|
209191
|
6.3 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
A heap-based buffer overflow was found in QEMU through 5.0.0 in the SDHCI device emulation support. It could occur while doing a multi block SDMA transfer via the sdhci_sdma_transfer_multi_blocks() r…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-17380
|
2024-11-21 14:07 |
2021-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209192
|
6.1 |
MEDIUM
Network
|
owncloud
|
owncloud
|
ownCloud (Core) before 10.5 allows XSS in login page 'forgot password.'
|
CWE-79
Cross-site Scripting
|
CVE-2020-16255
|
2024-11-21 14:07 |
2021-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209193
|
9.9 |
CRITICAL
Network
|
usvn
|
usvn
|
USVN (aka User-friendly SVN) before 1.0.9 allows remote code execution via shell metacharacters in the number_start or number_end parameter to LastHundredRequest (aka lasthundredrequestAction) in the…
|
CWE-78
OS Command
|
CVE-2020-17363
|
2024-11-21 14:07 |
2020-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209194
|
8.8 |
HIGH
Network
|
1e
|
client
|
The MSI installer in 1E Client 4.1.0.267 and 5.0.0.745 allows remote authenticated users and local users to gain elevated privileges via the repair option. This applies to installations that have a T…
|
CWE-74 CWE-668
Injection Exposure of Resource to Wrong Sphere
|
CVE-2020-16268
|
2024-11-21 14:07 |
2020-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209195
|
9.6 |
CRITICAL
Network
|
notable
|
notable
|
Notable 1.8.4 allows XSS via crafted Markdown text, with resultant remote code execution (because nodeIntegration in webPreferences is true).
|
CWE-79
Cross-site Scripting
|
CVE-2020-16608
|
2024-11-21 14:07 |
2020-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209196
|
7.8 |
HIGH
Local
|
microsoft
|
visual_studio_code
|
Visual Studio Code Java Extension Pack Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2020-17159
|
2024-11-21 14:07 |
2020-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209197
|
8.8 |
HIGH
Network
|
microsoft
|
dynamics_365
|
Microsoft Dynamics 365 for Finance and Operations (on-premises) Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2020-17158
|
2024-11-21 14:07 |
2020-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209198
|
7.8 |
HIGH
Local
|
microsoft
|
visual_studio_2017 visual_studio_2019
|
Visual Studio Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2020-17156
|
2024-11-21 14:07 |
2020-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209199
|
4.3 |
MEDIUM
Network
|
microsoft
|
edge
|
Microsoft Edge for Android Spoofing Vulnerability
|
NVD-CWE-noinfo
|
CVE-2020-17153
|
2024-11-21 14:07 |
2020-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209200
|
8.8 |
HIGH
Network
|
microsoft
|
dynamics_365
|
Microsoft Dynamics 365 for Finance and Operations (on-premises) Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2020-17152
|
2024-11-21 14:07 |
2020-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|