7695 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2020-6016
Game Networking Sockets General
N/A
UNKNOWN
EPSS
6.6%
2020 CWE-590 2 PoCs

Valve's Game Networking Sockets prior to version v1.2.0 improperly handles unreliable segments with negative offsets in function SNP_ReceiveUnreliableSegment(), leading to a Heap-Based Buffer Underflow and a free() of memory not from the heap, resulting in a memory corruption and probably even a remote code execution.

CVE-2020-29288
Software Genérico Web Database
N/A
UNKNOWN
EPSS
1.5%
2020 2 PoCs

An SQL injection vulnerability was discovered in Gym Management System In manage_user.php file, GET parameter 'id' is vulnerable.

CVE-2020-24654
Software Genérico General
N/A
UNKNOWN
EPSS
0.8%
2020 2 PoCs

In KDE Ark before 20.08.1, a crafted TAR archive with symlinks can install files outside the extraction directory, as demonstrated by a write operation to a user's home directory.

CVE-2020-35231
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2020 1 PoC

The NSDP protocol implementation on NETGEAR JGS516PE/GS116Ev2 v2.6.0.43 devices was affected by an authentication issue that allows an attacker to bypass access controls and obtain full control of the device.

CVE-2020-27896
macOS General
N/A
UNKNOWN
EPSS
1.0%
2020 1 PoC

A path handling issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.0.1. A remote attacker may be able to modify the file system.

CVE-2020-35852
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

Chatbox is affected by cross-site scripting (XSS). An attacker has to upload any XSS payload with SVG, XML file in Chatbox. There is no restriction on file upload in Chatbox which leads to stored XSS.

CVE-2020-12860
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

COVIDSafe through v1.0.17 allows a remote attacker to access phone name and model information because a BLE device can have four roles and COVIDSafe uses all of them. This allows for re-identification of a device, and potentially identification of the owner's name.

CVE-2020-27151
Software Genérico DevOps
N/A
UNKNOWN
EPSS
0.6%
2020 1 PoC

An issue was discovered in Kata Containers through 1.11.3 and 2.x through 2.0-rc1. The runtime will execute binaries given using annotations without any kind of validation. Someone who is granted access rights to a cluster will be able to have kata-runtime execute arbitrary binaries as root on the worker nodes.

CVE-2020-11883
Software Genérico Web
N/A
UNKNOWN
EPSS
2.7%
2020 1 PoC

In Divante vue-storefront-api through 1.11.1 and storefront-api through 1.0-rc.1, as used in VueStorefront PWA, unexpected HTTP requests lead to an exception that discloses the error stack trace, with absolute file paths and Node.js module names.

CVE-2020-7653
snyk-broker General
N/A
UNKNOWN
EPSS
0.4%
2020 1 PoC

All versions of snyk-broker before 4.80.0 are vulnerable to Arbitrary File Read. It allows arbitrary file reads for users with access to Snyk's internal network by creating symlinks to match whitelisted paths.

CVE-2020-36503
Connections Business Directory Web Windows
N/A
UNKNOWN
EPSS
1.3%
2020 CWE-1236 1 PoC

The Connections Business Directory WordPress plugin before 9.7 does not validate or sanitise some connections' fields, which could lead to a CSV injection issue

CVE-2020-9951
Safari General
N/A
UNKNOWN
EPSS
2.0%
2020 2 PoCs

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.0. Processing maliciously crafted web content may lead to arbitrary code execution.

CVE-2020-27555
Software Genérico General
N/A
UNKNOWN
EPSS
2.7%
2020 1 PoC

Use of default credentials for the telnet server in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to execute arbitrary system commands as the root user.

CVE-2020-13974
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2020 2 PoCs

An issue was discovered in the Linux kernel 4.4 through 5.7.1. drivers/tty/vt/keyboard.c has an integer overflow if k_ascii is called several times in a row, aka CID-b86dab054059. NOTE: Members in the community argue that the integer overflow does not lead to a security issue in this case.

CVE-2020-10714
wildfly-elytron General
N/A
UNKNOWN
EPSS
0.4%
2020 CWE-384 1 PoC

A flaw was found in WildFly Elytron version 1.11.3.Final and before. When using WildFly Elytron FORM authentication with a session ID in the URL, an attacker could perform a session fixation attack. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVE-2020-26565
Software Genérico General
N/A
UNKNOWN
EPSS
0.4%
2020 1 PoC

ObjectPlanet Opinio before 7.14 allows Expression Language Injection via the admin/permissionList.do from parameter. This can be used to retrieve possibly sensitive serverInfo data.

CVE-2020-26948
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
91.7%
2020 1 PoC

Emby Server before 4.5.0 allows SSRF via the Items/RemoteSearch/Image ImageURL parameter.

CVE-2020-28013
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

Exim 4 before 4.94.2 allows Heap-based Buffer Overflow because it mishandles "-F '.('" on the command line, and thus may allow privilege escalation from any user to root. This occurs because of the interpretation of negative sizes in strncpy.

CVE-2020-9549
Software Genérico General
N/A
UNKNOWN
EPSS
1.2%
2020 1 PoC

In PDFResurrect 0.12 through 0.19, get_type in pdf.c has an out-of-bounds write via a crafted PDF document.