|
209141
|
7.8 |
HIGH
Local
|
pritunl
|
pritunl-client-electron
|
Privilege escalation via arbitrary file write in pritunl electron client 1.0.1116.6 through v1.2.2550.20. Successful exploitation of the issue may allow an attacker to execute code on the effected sy…
|
CWE-59
Link Following
|
CVE-2020-25989
|
2024-11-21 14:19 |
2020-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209142
|
8.1 |
HIGH
Network
|
semantic-release_project
|
semantic-release
|
In the npm package semantic-release before version 17.2.3, secrets that would normally be masked by `semantic-release` can be accidentally disclosed if they contain characters that become encoded whe…
|
-
|
CVE-2020-26226
|
2024-11-21 14:19 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209143
|
6.1 |
MEDIUM
Network
|
jupyter debian
|
notebook debian_linux
|
Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability. A maliciously crafted link to a notebook server could redirect the browser to a different website. All notebook servers are t…
|
-
|
CVE-2020-26215
|
2024-11-21 14:19 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209144
|
9.8 |
CRITICAL
Network
|
planet
|
nvr-915_firmware nvr-1615_firmware
|
The firmware of the PLANET Technology Corp NVR-915 and NVR-1615 before 2020-10-28 embeds default credentials for root access via telnet. By exposing telnet on the Internet, remote root access on the …
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-26097
|
2024-11-21 14:19 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209145
|
6.1 |
MEDIUM
Network
|
cisco
|
iot_field_network_director
|
Multiple vulnerabilities in the web UI of Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to conduct cross-site scripting (XSS) attacks against users on an affe…
|
CWE-74
Injection
|
CVE-2020-26081
|
2024-11-21 14:19 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209146
|
4.1 |
MEDIUM
Network
|
cisco
|
iot_field_network_director
|
A vulnerability in the user management functionality of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to manage user information for users in different domains …
|
CWE-269
Improper Privilege Management
|
CVE-2020-26080
|
2024-11-21 14:19 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209147
|
6.5 |
MEDIUM
Network
|
cisco
|
iot_field_network_director
|
A vulnerability in the file system of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to overwrite files on an affected system. The vulnerability is due to insuff…
|
CWE-22
Path Traversal
|
CVE-2020-26078
|
2024-11-21 14:19 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209148
|
7.5 |
HIGH
Network
|
cisco
|
iot_field_network_director
|
A vulnerability in Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to view sensitive database information on an affected device. The vulnerability is due to the…
|
CWE-200
Information Exposure
|
CVE-2020-26076
|
2024-11-21 14:19 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209149
|
4.9 |
MEDIUM
Network
|
cisco
|
iot_field_network_director
|
A vulnerability in the web UI of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to obtain hashes of user passwords on an affected device. The vulnerability is du…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-26079
|
2024-11-21 14:19 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209150
|
4.3 |
MEDIUM
Network
|
cisco
|
iot_field_network_director
|
A vulnerability in the access control functionality of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to view lists of users from different domains that are conf…
|
CWE-269
Improper Privilege Management
|
CVE-2020-26077
|
2024-11-21 14:19 |
2020-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|