|
209171
|
7.5 |
HIGH
Network
|
uffizio
|
gps_tracker
|
An improper access control vulnerability exists in Uffizio's GPS Tracker all versions that lead to sensitive information disclosure of all the connected devices. By visiting the vulnerable host at po…
|
NVD-CWE-noinfo
|
CVE-2020-17483
|
2024-11-21 14:08 |
2023-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209172
|
6.5 |
MEDIUM
Network
|
univention
|
ucs\@school
|
Incorrect LDAP ACLs in ucs-school-ldap-acls-master in UCS@school before 4.4v5-errata allow remote teachers, staff, and school administrators to read LDAP password hashes (sambaNTPassword, krb5Key, sa…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-17477
|
2024-11-21 14:08 |
2023-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209173
|
7.4 |
HIGH
Network
|
typora
|
typora
|
Cross Site Scripting (XSS) vulnerability found in Typora v.0.9.65 allows a remote attacker to obtain sensitive information via the PDF file exporting function.
|
CWE-79
Cross-site Scripting
|
CVE-2020-18336
|
2024-11-21 14:08 |
2023-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209174
|
9.8 |
CRITICAL
Network
|
earcms
|
ear
|
An issue found in Earcms Ear App v.20181124 allows a remote attacker to execute arbitrary code via the uload/index-uplog.php.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-18912
|
2024-11-21 14:08 |
2023-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209175
|
6.5 |
MEDIUM
Network
|
freedesktop
|
poppler
|
Buffer Overflow vulnerability in HtmlOutputDev::page in poppler 0.75.0 allows attackers to cause a denial of service.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-18839
|
2024-11-21 14:08 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209176
|
7.8 |
HIGH
Local
|
exiv2
|
exiv2
|
Buffer Overflow vulnerability in tEXtToDataBuf function in pngimage.cpp in Exiv2 0.27.1 allows remote attackers to cause a denial of service and other unspecified impacts via use of crafted file.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-18831
|
2024-11-21 14:08 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209177
|
5.5 |
MEDIUM
Local
|
audiofile
|
audiofile
|
Heap buffer overflow vulnerability in FilePOSIX::read in File.cpp in audiofile 0.3.6 may cause denial-of-service via a crafted wav file, this bug can be triggered by the executable sfconvert.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-18781
|
2024-11-21 14:08 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209178
|
5.5 |
MEDIUM
Local
|
nasm
|
netwide_assembler
|
A Use After Free vulnerability in function new_Token in asm/preproc.c in nasm 2.14.02 allows attackers to cause a denial of service via crafted nasm command.
|
CWE-416
Use After Free
|
CVE-2020-18780
|
2024-11-21 14:08 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209179
|
5.5 |
MEDIUM
Local
|
zziplib_project
|
zziplib
|
An issue was discovered in function zzip_disk_entry_to_file_header in mmapped.c in zziplib 0.13.69, which will lead to a denial-of-service.
|
NVD-CWE-noinfo
|
CVE-2020-18770
|
2024-11-21 14:08 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209180
|
5.5 |
MEDIUM
Local
|
libtiff
|
libtiff
|
There exists one heap buffer overflow in _TIFFmemcpy in tif_unix.c in libtiff 4.0.10, which allows an attacker to cause a denial-of-service through a crafted tiff file.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-18768
|
2024-11-21 14:08 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|