|
196271
|
7.5 |
HIGH
Network
|
openwrt
|
openwrt
|
libubox in OpenWrt before 18.06.7 and 19.x before 19.07.1 has a tagged binary data JSON serialization vulnerability that may cause a stack based buffer overflow.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-7248
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196272
|
7.5 |
HIGH
Network
|
nagios fedoraproject
|
remote_plug_in_executor fedora
|
Nagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small negative number as a large positive number during a bzero call.
|
CWE-787 CWE-681
Out-of-bounds Write Incorrect Conversion between Numeric Types
|
CVE-2020-6582
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196273
|
7.3 |
HIGH
Local
|
nagios fedoraproject
|
remote_plug_in_executor fedora
|
Nagios NRPE 3.2.1 has Insufficient Filtering because, for example, nasty_metachars interprets \n as the character \ and the character n (not as the \n newline sequence). This can cause command inject…
|
NVD-CWE-noinfo
|
CVE-2020-6581
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196274
|
7.5 |
HIGH
Network
|
rockwellautomation
|
micrologix_1400_a_firmware micrologix_1400_b_firmware micrologix_1100_firmware rslogix_500
|
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, The cryptographic…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2020-6984
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196275
|
5.4 |
MEDIUM
Network
|
nagios
|
nagios
|
Nagios Log Server 2.1.3 allows XSS by visiting /profile and entering a crafted name field that is mishandled on the /admin/users page. Any malicious user with limited access can store an XSS payload …
|
CWE-79
Cross-site Scripting
|
CVE-2020-6586
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196276
|
8.8 |
HIGH
Network
|
nagios
|
nagios
|
Nagios Log Server 2.1.3 has CSRF.
|
CWE-352
Origin Validation Error
|
CVE-2020-6585
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196277
|
6.5 |
MEDIUM
Network
|
nagios
|
nagios
|
Nagios Log Server 2.1.3 has Incorrect Access Control.
|
CWE-269
Improper Privilege Management
|
CVE-2020-6584
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196278
|
9.8 |
CRITICAL
Network
|
rockwellautomation
|
micrologix_1400_a_firmware micrologix_1400_b_firmware micrologix_1100_firmware rslogix_500
|
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, The cryptographic…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-6990
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196279
|
7.5 |
HIGH
Network
|
rockwellautomation
|
micrologix_1400_a_firmware micrologix_1400_b_firmware micrologix_1100_firmware rslogix_500
|
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, A remote, unauthe…
|
CWE-287
Improper Authentication
|
CVE-2020-6988
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196280
|
3.3 |
LOW
Local
|
rockwellautomation
|
micrologix_1400_a_firmware micrologix_1400_b_firmware micrologix_1100_firmware rslogix_500
|
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, If Simple Mail Tr…
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2020-6980
|
2024-11-21 14:36 |
2020-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|