|
199661
|
4.4 |
MEDIUM
Local
|
huawei
|
fusioncompute
|
FusionCompute versions 8.0.0 have an insecure encryption algorithm vulnerability. Attackers with high permissions can exploit this vulnerability to cause information leak.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2020-9128
|
2024-11-21 14:40 |
2020-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199662
|
6.5 |
MEDIUM
Network
|
netflix
|
dispatch
|
The Access Control issues include allowing a regular user to view a restricted incident, user role escalation to admin, users adding themselves as a participant in a restricted incident, and users ab…
|
NVD-CWE-Other
|
CVE-2020-9300
|
2024-11-21 14:40 |
2020-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199663
|
5.4 |
MEDIUM
Network
|
netflix
|
dispatch
|
There were XSS vulnerabilities discovered and reported in the Dispatch application, affecting name and description parameters of Incident Priority, Incident Type, Tag Type, and Incident Filter. This …
|
CWE-79
Cross-site Scripting
|
CVE-2020-9299
|
2024-11-21 14:40 |
2020-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199664
|
7.5 |
HIGH
Network
|
oleacorner
|
olea_gift_on_order
|
The Module Olea Gift On Order module through 5.0.8 for PrestaShop enables an unauthenticated user to read arbitrary files on the server via getfile.php?file=/.. directory traversal.
|
CWE-22
Path Traversal
|
CVE-2020-9368
|
2024-11-21 14:40 |
2020-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199665
|
5.5 |
MEDIUM
Local
|
cryptopro
|
csp
|
CryptoPro CSP through 5.0.0.10004 on 64-bit platforms allows local users with the SeChangeNotifyPrivilege right to cause denial of service because user-mode input is mishandled during process creatio…
|
NVD-CWE-noinfo
|
CVE-2020-9361
|
2024-11-21 14:40 |
2020-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199666
|
7.8 |
HIGH
Local
|
cryptopro
|
csp
|
CryptoPro CSP through 5.0.0.10004 on 32-bit platforms allows Local Privilege Escalation (by local users with the SeChangeNotifyPrivilege right) because user-mode input is mishandled during process cr…
|
NVD-CWE-noinfo
|
CVE-2020-9331
|
2024-11-21 14:40 |
2020-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199667
|
7.8 |
HIGH
Local
|
huawei
|
mate_30_firmware p30_firmware
|
HUAWEI Mate 30 versions earlier than 10.1.0.150(C00E136R5P3) and HUAWEI P30 version earlier than 10.1.0.160(C00E160R2P11) have a use after free vulnerability. There is a condition exists that the sys…
|
CWE-416
Use After Free
|
CVE-2020-9263
|
2024-11-21 14:40 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199668
|
8.0 |
HIGH
Adjacent
|
huawei
|
mate_20_firmware
|
HUAWEI Mate 20 versions earlier than 10.0.0.188(C00E74R3P8) have a buffer overflow vulnerability in the Bluetooth module. Due to insufficient input validation, an unauthenticated attacker may craft B…
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-9113
|
2024-11-21 14:40 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199669
|
7.8 |
HIGH
Local
|
huawei
|
taurus-an00b_firmware
|
Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a privilege elevation vulnerability. Due to lack of privilege restrictions on some of the business functions of the device. An attacker…
|
CWE-269
Improper Privilege Management
|
CVE-2020-9112
|
2024-11-21 14:40 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199670
|
4.5 |
MEDIUM
Adjacent
|
huawei
|
e6878-370_firmware e6878-870_firmware
|
E6878-370 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP21C233) and E6878-870 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP11C233) have a denial of service vulnerability. The system does not prope…
|
NVD-CWE-noinfo
|
CVE-2020-9111
|
2024-11-21 14:40 |
2020-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|