CVE-2020-8624
- EPSS 1.95%
- Veröffentlicht 21.08.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:39:08
In BIND 9.9.12 -> 9.9.13, 9.10.7 -> 9.10.8, 9.11.3 -> 9.11.21, 9.12.1 -> 9.16.5, 9.17.0 -> 9.17.3, also affects 9.9.12-S1 -> 9.9.13-S1, 9.11.3-S1 -> 9.11.21-S1 of the BIND 9 Supported Preview Edition, An attacker who has been granted privileges to ch...
CVE-2020-14356
- EPSS 0.93%
- Veröffentlicht 19.08.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:03:05
A flaw null pointer dereference in the Linux kernel cgroupv2 subsystem in versions before 5.7.10 was found in the way when reboot the system. A local user could use this flaw to crash the system or escalate their privileges on the system.
CVE-2020-24368
- EPSS 2.23%
- Veröffentlicht 19.08.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:14:40
Icinga Icinga Web2 2.0.0 through 2.6.4, 2.7.4 and 2.8.2 has a Directory Traversal vulnerability which allows an attacker to access arbitrary files that are readable by the process running Icinga Web 2. This issue is fixed in Icinga Web 2 in v2.6.4, v...
CVE-2020-13933
- EPSS 69.49%
- Veröffentlicht 17.08.2020 21:15:11
- Zuletzt bearbeitet 21.11.2024 05:02:10
Apache Shiro before 1.6.0, when using Apache Shiro, a specially crafted HTTP request may cause an authentication bypass.
CVE-2020-1472
- EPSS 94.41%
- Veröffentlicht 17.08.2020 19:15:15
- Zuletzt bearbeitet 22.10.2025 00:17:02
An elevation of privilege vulnerability exists when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Protocol (MS-NRPC). An attacker who successfully exploited the vulnerability...
CVE-2020-24370
- EPSS 2.02%
- Veröffentlicht 17.08.2020 17:15:13
- Zuletzt bearbeitet 05.05.2025 14:12:47
ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).
CVE-2020-24361
- EPSS 0.57%
- Veröffentlicht 16.08.2020 04:15:13
- Zuletzt bearbeitet 21.11.2024 05:14:39
SNMPTT before 1.4.2 allows attackers to execute shell code via EXEC, PREXEC, or unknown_trap_exec.
CVE-2020-16304
- EPSS 0.47%
- Veröffentlicht 13.08.2020 03:15:14
- Zuletzt bearbeitet 14.03.2025 18:27:22
A buffer overflow vulnerability in image_render_color_thresh() in base/gxicolor.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to escalate privileges via a crafted eps file. This is fixed in v9.51.
CVE-2020-16305
- EPSS 0.59%
- Veröffentlicht 13.08.2020 03:15:14
- Zuletzt bearbeitet 21.11.2024 05:07:08
A buffer overflow vulnerability in pcx_write_rle() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
CVE-2020-16306
- EPSS 0.83%
- Veröffentlicht 13.08.2020 03:15:14
- Zuletzt bearbeitet 21.11.2024 05:07:09
A null pointer dereference vulnerability in devices/gdevtsep.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted postscript file. This is fixed in v9.51.