|
209161
|
7.5 |
HIGH
Network
|
samba debian fedoraproject
|
samba debian_linux fedora
|
A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause invalid DN strings with spaces to instead write a zero-byte into out-of-bounds me…
|
-
|
CVE-2020-27840
|
2024-11-21 14:21 |
2021-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209162
|
7.8 |
HIGH
Local
|
windscribe
|
windscribe
|
All versions of Windscribe VPN for Mac and Windows <= v2.02.10 contain a local privilege escalation vulnerability in the WindscribeService component. A low privilege user could leverage several openv…
|
CWE-269
Improper Privilege Management
|
CVE-2020-27518
|
2024-11-21 14:21 |
2021-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209163
|
7.8 |
HIGH
Local
|
pritunl
|
pritunl-client-electron
|
Pritunl Client v1.2.2550.20 contains a local privilege escalation vulnerability in the pritunl-service component. The attack vector is: malicious openvpn config. A local attacker could leverage the l…
|
CWE-269
Improper Privilege Management
|
CVE-2020-27519
|
2024-11-21 14:21 |
2021-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209164
|
7.5 |
HIGH
Network
|
aviatrix
|
openvpn
|
Arbitrary File Write exists in Aviatrix VPN Client 2.8.2 and earlier. The VPN service writes logs to a location that is world writable and can be leveraged to gain write access to any file on the sys…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-27569
|
2024-11-21 14:21 |
2021-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209165
|
7.5 |
HIGH
Network
|
aviatrix
|
controller
|
Insecure File Permissions exist in Aviatrix Controller 5.3.1516. Several world writable files and directories were found in the controller resource. Note: All Aviatrix appliances are fully encrypted.…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-27568
|
2024-11-21 14:21 |
2021-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209166
|
7.4 |
HIGH
Network
|
siemens
|
simotics_connect_400_firmware nucleus_net nucleus_source_code nucleus_readystart_v3 nucleus_readystart_v4
|
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-27738
|
2024-11-21 14:21 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209167
|
6.5 |
MEDIUM
Network
|
siemens
|
simotics_connect_400_firmware nucleus_net nucleus_source_code nucleus_readystart_v3 nucleus_readystart_v4
|
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27737
|
2024-11-21 14:21 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209168
|
6.5 |
MEDIUM
Network
|
siemens
|
nucleus_net nucleus_source_code nucleus_readystart_v3 nucleus_readystart_v4 simotics_connect_400_firmware
|
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-27736
|
2024-11-21 14:21 |
2021-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209169
|
9.8 |
CRITICAL
Network
|
dlink
|
dir-846_firmware
|
HNAP1/control/SetMasterWLanSettings.php in D-Link D-Link Router DIR-846 DIR-846 A1_100.26 allows remote attackers to execute arbitrary commands via shell metacharacters in the ssid0 or ssid1 paramete…
|
CWE-78
OS Command
|
CVE-2020-27600
|
2024-11-21 14:21 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209170
|
6.5 |
MEDIUM
Network
|
apple
|
macos
|
An issue existed in screen sharing. This issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.0.1. A user with screen sharing access may be able to view another…
|
NVD-CWE-noinfo
|
CVE-2020-27893
|
2024-11-21 14:21 |
2021-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|