|
196071
|
9.8 |
CRITICAL
Network
|
macfromip_project
|
macfromip
|
This affects all versions of package macfromip. The injection point is located in line 66 in macfromip.js.
|
CWE-78
OS Command
|
CVE-2020-7786
|
2024-11-21 14:37 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196072
|
9.8 |
CRITICAL
Network
|
node-ps_project
|
node-ps
|
This affects all versions of package node-ps. The injection point is located in line 72 in lib/index.js.
|
CWE-78
OS Command
|
CVE-2020-7785
|
2024-11-21 14:37 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196073
|
9.8 |
CRITICAL
Network
|
spritesheet-js_project
|
spritesheet-js
|
This affects all versions of package spritesheet-js. It depends on a vulnerable package platform-command. The injection point is located in line 32 in lib/generator.js, which is triggered by main ent…
|
CWE-78
OS Command
|
CVE-2020-7782
|
2024-11-21 14:37 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196074
|
9.8 |
CRITICAL
Network
|
freediskspace_project
|
freediskproject
|
This affects all versions of package freediskspace. The vulnerability arises out of improper neutralization of arguments in line 71 of freediskspace.js.
|
CWE-78
OS Command
|
CVE-2020-7775
|
2024-11-21 14:37 |
2021-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196075
|
5.5 |
MEDIUM
Local
|
mcafee
|
agent
|
Missing Authorization vulnerability in McAfee Agent (MA) for Windows prior to 5.7.1 allows local users to block McAfee product updates by manipulating a directory used by MA for temporary files. The …
|
CWE-862
Missing Authorization
|
CVE-2020-7343
|
2024-11-21 14:37 |
2021-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196076
|
9.8 |
CRITICAL
Network
|
buns_project
|
buns
|
This affects all versions of package buns. The injection point is located in line 678 in index file lib/index.js in the exported function install(requestedModule).
|
CWE-78
OS Command
|
CVE-2020-7794
|
2024-11-21 14:37 |
2021-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196077
|
9.8 |
CRITICAL
Network
|
ts-process-promises_project
|
ts-process-promises
|
This affects all versions of package ts-process-promises. The injection point is located in line 45 in main entry of package in lib/process-promises.js. The vulnerability is demonstrated with the fol…
|
CWE-78
OS Command
|
CVE-2020-7784
|
2024-11-21 14:37 |
2021-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196078
|
6.5 |
MEDIUM
Network
|
mcafee
|
network_security_management
|
Cross Site Request Forgery vulnerability in McAfee Network Security Management (NSM) prior to 10.1.7.35 and NSM 9.x prior to 9.2.9.55 may allow an attacker to change the configuration of the Network …
|
CWE-352
Origin Validation Error
|
CVE-2020-7336
|
2024-11-21 14:37 |
2021-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196079
|
9.8 |
CRITICAL
Network
|
asciitable.js_project
|
asciitable.js
|
The package asciitable.js before 1.0.3 are vulnerable to Prototype Pollution via the main function.
|
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
|
CVE-2020-7771
|
2024-11-21 14:37 |
2021-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196080
|
9.8 |
CRITICAL
Network
|
jiransecurity
|
spamsniper
|
Spamsniper 5.0 ~ 5.2.7 contain a stack-based buffer overflow vulnerability caused by improper boundary checks when parsing MAIL FROM command. It leads remote attacker to execute arbitrary code via cr…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-7845
|
2024-11-21 14:37 |
2020-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|