|
198291
|
5.3 |
MEDIUM
Network
|
utimf
|
uti_mutual_fund_invest_online
|
An issue was discovered in UTI Mutual fund Android application 5.4.18 and prior, allows attackers to brute force enumeration of usernames determined by the error message returned after invalid creden…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2020-35398
|
2024-11-21 14:27 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198292
|
5.9 |
MEDIUM
Network
|
atomix
|
atomix
|
An issue in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via false member down event messages.
|
CWE-362
Race Condition
|
CVE-2020-35216
|
2024-11-21 14:27 |
2021-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198293
|
6.5 |
MEDIUM
Network
|
atomix
|
atomix
|
An issue in Atomix v3.1.5 allows attackers to access sensitive information when a malicious Atomix node queries distributed variable primitives which contain the entire primitive lists that ONOS node…
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2020-35215
|
2024-11-21 14:27 |
2021-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198294
|
8.1 |
HIGH
Network
|
atomix
|
atomix
|
An issue in Atomix v3.1.5 allows a malicious Atomix node to remove states of ONOS storage via abuse of primitive operations.
|
NVD-CWE-noinfo
|
CVE-2020-35214
|
2024-11-21 14:27 |
2021-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198295
|
8.1 |
HIGH
Network
|
atomix
|
atomix
|
An issue in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via false link event messages sent to a master ONOS node.
|
CWE-74
Injection
|
CVE-2020-35213
|
2024-11-21 14:27 |
2021-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198296
|
7.5 |
HIGH
Network
|
atomix
|
atomix
|
An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to become the lead node in a target cluster via manipulation of the variable terms in RaftContext.
|
NVD-CWE-noinfo
|
CVE-2020-35211
|
2024-11-21 14:27 |
2021-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198297
|
6.5 |
MEDIUM
Network
|
atomix
|
atomix
|
A vulnerability in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via a Raft session flooding attack using Raft OpenSessionRequest messages.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2020-35210
|
2024-11-21 14:27 |
2021-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198298
|
6.1 |
MEDIUM
Network
|
elkarbackup
|
elkarbackup
|
Cross Site Scripting (XSS) vulnerability in ElkarBackup 1.3.3, allows attackers to execute arbitrary code via the name parameter to the add client feature.
|
CWE-79
Cross-site Scripting
|
CVE-2020-35249
|
2024-11-21 14:27 |
2021-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198299
|
7.5 |
HIGH
Network
|
expertpdf
|
expertpdf
|
A local file inclusion vulnerability in ExpertPDF 9.5.0 through 14.1.0 allows attackers to read the file contents from files that the running ExpertPDF process has access to read.
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2020-35340
|
2024-11-21 14:27 |
2021-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198300
|
8.8 |
HIGH
Network
|
cgal debian
|
computational_geometry_algorithms_library debian_linux
|
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1 in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sface() store_sm_boundary_item() Sloop_of OOB r…
|
-
|
CVE-2020-35635
|
2024-11-21 14:27 |
2021-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|