|
210711
|
9.8 |
CRITICAL
Network
|
facebook
|
hermes
|
A type confusion vulnerability when resolving properties of JavaScript objects with specially-crafted prototype chains in Facebook Hermes prior to commit fe52854cdf6725c2eaa9e125995da76e6ceb27da allo…
|
CWE-843
Type Confusion
|
CVE-2020-1911
|
2024-11-21 14:11 |
2020-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210712
|
8.8 |
HIGH
Network
|
whatsapp
|
whatsapp whatsapp_business
|
A stack write overflow in WhatsApp for Android prior to v2.20.35, WhatsApp Business for Android prior to v2.20.20, WhatsApp for iPhone prior to v2.20.30, and WhatsApp Business for iPhone prior to v2.…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-1894
|
2024-11-21 14:11 |
2020-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210713
|
9.8 |
CRITICAL
Network
|
whatsapp
|
whatsapp whatsapp_business
|
A user controlled parameter used in video call in WhatsApp for Android prior to v2.20.17, WhatsApp Business for Android prior to v2.20.7, WhatsApp for iPhone prior to v2.20.20, and WhatsApp Business …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-1891
|
2024-11-21 14:11 |
2020-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210714
|
7.5 |
HIGH
Network
|
whatsapp
|
whatsapp whatsapp_business
|
A URL validation issue in WhatsApp for Android prior to v2.20.11 and WhatsApp Business for Android prior to v2.20.2 could have caused the recipient of a sticker message containing deliberately malfor…
|
CWE-20
Improper Input Validation
|
CVE-2020-1890
|
2024-11-21 14:11 |
2020-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210715
|
10.0 |
CRITICAL
Network
|
whatsapp
|
whatsapp_desktop
|
A security feature bypass issue in WhatsApp Desktop versions prior to v0.3.4932 could have allowed for sandbox escape in Electron and escalation of privilege if combined with a remote code execution …
|
NVD-CWE-noinfo
|
CVE-2020-1889
|
2024-11-21 14:11 |
2020-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210716
|
8.8 |
HIGH
Network
|
whatsapp
|
whatsapp whatsapp_business
|
A buffer overflow in WhatsApp for Android prior to v2.20.11 and WhatsApp Business for Android prior to v2.20.2 could have allowed an out-of-bounds write via a specially crafted video stream after rec…
|
CWE-787 CWE-120
Out-of-bounds Write Classic Buffer Overflow
|
CVE-2020-1886
|
2024-11-21 14:11 |
2020-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210717
|
4.3 |
MEDIUM
Network
|
otrs
|
otrs
|
When an agent user is renamed or set to invalid the session belonging to the user is keept active. The session can not be used to access ticket data in the case the agent is invalid. This issue affec…
|
CWE-613
Insufficient Session Expiration
|
CVE-2020-1776
|
2024-11-21 14:11 |
2020-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210718
|
5.3 |
MEDIUM
Network
|
juniper
|
junos
|
When a device running Juniper Networks Junos OS with MPC7, MPC8, or MPC9 line cards installed and the system is configured for inline IP reassembly, used by L2TP, MAP-E, GRE, and IPIP, the packet for…
|
NVD-CWE-noinfo
|
CVE-2020-1655
|
2024-11-21 14:11 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210719
|
9.8 |
CRITICAL
Network
|
opennms
|
opennms
|
OpenNMS is accessible via port 9443
|
NVD-CWE-noinfo
|
CVE-2020-1652
|
2024-11-21 14:11 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210720
|
9.8 |
CRITICAL
Network
|
juniper
|
junos
|
On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service enabled, processing a malformed HTTP message can lead to a Denial of Service (DoS) or Remote Code Exec…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-1654
|
2024-11-21 14:11 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|