|
209051
|
9.8 |
CRITICAL
Network
|
siemens
|
simatic_driver_controller_firmware s7-1200_cpu_firmware s7-1500_cpu_firmware simatic_s7-1500__software_controller simatic_s7-plcsim_advanced et_200sp_open_controller_firmware
|
A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants) (All versions), SIMATIC ET 200SP…
|
-
|
CVE-2020-15782
|
2024-11-21 14:06 |
2021-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209052
|
8.1 |
HIGH
Network
|
siemens
|
nucleus_net nucleus_source_code
|
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-15795
|
2024-11-21 14:06 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209053
|
5.5 |
MEDIUM
Local
|
bitdefender
|
safepay
|
An Origin Validation Error vulnerability in Bitdefender Safepay allows an attacker to manipulate the browser's file upload capability into accessing other files in the same directory or sub-directori…
|
CWE-346
Origin Validation Error
|
CVE-2020-15734
|
2024-11-21 14:06 |
2021-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209054
|
6.5 |
MEDIUM
Network
|
fortinet
|
fortiweb
|
An information disclosure vulnerability in Web Vulnerability Scan profile of Fortinet's FortiWeb version 6.2.x below 6.2.4 and version 6.3.x below 6.3.5 may allow a remote authenticated attacker to r…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-15942
|
2024-11-21 14:06 |
2021-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209055
|
6.5 |
MEDIUM
Network
|
spinetix
|
dsos hmp350_firmware hmp300_firmware diva_firmware hmp400_firmware hmp400w_firmware
|
spxmanage on certain SpinetiX devices allows requests that access unintended resources because of SSRF and Path Traversal. This affects HMP350, HMP300, and DiVA through 4.5.2-1.0.36229; HMP400 and HM…
|
CWE-22 CWE-918
Path Traversal Server-Side Request Forgery (SSRF)
|
CVE-2020-15809
|
2024-11-21 14:06 |
2021-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209056
|
7.5 |
HIGH
Network
|
fortinet
|
fortios
|
When traffic other than HTTP/S (eg: SSH traffic, etc...) traverses the FortiGate in version below 6.2.5 and below 6.4.2 on port 80/443, it is not redirected to the transparent proxy policy for proces…
|
NVD-CWE-noinfo
|
CVE-2020-15938
|
2024-11-21 14:06 |
2021-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209057
|
6.1 |
MEDIUM
Network
|
fortinet
|
fortios
|
An improper neutralization of input vulnerability in FortiGate version 6.2.x below 6.2.5 and 6.4.x below 6.4.1 may allow a remote attacker to perform a stored cross site scripting attack (XSS) via th…
|
CWE-79
Cross-site Scripting
|
CVE-2020-15937
|
2024-11-21 14:06 |
2021-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209058
|
4.4 |
MEDIUM
Local
|
linux canonical
|
linux_kernel ubuntu_linux
|
Overlayfs did not properly perform permission checking when copying up files in an overlayfs and could be exploited from within a user namespace, if, for example, unprivileged user namespaces were al…
|
NVD-CWE-Other
|
CVE-2020-16120
|
2024-11-21 14:06 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209059
|
5.7 |
MEDIUM
Network
|
owncloud
|
files_antivirus
|
When using an object storage like S3 as the file store, when a user creates a public link to a folder where anonymous users can upload files, and another user uploads a virus the files antivirus app …
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-16144
|
2024-11-21 14:06 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209060
|
9.8 |
CRITICAL
Network
|
siemens
|
simatic_hmi_comfort_panels_firmware simatic_hmi_ktp_mobile_panels_firmware sinamics_gh150_firmware sinamics_gl150_firmware sinamics_gm150_firmware sinamics_sh150_firmware sinamics_s…
|
A vulnerability has been identified in SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions < V16 Update 3a), SIMATIC HMI KTP Mobile Panels (All versions < V16 Update 3a), SINAMICS GH150 …
|
-
|
CVE-2020-15798
|
2024-11-21 14:06 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|