|
198211
|
9.8 |
CRITICAL
Network
|
zte
|
r8500g4_firmware r5500g4_firmware r5300g4_firmware
|
The server management software module of ZTE has an authentication issue vulnerability, which allows users to skip the authentication of the server and execute some commands for high-level users. Thi…
|
CWE-287
Improper Authentication
|
CVE-2020-6871
|
2024-11-21 14:36 |
2020-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198212
|
9.8 |
CRITICAL
Network
|
hp
|
nagios-plugins-hpilo
|
HP nagios plugin for iLO (nagios-plugins-hpilo v1.50 and earlier) has a php code injection vulnerability.
|
CWE-78
OS Command
|
CVE-2020-7206
|
2024-11-21 14:36 |
2020-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198213
|
7.5 |
HIGH
Network
|
tableau
|
tableau_server
|
A sensitive information disclosure vulnerability in Tableau Server 10.5, 2018.x, 2019.x, 2020.x released before June 26, 2020, could allow access to sensitive information in log files.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2020-6938
|
2024-11-21 14:36 |
2020-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198214
|
6.1 |
MEDIUM
Network
|
hp
|
icewall_sso_dfw icewall_sso_dgfw
|
A security vulnerability in HPE IceWall SSO Dfw and Dgfw (Domain Gateway Option) could be exploited remotely to cause a remote cross-site scripting (XSS). HPE has provided the following information t…
|
CWE-79
Cross-site Scripting
|
CVE-2020-7140
|
2024-11-21 14:36 |
2020-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198215
|
7.8 |
HIGH
Local
|
mcafee
|
network_security_management
|
Exposure of Sensitive Information in McAfee Network Security Management (NSM) prior to 10.1.7.7 allows local users to gain unauthorised access to the root account via execution of carefully crafted c…
|
CWE-200
Information Exposure
|
CVE-2020-7284
|
2024-11-21 14:36 |
2020-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198216
|
8.8 |
HIGH
Local
|
mcafee
|
total_protection
|
Privilege Escalation vulnerability in McAfee Total Protection (MTP) before 16.0.R26 allows local users to create and edit files via symbolic link manipulation in a location they would otherwise not h…
|
CWE-269
Improper Privilege Management
|
CVE-2020-7283
|
2024-11-21 14:36 |
2020-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198217
|
6.3 |
MEDIUM
Local
|
mcafee
|
total_protection
|
Privilege Escalation vulnerability in McAfee Total Protection (MTP) before 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to r…
|
CWE-59
Link Following
|
CVE-2020-7282
|
2024-11-21 14:36 |
2020-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198218
|
6.3 |
MEDIUM
Local
|
mcafee
|
total_protection
|
Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to…
|
CWE-269
Improper Privilege Management
|
CVE-2020-7281
|
2024-11-21 14:36 |
2020-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198219
|
7.3 |
HIGH
Local
|
nozominetworks
|
guardian
|
Nozomi Networks OS before 19.0.4 allows /#/network?tab=network_node_list.html CSV Injection.
|
CWE-1236
Improper Neutralization of Formula Elements in a CSV File
|
CVE-2020-7049
|
2024-11-21 14:36 |
2020-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198220
|
8.0 |
HIGH
Adjacent
|
zte
|
netnumen_u31_r10_firmware
|
The version V12.17.20T115 of ZTE U31R20 product is impacted by a design error vulnerability. An attacker could exploit the vulnerability to log in to the FTP server to tamper with the password, and i…
|
NVD-CWE-Other
|
CVE-2020-6870
|
2024-11-21 14:36 |
2020-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|