|
198001
|
7.8 |
HIGH
Local
|
sierrawireless
|
aleos
|
Lack of input sanitization in UpdateRebootMgr service of ALEOS 4.11 and later allow an escalation to root from a low-privilege process.
|
NVD-CWE-noinfo
|
CVE-2020-8781
|
2024-11-21 14:39 |
2020-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198002
|
5.5 |
MEDIUM
Local
|
intel
|
bios
|
Insufficient control flow management in BIOS firmware 8th, 9th Generation Intel(R) Core(TM) Processors and Intel(R) Celeron(R) Processor 4000 Series may allow an authenticated user to potentially ena…
|
NVD-CWE-noinfo
|
CVE-2020-8671
|
2024-11-21 14:39 |
2020-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198003
|
7.5 |
HIGH
Network
|
telestream
|
sentry medius
|
Telestream Tektronix Medius before 10.7.5 and Sentry before 10.7.5 have a SQL injection vulnerability allowing an unauthenticated attacker to dump database contents via the page parameter in a page=l…
|
CWE-89
SQL Injection
|
CVE-2020-8887
|
2024-11-21 14:39 |
2020-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198004
|
6.5 |
MEDIUM
Local
|
huawei
|
taurus-an00b_firmware
|
Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a use-after-free (UAF) vulnerability. An authenticated, local attacker may perform specific operations to exploit this vulnerability. S…
|
CWE-416
Use After Free
|
CVE-2020-9084
|
2024-11-21 14:39 |
2020-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198005
|
6.5 |
MEDIUM
Network
|
google debian fedoraproject canonical opensuse microsoft
|
brotli debian_linux fedora ubuntu_linux leap visual_studio_2019 .net .net_core powershell visual_studio_2022
|
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happ…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-8927
|
2024-11-21 14:39 |
2020-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198006
|
8.1 |
HIGH
Network
|
dataiku
|
data_science_studio
|
Dataiku DSS before 6.0.5 allows attackers write access to the project to modify the "Created by" metadata.
|
NVD-CWE-noinfo
|
CVE-2020-8817
|
2024-11-21 14:39 |
2020-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198007
|
9.8 |
CRITICAL
Network
|
intel netapp
|
standard_manageability active_management_technology_firmware steelstore_cloud_integrated_storage
|
Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, 11.12.79, 11.22.79, 12.0.68 and 14.0.39 may allow an unauthenticated user to po…
|
NVD-CWE-noinfo
|
CVE-2020-8758
|
2024-11-21 14:39 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198008
|
2.4 |
LOW
Physics
|
huawei
|
mate_20_firmware
|
HUAWEI Mate 20 smart phones with Versions earlier than 10.1.0.163(C00E160R3P8) have a denial of service (DoS) vulnerability. The attacker can enter a large amount of text on the phone. Due to insuffi…
|
NVD-CWE-noinfo
|
CVE-2020-9083
|
2024-11-21 14:39 |
2020-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198009
|
5.4 |
MEDIUM
Network
|
netapp
|
clustered_data_ontap
|
Clustered Data ONTAP versions prior to 9.3P19, 9.5P14, 9.6P9 and 9.7 are susceptible to a vulnerability which when successfully exploited could lead to addition or modification of data or disclosure …
|
NVD-CWE-noinfo
|
CVE-2020-8576
|
2024-11-21 14:39 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198010
|
7.2 |
HIGH
Network
|
trendmicro
|
deep_security_manager vulnerability_protection
|
A vulnerability in the management consoles of Trend Micro Deep Security 10.0-12.0 and Trend Micro Vulnerability Protection 2.0 SP2 may allow an authenticated attacker with full control privileges to …
|
NVD-CWE-noinfo
|
CVE-2020-8602
|
2024-11-21 14:39 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|