|
209751
|
7.5 |
HIGH
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. It allows remote attackers to cause a denia…
|
NVD-CWE-noinfo
|
CVE-2020-25255
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209752
|
9.8 |
CRITICAL
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. It allows SQL injection, as demonstrated by…
|
CWE-89
SQL Injection
|
CVE-2020-25254
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209753
|
9.8 |
CRITICAL
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. It allows SQL injection, as demonstrated by…
|
CWE-89
SQL Injection
|
CVE-2020-25253
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209754
|
8.8 |
HIGH
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase through 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. CSRF can be used to log in a user, …
|
CWE-352
Origin Validation Error
|
CVE-2020-25252
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209755
|
9.1 |
CRITICAL
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. Client-side authentication is used for crit…
|
CWE-287
Improper Authentication
|
CVE-2020-25251
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209756
|
7.5 |
HIGH
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. Client applications can write arbitrary dat…
|
NVD-CWE-noinfo
|
CVE-2020-25250
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209757
|
5.3 |
MEDIUM
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. The server typically logs activity only whe…
|
NVD-CWE-noinfo
|
CVE-2020-25249
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209758
|
7.5 |
HIGH
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase through 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. Directory traversal exists for read…
|
CWE-22
Path Traversal
|
CVE-2020-25248
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209759
|
7.5 |
HIGH
Network
|
hyland
|
onbase
|
An issue was discovered in Hyland OnBase through 18.0.0.32 and 19.x through 19.8.9.1000. Directory traversal exists for writing to files, as demonstrated by the FileName parameter.
|
CWE-22
Path Traversal
|
CVE-2020-25247
|
2024-11-21 14:17 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209760
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not considered during a backport of a CVE-2020-14356 patch. …
|
CWE-416
Use After Free
|
CVE-2020-25220
|
2024-11-21 14:17 |
2020-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|