|
208791
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>A denial of service vulnerability exists when Windows Routing Utilities improperly handles objects in memory. An attacker who successfully exploited the vulnerability could cause a target system t…
|
NVD-CWE-noinfo
|
CVE-2020-1038
|
2024-11-21 14:09 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208792
|
6.8 |
MEDIUM
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_rt_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevat…
|
NVD-CWE-noinfo
|
CVE-2020-1034
|
2024-11-21 14:09 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208793
|
4.0 |
MEDIUM
Local
|
microsoft
|
windows_server_2012 windows_8.1 windows_rt_8.1 windows_10 windows_server_2019 windows_server_2016
|
<p>An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to f…
|
NVD-CWE-noinfo
|
CVE-2020-1033
|
2024-11-21 14:09 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208794
|
7.5 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An information disclosure vulnerability exists in the way that the Windows Server DHCP service improperly discloses the contents of its memory.</p>
<p>To exploit the vulnerability, an unauthentica…
|
NVD-CWE-noinfo
|
CVE-2020-1031
|
2024-11-21 14:09 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208795
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system. An attacker who successfully exploited this vulnerabil…
|
NVD-CWE-noinfo
|
CVE-2020-1030
|
2024-11-21 14:09 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208796
|
7.5 |
HIGH
Adjacent
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when Microsoft Windows processes group policy updates. An attacker who successfully exploited this vulnerability could potentially escalate permissio…
|
NVD-CWE-noinfo
|
CVE-2020-1013
|
2024-11-21 14:09 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208797
|
8.8 |
HIGH
Network
|
microsoft
|
internet_explorer
|
<p>An elevation of privilege vulnerability exists in the way that the Wininit.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated …
|
NVD-CWE-noinfo
|
CVE-2020-1012
|
2024-11-21 14:09 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208798
|
7.2 |
HIGH
Network
|
dbhcms_project
|
dbhcms
|
DBHcms v1.2.0 has an Arbitrary file write vulnerability in dbhcms\mod\mod.editor.php $_POST['updatefile'] is filename and $_POST['tinymce_content'] is file content, there is no filter function for se…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-19891
|
2024-11-21 14:09 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208799
|
4.9 |
MEDIUM
Network
|
dbhcms_project
|
dbhcms
|
DBHcms v1.2.0 has an Arbitrary file read vulnerability in dbhcms\mod\mod.editor.php $_GET['file'] is filename,and as there is no filter function for security, you can read any file's content.
|
CWE-639 CWE-862
Authorization Bypass Through User-Controlled Key Missing Authorization
|
CVE-2020-19890
|
2024-11-21 14:09 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208800
|
8.8 |
HIGH
Network
|
dbhcms_project
|
dbhcms
|
DBHcms v1.2.0 has no CSRF protection mechanism,as demonstrated by CSRF for index.php?dbhcms_pid=-70 can add a user.
|
CWE-352
Origin Validation Error
|
CVE-2020-19889
|
2024-11-21 14:09 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|