|
211481
|
6.1 |
MEDIUM
Network
|
otrs debian
|
otrs debian_linux
|
Due to improper handling of uploaded images it is possible in very unlikely and rare conditions to force the agents browser to execute malicious javascript from a special crafted SVG file rendered as…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1766
|
2024-11-21 14:11 |
2020-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211482
|
5.3 |
MEDIUM
Network
|
otrs debian opensuse
|
otrs debian_linux leap backports_sle
|
An improper control of parameters allows the spoofing of the from fields of the following screens: AgentTicketCompose, AgentTicketForward, AgentTicketBounce and AgentTicketEmailOutbound. This issue a…
|
NVD-CWE-Other
|
CVE-2020-1765
|
2024-11-21 14:11 |
2020-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211483
|
7.5 |
HIGH
Network
|
apache
|
olingo
|
Apache Olingo versions 4.0.0 to 4.7.0 provide the AsyncRequestWrapperImpl class which reads a URL from the Location header, and then sends a GET or DELETE request to this URL. It may allow to impleme…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2020-1925
|
2024-11-21 14:11 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211484
|
5.3 |
MEDIUM
Network
|
huawei
|
cloudengine_12800_firmware s5700_firmware s6700_firmware
|
There is a weak algorithm vulnerability in some Huawei products. The affected products use the RSA algorithm in the SSL key exchange algorithm which have been considered as a weak algorithm. Attacker…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2020-1810
|
2024-11-21 14:11 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211485
|
4.6 |
MEDIUM
Physics
|
huawei
|
mate_20_pro_firmware
|
HUAWEI Mate 20 Pro smartphones versions earlier than 10.0.0.175(C00E69R3P8) have an improper authentication vulnerability. The software does not sufficiently validate the name of apk file in a specia…
|
CWE-287
Improper Authentication
|
CVE-2020-1786
|
2024-11-21 14:11 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211486
|
4.4 |
MEDIUM
Local
|
huawei
|
honor_magic2_firmware
|
Huawei Honor Magic2 mobile phones with versions earlier than 10.0.0.175(C00E59R2P11) have an information leak vulnerability. Due to a module using weak encryption tool, an attacker with the root perm…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2020-1826
|
2024-11-21 14:11 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211487
|
6.6 |
MEDIUM
Physics
|
huawei
|
mate_20_firmware
|
HUAWEI Mate 20 smartphones versions earlier than 9.1.0.139(C00E133R3P1) have an improper authentication vulnerability. The system has a logic error under certain scenario, successful exploit could al…
|
CWE-287
Improper Authentication
|
CVE-2020-1787
|
2024-11-21 14:11 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211488
|
8.2 |
HIGH
Network
|
huawei
|
usg9500_firmware
|
USG9500 with software of V500R001C30SPC100; V500R001C30SPC200; V500R001C30SPC600; V500R001C60SPC500; V500R005C00SPC100; V500R005C00SPC200 have an improper credentials management vulnerability. The so…
|
NVD-CWE-noinfo
|
CVE-2020-1871
|
2024-11-21 14:11 |
2020-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211489
|
5.5 |
MEDIUM
Local
|
huawei
|
mate_10_pro_firmware honor_v10_firmware honor_10_firmware nova_4_firmware
|
Mate 10 Pro;Honor V10;Honor 10;Nova 4 smartphones have a denial of service vulnerability. The system does not properly check the status of certain module during certain operations, an attacker should…
|
NVD-CWE-noinfo
|
CVE-2020-1785
|
2024-11-21 14:11 |
2020-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211490
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
Windows Spoofing Vulnerability
|
NVD-CWE-noinfo
|
CVE-2020-1599
|
2024-11-21 14:10 |
2020-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|