|
199571
|
7.5 |
HIGH
Network
|
rockwellautomation
|
micrologix_1400_a_firmware micrologix_1400_b_firmware micrologix_1100_firmware rslogix_500
|
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, A remote, unauthe…
|
CWE-287
Improper Authentication
|
CVE-2020-6988
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199572
|
3.3 |
LOW
Local
|
rockwellautomation
|
micrologix_1400_a_firmware micrologix_1400_b_firmware micrologix_1100_firmware rslogix_500
|
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, If Simple Mail Tr…
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2020-6980
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199573
|
5.4 |
MEDIUM
Network
|
fortinet
|
fortiisolator
|
An improper neutralization of input vulnerability in the URL Description in Fortinet FortiIsolator version 1.2.2 allows a remote authenticated attacker to perform a cross site scripting attack (XSS).
|
CWE-79
Cross-site Scripting
|
CVE-2020-6643
|
2024-11-21 14:36 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199574
|
6.5 |
MEDIUM
Network
|
hotels
|
styx
|
Hotels Styx through 1.0.0.beta8 allows HTTP response splitting due to CRLF Injection. This is exploitable if untrusted user input can appear in a response header.
|
CWE-74
Injection
|
CVE-2020-6858
|
2024-11-21 14:36 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199575
|
7.8 |
HIGH
Local
|
mcafee
|
advanced_threat_defense
|
Privilege Escalation vulnerability in the command line interface in McAfee Advanced Threat Defense (ATD) 4.x prior to 4.8.2 allows local users to execute arbitrary code via improper access controls o…
|
CWE-269
Improper Privilege Management
|
CVE-2020-7254
|
2024-11-21 14:36 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199576
|
4.4 |
MEDIUM
Local
|
mcafee
|
agent
|
Improper access control vulnerability in masvc.exe in McAfee Agent (MA) prior to 5.6.4 allows local users with administrator privileges to disable self-protection via a McAfee supplied command-line u…
|
CWE-20
Improper Input Validation
|
CVE-2020-7253
|
2024-11-21 14:36 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199577
|
7.5 |
HIGH
Network
|
python
|
urllib3
|
The _encode_invalid_chars function in util/url.py in the urllib3 library 1.25.2 through 1.25.7 for Python allows a denial of service (CPU consumption) because of an inefficient algorithm. The percent…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-7212
|
2024-11-21 14:36 |
2020-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199578
|
7.5 |
HIGH
Network
|
omron
|
plc_cj1_firmware plc_cj2_firmware
|
In all versions of Omron PLC CJ Series, an attacker can send a series of specific data packets within a short period, causing a service error on the PLC Ethernet module, which in turn causes a PLC se…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-6986
|
2024-11-21 14:36 |
2020-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199579
|
7.8 |
HIGH
Local
|
emerson
|
valvelink
|
In Emerson ValveLink v12.0.264 to v13.4.118, a vulnerability in the ValveLink software may allow a local, unprivileged, trusted insider to escalate privileges due to insecure configuration parameters.
|
CWE-269
Improper Privilege Management
|
CVE-2020-6971
|
2024-11-21 14:36 |
2020-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199580
|
7.5 |
HIGH
Network
|
hp
|
oneview_global_dashboard
|
HPE OneView Global Dashboard (OVGD) 1.9 has a remote information disclosure vulnerability. HPE OneView Global Dashboard - After Upgrade or Install of OVGD Version 1.9, Appliance Firewall May Leave Po…
|
CWE-200
Information Exposure
|
CVE-2020-7130
|
2024-11-21 14:36 |
2020-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|