|
197621
|
5.5 |
MEDIUM
Local
|
netapp
|
oncommand_system_manager
|
OnCommand System Manager 9.x versions prior to 9.3P20 and 9.4 prior to 9.4P3 are susceptible to a vulnerability that could allow HTTP clients to cache sensitive responses making them accessible to an…
|
NVD-CWE-noinfo
|
CVE-2020-8587
|
2024-11-21 14:39 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197622
|
3.3 |
LOW
Local
|
netapp
|
clustered_data_ontap
|
Clustered Data ONTAP versions prior to 9.3P20 are susceptible to a vulnerability which could allow an attacker to discover node names via AutoSupport bundles even when the –remove-private-data parame…
|
NVD-CWE-noinfo
|
CVE-2020-8578
|
2024-11-21 14:39 |
2021-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197623
|
5.5 |
MEDIUM
Local
|
epson
|
iprojection
|
In Epson iProjection v2.30, the driver file (EMP_NSAU.sys) allows local users to cause a denial of service (BSOD) via crafted input to the virtual audio device driver with IOCTL 0x9C402402, 0x9C40240…
|
NVD-CWE-noinfo
|
CVE-2020-9014
|
2024-11-21 14:39 |
2021-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197624
|
5.3 |
MEDIUM
Network
|
electriccoin
|
zcashd
|
In Electric Coin Company Zcashd before 2.1.1-1, the time offset between messages could be leveraged to obtain sensitive information about the relationship between a suspected victim's address and an …
|
NVD-CWE-Other
|
CVE-2020-8807
|
2024-11-21 14:39 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197625
|
7.5 |
HIGH
Network
|
electriccoin
|
zcashd
|
Electric Coin Company Zcashd before 2.1.1-1 allows attackers to trigger consensus failure and double spending. A valid chain could be incorrectly rejected because timestamp requirements on block head…
|
CWE-863
Incorrect Authorization
|
CVE-2020-8806
|
2024-11-21 14:39 |
2021-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197626
|
3.5 |
LOW
Adjacent
|
netapp
|
clustered_data_ontap
|
Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15 are susceptible to a vulnerability which could allow unauthorized tenant users to discover the names of other Storage Virtual Machines (SVMs) …
|
NVD-CWE-noinfo
|
CVE-2020-8589
|
2024-11-21 14:39 |
2021-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197627
|
3.5 |
LOW
Adjacent
|
netapp
|
clustered_data_ontap
|
Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15 are susceptible to a vulnerability which could allow unauthorized tenant users to discover the existence of data on other Storage Virtual Mach…
|
NVD-CWE-noinfo
|
CVE-2020-8588
|
2024-11-21 14:39 |
2021-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197628
|
7.8 |
HIGH
Local
|
intel
|
bios
|
Out of bound read in BIOS firmware for 8th, 9th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 Series Processors may allow an unauthenticated user to potentially enable elevation of…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-8672
|
2024-11-21 14:39 |
2021-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197629
|
6.7 |
MEDIUM
Local
|
intel
|
m10jnp2sb_firmware
|
Improper input validation in the firmware for Intel(R) Server Board M10JNP2SB before version 7.210 may allow a privileged user to potentially enable escalation of privilege via local access.
|
CWE-20
Improper Input Validation
|
CVE-2020-8734
|
2024-11-21 14:39 |
2021-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197630
|
5.5 |
MEDIUM
Local
|
netapp
|
oncommand_unified_manager
|
OnCommand Unified Manager Core Package versions prior to 5.2.5 may disclose sensitive account information to unauthorized users via the use of PuTTY Link (plink).
|
CWE-59
Link Following
|
CVE-2020-8585
|
2024-11-21 14:39 |
2021-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|