7695 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2020-25211
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2020 2 PoCs

In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local buffer, causing crashes or triggering use of incorrect protocol numbers in ctnetlink_parse_tuple_filter in net/netfilter/nf_conntrack_netlink.c, aka CID-1cc5ef91d2ff.

CVE-2020-17368
Software Genérico General
N/A
UNKNOWN
EPSS
4.5%
2020 1 PoC

Firejail through 0.9.62 mishandles shell metacharacters during use of the --output or --output-stderr option, which may lead to command injection.

CVE-2020-12669
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

core/get_menudiv.php in Dolibarr before 11.0.4 allows remote authenticated attackers to bypass intended access restrictions via a non-alphanumeric menu parameter.

CVE-2020-36386
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2020 2 PoCs

An issue was discovered in the Linux kernel before 5.8.1. net/bluetooth/hci_event.c has a slab out-of-bounds read in hci_extended_inquiry_result_evt, aka CID-51c19bf3d5cf.

CVE-2020-11653
Software Genérico General
N/A
UNKNOWN
EPSS
1.3%
2020 1 PoC

An issue was discovered in Varnish Cache before 6.0.6 LTS, 6.1.x and 6.2.x before 6.2.3, and 6.3.x before 6.3.2. It occurs when communication with a TLS termination proxy uses PROXY version 2. There can be an assertion failure and daemon restart, which causes a performance loss.

CVE-2020-14955
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2020 1 PoC

In Jiangmin Antivirus 16.0.13.129, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220440.

CVE-2020-11485
NVIDIA DGX Servers Web
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30, contains a Cross-Site Request Forgery (CSRF) vulnerability in the AMI BMC firmware in which the web application does not sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request, which can lead to information disclosure or code execution.

CVE-2020-8466
Trend Micro InterScan Web Security Virtual Appliance General
N/A
UNKNOWN
EPSS
27.3%
2020 1 PoC

A command injection vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2, with the improved password hashing method enabled, could allow an unauthenticated attacker to execute certain commands by providing a manipulated password.

CVE-2020-27180
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2020 2 PoCs

konzept-ix publiXone before 2020.015 allows attackers to download files by iterating over the IXCopy fileID parameter.

CVE-2020-15828
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2020 2 PoCs

In JetBrains TeamCity before 2020.1.1, project parameter values can be retrieved by a user without appropriate permissions.

CVE-2020-7690
jspdf Web
N/A
UNKNOWN
EPSS
0.2%
2020 CWE-79 1 PoC

All affected versions <2.0.0 of package jspdf are vulnerable to Cross-site Scripting (XSS). It is possible to inject JavaScript code via the html method.

CVE-2020-0798
Windows Windows
N/A
UNKNOWN
EPSS
0.5%
2020 1 PoC

An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading to an insecure library loading behavior.A locally authenticated attacker could run arbitrary code with elevated system privileges, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0779, CVE-2020-0814, CVE-2020-0842, CVE-2020-0843.

CVE-2020-8117
Nextcloud Server Cloud
N/A
UNKNOWN
EPSS
0.3%
2020 CWE-280 1 PoC

Improper preservation of permissions in Nextcloud Server 14.0.3 causes the event details to be leaked when sharing a non-public event.

CVE-2020-7491
Tricon system versions 10.2.0 through 10.5.3 Web
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

**VERSION NOT SUPPORTED WHEN ASSIGNED** A legacy debug port account in TCMs installed in Tricon system versions 10.2.0 through 10.5.3 is visible on the network and could allow inappropriate access. This vulnerability was remediated in TCM version 10.5.4.

CVE-2020-26876
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
37.4%
2020 0 PoCs

The wp-courses plugin through 2.0.27 for WordPress allows remote attackers to bypass the intended payment step (for course videos and materials) by using the /wp-json REST API, as exploited in the wild in September 2020. This occurs because show_in_rest is enabled for custom post types (e.g., /wp-json/wp/v2/course and /wp-json/wp/v2/lesson exist).

CVE-2020-4001
VMware SD-WAN Orchestrator General
N/A
UNKNOWN
EPSS
9.9%
2020 1 PoC

The SD-WAN Orchestrator 3.3.2, 3.4.x, and 4.0.x has default passwords allowing for a Pass-the-Hash Attack. SD-WAN Orchestrator ships with default passwords for predefined accounts which may lead to to a Pass-the-Hash attack.

CVE-2020-25071
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2020 1 PoC

Nifty Project Management Web Application 2020-08-26 allows XSS, via Add Task, that is rendered upon a Project Home visit. Note: It has been argued that this is not reproducible. "The original issue was that the task would be created and an alert would be shown on the screen. Now the task would be created, but the alert won't be executed as those attributes are now stripped.

CVE-2020-29472
Software Genérico Database
N/A
UNKNOWN
EPSS
2.6%
2020 2 PoCs

EGavilan Media Under Construction page with cPanel 1.0 contains a SQL injection vulnerability. An attacker can gain Admin Panel access using malicious SQL injection queries to perform remote arbitrary code execution.

CVE-2020-22042
Software Genérico Web
N/A
UNKNOWN
EPSS
0.8%
2020 1 PoC

A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak is affected by: memory leak in the link_filter_inouts function in libavfilter/graphparser.c.

CVE-2020-36226
Software Genérico Windows
N/A
UNKNOWN
EPSS
0.6%
2020 4 PoCs

A flaw was discovered in OpenLDAP before 2.4.57 leading to a memch->bv_len miscalculation and slapd crash in the saslAuthzTo processing, resulting in denial of service.