|
199991
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x tvos iphone_os watchos ipados
|
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27908
|
2024-11-21 14:22 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199992
|
7.8 |
HIGH
Local
|
apple
|
macos
|
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-27907
|
2024-11-21 14:22 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199993
|
6.3 |
MEDIUM
Local
|
apple
|
macos
|
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur 11.0.1. A sandboxe…
|
CWE-863
Incorrect Authorization
|
CVE-2020-27901
|
2024-11-21 14:22 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199994
|
7.8 |
HIGH
Local
|
apple
|
tvos iphone_os watchos ipados macos
|
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.2 and iPadOS 14.2, macOS Big Sur 11.0.1, watchOS 7.1, tvOS 14.2. A local attacker may be able to el…
|
CWE-416
Use After Free
|
CVE-2020-27899
|
2024-11-21 14:22 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199995
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x macos
|
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave, macOS Big Sur …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-27897
|
2024-11-21 14:22 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199996
|
7.2 |
HIGH
Network
|
simple_college_project
|
simple_college
|
Simple College Website 1.0 allows a user to conduct remote code execution via /alumni/admin/ajax.php?action=save_settings when uploading a malicious file using the image upload functionality, which i…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-28173
|
2024-11-21 14:22 |
2021-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199997
|
9.8 |
CRITICAL
Network
|
simple_college_project
|
simple_college
|
A SQL injection vulnerability in Simple College Website 1.0 allows remote unauthenticated attackers to bypass the admin authentication mechanism in college_website/admin/ajax.php?action=login, thus g…
|
CWE-89
SQL Injection
|
CVE-2020-28172
|
2024-11-21 14:22 |
2021-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199998
|
7.5 |
HIGH
Network
|
projectacrn
|
acrn
|
ACRN through 2.2 has a devicemodel/hw/pci/virtio/virtio.c NULL Pointer Dereference.
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-28346
|
2024-11-21 14:22 |
2021-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199999
|
9.8 |
CRITICAL
Network
|
gulpjs
|
copy-props
|
The package copy-props before 2.0.5 are vulnerable to Prototype Pollution via the main functionality.
|
NVD-CWE-Other
|
CVE-2020-28503
|
2024-11-21 14:22 |
2021-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200000
|
7.5 |
HIGH
Network
|
crawlerdetect_project
|
crawlerdetect
|
This affects the package es6-crawler-detect before 3.1.3. No limitation of user agent string length supplied to regex operators.
|
NVD-CWE-Other
|
CVE-2020-28501
|
2024-11-21 14:22 |
2021-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|