|
200951
|
9.8 |
CRITICAL
Network
|
docker
|
storm_docker_image
|
The official storm Docker images before 1.2.1 contain a blank password for a root user. Systems using the Storm Docker container deployed by affected versions of the Docker image may allow an remote …
|
NVD-CWE-Other
|
CVE-2020-29580
|
2024-11-21 14:24 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200952
|
9.8 |
CRITICAL
Network
|
express-gateway
|
express-gateway_docker_image
|
The official Express Gateway Docker images before 1.14.0 contain a blank password for a root user. Systems using the Express Gateway Docker container deployed by affected versions of the Docker image…
|
NVD-CWE-Other
|
CVE-2020-29579
|
2024-11-21 14:24 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200953
|
9.8 |
CRITICAL
Network
|
znc
|
znc_docker_image
|
The official znc docker images before 1.7.1-slim contain a blank password for a root user. Systems using the znc docker container deployed by affected versions of the Docker image may allow an remote…
|
NVD-CWE-Other
|
CVE-2020-29577
|
2024-11-21 14:24 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200954
|
9.8 |
CRITICAL
Network
|
eggheads
|
eggdrop_docker_image
|
The official eggdrop Docker images before 1.8.4rc2 contain a blank password for a root user. Systems using the Eggdrop Docker container deployed by affected versions of the Docker image may allow an …
|
NVD-CWE-Other
|
CVE-2020-29576
|
2024-11-21 14:24 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200955
|
9.8 |
CRITICAL
Network
|
docker
|
elixir_alpine_docker_image
|
The official elixir Docker images before 1.8.0-alpine (Alpine specific) contain a blank password for a root user. Systems using the elixir Linux Docker container deployed by affected versions of the …
|
NVD-CWE-Other
|
CVE-2020-29575
|
2024-11-21 14:24 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200956
|
9.8 |
CRITICAL
Network
|
hashicorp
|
consul_docker_image
|
The official Consul Docker images 0.7.1 through 1.4.2 contain a blank password for a root user. System using the Consul Docker container deployed by affected versions of the Docker image may allow a …
|
NVD-CWE-Other
|
CVE-2020-29564
|
2024-11-21 14:24 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200957
|
9.8 |
CRITICAL
Network
|
matomo
|
piwik_fpm-alpine_docker_image
|
The official piwik Docker images before fpm-alpine (Alpine specific) contain a blank password for a root user. Systems using the Piwik Docker container deployed by affected versions of the Docker ima…
|
NVD-CWE-Other
|
CVE-2020-29578
|
2024-11-21 14:24 |
2020-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200958
|
7.5 |
HIGH
Network
|
systransoft
|
pure_neural_server
|
API calls in the Translation API feature in Systran Pure Neural Server before 9.7.0 allow a threat actor to use the Systran Pure Neural Server as a Denial-of-Service proxy by sending a large amount o…
|
NVD-CWE-noinfo
|
CVE-2020-29540
|
2024-11-21 14:24 |
2020-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200959
|
5.4 |
MEDIUM
Network
|
systransoft
|
pure_neural_server
|
A Cross-Site Scripting (XSS) issue in WebUI Translation in Systran Pure Neural Server before 9.7.0 allows a threat actor to have a remote authenticated user run JavaScript from a malicious site.
|
CWE-79
Cross-site Scripting
|
CVE-2020-29539
|
2024-11-21 14:24 |
2020-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200960
|
9.8 |
CRITICAL
Network
|
awstats debian fedoraproject
|
awstats debian_linux fedora
|
In AWStats through 7.7, cgi-bin/awstats.pl?config= accepts an absolute pathname, even though it was intended to only read a file in the /etc/awstats/awstats.conf format. NOTE: this issue exists becau…
|
CWE-22
Path Traversal
|
CVE-2020-29600
|
2024-11-21 14:24 |
2020-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|