|
210661
|
5.3 |
MEDIUM
Network
|
paloaltonetworks
|
pan-os
|
A vulnerability exists in the Palo Alto Network PAN-OS signature-based threat detection engine that allows an attacker to communicate with devices in the network in a way that is not analyzed for thr…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2020-1999
|
2024-11-21 14:11 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210662
|
9.8 |
CRITICAL
Network
|
whatsapp
|
whatsapp_business whatsapp
|
A use-after-free in a logging library in WhatsApp for iOS prior to v2.20.111 and WhatsApp Business for iOS prior to v2.20.111 could have resulted in memory corruption, crashes and potentially code ex…
|
CWE-416
Use After Free
|
CVE-2020-1909
|
2024-11-21 14:11 |
2020-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210663
|
4.6 |
MEDIUM
Physics
|
whatsapp
|
whatsapp_business whatsapp
|
Improper authorization of the Screen Lock feature in WhatsApp and WhatsApp Business for iOS prior to v2.20.100 could have permitted use of Siri to interact with the WhatsApp application even after th…
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2020-1908
|
2024-11-21 14:11 |
2020-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210664
|
7.5 |
HIGH
Network
|
facebook
|
hermes
|
An out-of-bounds read in the JavaScript Interpreter in Facebook Hermes prior to commit 8cb935cd3b2321c46aa6b7ed8454d95c75a7fca0 allows attackers to cause a denial of service attack or possible furthe…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-1915
|
2024-11-21 14:11 |
2020-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210665
|
7.2 |
HIGH
Network
|
juniper
|
mist_cloud_ui
|
When SAML authentication is enabled, Juniper Networks Mist Cloud UI might incorrectly handle child elements in SAML responses, allowing a remote attacker to modify a valid SAML response without inval…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2020-1677
|
2024-11-21 14:11 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210666
|
7.2 |
HIGH
Network
|
juniper
|
mist_cloud_ui
|
When SAML authentication is enabled, Juniper Networks Mist Cloud UI might incorrectly handle SAML responses, allowing a remote attacker to modify a valid SAML response without invalidating its crypto…
|
NVD-CWE-noinfo
|
CVE-2020-1676
|
2024-11-21 14:11 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210667
|
8.3 |
HIGH
Network
|
juniper
|
mist_cloud_ui
|
When Security Assertion Markup Language (SAML) authentication is enabled, Juniper Networks Mist Cloud UI might incorrectly process invalid authentication certificates which could allow a malicious ne…
|
CWE-295
Improper Certificate Validation
|
CVE-2020-1675
|
2024-11-21 14:11 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210668
|
6.6 |
MEDIUM
Physics
|
juniper
|
junos_os_evolved
|
The system console configuration option 'log-out-on-disconnect' In Juniper Networks Junos OS Evolved fails to log out an active CLI session when the console cable is disconnected. This could allow a …
|
CWE-613
Insufficient Session Expiration
|
CVE-2020-1666
|
2024-11-21 14:11 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210669
|
6.5 |
MEDIUM
Adjacent
|
juniper
|
junos
|
On Juniper Networks EX4300-MP Series, EX4600 Series and QFX5K Series deployed in a Virtual Chassis configuration, receipt of a stream of specific layer 2 frames can cause high CPU load, which could l…
|
NVD-CWE-noinfo
|
CVE-2020-1689
|
2024-11-21 14:11 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210670
|
6.5 |
MEDIUM
Local
|
juniper
|
junos
|
On Juniper Networks SRX Series and NFX Series, a local authenticated user with access to the shell may obtain the Web API service private key that is used to provide encrypted communication between t…
|
NVD-CWE-noinfo
|
CVE-2020-1688
|
2024-11-21 14:11 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|