|
210471
|
6.4 |
MEDIUM
Adjacent
|
philips
|
performancebridge_focal_point patient_information_center_ix intellivue_mp2-mp90_firmware intellivue_mx100_firmware intellivue_mx400_firmware intellivue_mx850_firmware intellivue_x2_…
|
In Patient Information Center iX (PICiX) Versions C.02 and C.03,
PerformanceBridge Focal Point Version A.01, IntelliVue patient monitors
MX100, MX400-MX550, MX750, MX850, and IntelliVue X3 Versions…
|
-
|
CVE-2020-16228
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210472
|
6.5 |
MEDIUM
Adjacent
|
siemens
|
simatic_s7-300_cpu_312_firmware simatic_s7-300_cpu_314_firmware simatic_s7-300_cpu_315-2_dp_firmware simatic_s7-300_cpu_315-2_pn_firmware simatic_s7-300_cpu_317-2_pn_firmware simatic_s…
|
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 CPU family (incl. SIPLUS variants) (All versions), SIMAT…
|
-
|
CVE-2020-15791
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210473
|
8.1 |
HIGH
Network
|
siemens
|
polarion_subversion_webclient
|
A vulnerability has been identified in Polarion Subversion Webclient (All versions). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into a…
|
CWE-352
Origin Validation Error
|
CVE-2020-15789
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210474
|
6.1 |
MEDIUM
Network
|
siemens
|
polarion_subversion_webclient
|
A vulnerability has been identified in Polarion Subversion Webclient (All versions). The Polarion subversion web application does not filter user input in a way that prevents Cross-Site Scripting. If…
|
CWE-79
Cross-site Scripting
|
CVE-2020-15788
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210475
|
9.8 |
CRITICAL
Network
|
siemens
|
simatic_hmi_basic_panels_2nd_generation_firmware simatic_hmi_comfort_panels_firmware simatic_hmi_mobile_panels_firmware simatic_hmi_united_comfort_panels_firmware
|
A vulnerability has been identified in SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) (All versions < V16), SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions <= V16), …
|
-
|
CVE-2020-15786
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210476
|
5.5 |
MEDIUM
Local
|
canonical
|
add-apt-repository
|
Versions of add-apt-repository before 0.98.9.2, 0.96.24.32.14, 0.96.20.10, and 0.92.37.8ubuntu0.1~esm1, printed a PPA (personal package archive) description to the terminal as-is, which allowed PPA o…
|
NVD-CWE-noinfo
|
CVE-2020-15709
|
2024-11-21 14:06 |
2020-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210477
|
6.5 |
MEDIUM
Network
|
squid-cache canonical debian fedoraproject opensuse
|
squid ubuntu_linux debian_linux fedora leap
|
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Splitting attacks may succeed against HTTP and HTTPS traffic. This leads to cache poi…
|
CWE-697
Incorrect Comparison
|
CVE-2020-15811
|
2024-11-21 14:06 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210478
|
6.5 |
MEDIUM
Network
|
squid-cache canonical debian fedoraproject opensuse
|
squid ubuntu_linux debian_linux fedora leap
|
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Smuggling attacks may succeed against HTTP and HTTPS traffic. This leads to cache poi…
|
CWE-444
HTTP Request Smuggling
|
CVE-2020-15810
|
2024-11-21 14:06 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210479
|
5.5 |
MEDIUM
Local
|
arm fedoraproject debian
|
mbed_tls fedora debian_linux
|
A Lucky 13 timing side channel in mbedtls_ssl_decrypt_buf in library/ssl_msg.c in Trusted Firmware Mbed TLS through 2.23.0 allows an attacker to recover secret key information. This affects CBC mode …
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2020-16150
|
2024-11-21 14:06 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210480
|
9.0 |
CRITICAL
Network
|
redlion
|
n-tron_702-w_firmware n-tron_702m12-w_firmware
|
The affected product is vulnerable to reflected cross-site scripting, which may allow an attacker to remotely execute arbitrary code and perform actions in the context of an attacked user on the N-Tr…
|
-
|
CVE-2020-16210
|
2024-11-21 14:06 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|