|
208421
|
7.5 |
HIGH
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. Client applications can write arbitrary dat…
|
NVD-CWE-noinfo
|
CVE-2020-25250
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208422
|
5.3 |
MEDIUM
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. The server typically logs activity only whe…
|
NVD-CWE-noinfo
|
CVE-2020-25249
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208423
|
7.5 |
HIGH
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase through 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. Directory traversal exists for read…
|
CWE-22
Path Traversal
|
CVE-2020-25248
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208424
|
7.5 |
HIGH
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase through 18.0.0.32 and 19.x through 19.8.9.1000. Directory traversal exists for writing to files, as demonstrated by the FileName parameter.
|
CWE-22
Path Traversal
|
CVE-2020-25247
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208425
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not considered during a backport of a CVE-2020-14356 patch. …
|
CWE-416
Use After Free
|
CVE-2020-25220
|
2024-11-21 14:17 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208426
|
7.5 |
HIGH
Network
|
libproxy_project debian fedoraproject opensuse canonical
|
libproxy debian_linux fedora leap ubuntu_linux
|
url::recvline in url.cpp in libproxy 0.4.x through 0.4.15 allows a remote HTTP server to trigger uncontrolled recursion via a response composed of an infinite stream that lacks a newline character. T…
|
CWE-674
Uncontrolled Recursion
|
CVE-2020-25219
|
2024-11-21 14:17 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208427
|
7.3 |
HIGH
Network
|
primekey
|
ejbca
|
An issue was discovered in PrimeKey EJBCA 6.x and 7.x before 7.4.1. When using a client certificate to enroll over the EST protocol, no revocation check is performed on that certificate. This vulnera…
|
CWE-295
Improper Certificate Validation
|
CVE-2020-25276
|
2024-11-21 14:17 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208428
|
7.8 |
HIGH
Local
|
linux netapp
|
linux_kernel cloud_backup solidfire_\&_hci_management_node hci_compute_node solidfire_baseboard_management_controller solidfire\ _enterprise_sds_\&_hci_storage_node
|
get_gate_page in mm/gup.c in the Linux kernel 5.7.x and 5.8.x before 5.8.7 allows privilege escalation because of incorrect reference counting (caused by gate page mishandling) of the struct page tha…
|
CWE-672
Operation on a Resource after Expiration or Release
|
CVE-2020-25221
|
2024-11-21 14:17 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208429
|
9.8 |
CRITICAL
Network
|
webdesi9
|
file_manager
|
The File Manager (wp-file-manager) plugin before 6.9 for WordPress allows remote attackers to upload and execute arbitrary PHP code because it renames an unsafe example elFinder connector file to hav…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-25213
|
2024-11-21 14:17 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208430
|
7.0 |
HIGH
Local
|
linux debian opensuse canonical
|
linux_kernel debian_linux leap ubuntu_linux
|
A TOCTOU mismatch in the NFS client code in the Linux kernel before 5.8.3 could be used by local attackers to corrupt memory or possibly have unspecified other impact because a size check is in fs/nf…
|
CWE-787 CWE-367
Out-of-bounds Write Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2020-25212
|
2024-11-21 14:17 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|