|
211441
|
6.1 |
MEDIUM
Network
|
totolink
|
n200re_firmware n100re_firmware
|
A cross site scripting (XSS) vulnerability in the error page of Totolink N200RE and N100RE Routers 2.0 allows attackers to execute arbitrary web scripts or HTML via SCRIPT element.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23617
|
2024-11-21 14:13 |
2022-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211442
|
9.8 |
CRITICAL
Network
|
xiongmaitech
|
ahb7008t-mh-v2_firmware ahb7804r-els_firmware ahb7804r-mh-v2_firmware ahb7808r-ms-v2_firmware ahb7808r-ms_firmware ahb7808t-ms-v2_firmware ahb7804r-lms_firmware hi3518e_50h10l_s3…
|
Xiongmai Technology Co devices AHB7008T-MH-V2, AHB7804R-ELS, AHB7804R-MH-V2, AHB7808R-MS-V2, AHB7808R-MS, AHB7808T-MS-V2, AHB7804R-LMS, and HI3518E_50H10L_S39 were all discovered to have port 9530 op…
|
NVD-CWE-noinfo
|
CVE-2020-22253
|
2024-11-21 14:13 |
2022-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211443
|
7.5 |
HIGH
Network
|
weibo
|
android_software_development_kit
|
An intent redirection issue was doscovered in Sina Weibo Android SDK 4.2.7 (com.sina.weibo.sdk.share.WbShareTransActivity), any unexported Activities could be started by the com.sina.weibo.sdk.share.…
|
NVD-CWE-Other
|
CVE-2020-23349
|
2024-11-21 14:13 |
2022-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211444
|
7.5 |
HIGH
Network
|
mikrotik
|
routeros
|
A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted FTP requests.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-22845
|
2024-11-21 14:13 |
2022-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211445
|
7.5 |
HIGH
Network
|
mikrotik
|
routeros
|
A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted SMB requests.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-22844
|
2024-11-21 14:13 |
2022-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211446
|
7.5 |
HIGH
Network
|
microsoft
|
chakracore
|
There is an ASSERTION (pFuncBody->GetYieldRegister() == oldYieldRegister) failed in Js::DebugContext::RundownSourcesAndReparse in ChakraCore version 1.12.0.0-beta.
|
NVD-CWE-noinfo
|
CVE-2020-23315
|
2024-11-21 14:13 |
2022-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211447
|
7.5 |
HIGH
Network
|
dhrystone_project
|
dhrystone
|
A NULL pointer dereference in the main() function dhry_1.c of dhrystone 2.1 causes a denial of service (DoS).
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-23026
|
2024-11-21 14:13 |
2022-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211448
|
7.8 |
HIGH
Local
|
superantispyware
|
superantispyware
|
SUPERAntispyware v8.0.0.1050 was discovered to contain an issue in the component saskutil64.sys. This issue allows attackers to arbitrarily write data to the device via IOCTL 0x9C402140.
|
NVD-CWE-noinfo
|
CVE-2020-22061
|
2024-11-21 14:13 |
2021-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211449
|
9.1 |
CRITICAL
Network
|
evga
|
precision_xoc
|
The WinRin0x64.sys and WinRing0.sys low-level drivers in EVGA Precision XOC version v6.2.7 were discovered to be configured with the default security descriptor which allows attackers to access sensi…
|
NVD-CWE-noinfo
|
CVE-2020-22057
|
2024-11-21 14:13 |
2021-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211450
|
7.8 |
HIGH
Local
|
irfanview
|
irfanview
|
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ReadXPM_W+0x0000000000000531.
|
NVD-CWE-noinfo
|
CVE-2020-23545
|
2024-11-21 14:13 |
2021-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|