9052 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2020-6198
SAP Solution Manager (Diagnostics Agent) General
9.8
CRITICAL
EPSS
0.4%
2020 1 PoC

SAP Solution Manager (Diagnostics Agent), version 720, allows unencrypted connections from unauthenticated sources. This allows an attacker to control all remote functions on the Agent due to Missing Authentication Check.

CVE-2020-28597
Epignosis General
9.8
CRITICAL
EPSS
0.4%
2020 CWE-337 1 PoC

A predictable seed vulnerability exists in the password reset functionality of Epignosis EfrontPro 5.2.21. By predicting the seed it is possible to generate the correct password reset 1-time token. An attacker can visit the password reset supplying the password reset token to reset the password of an account of their choice.

CVE-2020-6069
Accusoft General
9.8
CRITICAL
EPSS
2.2%
2020 2 PoCs

An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll JPEG jpegread precision parser of the Accusoft ImageGear 19.5.0 library. A specially crafted JPEG file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

CVE-2020-10987
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
93.7%
2020 1 PoC

The goform/setUsbUnload endpoint of Tenda AC15 AC1900 version 15.03.05.19 allows remote attackers to execute arbitrary system commands via the deviceName POST parameter.

CVE-2020-6066
Accusoft General
9.8
CRITICAL
EPSS
2.2%
2020 2 PoCs

An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll JPEG SOFx parser of the Accusoft ImageGear 19.5.0 library. A specially crafted JPEG file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

CVE-2020-7703
nis-utils General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package nis-utils are vulnerable to Prototype Pollution via the setValue function.

CVE-2020-6242
SAP Business Objects Business Intelligence Platform (Live Data Connect) General
9.8
CRITICAL
EPSS
0.2%
2020 1 PoC

SAP Business Objects Business Intelligence Platform (Live Data Connect), versions 1.0, 2.0, 2.1, 2.2, 2.3, allows an attacker to logon on the Central Management Console without password in case of the BIPRWS application server was not protected with some specific certificate, leading to Missing Authentication Check.

CVE-2020-7724
tiny-conf General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package tiny-conf are vulnerable to Prototype Pollution via the set function.

CVE-2020-3931
Door Access Control Device General
9.8
CRITICAL
EPSS
1.7%
2020 CWE-120 1 PoC

Buffer overflow exists in Geovision Door Access Control device family, an unauthenticated remote attacker can execute arbitrary command.

CVE-2020-3992
🔥 KEV VMware ESXi General
9.8
CRITICAL
EPSS
90.9%
2020 1 PoC

OpenSLP as used in VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202010401-SG, 6.5 before ESXi650-202010401-SG) has a use-after-free issue. A malicious actor residing in the management network who has access to port 427 on an ESXi machine may be able to trigger a use-after-free in the OpenSLP service resulting in remote code execution.

CVE-2020-7722
nodee-utils General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package nodee-utils are vulnerable to Prototype Pollution via the deepSet function.

CVE-2020-7726
safe-object2 General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package safe-object2 are vulnerable to Prototype Pollution via the setter function.

CVE-2020-7794
buns General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package buns. The injection point is located in line 678 in index file lib/index.js in the exported function install(requestedModule).

CVE-2020-15415
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
93.0%
2020 0 PoCs

On DrayTek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1, cgi-bin/mainfunction.cgi/cvmcfgupload allows remote command execution via shell metacharacters in a filename when the text/x-python-script content type is used, a different issue than CVE-2020-14472.

CVE-2020-7786
macfromip General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package macfromip. The injection point is located in line 66 in macfromip.js.

CVE-2020-13572
Accusoft General
9.8
CRITICAL
EPSS
1.2%
2020 CWE-122 1 PoC

A heap overflow vulnerability exists in the way the GIF parser decodes LZW compressed streams in Accusoft ImageGear 19.8. A specially crafted malformed file can trigger a heap overflow, which can result in arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2020-23583
Software Genérico General
9.8
CRITICAL
EPSS
7.8%
2020 2 PoCs

OPTILINK OP-XT71000N V2.2 is vulnerable to Remote Code Execution. The issue occurs when the attacker sends an arbitrary code on "/diag_ping_admin.asp" to "PingTest" interface that leads to COMMAND EXECUTION. An attacker can successfully trigger the COMMAND and can compromise full system.

CVE-2020-28439
corenlp-js-prefab General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package corenlp-js-prefab. The injection point is located in line 10 in 'index.js.' It depends on a vulnerable package 'corenlp-js-interface.' Vulnerability can be exploited with the following PoC:

CVE-2020-7702
Templ8 General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package templ8 are vulnerable to Prototype Pollution via the parse function.