CVE-2020-14540
- EPSS 0.37%
- Veröffentlicht 15.07.2020 18:15:14
- Zuletzt bearbeitet 21.11.2024 05:03:29
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 5.7.30 and prior and 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access v...
CVE-2020-15358
- EPSS 0.04%
- Veröffentlicht 27.06.2020 12:15:11
- Zuletzt bearbeitet 21.11.2024 05:05:24
In SQLite before 3.32.3, select.c mishandles query-flattener optimization, leading to a multiSelectOrderBy heap overflow because of misuse of transitive properties for constant propagation.
CVE-2020-11080
- EPSS 0.68%
- Veröffentlicht 03.06.2020 23:15:11
- Zuletzt bearbeitet 21.11.2024 04:56:44
In nghttp2 before version 1.41.0, the overly large HTTP/2 SETTINGS frame payload causes denial of service. The proof of concept attack involves a malicious client constructing a SETTINGS frame with a length of 14,400 bytes (2400 individual settings e...
CVE-2020-1967
- EPSS 66.69%
- Veröffentlicht 21.04.2020 14:15:11
- Zuletzt bearbeitet 21.11.2024 05:11:45
Server or client applications that call the SSL_check_chain() function during or after a TLS 1.3 handshake may crash due to a NULL pointer dereference as a result of incorrect handling of the "signature_algorithms_cert" TLS extension. The crash occur...
CVE-2020-2928
- EPSS 0.51%
- Veröffentlicht 15.04.2020 14:15:36
- Zuletzt bearbeitet 21.11.2024 05:26:39
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pro...
CVE-2020-2930
- EPSS 0.08%
- Veröffentlicht 15.04.2020 14:15:36
- Zuletzt bearbeitet 21.11.2024 05:26:39
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 8.0.19 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple prot...
CVE-2020-2921
- EPSS 0.13%
- Veröffentlicht 15.04.2020 14:15:35
- Zuletzt bearbeitet 21.11.2024 05:26:37
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that are affected are 8.0.19 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access...
CVE-2020-2922
- EPSS 0.19%
- Veröffentlicht 15.04.2020 14:15:35
- Zuletzt bearbeitet 21.11.2024 05:26:38
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.18 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with ne...
CVE-2020-2923
- EPSS 0.37%
- Veröffentlicht 15.04.2020 14:15:35
- Zuletzt bearbeitet 21.11.2024 05:26:38
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pro...
CVE-2020-2924
- EPSS 0.37%
- Veröffentlicht 15.04.2020 14:15:35
- Zuletzt bearbeitet 21.11.2024 05:26:38
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pro...