CVE-2020-24368
- EPSS 2.23%
- Veröffentlicht 19.08.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 05:14:40
Icinga Icinga Web2 2.0.0 through 2.6.4, 2.7.4 and 2.8.2 has a Directory Traversal vulnerability which allows an attacker to access arbitrary files that are readable by the process running Icinga Web 2. This issue is fixed in Icinga Web 2 in v2.6.4, v...
CVE-2020-13933
- EPSS 69.49%
- Veröffentlicht 17.08.2020 21:15:11
- Zuletzt bearbeitet 21.11.2024 05:02:10
Apache Shiro before 1.6.0, when using Apache Shiro, a specially crafted HTTP request may cause an authentication bypass.
CVE-2020-1472
- EPSS 94.38%
- Veröffentlicht 17.08.2020 19:15:15
- Zuletzt bearbeitet 29.10.2025 13:54:15
An elevation of privilege vulnerability exists when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Protocol (MS-NRPC). An attacker who successfully exploited the vulnerability...
CVE-2020-24370
- EPSS 1.86%
- Veröffentlicht 17.08.2020 17:15:13
- Zuletzt bearbeitet 05.05.2025 14:12:47
ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).
CVE-2020-24361
- EPSS 0.57%
- Veröffentlicht 16.08.2020 04:15:13
- Zuletzt bearbeitet 21.11.2024 05:14:39
SNMPTT before 1.4.2 allows attackers to execute shell code via EXEC, PREXEC, or unknown_trap_exec.
CVE-2020-16304
- EPSS 0.33%
- Veröffentlicht 13.08.2020 03:15:14
- Zuletzt bearbeitet 14.03.2025 18:27:22
A buffer overflow vulnerability in image_render_color_thresh() in base/gxicolor.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to escalate privileges via a crafted eps file. This is fixed in v9.51.
CVE-2020-16305
- EPSS 0.74%
- Veröffentlicht 13.08.2020 03:15:14
- Zuletzt bearbeitet 21.11.2024 05:07:08
A buffer overflow vulnerability in pcx_write_rle() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
CVE-2020-16306
- EPSS 1.77%
- Veröffentlicht 13.08.2020 03:15:14
- Zuletzt bearbeitet 21.11.2024 05:07:09
A null pointer dereference vulnerability in devices/gdevtsep.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted postscript file. This is fixed in v9.51.
CVE-2020-16307
- EPSS 1.77%
- Veröffentlicht 13.08.2020 03:15:14
- Zuletzt bearbeitet 21.11.2024 05:07:09
A null pointer dereference vulnerability in devices/vector/gdevtxtw.c and psi/zbfont.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted postscript file. This is fixed in v9.51.
CVE-2020-16308
- EPSS 1.09%
- Veröffentlicht 13.08.2020 03:15:14
- Zuletzt bearbeitet 21.11.2024 05:07:09
A buffer overflow vulnerability in p_print_image() in devices/gdevcdj.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.