CVE-2020-14567
- EPSS 0.38%
- Veröffentlicht 15.07.2020 18:15:22
- Zuletzt bearbeitet 21.11.2024 05:03:33
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 5.7.29 and prior and 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network ...
CVE-2020-14559
- EPSS 0.44%
- Veröffentlicht 15.07.2020 18:15:21
- Zuletzt bearbeitet 21.11.2024 05:03:32
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 5.6.48 and prior, 5.7.30 and prior and 8.0.20 and prior. Easily exploitable vulnerability allows low privilege...
CVE-2020-14553
- EPSS 0.44%
- Veröffentlicht 15.07.2020 18:15:18
- Zuletzt bearbeitet 21.11.2024 05:03:31
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affected are 5.7.30 and prior and 8.0.20 and prior. Easily exploitable vulnerability allows low privileged attacker with networ...
CVE-2020-14547
- EPSS 0.47%
- Veröffentlicht 15.07.2020 18:15:17
- Zuletzt bearbeitet 21.11.2024 05:03:30
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.7.30 and prior and 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network ac...
CVE-2020-14539
- EPSS 0.6%
- Veröffentlicht 15.07.2020 18:15:14
- Zuletzt bearbeitet 21.11.2024 05:03:29
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 5.6.48 and prior, 5.7.30 and prior and 8.0.20 and prior. Easily exploitable vulnerability allows low privileged attacke...
CVE-2020-14540
- EPSS 0.47%
- Veröffentlicht 15.07.2020 18:15:14
- Zuletzt bearbeitet 21.11.2024 05:03:29
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 5.7.30 and prior and 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access v...
CVE-2020-15523
- EPSS 0.7%
- Veröffentlicht 04.07.2020 23:15:10
- Zuletzt bearbeitet 21.11.2024 05:05:41
In Python 3.6 through 3.6.10, 3.7 through 3.7.8, 3.8 through 3.8.4rc1, and 3.9 through 3.9.0b4 on Windows, a Trojan horse python3.dll might be used in cases where CPython is embedded in a native application. This occurs because python3X.dll may use a...
CVE-2020-4051
- EPSS 0.16%
- Veröffentlicht 15.06.2020 22:15:09
- Zuletzt bearbeitet 21.11.2024 05:32:13
In Dijit before versions 1.11.11, and greater than or equal to 1.12.0 and less than 1.12.9, and greater than or equal to 1.13.0 and less than 1.13.8, and greater than or equal to 1.14.0 and less than 1.14.7, and greater than or equal to 1.15.0 and le...
CVE-2018-1285
- EPSS 49.81%
- Veröffentlicht 11.05.2020 17:15:10
- Zuletzt bearbeitet 21.11.2024 03:59:32
Apache log4net versions before 2.0.10 do not disable XML external entities when parsing log4net configuration files. This allows for XXE-based attacks in applications that accept attacker-controlled log4net configuration files.
CVE-2020-10683
- EPSS 1.96%
- Veröffentlicht 01.05.2020 19:15:12
- Zuletzt bearbeitet 21.11.2024 04:55:50
dom4j before 2.0.3 and 2.1.x before 2.1.3 allows external DTDs and External Entities by default, which might enable XXE attacks. However, there is popular external documentation from OWASP showing how to enable the safe, non-default behavior in any a...