|
209671
|
6.1 |
MEDIUM
Network
|
microstrategy
|
microstrategy_web_sdk
|
Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via the key parameter to the getESRIExtraConfig …
|
CWE-79
Cross-site Scripting
|
CVE-2020-22985
|
2024-11-21 14:13 |
2022-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209672
|
6.1 |
MEDIUM
Network
|
microstrategy
|
microstrategy_web_sdk
|
Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via key parameter to the getGoogleExtraConfig ta…
|
CWE-79
Cross-site Scripting
|
CVE-2020-22984
|
2024-11-21 14:13 |
2022-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209673
|
9.8 |
CRITICAL
Network
|
squire-technologies
|
svi_ms_management_system
|
The Java Remote Management Interface of all versions of SVI MS Management System was discovered to contain a vulnerability due to insecure deserialization of user-supplied content, which can allow at…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2020-23621
|
2024-11-21 14:13 |
2022-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209674
|
9.8 |
CRITICAL
Network
|
orlansoft
|
orlansoft_erp
|
The Java Remote Management Interface of all versions of Orlansoft ERP was discovered to contain a vulnerability due to insecure deserialization of user-supplied content, which can allow attackers to …
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2020-23620
|
2024-11-21 14:13 |
2022-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209675
|
6.1 |
MEDIUM
Network
|
xtendtech
|
voice_logger
|
A reflected cross site scripting (XSS) vulnerability in Xtend Voice Logger 1.0 allows attackers to execute arbitrary web scripts or HTML, via the path of the error page.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23618
|
2024-11-21 14:13 |
2022-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209676
|
6.1 |
MEDIUM
Network
|
totolink
|
n200re_firmware n100re_firmware
|
A cross site scripting (XSS) vulnerability in the error page of Totolink N200RE and N100RE Routers 2.0 allows attackers to execute arbitrary web scripts or HTML via SCRIPT element.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23617
|
2024-11-21 14:13 |
2022-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209677
|
9.8 |
CRITICAL
Network
|
xiongmaitech
|
ahb7008t-mh-v2_firmware ahb7804r-els_firmware ahb7804r-mh-v2_firmware ahb7808r-ms-v2_firmware ahb7808r-ms_firmware ahb7808t-ms-v2_firmware ahb7804r-lms_firmware hi3518e_50h10l_s3…
|
Xiongmai Technology Co devices AHB7008T-MH-V2, AHB7804R-ELS, AHB7804R-MH-V2, AHB7808R-MS-V2, AHB7808R-MS, AHB7808T-MS-V2, AHB7804R-LMS, and HI3518E_50H10L_S39 were all discovered to have port 9530 op…
|
NVD-CWE-noinfo
|
CVE-2020-22253
|
2024-11-21 14:13 |
2022-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209678
|
7.5 |
HIGH
Network
|
weibo
|
android_software_development_kit
|
An intent redirection issue was doscovered in Sina Weibo Android SDK 4.2.7 (com.sina.weibo.sdk.share.WbShareTransActivity), any unexported Activities could be started by the com.sina.weibo.sdk.share.…
|
NVD-CWE-Other
|
CVE-2020-23349
|
2024-11-21 14:13 |
2022-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209679
|
7.5 |
HIGH
Network
|
mikrotik
|
routeros
|
A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted FTP requests.
|
CWE-120
Classic Buffer Overflow
|
CVE-2020-22845
|
2024-11-21 14:13 |
2022-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209680
|
7.5 |
HIGH
Network
|
mikrotik
|
routeros
|
A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted SMB requests.
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2020-22844
|
2024-11-21 14:13 |
2022-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|