|
210521
|
8.8 |
HIGH
Adjacent
|
digitus
|
da-70254_firmware
|
DIGITUS DA-70254 4-Port Gigabit Network Hub 2.073.000.E0008 devices allow an attacker on the same network to bypass authentication via a web-administration request that lacks a password parameter.
|
CWE-287
Improper Authentication
|
CVE-2020-15063
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210522
|
8.8 |
HIGH
Adjacent
|
digitus
|
da-70254_firmware
|
DIGITUS DA-70254 4-Port Gigabit Network Hub 2.073.000.E0008 devices allow an attacker on the same network to elevate privileges because the administrative password can be discovered by sniffing unenc…
|
CWE-319 CWE-522
Cleartext Transmission of Sensitive Information Insufficiently Protected Credentials
|
CVE-2020-15062
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210523
|
6.5 |
MEDIUM
Adjacent
|
lindy-international
|
42633_firmware
|
Lindy 42633 4-Port USB 2.0 Gigabit Network Server 2.078.000 devices allow an attacker on the same network to denial-of-service the device via long input values.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-15061
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210524
|
4.3 |
MEDIUM
Adjacent
|
lindy-international
|
42633_firmware
|
Lindy 42633 4-Port USB 2.0 Gigabit Network Server 2.078.000 devices allow an attacker on the same network to conduct persistent XSS attacks by leveraging administrative privileges to set a crafted se…
|
CWE-79
Cross-site Scripting
|
CVE-2020-15060
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210525
|
8.8 |
HIGH
Adjacent
|
lindy-international
|
42633_firmware
|
Lindy 42633 4-Port USB 2.0 Gigabit Network Server 2.078.000 devices allow an attacker on the same network to bypass authentication via a web-administration request that lacks a password parameter.
|
CWE-287
Improper Authentication
|
CVE-2020-15059
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210526
|
8.8 |
HIGH
Adjacent
|
lindy-international
|
42633_firmware
|
Lindy 42633 4-Port USB 2.0 Gigabit Network Server 2.078.000 devices allow an attacker on the same network to elevate privileges because the administrative password can be discovered by sniffing unenc…
|
CWE-319 CWE-522
Cleartext Transmission of Sensitive Information Insufficiently Protected Credentials
|
CVE-2020-15058
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210527
|
6.5 |
MEDIUM
Adjacent
|
tp-link
|
tl-ps310u_firmware
|
TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 allow an attacker on the same network to denial-of-service the device via long input values.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-15057
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210528
|
4.3 |
MEDIUM
Adjacent
|
tp-link
|
tl-ps310u_firmware
|
TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 allow an attacker on the same network to conduct persistent XSS attacks by leveraging administrative privileges to set a crafted se…
|
CWE-79
Cross-site Scripting
|
CVE-2020-15056
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210529
|
8.8 |
HIGH
Adjacent
|
tp-link
|
tl-ps310u_firmware
|
TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 allow an attacker on the same network to bypass authentication via a web-administration request that lacks a password parameter.
|
CWE-287
Improper Authentication
|
CVE-2020-15055
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210530
|
8.8 |
HIGH
Adjacent
|
tp-link
|
tl-ps310u_firmware
|
TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 allow an attacker on the same network to elevate privileges because the administrative password can be discovered by sniffing unenc…
|
CWE-319 CWE-522
Cleartext Transmission of Sensitive Information Insufficiently Protected Credentials
|
CVE-2020-15054
|
2024-11-21 14:04 |
2020-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|