|
210451
|
9.1 |
CRITICAL
Network
|
capgemini
|
picotcp
|
In PicoTCP 1.7.0, TCP ISNs are improperly random.
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2020-27635
|
2024-11-21 14:21 |
2023-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210452
|
9.1 |
CRITICAL
Network
|
contiki-ng
|
contiki-ng
|
In Contiki 4.5, TCP ISNs are improperly random.
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2020-27634
|
2024-11-21 14:21 |
2023-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210453
|
9.1 |
CRITICAL
Network
|
butok
|
fnet
|
In FNET 4.6.3, TCP ISNs are improperly random.
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2020-27633
|
2024-11-21 14:21 |
2023-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210454
|
9.8 |
CRITICAL
Network
|
oryx-embedded
|
cyclonetcp
|
In Oryx CycloneTCP 1.9.6, TCP ISNs are improperly random.
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2020-27631
|
2024-11-21 14:21 |
2023-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210455
|
6.1 |
MEDIUM
Network
|
humaxdigital
|
hgb10r-02_firmware
|
Cross Site Scripting (XSS) vulnerability in wlscanresults.html in Humax HGB10R-02 BRGCAB version 1.0.03, allows local attackers to execute arbitrary code.
|
CWE-79
Cross-site Scripting
|
CVE-2020-27366
|
2024-11-21 14:21 |
2023-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210456
|
4.4 |
MEDIUM
Local
|
fedoraproject
|
fedora_linux_kernel
|
A Use After Free vulnerability in Fedora Linux kernel 5.9.0-rc9 allows attackers to obatin sensitive information via vgacon_invert_region() function.
|
CWE-416
Use After Free
|
CVE-2020-27418
|
2024-11-21 14:21 |
2023-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210457
|
9.8 |
CRITICAL
Network
|
foldingathome
|
client_advanced_control
|
An issue was discovered in FoldingAtHome Client Advanced Control GUI before commit 9b619ae64443997948a36dda01b420578de1af77, allows remote attackers to execute arbitrary code via crafted payload to f…
|
NVD-CWE-noinfo
|
CVE-2020-27544
|
2024-11-21 14:21 |
2023-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210458
|
9.1 |
CRITICAL
Network
|
zrlog
|
zrlog
|
Directory Traversal vulnerability in delete function in admin.api.TemplateController in ZrLog version 2.1.15, allows remote attackers to delete arbitrary files and cause a denial of service (DoS).
|
CWE-22
Path Traversal
|
CVE-2020-27514
|
2024-11-21 14:21 |
2023-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210459
|
6.1 |
MEDIUM
Network
|
zohocorp
|
manageengine_password_manager_pro
|
Cross Site Scripting (XSS) vulnerability in Query Report feature in Zoho ManageEngine Password Manager Pro version 11001, allows remote attackers to execute arbitrary code and steal cookies via craft…
|
CWE-79
Cross-site Scripting
|
CVE-2020-27449
|
2024-11-21 14:21 |
2023-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210460
|
6.5 |
MEDIUM
Network
|
libdwarf_project
|
libdwarf
|
libdwarf before 20201017 has a one-byte out-of-bounds read because of an invalid pointer dereference via an invalid line table in a crafted object.
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2020-27545
|
2024-11-21 14:21 |
2023-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|