|
210741
|
5.9 |
MEDIUM
Network
|
zyxel
|
cloudcnm_secumanager
|
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded RSA SSH key for the root account within the /opt/axess chroot directory tree.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-15317
|
2024-11-21 14:05 |
2020-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210742
|
5.9 |
MEDIUM
Network
|
zyxel
|
cloudcnm_secumanager
|
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded ECDSA SSH key for the root account within the /opt/axess chroot directory tree.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-15316
|
2024-11-21 14:05 |
2020-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210743
|
5.9 |
MEDIUM
Network
|
zyxel
|
cloudcnm_secumanager
|
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded DSA SSH key for the root account within the /opt/axess chroot directory tree.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-15315
|
2024-11-21 14:05 |
2020-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210744
|
5.9 |
MEDIUM
Network
|
zyxel
|
cloudcnm_secumanager
|
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded RSA SSH key for the root account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-15314
|
2024-11-21 14:05 |
2020-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210745
|
5.9 |
MEDIUM
Network
|
zyxel
|
cloudcnm_secumanager
|
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded ECDSA SSH key for the root account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-15313
|
2024-11-21 14:05 |
2020-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210746
|
5.9 |
MEDIUM
Network
|
zyxel
|
cloudcnm_secumanager
|
Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded DSA SSH key for the root account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-15312
|
2024-11-21 14:05 |
2020-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210747
|
6.5 |
MEDIUM
Network
|
libraw
|
libraw
|
LibRaw before 0.20-Beta3 has an out-of-bounds write in parse_exif() in metadata\exif_gps.cpp via an unrecognized AtomName and a zero value of tiff_nifds.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-15365
|
2024-11-21 14:05 |
2020-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210748
|
6.1 |
MEDIUM
Network
|
nexos_project
|
nexos
|
The Nexos theme through 1.7 for WordPress allows top-map/?search_location= reflected XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2020-15364
|
2024-11-21 14:05 |
2020-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210749
|
9.8 |
CRITICAL
Network
|
nexos_project
|
nexos
|
The Nexos theme through 1.7 for WordPress allows side-map/?search_order= SQL Injection.
|
CWE-89
SQL Injection
|
CVE-2020-15363
|
2024-11-21 14:05 |
2020-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210750
|
7.8 |
HIGH
Local
|
docker
|
docker_desktop
|
com.docker.vmnetd in Docker Desktop 2.3.0.3 allows privilege escalation because of a lack of client verification.
|
CWE-862
Missing Authorization
|
CVE-2020-15360
|
2024-11-21 14:05 |
2020-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|