|
211081
|
7.8 |
HIGH
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a use-after-free vulnerability when handling malicious JavaScrip…
|
CWE-416
Use After Free
|
CVE-2020-24430
|
2024-11-21 14:14 |
2020-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211082
|
7.8 |
HIGH
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) for macOS are affected by a signature verification bypass that could result in l…
|
-
|
CVE-2020-24429
|
2024-11-21 14:14 |
2020-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211083
|
7.7 |
HIGH
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) for macOS are affected by a time-of-check time-of-use (TOCTOU) race condition vu…
|
-
|
CVE-2020-24428
|
2024-11-21 14:14 |
2020-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211084
|
3.3 |
LOW
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Acrobat Reader versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by an input validation vulnerability when decoding a crafted codec tha…
|
-
|
CVE-2020-24427
|
2024-11-21 14:14 |
2020-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211085
|
3.3 |
LOW
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosur…
|
-
|
CVE-2020-24426
|
2024-11-21 14:14 |
2020-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211086
|
5.4 |
MEDIUM
Network
|
nedi
|
nedi
|
NeDi 1.9C allows pwsec.php oid XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23989
|
2024-11-21 14:14 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211087
|
5.4 |
MEDIUM
Network
|
nedi
|
nedi
|
NeDi 1.9C allows inc/rt-popup.php d XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23868
|
2024-11-21 14:14 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211088
|
6.1 |
MEDIUM
Network
|
grafana
|
grafana
|
Grafana before 7.1.0-beta 1 allows XSS via a query alias for the ElasticSearch datasource.
|
CWE-79
Cross-site Scripting
|
CVE-2020-24303
|
2024-11-21 14:14 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211089
|
7.5 |
HIGH
Network
|
victor_cms_project
|
victor_cms
|
A SQL injection vulnerability exists in Victor CMS V1.0 in the cat_id parameter of the category.php file. This parameter can be used by sqlmap to obtain data information in the database.
|
CWE-89
SQL Injection
|
CVE-2020-23945
|
2024-11-21 14:14 |
2020-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211090
|
7.8 |
HIGH
Local
|
iobit
|
malware_fighter
|
An issue exits in IOBit Malware Fighter version 8.0.2.547. Local escalation of privileges is possible by dropping a malicious DLL file into the WindowsApps folder.
|
NVD-CWE-noinfo
|
CVE-2020-23864
|
2024-11-21 14:14 |
2020-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|