|
208081
|
9.8 |
CRITICAL
Network
|
keyget_project
|
keyget
|
Prototype pollution vulnerability in 'keyget' versions 1.0.0 through 2.2.0 allows attacker to cause a denial of service and may lead to remote code execution.
|
NVD-CWE-noinfo
|
CVE-2020-28272
|
2024-11-21 14:22 |
2020-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208082
|
5.3 |
MEDIUM
Network
|
trendmicro
|
officescan apex_one
|
An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal version, …
|
NVD-CWE-noinfo
|
CVE-2020-28583
|
2024-11-21 14:22 |
2020-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208083
|
5.3 |
MEDIUM
Network
|
trendmicro
|
officescan apex_one
|
An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal number of…
|
NVD-CWE-noinfo
|
CVE-2020-28582
|
2024-11-21 14:22 |
2020-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208084
|
5.3 |
MEDIUM
Network
|
trendmicro
|
officescan apex_one
|
An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal server ho…
|
NVD-CWE-noinfo
|
CVE-2020-28577
|
2024-11-21 14:22 |
2020-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208085
|
5.3 |
MEDIUM
Network
|
trendmicro
|
officescan apex_one
|
An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal version a…
|
NVD-CWE-noinfo
|
CVE-2020-28576
|
2024-11-21 14:22 |
2020-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208086
|
6.7 |
MEDIUM
Local
|
trendmicro
|
serverprotect
|
A heap-based buffer overflow privilege escalation vulnerability in Trend Micro ServerProtect for Linux 3.0 may allow an attacker to escalate privileges on affected installations. An attacker must fir…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-28575
|
2024-11-21 14:22 |
2020-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208087
|
5.3 |
MEDIUM
Network
|
trendmicro
|
officescan apex_one
|
An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allow an unauthenticated user to connect to the product server and reveal the total…
|
NVD-CWE-noinfo
|
CVE-2020-28573
|
2024-11-21 14:22 |
2020-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208088
|
9.8 |
CRITICAL
Network
|
barco
|
wepresent_wipg-1600w_firmware
|
Barco wePresent WiPG-1600W firmware includes a hardcoded API account and password that is discoverable by inspecting the firmware image. A malicious actor could use this password to access authentica…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-28329
|
2024-11-21 14:22 |
2020-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208089
|
9.8 |
CRITICAL
Network
|
barco
|
wepresent_wipg-1600w_firmware
|
Barco wePresent WiPG-1600W devices use Hard-coded Credentials (issue 2 of 2). Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19. The Barco wePresent WiPG-1600W device has a hardcoded root pa…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2020-28334
|
2024-11-21 14:22 |
2020-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208090
|
9.8 |
CRITICAL
Network
|
barco
|
wepresent_wipg-1600w_firmware
|
Barco wePresent WiPG-1600W devices allow Authentication Bypass. Affected Version(s): 2.5.1.8. The Barco wePresent WiPG-1600W web interface does not use session cookies for tracking authenticated sess…
|
CWE-287 CWE-200
Improper Authentication Information Exposure
|
CVE-2020-28333
|
2024-11-21 14:22 |
2020-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|