|
196791
|
7.5 |
HIGH
Network
|
tradingtechnologies
|
trading_technologies_messaging
|
A flaw exists in Trading Technologies Messaging 7.1.28.3 (ttmd.exe) due to improper validation of user-supplied data when processing a type 8 message sent to default TCP RequestPort 10200. An unauthe…
|
CWE-119 CWE-20
Incorrect Access of Indexable Resource ('Range Error') Improper Input Validation
|
CVE-2020-5778
|
2024-11-21 14:34 |
2020-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196792
|
7.5 |
HIGH
Network
|
shadan-kun
|
server_security_type
|
Shadankun Server Security Type (excluding normal blocking method types) Ver.1.5.3 and earlier allows remote attackers to cause a denial of service which may result in not being able to add newly dete…
|
NVD-CWE-Other
|
CVE-2020-5622
|
2024-11-21 14:34 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196793
|
9.8 |
CRITICAL
Network
|
magmi_project
|
magmi
|
MAGMI versions prior to 0.7.24 are vulnerable to a remote authentication bypass due to allowing default credentials in the event there is a database connection failure. A remote attacker can trigger …
|
CWE-287
Improper Authentication
|
CVE-2020-5777
|
2024-11-21 14:34 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196794
|
8.8 |
HIGH
Network
|
magmi_project
|
magmi
|
Currently, all versions of MAGMI are vulnerable to CSRF due to the lack of CSRF tokens. RCE (via phpcli command) is possible in the event that a CSRF is leveraged against an existing admin session fo…
|
CWE-352
Origin Validation Error
|
CVE-2020-5776
|
2024-11-21 14:34 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196795
|
6.7 |
MEDIUM
Local
|
pivotal_software vmware
|
rabbitmq
|
RabbitMQ versions 3.8.x prior to 3.8.7 are prone to a Windows-specific binary planting security vulnerability that allows for arbitrary code execution. An attacker with write privileges to the Rabbit…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-5419
|
2024-11-21 14:34 |
2020-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196796
|
6.1 |
MEDIUM
Network
|
riken
|
xoonips
|
Cross-site scripting vulnerability in XooNIps 3.48 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2020-5625
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196797
|
9.8 |
CRITICAL
Network
|
riken
|
xoonips
|
SQL injection vulnerability in the XooNIps 3.48 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2020-5624
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196798
|
6.1 |
MEDIUM
Network
|
nitori
|
nitori
|
NITORI App for Android versions 6.0.4 and earlier and NITORI App for iOS versions 6.0.2 and earlier allow remote attackers to lead a user to access an arbitrary website via the vulnerable App. As a r…
|
CWE-601
Open Redirect
|
CVE-2020-5623
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196799
|
4.3 |
MEDIUM
Network
|
netgear
|
gs716tv2_firmware gs724tv3_firmware
|
Cross-site request forgery (CSRF) vulnerability in NETGEAR switching hubs (GS716Tv2 Firmware version 5.4.2.30 and earlier, and GS724Tv3 Firmware version 5.4.2.30 and earlier) allow remote attackers t…
|
CWE-352
Origin Validation Error
|
CVE-2020-5621
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196800
|
5.3 |
MEDIUM
Network
|
dell
|
emc_powerscale_onefs emc_isilon
|
Dell EMC Isilon OneFS version 8.2.2 and Dell EMC PowerScale OneFS version 9.0.0 contains a buffer overflow vulnerability in the Likewise component. A remote unauthenticated malicious attacker may pot…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-5383
|
2024-11-21 14:34 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|