated_storage
|
In ISC BIND9 versions BIND 9.11.14 -> 9.11.19, BIND 9.14.9 -> 9.14.12, BIND 9.16.0 -> 9.16.3, BIND Supported Preview Edition 9.11.14-S1 -> 9.11.19-S1: Unless a nameserver is providing authoritative s…
|
CWE-404
Improper Resource Shutdown or Release
|
CVE-2020-8619
|
2024-11-21 14:39 |
2020-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197328
|
6.5 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
OX App Suite through 7.10.3 allows SSRF.
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2020-8544
|
2024-11-21 14:39 |
2020-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197329
|
7.5 |
HIGH
Network
|
open-xchange
|
open-xchange_appsuite
|
OX App Suite through 7.10.3 has Improper Input Validation.
|
CWE-20
Improper Input Validation
|
CVE-2020-8543
|
2024-11-21 14:39 |
2020-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197330
|
5.4 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
OX App Suite through 7.10.3 allows XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2020-8542
|
2024-11-21 14:39 |
2020-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|