|
208351
|
7.5 |
HIGH
Network
|
cpanel
|
cpanel
|
cPanel before 88.0.3 allows attackers to bypass the SMTP greylisting protection mechanism (SEC-491).
|
NVD-CWE-Other
|
CVE-2020-26099
|
2024-11-21 14:19 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208352
|
9.8 |
CRITICAL
Network
|
cpanel
|
cpanel
|
cPanel before 88.0.3 mishandles the Exim filter path, leading to remote code execution (SEC-485).
|
NVD-CWE-noinfo
|
CVE-2020-26098
|
2024-11-21 14:19 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208353
|
5.5 |
MEDIUM
Local
|
linux debian opensuse canonical
|
linux_kernel debian_linux leap ubuntu_linux
|
A missing CAP_NET_RAW check in NFC socket creation in net/nfc/rawsock.c in the Linux kernel before 5.8.2 could be used by local attackers to create raw sockets, bypassing security mechanisms, aka CID…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-26088
|
2024-11-21 14:19 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208354
|
- |
|
-
|
-
|
Exposure of Sensitive Information
to an Unauthorized Access vulnerability in OpenText NetIQ Directory and
Resource Administrator. This issue affects NetIQ Directory and Resource
Administrator version…
|
-
|
CVE-2020-25836
|
2024-11-21 14:18 |
2024-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208355
|
5.4 |
MEDIUM
Network
|
microfocus
|
arcsight_management_center
|
A potential vulnerability has been identified in Micro Focus ArcSight Management Center. The vulnerability could be remotely exploited resulting in stored Cross-Site Scripting (XSS).
|
CWE-79
Cross-site Scripting
|
CVE-2020-25835
|
2024-11-21 14:18 |
2023-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208356
|
- |
|
-
|
-
|
Cross Site Scripting (XSS) vulnerability in ZoneMinder before version 1.34.21, allows remote attackers execute arbitrary code, escalate privileges, and obtain sensitive information via PHP_SELF compo…
|
-
|
CVE-2020-25730
|
2024-11-21 14:18 |
2024-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208357
|
8.8 |
HIGH
Network
|
cesanta
|
mongoose
|
Buffer overflow in mg_resolve_from_hosts_file in Mongoose 6.18, when reading from a crafted hosts file.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-25887
|
2024-11-21 14:18 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208358
|
5.4 |
MEDIUM
Network
|
thinkcmf
|
thinkcmf
|
Cross Site Scripting (XSS) vulnerability in UserController.php in ThinkCMF version 5.1.5, allows attackers to execute arbitrary code via crafted user_login.
|
CWE-79
Cross-site Scripting
|
CVE-2020-25915
|
2024-11-21 14:18 |
2023-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208359
|
7.8 |
HIGH
Local
|
cybereason
|
endpoint_detection_and_response
|
Cybereason EDR version 19.1.282 and above, 19.2.182 and above, 20.1.343 and above, and 20.2.X and above has a DLL hijacking vulnerability, which could allow a local attacker to execute code with elev…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-25502
|
2024-11-21 14:18 |
2023-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208360
|
6.1 |
MEDIUM
Network
|
6kare
|
emakin
|
6Kare Emakin 5.0.341.0 is affected by Cross Site Scripting (XSS) via the /rpc/membership/setProfile DisplayName field, which is mishandled when rendering the Activity Stream page.
|
CWE-79
Cross-site Scripting
|
CVE-2020-25491
|
2024-11-21 14:18 |
2022-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|