|
196441
|
6.7 |
MEDIUM
Local
|
pivotal_software vmware
|
rabbitmq
|
RabbitMQ versions 3.8.x prior to 3.8.7 are prone to a Windows-specific binary planting security vulnerability that allows for arbitrary code execution. An attacker with write privileges to the Rabbit…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-5419
|
2024-11-21 14:34 |
2020-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196442
|
6.1 |
MEDIUM
Network
|
riken
|
xoonips
|
Cross-site scripting vulnerability in XooNIps 3.48 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2020-5625
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196443
|
9.8 |
CRITICAL
Network
|
riken
|
xoonips
|
SQL injection vulnerability in the XooNIps 3.48 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2020-5624
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196444
|
6.1 |
MEDIUM
Network
|
nitori
|
nitori
|
NITORI App for Android versions 6.0.4 and earlier and NITORI App for iOS versions 6.0.2 and earlier allow remote attackers to lead a user to access an arbitrary website via the vulnerable App. As a r…
|
CWE-601
Open Redirect
|
CVE-2020-5623
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196445
|
4.3 |
MEDIUM
Network
|
netgear
|
gs716tv2_firmware gs724tv3_firmware
|
Cross-site request forgery (CSRF) vulnerability in NETGEAR switching hubs (GS716Tv2 Firmware version 5.4.2.30 and earlier, and GS724Tv3 Firmware version 5.4.2.30 and earlier) allow remote attackers t…
|
CWE-352
Origin Validation Error
|
CVE-2020-5621
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196446
|
5.3 |
MEDIUM
Network
|
dell
|
emc_powerscale_onefs emc_isilon
|
Dell EMC Isilon OneFS version 8.2.2 and Dell EMC PowerScale OneFS version 9.0.0 contains a buffer overflow vulnerability in the Likewise component. A remote unauthenticated malicious attacker may pot…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-5383
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196447
|
3.1 |
LOW
Local
|
f5
|
big-ip_application_security_manager
|
In versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, 14.1.0-14.1.2.6, 13.1.0-13.1.3.4, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, BIG-IP ASM Configuration utility CSRF protection token can be reused multiple tim…
|
CWE-352
Origin Validation Error
|
CVE-2020-5928
|
2024-11-21 14:34 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196448
|
6.1 |
MEDIUM
Network
|
f5
|
big-ip_application_security_manager
|
In versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, and 14.1.0-14.1.2.6, BIG-IP ASM Configuration utility Stored-Cross Site Scripting.
|
CWE-79
Cross-site Scripting
|
CVE-2020-5927
|
2024-11-21 14:34 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196449
|
5.3 |
MEDIUM
Network
|
f5
|
big-ip_access_policy_manager
|
In BIG-IP APM versions 12.1.0-12.1.5.1 and 11.6.1-11.6.5.2, RADIUS authentication leaks memory when the username for authentication is not set.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-5924
|
2024-11-21 14:34 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196450
|
4.3 |
MEDIUM
Network
|
f5
|
big-ip_advanced_firewall_manager
|
In versions 15.0.0-15.1.0.5, 14.1.0-14.1.2.7, 13.1.0-13.1.3.4, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, a vulnerability in the BIG-IP AFM Configuration utility may allow any authenticated BIG-IP user to…
|
CWE-89
SQL Injection
|
CVE-2020-5920
|
2024-11-21 14:34 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|