|
210351
|
7.5 |
HIGH
Network
|
linuxfoundation
|
indy-node
|
Hyperledger Indy Node is the server portion of a distributed ledger purpose-built for decentralized identity. In Hyperledger Indy before version 1.12.4, there is lack of signature verification on a s…
|
-
|
CVE-2020-11093
|
2024-11-21 13:56 |
2020-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210352
|
5.3 |
MEDIUM
Network
|
redhat
|
keycloak
|
A flaw was found in Keycloak before 13.0.0, where it is possible to force the server to call out an unverified URL using the OIDC parameter request_uri. This flaw allows an attacker to use this param…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2020-10770
|
2024-11-21 13:56 |
2020-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210353
|
7.5 |
HIGH
Network
|
nlnetlabs
|
unbound
|
An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020:2414. Vulnerable versions of Unbound could still amplify an incoming query int…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-10772
|
2024-11-21 13:56 |
2020-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210354
|
5.5 |
MEDIUM
Local
|
heketi_project redhat
|
heketi enterprise_linux gluster_storage openshift_container_platform
|
An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive …
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2020-10763
|
2024-11-21 13:56 |
2020-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210355
|
5.5 |
MEDIUM
Local
|
redhat
|
gluster-block
|
An information-disclosure flaw was found in the way that gluster-block before 0.5.1 logs the output from gluster-block CLI operations. This includes recording passwords to the cmd_history.log file wh…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2020-10762
|
2024-11-21 13:56 |
2020-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210356
|
4.8 |
MEDIUM
Network
|
redhat
|
keycloak
|
A flaw was found in Keycloak before version 12.0.0, where it is possible to add unsafe schemes for the redirect_uri parameter. This flaw allows an attacker to perform a Cross-site scripting attack.
|
CWE-79
Cross-site Scripting
|
CVE-2020-10776
|
2024-11-21 13:56 |
2020-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210357
|
7.1 |
HIGH
Local
|
qualcomm
|
apq8009_firmware apq8096au_firmware apq8098_firmware mdm8207_firmware mdm9150_firmware mdm9205_firmware mdm9206_firmware mdm9207_firmware mdm9250_firmware mdm9607_firmware<…
|
u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-11132
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210358
|
7.8 |
HIGH
Local
|
qualcomm
|
apq8009_firmware apq8053_firmware apq8096au_firmware mdm9206_firmware mdm9250_firmware mdm9628_firmware mdm9640_firmware mdm9650_firmware msm8996au_firmware qcs405_firmware…
|
u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received from user space' in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industria…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-11131
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210359
|
7.8 |
HIGH
Local
|
qualcomm
|
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sc8180x_firmware sc8…
|
u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290,…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-11130
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210360
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9205_firmware qcm4290_firmware qcs405_firmware qcs410_firmware qcs4290_firmware qcs610_firmware qsm8250_firmware sa415m_firmware sa515m_firmware sa6145p_firmware sa61…
|
u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security metadata while processing objects to be loaded' in Sna…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-11127
|
2024-11-21 13:56 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|