|
195831
|
9.8 |
CRITICAL
Network
|
tibco
|
managed_file_transfer_platform_server
|
The file transfer component of TIBCO Software Inc.'s TIBCO Managed File Transfer Platform Server for IBM i contains a vulnerability that theoretically allows execution of arbitrary commands at the pr…
|
NVD-CWE-noinfo
|
CVE-2020-9412
|
2024-11-21 14:40 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195832
|
9.8 |
CRITICAL
Network
|
tibco
|
managed_file_transfer_platform_server
|
The file transfer component of TIBCO Software Inc.'s TIBCO Managed File Transfer Platform Server for IBM i contains a vulnerability that theoretically allows an attacker to perform unauthorized netwo…
|
NVD-CWE-noinfo
|
CVE-2020-9411
|
2024-11-21 14:40 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195833
|
9.8 |
CRITICAL
Network
|
huawei
|
ips_module_firmware ngfw_module_firmware nip6300_firmware nip6600_firmware nip6800_firmware secospace_usg6300_firmware secospace_usg6500_firmware secospace_usg6600_firmware us…
|
Huawei products IPS Module; NGFW Module; NIP6300; NIP6600; NIP6800; Secospace USG6300; Secospace USG6500; Secospace USG6600; USG9500 with versions of V500R001C00; V500R001C20; V500R001C30; V500R001C5…
|
CWE-287
Improper Authentication
|
CVE-2020-9099
|
2024-11-21 14:40 |
2020-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195834
|
4.3 |
MEDIUM
Adjacent
|
homey
|
homey_firmware homey_pro_firmware
|
An issue was discovered in all Athom Homey and Homey Pro devices up to the current version 4.2.0. An attacker within RF range can obtain a cleartext copy of the network configuration of the device, i…
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2020-9462
|
2024-11-21 14:40 |
2020-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195835
|
9.8 |
CRITICAL
Network
|
fortinet
|
fortisiem_windows_agent
|
An unquoted service path vulnerability in the FortiSIEM Windows Agent component may allow an attacker to gain elevated privileges via the AoWinAgt executable service path.
|
CWE-428
Unquoted Search Path or Element
|
CVE-2020-9292
|
2024-11-21 14:40 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195836
|
7.8 |
HIGH
Local
|
fortinet
|
forticlient
|
An Insecure Temporary File vulnerability in FortiClient for Windows 6.2.1 and below may allow a local user to gain elevated privileges via exhausting the pool of temporary file names combined with a …
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2020-9291
|
2024-11-21 14:40 |
2020-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195837
|
7.0 |
HIGH
Local
|
apache debian opensuse fedoraproject canonical oracle mcafee
|
tomcat debian_linux leap fedora ubuntu_linux transportation_management hospitality_guest_access managed_file_transfer retail_order_broker agile_plm database instantis…
|
When using Apache Tomcat versions 10.0.0-M1 to 10.0.0-M4, 9.0.0.M1 to 9.0.34, 8.5.0 to 8.5.54 and 7.0.0 to 7.0.103 if a) an attacker is able to control the contents and name of a file on the server; …
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2020-9484
|
2024-11-21 14:40 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195838
|
8.8 |
HIGH
Network
|
tibco oracle
|
jasperreports_library jasperreports_server retail_order_broker
|
The report generator component of TIBCO Software Inc.'s TIBCO JasperReports Library, TIBCO JasperReports Library for ActiveMatrix BPM, TIBCO JasperReports Server, TIBCO JasperReports Server for AWS M…
|
CWE-79
Cross-site Scripting
|
CVE-2020-9410
|
2024-11-21 14:40 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195839
|
9.8 |
CRITICAL
Network
|
tibco oracle
|
jasperreports_server retail_order_broker
|
The administrative UI component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server for AWS Marketplace, and TIBCO JasperReports Server for ActiveMatrix BPM contains a vul…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-9409
|
2024-11-21 14:40 |
2020-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195840
|
5.4 |
MEDIUM
Network
|
microfocus
|
enterprise_developer enterprise_server
|
Cross Site scripting vulnerability on Micro Focus Enterprise Server and Enterprise developer, affecting all versions prior to version 5.0 Patch Update 8. The vulnerability could allow an attacker to …
|
CWE-79
Cross-site Scripting
|
CVE-2020-9524
|
2024-11-21 14:40 |
2020-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|