|
196201
|
4.9 |
MEDIUM
Network
|
arubanetworks
|
clearpass
|
A vulnerability was found when an attacker, while communicating with the ClearPass management interface, is able to intercept and change parameters in the HTTP packets resulting in the compromise of …
|
NVD-CWE-noinfo
|
CVE-2020-7113
|
2024-11-21 14:36 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196202
|
7.2 |
HIGH
Network
|
arubanetworks
|
clearpass
|
A server side injection vulnerability exists which could allow an authenticated administrative user to achieve Remote Code Execution in ClearPass. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher.
|
CWE-74
Injection
|
CVE-2020-7111
|
2024-11-21 14:36 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196203
|
4.8 |
MEDIUM
Network
|
arubanetworks
|
clearpass
|
ClearPass is vulnerable to Stored Cross Site Scripting by allowing a malicious administrator, or a compromised administrator account, to save malicious scripts within ClearPass that could be executed…
|
CWE-79
Cross-site Scripting
|
CVE-2020-7110
|
2024-11-21 14:36 |
2020-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196204
|
9.8 |
CRITICAL
Network
|
trianglemicroworks
|
dnp3_source_code_library
|
Triangle MicroWorks DNP3 Outstation LibrariesDNP3 Outstation .NET Protocol components and DNP3 Outstation ANSI C source code libraries are affected:3.16.00 through 3.25.01. A specially crafted messag…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6996
|
2024-11-21 14:36 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196205
|
6.7 |
MEDIUM
Local
|
ge
|
cimplicity
|
A local privilege escalation vulnerability has been identified in the GE Digital CIMPLICITY HMI/SCADA product v10.0 and prior. If exploited, this vulnerability could allow an adversary to modify the …
|
CWE-269
Improper Privilege Management
|
CVE-2020-6992
|
2024-11-21 14:36 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196206
|
4.4 |
MEDIUM
Local
|
mcafee
|
endpoint_security
|
Privilege escalation vulnerability in the administrative user interface in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows local users to gain elevated privileg…
|
CWE-269
Improper Privilege Management
|
CVE-2020-7255
|
2024-11-21 14:36 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196207
|
7.8 |
HIGH
Local
|
mcafee
|
endpoint_security
|
Symbolic link manipulation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows authenticated local user to potentially gain an escalation of privil…
|
CWE-59
Link Following
|
CVE-2020-7250
|
2024-11-21 14:36 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196208
|
5.3 |
MEDIUM
Local
|
mcafee
|
endpoint_security
|
Protection mechanism failure in all processes in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allows local users to stop certain McAfee ENS processes, reducing the pro…
|
NVD-CWE-Other
|
CVE-2020-7277
|
2024-11-21 14:36 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196209
|
6.7 |
MEDIUM
Local
|
mcafee
|
endpoint_security
|
Authentication bypass vulnerability in MfeUpgradeTool in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allows administrator users to access policy settings via running …
|
CWE-287
Improper Authentication
|
CVE-2020-7276
|
2024-11-21 14:36 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196210
|
5.3 |
MEDIUM
Local
|
mcafee
|
endpoint_security
|
Accessing, modifying or executing executable files vulnerability in the uninstaller in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local users to execute arbit…
|
CWE-428
Unquoted Search Path or Element
|
CVE-2020-7275
|
2024-11-21 14:36 |
2020-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|