|
199501
|
7.8 |
HIGH
Local
|
autodesk
|
fbx_software_development_kit
|
A buffer overflow vulnerability in the Autodesk FBX-SDK versions 2019.0 and earlier may lead to arbitrary code execution on a system running it.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-7080
|
2024-11-21 14:36 |
2020-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199502
|
7.8 |
HIGH
Local
|
autodesk
|
dynamo_bim
|
An improper signature validation vulnerability in Autodesk Dynamo BIM versions 2.5.1 and 2.5.0 may lead to code execution through maliciously crafted DLL files.
|
CWE-426
Untrusted Search Path
|
CVE-2020-7079
|
2024-11-21 14:36 |
2020-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199503
|
9.8 |
CRITICAL
Network
|
aviatrix
|
openvpn
|
The Aviatrix OpenVPN client through 2.5.7 on Linux, macOS, and Windows is vulnerable when OpenSSL parameters are altered from the issued value set; the parameters could allow unauthorized third-party…
|
NVD-CWE-noinfo
|
CVE-2020-7224
|
2024-11-21 14:36 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199504
|
9.8 |
CRITICAL
Network
|
arubanetworks
|
clearpass
|
A vulnerability exists allowing attackers, when present in the same network segment as ClearPass' management interface, to make changes to certain databases in ClearPass by crafting HTTP packets. As …
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-7114
|
2024-11-21 14:36 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199505
|
4.9 |
MEDIUM
Network
|
arubanetworks
|
clearpass
|
A vulnerability was found when an attacker, while communicating with the ClearPass management interface, is able to intercept and change parameters in the HTTP packets resulting in the compromise of …
|
NVD-CWE-noinfo
|
CVE-2020-7113
|
2024-11-21 14:36 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199506
|
7.2 |
HIGH
Network
|
arubanetworks
|
clearpass
|
A server side injection vulnerability exists which could allow an authenticated administrative user to achieve Remote Code Execution in ClearPass. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher.
|
CWE-74
Injection
|
CVE-2020-7111
|
2024-11-21 14:36 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199507
|
4.8 |
MEDIUM
Network
|
arubanetworks
|
clearpass
|
ClearPass is vulnerable to Stored Cross Site Scripting by allowing a malicious administrator, or a compromised administrator account, to save malicious scripts within ClearPass that could be executed…
|
CWE-79
Cross-site Scripting
|
CVE-2020-7110
|
2024-11-21 14:36 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199508
|
9.8 |
CRITICAL
Network
|
trianglemicroworks
|
dnp3_source_code_library
|
Triangle MicroWorks DNP3 Outstation LibrariesDNP3 Outstation .NET Protocol components and DNP3 Outstation ANSI C source code libraries are affected:3.16.00 through 3.25.01. A specially crafted messag…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6996
|
2024-11-21 14:36 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199509
|
6.7 |
MEDIUM
Local
|
ge
|
cimplicity
|
A local privilege escalation vulnerability has been identified in the GE Digital CIMPLICITY HMI/SCADA product v10.0 and prior. If exploited, this vulnerability could allow an adversary to modify the …
|
CWE-269
Improper Privilege Management
|
CVE-2020-6992
|
2024-11-21 14:36 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199510
|
4.4 |
MEDIUM
Local
|
mcafee
|
endpoint_security
|
Privilege escalation vulnerability in the administrative user interface in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows local users to gain elevated privileg…
|
CWE-269
Improper Privilege Management
|
CVE-2020-7255
|
2024-11-21 14:36 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|