|
196691
|
8.1 |
HIGH
Network
|
commscope
|
ruckus_zoneflex_r500_firmware
|
A CSRF issue in login.asp on Ruckus R500 3.4.2.0.384 devices allows remote attackers to access the panel or conduct SSRF attacks.
|
CWE-352
Origin Validation Error
|
CVE-2020-7983
|
2024-11-21 14:38 |
2020-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196692
|
7.8 |
HIGH
Local
|
suse
|
linux_enterprise_desktop
|
A Incorrect Default Permissions vulnerability in the SLES15-SP1-CHOST-BYOS and SLES15-SP1-CAP-Deployment-BYOS images of SUSE Linux Enterprise Server 15 SP1 allows local attackers with the UID 1000 to…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-8018
|
2024-11-21 14:38 |
2020-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196693
|
6.8 |
MEDIUM
Physics
|
ui
|
unifi_cloud_key_gen2_firmware unifi_cloud_key_gen2_plus_firmware
|
UniFi Cloud Key firmware <= v1.1.10 for Cloud Key gen2 and Cloud Key gen2 Plus contains a vulnerability that allows unrestricted root access through the serial interface (UART).
|
NVD-CWE-noinfo
|
CVE-2020-8157
|
2024-11-21 14:38 |
2020-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196694
|
7.8 |
HIGH
Local
|
abb
|
800xa_information_management
|
Insufficient protection of the inter-process communication functions in ABB System 800xA Information Management (all published versions) enables an attacker authenticated on the local system to injec…
|
NVD-CWE-Other
|
CVE-2020-8489
|
2024-11-21 14:38 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196695
|
7.8 |
HIGH
Local
|
abb
|
800xa_batch_management
|
Insufficient protection of the inter-process communication functions in ABB System 800xA Batch Management (all published versions) enables an attacker authenticated on the local system to inject data…
|
NVD-CWE-Other
|
CVE-2020-8488
|
2024-11-21 14:38 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196696
|
7.8 |
HIGH
Local
|
abb
|
800xa_base_system
|
Insufficient protection of the inter-process communication functions in ABB System 800xA Base (all published versions) enables an attacker authenticated on the local system to inject data, affect nod…
|
NVD-CWE-Other
|
CVE-2020-8487
|
2024-11-21 14:38 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196697
|
7.8 |
HIGH
Local
|
abb
|
800xa_rnrp
|
Insufficient protection of the inter-process communication functions in ABB System 800xA RNRP (all published versions) enables an attacker authenticated on the local system to inject data, affect nod…
|
NVD-CWE-Other
|
CVE-2020-8486
|
2024-11-21 14:38 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196698
|
7.8 |
HIGH
Local
|
abb
|
800xa
|
Insufficient protection of the inter-process communication functions in ABB System 800xA for MOD 300 (all published versions) enables an attacker authenticated on the local system to inject data, all…
|
NVD-CWE-Other
|
CVE-2020-8485
|
2024-11-21 14:38 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196699
|
7.8 |
HIGH
Local
|
abb
|
800xa
|
Insufficient protection of the inter-process communication functions in ABB System 800xA for DCI (all published versions) enables an attacker authenticated on the local system to inject data, allowin…
|
NVD-CWE-Other
|
CVE-2020-8484
|
2024-11-21 14:38 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196700
|
9.8 |
CRITICAL
Network
|
abb
|
800xa_system
|
For ABB products ABB Ability™ System 800xA and related system extensions versions 5.1, 6.0 and 6.1, Compact HMI versions 5.1 and 6.0, Control Builder Safe 1.0, 1.1 and 2.0, Symphony Plus -S+ Operatio…
|
CWE-922
Insecure Storage of Sensitive Information
|
CVE-2020-8481
|
2024-11-21 14:38 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|