|
198111
|
8.6 |
HIGH
Network
|
isc debian
|
bind debian_linux
|
A malicious actor who intentionally exploits this lack of effective limitation on the number of fetches performed when processing referrals can, through the use of specially crafted referrals, cause …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-8616
|
2024-11-21 14:39 |
2020-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198112
|
2.4 |
LOW
Physics
|
huawei
|
p20_firmware
|
Huawei P20 smartphones with versions earlier than 10.0.0.156(C00E156R1P4) have an improper authentication vulnerability. The vulnerability is due to that when an user wants to do certain operation, t…
|
CWE-287
Improper Authentication
|
CVE-2020-9073
|
2024-11-21 14:39 |
2020-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198113
|
7.5 |
HIGH
Network
|
citrix
|
sharefile_storagezones_controller
|
An arbitrary file write issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020, which allows remote cod…
|
CWE-22
Path Traversal
|
CVE-2020-8983
|
2024-11-21 14:39 |
2020-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198114
|
7.5 |
HIGH
Network
|
citrix
|
sharefile_storagezones_controller
|
An unauthenticated arbitrary file read issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020. RCE and …
|
CWE-22
Path Traversal
|
CVE-2020-8982
|
2024-11-21 14:39 |
2020-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198115
|
9.8 |
CRITICAL
Network
|
google
|
android
|
There is a buffer overwrite vulnerability in the Quram qmg library of Samsung's Android OS versions O(8.x), P(9.0) and Q(10.0). An unauthenticated, unauthorized attacker sending a specially crafted M…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-8899
|
2024-11-21 14:39 |
2020-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198116
|
8.8 |
HIGH
Network
|
commscope
|
ruckus_zoneflex_r500_firmware
|
CSRF in login.asp on Ruckus devices allows an attacker to access the panel, and use SSRF to perform scraping or other analysis via the SUBCA-1 field on the Wireless Admin screen.
|
CWE-352 CWE-918
Origin Validation Error Server-Side Request Forgery (SSRF)
|
CVE-2020-8830
|
2024-11-21 14:39 |
2020-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198117
|
8.8 |
HIGH
Network
|
intelbras
|
cip_92200_firmware
|
CSRF on Intelbras CIP 92200 devices allows an attacker to access the panel and perform scraping or other analysis.
|
CWE-352
Origin Validation Error
|
CVE-2020-8829
|
2024-11-21 14:39 |
2020-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198118
|
4.8 |
MEDIUM
Network
|
webtechideas
|
wti_like_post
|
A Stored XSS vulnerability has been found in the administration page of the WTI Like Post plugin through 1.4.5 for WordPress. Once the administrator has submitted the data, the script stored is execu…
|
CWE-79
Cross-site Scripting
|
CVE-2020-8799
|
2024-11-21 14:39 |
2020-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198119
|
5.9 |
MEDIUM
Network
|
google
|
earth
|
A Buffer Overflow vulnerability in the khcrypt implementation in Google Earth Pro versions up to and including 7.3.2 allows an attacker to perform a Man-in-the-Middle attack using a specially crafted…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-8896
|
2024-11-21 14:39 |
2020-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198120
|
5.3 |
MEDIUM
Network
|
oklok_project
|
oklok
|
The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) has an information-exposure issue. In the mobile app, an attempt to add an already-bound lock by its barcode reveal…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2020-8792
|
2024-11-21 14:39 |
2020-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|