|
210111
|
9.8 |
CRITICAL
Network
|
microfocus
|
operation_bridge_reporter
|
Arbitrary code execution vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The vulnerability could allow remote attackers to execute arbitrary code on affec…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-11856
|
2024-11-21 13:58 |
2020-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210112
|
9.8 |
CRITICAL
Network
|
microfocus
|
operation_bridge_reporter
|
An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The vulnerability could allow remote attackers to access the OBR host as a non-adm…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-11857
|
2024-11-21 13:58 |
2020-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210113
|
7.8 |
HIGH
Local
|
microfocus
|
operation_bridge_reporter
|
An Authorization Bypass vulnerability on Micro Focus Operation Bridge Reporter, affecting version 10.40 and earlier. The vulnerability could allow local attackers on the OBR host to execute code with…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-11855
|
2024-11-21 13:58 |
2020-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210114
|
7.8 |
HIGH
Local
|
microfocus
|
operations_agent
|
Unauthorized escalation of local privileges vulnerability on Micro Focus Operation Agent, affecting all versions prior to versions 12.11. The vulnerability could be exploited to escalate the local pr…
|
NVD-CWE-noinfo
|
CVE-2020-11861
|
2024-11-21 13:58 |
2020-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210115
|
8.8 |
HIGH
Network
|
titanhq
|
spamtitan
|
An issue was discovered in Titan SpamTitan 7.07. Due to improper sanitization of the parameter quid, used in the page mailqueue.php, code injection can occur. The input for this parameter is provided…
|
CWE-94
Code Injection
|
CVE-2020-11804
|
2024-11-21 13:58 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210116
|
8.8 |
HIGH
Network
|
titanhq
|
spamtitan
|
An issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter jaction when interacting with the page mailqueue.php could lead to PHP code evaluation server-side, because the…
|
CWE-94
Code Injection
|
CVE-2020-11803
|
2024-11-21 13:58 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210117
|
6.5 |
MEDIUM
Network
|
titanhq
|
spamtitan
|
An issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter fname, used on the page certs-x.php, would allow an attacker to retrieve the contents of arbitrary files. The u…
|
CWE-22
Path Traversal
|
CVE-2020-11700
|
2024-11-21 13:58 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210118
|
8.8 |
HIGH
Network
|
titanhq
|
spamtitan
|
An issue was discovered in Titan SpamTitan 7.07. Improper validation of the parameter fname on the page certs-x.php would allow an attacker to execute remote code on the target server. The user has t…
|
CWE-78
OS Command
|
CVE-2020-11699
|
2024-11-21 13:58 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210119
|
9.8 |
CRITICAL
Network
|
titanhq
|
spamtitan
|
An issue was discovered in Titan SpamTitan 7.07. Improper input sanitization of the parameter community on the page snmp-x.php would allow a remote attacker to inject commands into the file snmpd.con…
|
CWE-77
Command Injection
|
CVE-2020-11698
|
2024-11-21 13:58 |
2020-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210120
|
7.5 |
HIGH
Network
|
mikrotik
|
routeros
|
An array index error in MikroTik RouterOS 6.41.3 through 6.46.5, and 7.x through 7.0 Beta5, allows an unauthenticated remote attacker to crash the SMB server via modified setup-request packets, aka S…
|
CWE-129
Improper Validation of Array Index
|
CVE-2020-11881
|
2024-11-21 13:58 |
2020-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|