|
197351
|
6.5 |
MEDIUM
Network
|
tyco johnsoncontrols
|
victor_video_management_system c-cure_9000_firmware
|
During installation or upgrade to Software House C•CURE 9000 v2.70 and American Dynamics victor Video Management System v5.2, the credentials of the user used to perform the installation or upgrade a…
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2020-9045
|
2024-11-21 14:39 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197352
|
7.5 |
HIGH
Network
|
netapp
|
element_healthtools element_os
|
Element OS prior to version 12.0 and Element HealthTools prior to version 2020.04.01.04 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive info…
|
NVD-CWE-noinfo
|
CVE-2020-8572
|
2024-11-21 14:39 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197353
|
5.9 |
MEDIUM
Network
|
isc debian fedoraproject opensuse canonical
|
bind debian_linux fedora leap ubuntu_linux
|
Using a specially-crafted message, an attacker may potentially cause a BIND server to reach an inconsistent state if the attacker knows (or successfully guesses) the name of a TSIG key used by the se…
|
CWE-617
Reachable Assertion
|
CVE-2020-8617
|
2024-11-21 14:39 |
2020-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197354
|
8.6 |
HIGH
Network
|
isc debian
|
bind debian_linux
|
A malicious actor who intentionally exploits this lack of effective limitation on the number of fetches performed when processing referrals can, through the use of specially crafted referrals, cause …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-8616
|
2024-11-21 14:39 |
2020-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197355
|
2.4 |
LOW
Physics
|
huawei
|
p20_firmware
|
Huawei P20 smartphones with versions earlier than 10.0.0.156(C00E156R1P4) have an improper authentication vulnerability. The vulnerability is due to that when an user wants to do certain operation, t…
|
CWE-287
Improper Authentication
|
CVE-2020-9073
|
2024-11-21 14:39 |
2020-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197356
|
7.5 |
HIGH
Network
|
citrix
|
sharefile_storagezones_controller
|
An arbitrary file write issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020, which allows remote cod…
|
CWE-22
Path Traversal
|
CVE-2020-8983
|
2024-11-21 14:39 |
2020-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197357
|
7.5 |
HIGH
Network
|
citrix
|
sharefile_storagezones_controller
|
An unauthenticated arbitrary file read issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020. RCE and …
|
CWE-22
Path Traversal
|
CVE-2020-8982
|
2024-11-21 14:39 |
2020-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197358
|
9.8 |
CRITICAL
Network
|
google
|
android
|
There is a buffer overwrite vulnerability in the Quram qmg library of Samsung's Android OS versions O(8.x), P(9.0) and Q(10.0). An unauthenticated, unauthorized attacker sending a specially crafted M…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-8899
|
2024-11-21 14:39 |
2020-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197359
|
8.8 |
HIGH
Network
|
commscope
|
ruckus_zoneflex_r500_firmware
|
CSRF in login.asp on Ruckus devices allows an attacker to access the panel, and use SSRF to perform scraping or other analysis via the SUBCA-1 field on the Wireless Admin screen.
|
CWE-352 CWE-918
Origin Validation Error Server-Side Request Forgery (SSRF)
|
CVE-2020-8830
|
2024-11-21 14:39 |
2020-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197360
|
8.8 |
HIGH
Network
|
intelbras
|
cip_92200_firmware
|
CSRF on Intelbras CIP 92200 devices allows an attacker to access the panel and perform scraping or other analysis.
|
CWE-352
Origin Validation Error
|
CVE-2020-8829
|
2024-11-21 14:39 |
2020-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|