|
208231
|
9.1 |
CRITICAL
Network
|
dell
|
emc_powerscale_onefs
|
Dell PowerScale OneFS 8.1.0 - 9.1.0 contains an LDAP Provider inability to connect over TLSv1.2 vulnerability. It may make it easier to eavesdrop and decrypt such traffic for a malicious actor. Note:…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2020-26197
|
2024-11-21 14:19 |
2021-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208232
|
8.8 |
HIGH
Network
|
protocol
|
go-ipfs
|
go-ipfs is an open-source golang implementation of IPFS which is a global, versioned, peer-to-peer filesystem. In go-ipfs before version 0.8.0, control characters are not escaped from console output.…
|
-
|
CVE-2020-26283
|
2024-11-21 14:19 |
2021-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208233
|
8.1 |
HIGH
Network
|
protocol
|
go-ipfs
|
go-ipfs is an open-source golang implementation of IPFS which is a global, versioned, peer-to-peer filesystem. In go-ipfs before version 0.8.0-rc1, it is possible for path traversal to occur with DAG…
|
-
|
CVE-2020-26279
|
2024-11-21 14:19 |
2021-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208234
|
7.8 |
HIGH
Local
|
utimaco
|
block-safe_firmware cryptoserver_cp5_firmware cryptoserver_cp5_vs-nfd_firmware paymentserver_firmware paymentserver_hybrid_firmware securityserver_firmware
|
Multiple files and folders in Utimaco SecurityServer 4.20.0.4 and 4.31.1.0. are installed with Read/Write permissions for authenticated users, which allows for binaries to be manipulated by non-admin…
|
CWE-427 CWE-732
Uncontrolled Search Path Element Incorrect Permission Assignment for Critical Resource
|
CVE-2020-26155
|
2024-11-21 14:19 |
2021-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208235
|
6.8 |
MEDIUM
Physics
|
kaspersky
|
endpoint_security rescue_disk
|
A component of Kaspersky custom boot loader allowed loading of untrusted UEFI modules due to insufficient check of their authenticity. This component is incorporated in Kaspersky Rescue Disk (KRD) an…
|
CWE-287
Improper Authentication
|
CVE-2020-26200
|
2024-11-21 14:19 |
2021-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208236
|
9.6 |
CRITICAL
Network
|
ftp-srv_project
|
ftp-srv
|
ftp-srv is an open-source FTP server designed to be simple yet configurable. In ftp-srv before version 4.4.0 there is a path-traversal vulnerability. Clients of FTP servers utilizing ftp-srv hosted o…
|
-
|
CVE-2020-26299
|
2024-11-21 14:19 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208237
|
5.5 |
MEDIUM
Local
|
dell
|
emc_powerscale_onefs
|
Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation issue. A user with the BackupAdmin role may potentially exploit this vulnerability resulting in the ab…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-26196
|
2024-11-21 14:19 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208238
|
5.3 |
MEDIUM
Network
|
dell
|
emc_powerscale_onefs
|
Dell EMC PowerScale OneFS versions 8.1.2 – 9.1.0 contain an issue where the OneFS SMB directory auto-create may erroneously create a directory for a user. A remote unauthenticated attacker may take a…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2020-26195
|
2024-11-21 14:19 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208239
|
7.8 |
HIGH
Local
|
dell
|
emc_powerscale_onefs
|
Dell EMC PowerScale OneFS versions 8.1.2 and 8.2.2 contain an Incorrect Permission Assignment for a Critical Resource vulnerability. This may allow a non-admin user with either ISI_PRIV_LOGIN_CONSOLE…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-26194
|
2024-11-21 14:19 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208240
|
7.8 |
HIGH
Local
|
dell
|
emc_powerscale_onefs
|
Dell EMC PowerScale OneFS versions 8.1.0 - 9.1.0 contain an improper input validation vulnerability. A user with the ISI_PRIV_CLUSTER privilege may exploit this vulnerability, leading to the executio…
|
CWE-78
OS Command
|
CVE-2020-26193
|
2024-11-21 14:19 |
2021-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|