7695 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2020-27171
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2020 3 PoCs

An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c has an off-by-one error (with a resultant integer underflow) affecting out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory, aka CID-10d2bb2e6b1d.

CVE-2020-26971
Firefox General
N/A
UNKNOWN
EPSS
1.1%
2020 1 PoC

Certain blit values provided by the user were not properly constrained leading to a heap buffer overflow on some video drivers. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.

CVE-2020-25201
Software Genérico General
N/A
UNKNOWN
EPSS
1.5%
2020 1 PoC

HashiCorp Consul Enterprise version 1.7.0 up to 1.8.4 includes a namespace replication bug which can be triggered to cause denial of service via infinite Raft writes. Fixed in 1.7.9 and 1.8.5.

CVE-2020-36230
Software Genérico Windows
N/A
UNKNOWN
EPSS
3.5%
2020 3 PoCs

A flaw was discovered in OpenLDAP before 2.4.57 leading in an assertion failure in slapd in the X.509 DN parsing in decode.c ber_next_element, resulting in denial of service.

CVE-2020-9287
Fortinet FortiClient EMS Networking
N/A
UNKNOWN
EPSS
0.0%
2020 1 PoC

An Unsafe Search Path vulnerability in FortiClient EMS online installer 6.2.1 and below may allow a local attacker with control over the directory in which FortiClientEMSOnlineInstaller.exe resides to execute arbitrary code on the system via uploading malicious Filter Library DLL files in that directory.

CVE-2020-8135
uppy General
N/A
UNKNOWN
EPSS
0.5%
2020 CWE-918 2 PoCs

The uppy npm package < 1.9.3 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attacker to scan local or external network or otherwise interact with internal systems.

CVE-2020-7628
install-package General
N/A
UNKNOWN
EPSS
1.3%
2020 1 PoC

umount through 1.1.6 is vulnerable to Command Injection. The argument device can be controlled by users without any sanitization.

CVE-2020-17505
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
89.6%
2020 2 PoCs

Artica Web Proxy 4.30.000000 allows an authenticated remote attacker to inject commands via the service-cmds parameter in cyrus.php. These commands are executed with root privileges via service_cmds_peform.

CVE-2020-16116
Software Genérico General
N/A
UNKNOWN
EPSS
0.9%
2020 2 PoCs

In kerfuffle/jobs.cpp in KDE Ark before 20.08.0, a crafted archive can install files outside the extraction directory via ../ directory traversal.

CVE-2020-26950
Firefox General
N/A
UNKNOWN
EPSS
48.3%
2020 2 PoCs

In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. This vulnerability affects Firefox < 82.0.3, Firefox ESR < 78.4.1, and Thunderbird < 78.4.2.

CVE-2020-9027
Software Genérico General
N/A
UNKNOWN
EPSS
3.2%
2020 1 PoC

ELTEX NTP-RG-1402G 1v10 3.25.3.32 devices allow OS command injection via the TRACE field of the resource ping.cmd. The NTP-2 device is also affected.

CVE-2020-8838
Software Genérico Windows
N/A
UNKNOWN
EPSS
0.3%
2020 3 PoCs

An issue was discovered in Zoho ManageEngine AssetExplorer 6.5. During an upgrade of the Windows agent, it does not validate the source and binary downloaded. This allows an attacker on an adjacent network to execute code with NT AUTHORITY/SYSTEM privileges on the agent machines by providing an arbitrary executable via a man-in-the-middle attack.

CVE-2020-28722
Software Genérico Web Cloud
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

Deskpro Cloud Platform and on-premise 2020.2.3.48207 from 2020-07-30 contains a cross-site scripting (XSS) vulnerability that can lead to an account takeover via custom email templates.

CVE-2020-27820
kernel General
N/A
UNKNOWN
EPSS
0.0%
2020 CWE-416 1 PoC

A vulnerability was found in Linux kernel, where a use-after-frees in nouveau's postclose() handler could happen if removing device (that is not common to remove video card physically without power-off, but same happens if "unbind" the driver).

CVE-2020-7105
Software Genérico Database
N/A
UNKNOWN
EPSS
0.6%
2020 1 PoC

async.c and dict.c in libhiredis.a in hiredis through 0.14.0 allow a NULL pointer dereference because malloc return values are unchecked.

CVE-2020-35729
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
89.8%
2020 4 PoCs

KLog Server 2.4.1 allows OS command injection via shell metacharacters in the actions/authenticate.php user parameter.

CVE-2020-28384
Solid Edge SE2020 General
N/A
UNKNOWN
EPSS
1.3%
2020 CWE-121 1 PoC

A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP12), Solid Edge SE2021 (All Versions < SE2021MP2). Affected applications lack proper validation of user-supplied data when parsing PAR files. This could lead to a stack based buffer overflow. An attacker could leverage this vulnerability to execute code in the context of the current process.

CVE-2020-25860
Pengutronix RAUC General
N/A
UNKNOWN
EPSS
0.5%
2020 CWE-367 1 PoC

The install.c module in the Pengutronix RAUC update client prior to version 1.5 has a Time-of-Check Time-of-Use vulnerability, where signature verification on an update file takes place before the file is reopened for installation. An attacker who can modify the update file just before it is reopened can install arbitrary code on the device.

CVE-2020-25204
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2020 1 PoC

The God Kings application 0.60.1 for Android exposes a broadcast receiver to other apps called com.innogames.core.frontend.notifications.receivers.LocalNotificationBroadcastReceiver. The purpose of this broadcast receiver is to show an in-game push notification to the player. However, the application does not enforce any authorization schema on the broadcast receiver, allowing any application to send fully customizable in-game push notifications.

CVE-2020-29364
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 2 PoCs

In NetArt News Lister 1.0.0, the news headlines vulnerable to stored xss attacks. Attackers can inject codes in news titles.