|
209341
|
8.8 |
HIGH
Adjacent
|
netgear
|
rbk752_firmware rbk753_firmware rbk753s_firmware rbr750_firmware rbs750_firmware rbk842_firmware rbr840_firmware rbs840_firmware rbk852_firmware rbk853_firmware rbr850_f…
|
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS…
|
NVD-CWE-noinfo
|
CVE-2020-14430
|
2024-11-21 14:03 |
2020-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209342
|
8.8 |
HIGH
Adjacent
|
netgear
|
mk62_firmware mk63_firmware mr60_firmware ms60_firmware rbk752_firmware rbk753_firmware rbk753s_firmware rbs750_firmware rbr750_firmware rbk842_firmware rbr840_firmware<…
|
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects MK62 before 1.0.4.92, MK63 before 1.0.4.92, MR60 before 1.0.4.92, MS60 before 1.0.4.92, RBK752 before 3.…
|
NVD-CWE-noinfo
|
CVE-2020-14429
|
2024-11-21 14:03 |
2020-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209343
|
8.8 |
HIGH
Adjacent
|
netgear
|
rbk752_firmware rbk753_firmware rbk753s_firmware rbr750_firmware rbs750_firmware rbk842_firmware rbr840_firmware rbs840_firmware rbk852_firmware rbk853_firmware rbr850_f…
|
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS…
|
NVD-CWE-noinfo
|
CVE-2020-14428
|
2024-11-21 14:03 |
2020-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209344
|
8.8 |
HIGH
Adjacent
|
netgear
|
rbk752_firmware rbk753_firmware rbk753s_firmware rbr750_firmware rbs750_firmware rbk842_firmware rbr840_firmware rbs840_firmware rbk852_firmware rbk853_firmware rbr850_f…
|
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS…
|
NVD-CWE-noinfo
|
CVE-2020-14427
|
2024-11-21 14:03 |
2020-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209345
|
5.3 |
MEDIUM
Network
|
convos
|
convos
|
Convos before 4.20 does not properly generate a random secret in Core/Settings.pm and Util.pm. This leads to a predictable CONVOS_LOCAL_SECRET value, affecting password resets and invitations.
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2020-14423
|
2024-11-21 14:03 |
2020-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209346
|
8.8 |
HIGH
Adjacent
|
netgear
|
rbk752_firmware rbk753_firmware rbk753s_firmware rbr750_firmware rbs750_firmware rbk852_firmware rbk853_firmware rbr850_firmware rbs850_firmware rbk842_firmware rbr840_f…
|
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS…
|
NVD-CWE-noinfo
|
CVE-2020-14426
|
2024-11-21 14:03 |
2020-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209347
|
5.9 |
MEDIUM
Network
|
opensuse python fedoraproject oracle
|
leap python fedora enterprise_manager_ops_center
|
Lib/ipaddress.py in Python through 3.8.3 improperly computes hash values in the IPv4Interface and IPv6Interface classes, which might allow a remote attacker to cause a denial of service if an applica…
|
CWE-682 CWE-330
Incorrect Calculation Use of Insufficiently Random Values
|
CVE-2020-14422
|
2024-11-21 14:03 |
2020-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209348
|
7.2 |
HIGH
Network
|
aapanel
|
aapanel
|
aaPanel through 6.6.6 allows remote authenticated users to execute arbitrary commands via the Script Content box on the Add Cron Job screen.
|
CWE-88
Argument Injection
|
CVE-2020-14421
|
2024-11-21 14:03 |
2020-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209349
|
4.2 |
MEDIUM
Local
|
linux opensuse
|
linux_kernel leap
|
In the Linux kernel before 5.4.16, a race condition in tty->disc_data handling in the slip and slcan line discipline could lead to a use-after-free, aka CID-0ace17d56824. This affects drivers/net/sli…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2020-14416
|
2024-11-21 14:03 |
2020-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209350
|
6.1 |
MEDIUM
Network
|
agentejo
|
cockpit
|
An issue was discovered in Agentejo Cockpit 0.10.2. Insufficient sanitization of the to parameter in the /auth/login route allows for injection of arbitrary JavaScript code into a web page's content,…
|
CWE-79
Cross-site Scripting
|
CVE-2020-14408
|
2024-11-21 14:03 |
2020-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|