|
208501
|
6.7 |
MEDIUM
Local
|
huawei
|
pcmanager
|
Huawei PCManager product with versions earlier than 10.0.5.53 have a local privilege escalation vulnerability. An authenticated, local attacker can perform specific operation to exploit this vulnerab…
|
NVD-CWE-noinfo
|
CVE-2020-1845
|
2024-11-21 14:11 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208502
|
3.5 |
LOW
Physics
|
huawei
|
mate_20_firmware
|
HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.188(C00E74R3P8) have an improper authorization vulnerability. The software does not properly restrict certain user's modification of certa…
|
NVD-CWE-noinfo
|
CVE-2020-1807
|
2024-11-21 14:11 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208503
|
7.1 |
HIGH
Local
|
huawei
|
honor_v10_firmware
|
Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities. Certain driver program does not sufficiently validate certain parameters recei…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-1806
|
2024-11-21 14:11 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208504
|
7.1 |
HIGH
Local
|
huawei
|
honor_v10_firmware
|
Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities. Certain driver program does not sufficiently validate certain parameters recei…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-1805
|
2024-11-21 14:11 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208505
|
7.1 |
HIGH
Local
|
huawei
|
honor_v10_firmware
|
Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities. Certain driver program does not sufficiently validate certain parameters recei…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-1804
|
2024-11-21 14:11 |
2020-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208506
|
5.9 |
MEDIUM
Network
|
redhat
|
openshift_container_platform
|
A flaw was found in openshift-ansible. OpenShift Container Platform (OCP) 3.11 is too permissive in the way it specified CORS allowed origins during installation. An attacker, able to man-in-the-midd…
|
-
|
CVE-2020-1741
|
2024-11-21 14:11 |
2020-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208507
|
6.1 |
MEDIUM
Network
|
linuxfoundation redhat fedoraproject canonical debian
|
ceph ceph_storage openshift_container_platform fedora ubuntu_linux debian_linux
|
A flaw was found in the Ceph Object Gateway, where it supports request sent by an anonymous user in Amazon S3. This flaw could lead to potential XSS attacks due to the lack of proper neutralization o…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1760
|
2024-11-21 14:11 |
2020-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208508
|
6.5 |
MEDIUM
Local
|
libslirp_project fedoraproject debian opensuse canonical
|
libslirp fedora debian_linux leap ubuntu_linux
|
A use after free vulnerability in ip_reass() in ip_input.c of libslirp 4.2.0 and prior releases allows crafted packets to cause a denial of service.
|
CWE-416
Use After Free
|
CVE-2020-1983
|
2024-11-21 14:11 |
2020-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208509
|
8.1 |
HIGH
Network
|
redhat
|
undertow jboss_fuse jboss_enterprise_application_platform single_sign-on jboss_data_grid openshift_application_runtimes
|
A flaw was found in all undertow-2.x.x SP1 versions prior to undertow-2.0.30.SP1, all undertow-1.x.x and undertow-2.x.x versions prior to undertow-2.1.0.Final, where the Servlet container causes serv…
|
CWE-20
Improper Input Validation
|
CVE-2020-1757
|
2024-11-21 14:11 |
2020-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208510
|
7.5 |
HIGH
Network
|
linuxfoundation redhat
|
ceph ceph_storage
|
A path traversal flaw was found in the Ceph dashboard implemented in upstream versions v14.2.5, v14.2.6, v15.0.0 of Ceph storage and has been fixed in versions 14.2.7 and 15.1.0. An unauthenticated a…
|
CWE-22
Path Traversal
|
CVE-2020-1699
|
2024-11-21 14:11 |
2020-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|