|
200601
|
5.5 |
MEDIUM
Local
|
nextcloud
|
desktop
|
A memory corruption vulnerability exists in NextCloud Desktop Client v2.6.4 where missing ASLR and DEP protections in for windows allowed to corrupt memory.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-8230
|
2024-11-21 14:38 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200602
|
5.8 |
MEDIUM
Network
|
phpbb
|
phpbb
|
A vulnerability exists in phpBB <v3.2.10 and <v3.3.1 which allowed remote image dimensions check to be used to SSRF.
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2020-8226
|
2024-11-21 14:38 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200603
|
9.8 |
CRITICAL
Network
|
citrix
|
xenmobile_server
|
Improper access control in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server before 10.9 RP5 allows acc…
|
CWE-863
Incorrect Authorization
|
CVE-2020-8212
|
2024-11-21 14:38 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200604
|
9.8 |
CRITICAL
Network
|
citrix
|
xenmobile_server
|
Improper input validation in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server before 10.9 RP5 allows S…
|
CWE-89
SQL Injection
|
CVE-2020-8211
|
2024-11-21 14:38 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200605
|
7.5 |
HIGH
Network
|
citrix
|
xenmobile_server
|
Insufficient protection of secrets in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6, Citrix XenMobile Server 10.10 RP6 and Citrix XenMobile Server before 10.9 RP5…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2020-8210
|
2024-11-21 14:38 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200606
|
7.5 |
HIGH
Network
|
citrix
|
xenmobile_server
|
Improper access control in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server 10.10 before RP6 and Citrix XenMobile Server before 10.9 RP5 and…
|
CWE-22
Path Traversal
|
CVE-2020-8209
|
2024-11-21 14:38 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200607
|
6.1 |
MEDIUM
Network
|
citrix
|
xenmobile_server
|
Improper input validation in Citrix XenMobile Server 10.12 before RP1, Citrix XenMobile Server 10.11 before RP4, Citrix XenMobile Server 10.11 before RP6 and Citrix XenMobile Server before 10.9 RP5 a…
|
CWE-79
Cross-site Scripting
|
CVE-2020-8208
|
2024-11-21 14:38 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200608
|
5.5 |
MEDIUM
Local
|
nextcloud
|
desktop
|
A memory leak in the OCUtil.dll library used by Nextcloud Desktop Client 2.6.4 can lead to a DoS against the host system.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-8229
|
2024-11-21 14:38 |
2020-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200609
|
7.8 |
HIGH
Local
|
nextcloud
|
desktop
|
A code injection in Nextcloud Desktop Client 2.6.4 allowed to load arbitrary code when placing a malicious OpenSSL config into a fixed directory.
|
CWE-94
Code Injection
|
CVE-2020-8224
|
2024-11-21 14:38 |
2020-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200610
|
7.8 |
HIGH
Local
|
opensuse
|
leap backports_sle tumbleweed
|
A Incorrect Default Permissions vulnerability in the packaging of inn in openSUSE Leap 15.2, openSUSE Tumbleweed, openSUSE Leap 15.1 allows local attackers with control of the new user to escalate th…
|
-
|
CVE-2020-8026
|
2024-11-21 14:38 |
2020-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|