|
197771
|
6.7 |
MEDIUM
Local
|
trendmicro
|
antivirus_toolkit apex_one deep_security officescan officescan_business_security officescan_business_security_service officescan_cloud online_scan portable_security rootkit…
|
An input validation vulnerability found in multiple Trend Micro products utilizing a particular version of a specific rootkit protection driver could allow an attacker in user-mode with administrator…
|
CWE-20
Improper Input Validation
|
CVE-2020-8607
|
2024-11-21 14:39 |
2020-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197772
|
4.4 |
MEDIUM
Local
|
netapp
|
active_iq_unified_manager
|
Active IQ Unified Manager for VMware vSphere and Windows versions prior to 9.5 are susceptible to a vulnerability which allows administrative users to cause Denial of Service (DoS).
|
NVD-CWE-noinfo
|
CVE-2020-8575
|
2024-11-21 14:39 |
2020-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197773
|
7.8 |
HIGH
Local
|
netapp
|
active_iq_unified_manager
|
Active IQ Unified Manager for Linux versions prior to 9.6 ship with the Java Management Extension Remote Method Invocation (JMX RMI) service enabled allowing unauthorized code execution to local user…
|
NVD-CWE-noinfo
|
CVE-2020-8574
|
2024-11-21 14:39 |
2020-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197774
|
5.9 |
MEDIUM
Network
|
kubernetes
|
ingress-nginx
|
The Kubernetes ingress-nginx component prior to version 0.28.0 allows a user with the ability to create namespaces and to read and create ingress objects to overwrite the password file of another ing…
|
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
|
CVE-2020-8553
|
2024-11-21 14:39 |
2020-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197775
|
8.8 |
HIGH
Adjacent
|
kubernetes
|
kubernetes
|
The Kubelet and kube-proxy components in versions 1.1.0-1.16.10, 1.17.0-1.17.6, and 1.18.0-1.18.3 were found to contain a security issue which allows adjacent hosts to reach TCP and UDP services boun…
|
NVD-CWE-Other
|
CVE-2020-8558
|
2024-11-21 14:39 |
2020-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197776
|
3.3 |
LOW
Local
|
huawei
|
p30_firmware
|
HUAWEI P30 smart phones with versions earlier than 10.1.0.160(C00E160R2P11) have an information exposure vulnerability. The system does not properly authenticate the application that access a specifi…
|
CWE-287
Improper Authentication
|
CVE-2020-9077
|
2024-11-21 14:39 |
2020-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197777
|
5.5 |
MEDIUM
Local
|
kubernetes
|
kubernetes
|
The Kubernetes kubelet component in versions 1.1-1.16.12, 1.17.0-1.17.8 and 1.18.0-1.18.5 do not account for disk usage by a pod which writes to its own /etc/hosts file. The /etc/hosts file mounted i…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-8557
|
2024-11-21 14:39 |
2020-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197778
|
6.8 |
MEDIUM
Network
|
kubernetes
|
kubernetes
|
The Kubernetes kube-apiserver in versions v1.6-v1.15, and versions prior to v1.16.13, v1.17.9 and v1.18.6 are vulnerable to an unvalidated redirect on proxied upgrade requests that could allow an att…
|
CWE-601
Open Redirect
|
CVE-2020-8559
|
2024-11-21 14:39 |
2020-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197779
|
7.2 |
HIGH
Network
|
gpononu
|
1ge_router_wifi_onu_v2801rw_firmware 1ge\+3fe\+wifi_onu_v2804rgw_firmware
|
Guangzhou 1GE ONU V2801RW 1.9.1-181203 through 2.9.0-181024 and V2804RGW 1.9.1-181203 through 2.9.0-181024 devices allow remote attackers to execute arbitrary OS commands via shell metacharacters in …
|
CWE-78
OS Command
|
CVE-2020-8958
|
2024-11-21 14:39 |
2020-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197780
|
5.5 |
MEDIUM
Local
|
openthread
|
wpantund
|
A memory leak in Openthread's wpantund versions up to commit 0e5d1601febb869f583e944785e5685c6c747be7, when used in an environment where wpanctl is directly interfacing with the control driver (eg: d…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-8916
|
2024-11-21 14:39 |
2020-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|