|
199211
|
5.9 |
MEDIUM
Network
|
citadel
|
webcit
|
An issue was discovered in Citadel through webcit-926. Meddler-in-the-middle attackers can pipeline commands after POP3 STLS, IMAP STARTTLS, or SMTP STARTTLS commands, injecting cleartext commands in…
|
CWE-77
Command Injection
|
CVE-2020-29547
|
2024-11-21 14:24 |
2023-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199212
|
9.8 |
CRITICAL
Network
|
dell oracle
|
bsafe_crypto-c-micro-edition bsafe_micro-edition-suite http_server security_service database weblogic_server_proxy_plug-in
|
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Improper Input Validation Vulnerability.
|
CWE-20
Improper Input Validation
|
CVE-2020-29508
|
2024-11-21 14:24 |
2022-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199213
|
9.8 |
CRITICAL
Network
|
dell oracle
|
bsafe_crypto-c-micro-edition bsafe_micro-edition-suite http_server security_service database weblogic_server_proxy_plug-in
|
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.4, and Dell BSAFE Micro Edition Suite, versions before 4.4, contain an Improper Input Validation Vulnerability.
|
CWE-20
Improper Input Validation
|
CVE-2020-29507
|
2024-11-21 14:24 |
2022-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199214
|
9.8 |
CRITICAL
Network
|
dell oracle
|
bsafe_micro-edition-suite bsafe_crypto-c-micro-edition http_server security_service database weblogic_server_proxy_plug-in
|
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Observable Timing Discrepancy Vulnerability.
|
NVD-CWE-Other
|
CVE-2020-29506
|
2024-11-21 14:24 |
2022-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199215
|
7.5 |
HIGH
Network
|
dell oracle
|
bsafe_micro-edition-suite bsafe_crypto-c-micro-edition retail_customer_insights
|
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain a Key Management Error Vulnerability.
|
CWE-331
Insufficient Entropy
|
CVE-2020-29505
|
2024-11-21 14:24 |
2022-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199216
|
6.1 |
MEDIUM
Network
|
froxlor
|
froxlor
|
Froxlor through 0.10.22 does not perform validation on user input passed in the customermail GET parameter. The value of this parameter is reflected in the login webpage, allowing the injection of ar…
|
CWE-79
Cross-site Scripting
|
CVE-2020-29653
|
2024-11-21 14:24 |
2022-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199217
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. A malicious application may be able to read restricted memory.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-29629
|
2024-11-21 14:24 |
2021-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199218
|
7.5 |
HIGH
Network
|
apple
|
mac_os_x
|
A race condition was addressed with additional validation. This issue is fixed in Security Update 2021-005 Catalina. Mounting a maliciously crafted NFS network share may lead to arbitrary code execut…
|
CWE-362
Race Condition
|
CVE-2020-29622
|
2024-11-21 14:24 |
2021-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199219
|
8.1 |
HIGH
Network
|
smartertools
|
smartermail
|
An issue was discovered in SmarterTools SmarterMail through 100.0.7537. Meddler-in-the-middle attackers can pipeline commands after a POP3 STLS command, injecting plaintext commands into an encrypted…
|
CWE-77
Command Injection
|
CVE-2020-29548
|
2024-11-21 14:24 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199220
|
4.4 |
MEDIUM
Local
|
dell
|
emc_powerstore
|
Dell EMC PowerStore versions prior to 1.0.3.0.5.xxx contain a file permission Vulnerability. A locally authenticated attacker could potentially exploit this vulnerability, leading to the information …
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-29503
|
2024-11-21 14:24 |
2021-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|