3695 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2020-15858
Software Genérico General
6.2
MEDIUM
EPSS
0.3%
2020 2 PoCs

Some devices of Thales DIS (formerly Gemalto, formerly Cinterion) allow Directory Traversal by physically proximate attackers. The directory path access check of the internal flash file system can be circumvented. This flash file system can store application-specific data and data needed for customer Java applications, TLS and OTAP (Java over-the-air-provisioning) functionality. The affected products and releases are: BGS5 up to and including SW RN 02.000 / ARN 01.001.06 EHSx and PDSx up to and including SW RN 04.003 / ARN 01.000.04 ELS61 up to and including SW RN 02.002 / ARN 01.000.04 ELS81

CVE-2020-11254
Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile General
6.2
MEDIUM
EPSS
0.1%
2020 1 PoC

Memory corruption during buffer allocation due to dereferencing session ctx pointer without checking if pointer is valid in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

CVE-2020-13529
Systemd General
6.1
MEDIUM
EPSS
0.1%
2020 CWE-290 2 PoCs

An exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCERENEW packet can cause a server running the DHCP client to be vulnerable to a DHCP ACK spoofing attack. An attacker can forge a pair of FORCERENEW and DCHP ACK packets to reconfigure the server.

CVE-2020-36602
576up005 HOTA-CM-H-Shark-BD;577HOTA-CM-H-Shark-BD;581up-HOTA-CM-H-Shark-BD;586-HOTA-CM-H-Shark-BD;588-HOTA-CM-H-Shark-BD;606-HOTA-CM-H-Shark-BD;BI-ACC-REPORT;CM-H-Shark-BD General
6.1
MEDIUM
EPSS
0.1%
2020 1 PoC

There is an out-of-bounds read and write vulnerability in some headset products. An unauthenticated attacker gets the device physically and crafts malformed message with specific parameter and sends the message to the affected products. Due to insufficient validation of message, which may be exploited to cause out-of-bounds read and write.

CVE-2020-6215
SAP NetWeaver AS ABAP (Business Server Pages Test Application IT00) General
6.1
MEDIUM
EPSS
0.4%
2020 2 PoCs

SAP NetWeaver AS ABAP Business Server Pages Test Application IT00, versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, 754, allows an attacker to redirect users to a malicious site due to insufficient URL validation and steal credentials of the victim, leading to URL Redirection vulnerability.

CVE-2020-10751
kernel General
6.1
MEDIUM
EPSS
0.1%
2020 CWE-349 4 PoCs

A flaw was found in the Linux kernels SELinux LSM hook implementation before version 5.7, where it incorrectly assumed that an skb would only contain a single netlink message. The hook would incorrectly only validate the first netlink message in the skb and allow or deny the rest of the messages within the skb with the granted permission without further processing.

CVE-2020-11034
GLPI General ⚡ nuclei
6.1
MEDIUM
EPSS
58.7%
2020 CWE-601 0 PoCs

In GLPI before version 9.4.6, there is a vulnerability that allows bypassing the open redirect protection based which is based on a regexp. This is fixed in version 9.4.6.

CVE-2020-7261
McAfee Endpoint Security (ENS) General
6.1
MEDIUM
EPSS
0.1%
2020 CWE-119 1 PoC

Buffer Overflow via Environment Variables vulnerability in AMSI component in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allows local users to disable Endpoint Security via a carefully crafted user input.

CVE-2020-14446
Software Genérico General
6.1
MEDIUM
EPSS
0.1%
2020 2 PoCs

An issue was discovered in WSO2 Identity Server through 5.10.0 and WSO2 IS as Key Manager through 5.10.0. An open redirect exists.

CVE-2020-35793
Software Genérico General
6.1
MEDIUM
EPSS
0.1%
2020 1 PoC

Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.58, R7500v2 before 1.0.3.46, R7800 before 1.0.2.74, R8900 before 1.0.5.2, and R9000 before 1.0.5.2.

CVE-2020-7324
MVISION Endpoint General
6.1
MEDIUM
EPSS
0.0%
2020 CWE-269 1 PoC

Improper Access Control vulnerability in McAfee MVISION Endpoint prior to 20.9 Update allows local users to bypass security mechanisms and deny access to the SYSTEM folder via incorrectly applied permissions.

CVE-2020-6205
SAP NetWeaver Application Server ABAP (Smart Forms) - SAP_BASIS General
6.1
MEDIUM
EPSS
0.5%
2020 2 PoCs

SAP NetWeaver AS ABAP Business Server Pages (Smart Forms), SAP_BASIS versions- 7.00, 7.01, 7.02, 7.10, 7.11, 7.30, 7.31, 7.40, 7.50, 7.51, 7.52, 7.53, 7.54; does not sufficiently encode user controlled inputs, allowing an unauthenticated attacker to non-permanently deface or modify displayed content and/or steal authentication information of the user and/or impersonate the user and access all information with the same rights as the target user, leading to Reflected Cross Site Scripting Vulnerability.

CVE-2020-7709
json-pointer General
6.0
MEDIUM
EPSS
1.0%
2020 3 PoCs

This affects the package json-pointer before 0.6.1. Multiple reference of object using slash is supported.

CVE-2020-7751
pathval General
6.0
MEDIUM
EPSS
0.7%
2020 1 PoC

pathval before version 1.1.1 is vulnerable to prototype pollution.

CVE-2020-11294
Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables General
5.9
MEDIUM
EPSS
0.0%
2020 1 PoC

Out of bound write in logger due to prefix size is not validated while prepended to logging string in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

CVE-2020-10919
HMI EA9 General
5.9
MEDIUM
EPSS
1.0%
2020 CWE-261 1 PoC

This vulnerability allows remote attackers to disclose sensitive information on affected installations of C-MORE HMI EA9 Firmware version 6.52 touch screen panels. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of passwords. When transmitting passwords, the process encrypts them in a recoverable format. An attacker can leverage this vulnerability to disclose credentials, leading to further compromise. Was ZDI-CAN-10185.

CVE-2020-4766
MQ Internet Pass-Thru General
5.9
MEDIUM
EPSS
1.0%
2020 1 PoC

IBM MQ Internet Pass-Thru 2.1 and 9.2 could allow a remote user to cause a denial of service by sending malformed MQ data requests which would consume all available resources. IBM X-Force ID: 188093.

CVE-2020-26931
Software Genérico General
5.9
MEDIUM
EPSS
0.2%
2020 1 PoC

Certain NETGEAR devices are affected by disclosure of sensitive information. This affects WC7500 before 6.5.5.24, WC7600 before 6.5.5.24, WC7600v2 before 6.5.5.24, and WC9500 before 6.5.5.24.

CVE-2020-36547
Voluson S8 General
5.9
MEDIUM
EPSS
0.0%
2020 CWE-798 1 PoC

A vulnerability was found in GE Voluson S8. It has been rated as critical. This issue affects the Service Browser which itroduces hard-coded credentials. Attacking locally is a requirement. It is recommended to change the configuration settings.

CVE-2020-13559
FreyrSCADA General
5.9
MEDIUM
EPSS
0.2%
2020 CWE-1024 1 PoC

A denial-of-service vulnerability exists in the traffic-logging functionality of FreyrSCADA IEC-60879-5-104 Server Simulator 21.04.028. A specially crafted packet can lead to denial of service. An attacker can send a malicious packet to trigger this vulnerability.