|
210141
|
9.8 |
CRITICAL
Network
|
superwebmailer
|
superwebmailer
|
SuperWebMailer 7.21.0.01526 is susceptible to a remote code execution vulnerability in the Language parameter of mailingupgrade.php. An unauthenticated remote attacker can exploit this behavior to ex…
|
CWE-94
Code Injection
|
CVE-2020-11546
|
2024-11-21 13:58 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210142
|
7.8 |
HIGH
Local
|
gog
|
galaxy
|
In GOG Galaxy 1.2.67, there is a service that is vulnerable to weak file/service permissions: GalaxyClientService.exe. An attacker can put malicious code in a Trojan horse GalaxyClientService.exe. Af…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-11827
|
2024-11-21 13:58 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210143
|
9.8 |
CRITICAL
Network
|
rittal
|
cmciii-pu-9333e0fb_firmware pdu-3c002dec_firmware cmc_iii_pu_7030.000_firmware lcp-cw_firmware iot_interface_3124.300
|
An issue was discovered on Rittal PDU-3C002DEC through 5.17.10 and CMCIII-PU-9333E0FB through 3.17.10 devices. There is a least privilege violation.
|
CWE-269
Improper Privilege Management
|
CVE-2020-11956
|
2024-11-21 13:58 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210144
|
8.8 |
HIGH
Network
|
rittal
|
cmciii-pu-9333e0fb_firmware pdu-3c002dec_firmware cmc_iii_pu_7030.000_firmware lcp-cw_firmware iot_interface_3124.300
|
An issue was discovered on Rittal PDU-3C002DEC through 5.15.70 and CMCIII-PU-9333E0FB through 3.15.70 devices. There are insecure permissions.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-11955
|
2024-11-21 13:58 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210145
|
8.8 |
HIGH
Network
|
rittal
|
cmciii-pu-9333e0fb_firmware pdu-3c002dec_firmware cmc_iii_pu_7030.000_firmware lcp-cw_firmware iot_interface_3124.300
|
An issue was discovered on Rittal PDU-3C002DEC through 5.15.40 and CMCIII-PU-9333E0FB through 3.15.70_4 devices. Attackers can execute code.
|
CWE-78
OS Command
|
CVE-2020-11953
|
2024-11-21 13:58 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210146
|
6.2 |
MEDIUM
Local
|
rittal
|
cmciii-pu-9333e0fb_firmware pdu-3c002dec_firmware cmc_iii_pu_7030.000_firmware lcp-cw_firmware iot_interface_3124.300
|
An issue was discovered on Rittal PDU-3C002DEC through 5.17.10 and CMCIII-PU-9333E0FB through 3.17.10 devices. Attackers can bypass the CLI menu.
|
NVD-CWE-noinfo
|
CVE-2020-11952
|
2024-11-21 13:58 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210147
|
9.8 |
CRITICAL
Network
|
rittal
|
cmciii-pu-9333e0fb_firmware pdu-3c002dec_firmware cmc_iii_pu_7030.000_firmware lcp-cw_firmware iot_interface_3124.300
|
An issue was discovered on Rittal PDU-3C002DEC through 5.17.10 and CMCIII-PU-9333E0FB through 3.17.10 devices. There is a Backdoor root account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-11951
|
2024-11-21 13:58 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210148
|
9.0 |
CRITICAL
Network
|
pandorafms
|
pandora_fms
|
Pandora FMS 7.0 NG <= 746 suffers from Multiple XSS vulnerabilities in different browser views. A network administrator scanning a SNMP device can trigger a Cross Site Scripting (XSS), which can run …
|
CWE-79
Cross-site Scripting
|
CVE-2020-11749
|
2024-11-21 13:58 |
2020-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210149
|
9.8 |
CRITICAL
Network
|
microfocus
|
identity_manager
|
Elevation of privilege and/or unauthorized access vulnerability in Micro Focus Identity Manager. Affecting versions prior to 4.7.3 and 4.8.1 hot fix 1. The vulnerability could allow information expos…
|
NVD-CWE-noinfo
|
CVE-2020-11849
|
2024-11-21 13:58 |
2020-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210150
|
6.1 |
MEDIUM
Network
|
telefonica
|
o2_business
|
The O2 Business application 1.2.0 for Android exposes the canvasm.myo2.SplashActivity activity to other applications. The purpose of this activity is to handle deeplinks that can be delivered either …
|
CWE-601
Open Redirect
|
CVE-2020-11882
|
2024-11-21 13:58 |
2020-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|