|
198461
|
5.5 |
MEDIUM
Local
|
virglrenderer_project debian
|
virglrenderer debian_linux
|
A double-free vulnerability in vrend_renderer.c in virglrenderer through 0.8.1 allows attackers to cause a denial of service by triggering texture allocation failure, because vrend_renderer_resource_…
|
CWE-415
Double Free
|
CVE-2020-8003
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198462
|
5.5 |
MEDIUM
Local
|
virglrenderer_project debian
|
virglrenderer debian_linux
|
A NULL pointer dereference in vrend_renderer.c in virglrenderer through 0.8.1 allows attackers to cause a denial of service via commands that attempt to launch a grid without previously providing a C…
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-8002
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198463
|
9.8 |
CRITICAL
Network
|
intelliantech
|
aptus
|
The Intellian Aptus application 1.0.2 for Android has a hardcoded password of intellian for the masteruser FTP account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-8001
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198464
|
9.8 |
CRITICAL
Network
|
intelliantech
|
aptus_web
|
Intellian Aptus Web 1.24 has a hardcoded password of 12345678 for the intellian account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-8000
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198465
|
9.8 |
CRITICAL
Network
|
intelliantech
|
aptus
|
The Intellian Aptus application 1.0.2 for Android has hardcoded values for DOWNLOAD_API_KEY and FILE_DOWNLOAD_API_KEY.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-7999
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198466
|
6.1 |
MEDIUM
Network
|
dolibarr
|
dolibarr_erp\/crm
|
htdocs/user/passwordforgotten.php in Dolibarr 10.0.6 allows XSS via the Referer HTTP header.
|
CWE-79
Cross-site Scripting
|
CVE-2020-7996
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198467
|
9.8 |
CRITICAL
Network
|
dolibarr
|
dolibarr_erp\/crm
|
The htdocs/index.php?mainmenu=home login page in Dolibarr 10.0.6 allows an unlimited rate of failed authentication attempts.
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2020-7995
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198468
|
6.1 |
MEDIUM
Network
|
dolibarr
|
dolibarr_erp\/crm
|
Multiple cross-site scripting (XSS) vulnerabilities in Dolibarr 10.0.6 allow remote attackers to inject arbitrary web script or HTML via the (1) label[libelle] parameter to the /htdocs/admin/dict.php…
|
CWE-79
Cross-site Scripting
|
CVE-2020-7994
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198469
|
8.8 |
HIGH
Network
|
adive
|
framework
|
Adive Framework 2.0.8 has admin/config CSRF to change the Administrator password.
|
CWE-352
Origin Validation Error
|
CVE-2020-7991
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198470
|
6.1 |
MEDIUM
Network
|
adive
|
framework
|
Adive Framework 2.0.8 has admin/user/add userName XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2020-7990
|
2024-11-21 14:38 |
2020-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|