|
195731
|
7.8 |
HIGH
Local
|
huawei
|
mate_30_firmware
|
HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a type confusion vulnerability. The system does not properly check and transform the type of certain variable, the attacker tric…
|
CWE-843
Type Confusion
|
CVE-2020-9261
|
2024-11-21 14:40 |
2020-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195732
|
5.5 |
MEDIUM
Local
|
huawei
|
p30_firmware
|
HUAWEI P30 with versions earlier than 10.1.0.135(C00E135R2P11) have an improper signature verification vulnerability. The system does not improper check signature of specific software package, an att…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2020-9226
|
2024-11-21 14:40 |
2020-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195733
|
7.8 |
HIGH
Local
|
huawei
|
hisuite
|
Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of …
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-9100
|
2024-11-21 14:40 |
2020-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195734
|
6.7 |
MEDIUM
Local
|
apache fedoraproject debian
|
guacamole fedora debian_linux
|
Apache Guacamole 1.1.0 and older may mishandle pointers involved inprocessing data received via RDP static virtual channels. If a userconnects to a malicious or compromised RDP server, a series ofspe…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-9498
|
2024-11-21 14:40 |
2020-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195735
|
4.4 |
MEDIUM
Local
|
apache fedoraproject debian
|
guacamole fedora debian_linux
|
Apache Guacamole 1.1.0 and older do not properly validate datareceived from RDP servers via static virtual channels. If a userconnects to a malicious or compromised RDP server, specially-craftedPDUs …
|
CWE-20
Improper Input Validation
|
CVE-2020-9497
|
2024-11-21 14:40 |
2020-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195736
|
8.8 |
HIGH
Network
|
tibco
|
managed_file_transfer_internet_server managed_file_transfer_command_center
|
The MFT admin service component of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center and TIBCO Managed File Transfer Internet Server contains a vulnerability that theoretically allows …
|
CWE-79
Cross-site Scripting
|
CVE-2020-9414
|
2024-11-21 14:40 |
2020-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195737
|
9.6 |
CRITICAL
Network
|
tibco
|
managed_file_transfer_internet_server managed_file_transfer_command_center
|
The MFT Browser file transfer client and MFT Browser admin client components of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center and TIBCO Managed File Transfer Internet Server contai…
|
CWE-79
Cross-site Scripting
|
CVE-2020-9413
|
2024-11-21 14:40 |
2020-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195738
|
7.5 |
HIGH
Network
|
apache
|
skywalking
|
**Resolved** When use H2/MySQL/TiDB as Apache SkyWalking storage, the metadata query through GraphQL protocol, there is a SQL injection vulnerability, which allows to access unpexcted data. Apache Sk…
|
CWE-89
SQL Injection
|
CVE-2020-9483
|
2024-11-21 14:40 |
2020-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195739
|
9.8 |
CRITICAL
Network
|
magento
|
magento
|
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a security mitigation bypass vulnerability. Successful exploitation could lead to…
|
NVD-CWE-noinfo
|
CVE-2020-9632
|
2024-11-21 14:40 |
2020-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195740
|
9.8 |
CRITICAL
Network
|
magento
|
magento
|
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a security mitigation bypass vulnerability. Successful exploitation could lead to…
|
NVD-CWE-noinfo
|
CVE-2020-9631
|
2024-11-21 14:40 |
2020-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|