|
209261
|
6.1 |
MEDIUM
Network
|
siemens
|
polarion_subversion_webclient
|
A vulnerability has been identified in Polarion Subversion Webclient (All versions). The Polarion subversion web application does not filter user input in a way that prevents Cross-Site Scripting. If…
|
CWE-79
Cross-site Scripting
|
CVE-2020-15788
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209262
|
9.8 |
CRITICAL
Network
|
siemens
|
simatic_hmi_basic_panels_2nd_generation_firmware simatic_hmi_comfort_panels_firmware simatic_hmi_mobile_panels_firmware simatic_hmi_united_comfort_panels_firmware
|
A vulnerability has been identified in SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) (All versions < V16), SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions <= V16), …
|
-
|
CVE-2020-15786
|
2024-11-21 14:06 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209263
|
5.5 |
MEDIUM
Local
|
canonical
|
add-apt-repository
|
Versions of add-apt-repository before 0.98.9.2, 0.96.24.32.14, 0.96.20.10, and 0.92.37.8ubuntu0.1~esm1, printed a PPA (personal package archive) description to the terminal as-is, which allowed PPA o…
|
NVD-CWE-noinfo
|
CVE-2020-15709
|
2024-11-21 14:06 |
2020-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209264
|
6.5 |
MEDIUM
Network
|
squid-cache canonical debian fedoraproject opensuse
|
squid ubuntu_linux debian_linux fedora leap
|
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Splitting attacks may succeed against HTTP and HTTPS traffic. This leads to cache poi…
|
CWE-697
Incorrect Comparison
|
CVE-2020-15811
|
2024-11-21 14:06 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209265
|
6.5 |
MEDIUM
Network
|
squid-cache canonical debian fedoraproject opensuse
|
squid ubuntu_linux debian_linux fedora leap
|
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Smuggling attacks may succeed against HTTP and HTTPS traffic. This leads to cache poi…
|
CWE-444
HTTP Request Smuggling
|
CVE-2020-15810
|
2024-11-21 14:06 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209266
|
5.5 |
MEDIUM
Local
|
arm fedoraproject debian
|
mbed_tls fedora debian_linux
|
A Lucky 13 timing side channel in mbedtls_ssl_decrypt_buf in library/ssl_msg.c in Trusted Firmware Mbed TLS through 2.23.0 allows an attacker to recover secret key information. This affects CBC mode …
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2020-16150
|
2024-11-21 14:06 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209267
|
9.0 |
CRITICAL
Network
|
redlion
|
n-tron_702-w_firmware n-tron_702m12-w_firmware
|
The affected product is vulnerable to reflected cross-site scripting, which may allow an attacker to remotely execute arbitrary code and perform actions in the context of an attacked user on the N-Tr…
|
-
|
CVE-2020-16210
|
2024-11-21 14:06 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209268
|
8.8 |
HIGH
Network
|
redlion
|
n-tron_702-w_firmware n-tron_702m12-w_firmware
|
The affected product is vulnerable to cross-site request forgery, which may allow an attacker to modify different configurations of a device by luring an authenticated user to click on a crafted link…
|
-
|
CVE-2020-16208
|
2024-11-21 14:06 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209269
|
9.0 |
CRITICAL
Network
|
redlion
|
n-tron_702-w_firmware n-tron_702m12-w_firmware
|
The affected product is vulnerable to stored cross-site scripting, which may allow an attacker to remotely execute arbitrary code to gain access to sensitive data on the N-Tron 702-W / 702M12-W (all …
|
-
|
CVE-2020-16206
|
2024-11-21 14:06 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209270
|
9.8 |
CRITICAL
Network
|
redlion
|
n-tron_702-w_firmware n-tron_702m12-w_firmware
|
The affected product is vulnerable due to an undocumented interface found on the device, which may allow an attacker to execute commands as root on the device on the N-Tron 702-W / 702M12-W (all vers…
|
-
|
CVE-2020-16204
|
2024-11-21 14:06 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|