|
208811
|
7.5 |
HIGH
Network
|
dbhcms_project
|
dbhcms
|
DBHcms v1.2.0 has a sensitive information leaks vulnerability as there is no security access control in /dbhcms/ext/news/ext.news.be.php, A remote unauthenticated attacker can exploit this vulnerabil…
|
NVD-CWE-noinfo
|
CVE-2020-19878
|
2024-11-21 14:09 |
2020-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208812
|
5.3 |
MEDIUM
Network
|
dbhcms_project
|
dbhcms
|
DBHcms v1.2.0 has a directory traversal vulnerability as there is no directory control function in directory /dbhcms/. A remote unauthenticated attacker can exploit this vulnerability to obtain serve…
|
CWE-22
Path Traversal
|
CVE-2020-19877
|
2024-11-21 14:09 |
2020-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208813
|
7.8 |
HIGH
Local
|
microsoft
|
.net_framework
|
A remote code execution vulnerability exists when Microsoft .NET Framework processes input. An attacker who successfully exploited this vulnerability could take control of an affected system.
To expl…
|
NVD-CWE-noinfo
|
CVE-2020-1046
|
2024-11-21 14:09 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208814
|
7.3 |
HIGH
Network
|
microsoft
|
dynamics_365_for_finance_and_operations
|
A remote code execution vulnerability exists in Microsoft Dynamics 365 for Finance and Operations (on-premises) version 10.0.11. An attacker who successfully exploited this vulnerability could gain r…
|
NVD-CWE-noinfo
|
CVE-2020-1182
|
2024-11-21 14:09 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208815
|
7.8 |
HIGH
Local
|
microsoft
|
.net_core .net_framework sharepoint_server sharepoint_enterprise_server visual_studio_2019 visual_studio_2017
|
A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the software fails to check the source markup of XML file input, aka '.NET Framework, Shar…
|
NVD-CWE-Other
|
CVE-2020-1147
|
2024-11-21 14:09 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208816
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in memory, aka 'Windows Function Discovery Service Elevation of Privilege Vulnera…
|
NVD-CWE-noinfo
|
CVE-2020-1085
|
2024-11-21 14:09 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208817
|
9.0 |
CRITICAL
Adjacent
|
microsoft
|
windows_server_2012 windows_server_2016 windows_server_2008
|
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX…
|
CWE-20
Improper Input Validation
|
CVE-2020-1043
|
2024-11-21 14:09 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208818
|
9.0 |
CRITICAL
Adjacent
|
microsoft
|
windows_server_2012 windows_server_2016 windows_server_2008
|
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX…
|
CWE-20
Improper Input Validation
|
CVE-2020-1042
|
2024-11-21 14:09 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208819
|
9.0 |
CRITICAL
Adjacent
|
microsoft
|
windows_server_2012 windows_server_2016 windows_server_2008
|
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX…
|
CWE-20
Improper Input Validation
|
CVE-2020-1041
|
2024-11-21 14:09 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208820
|
9.0 |
CRITICAL
Adjacent
|
microsoft
|
windows_server_2012 windows_server_2016 windows_server_2008
|
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX…
|
CWE-20
Improper Input Validation
|
CVE-2020-1040
|
2024-11-21 14:09 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|