CVE-2020-1945
- EPSS 0.02%
- Published 14.05.2020 16:15:12
- Last modified 21.11.2024 05:11:42
Apache Ant 1.1 to 1.9.14 and 1.10.0 to 1.10.7 uses the default temporary directory identified by the Java system property java.io.tmpdir for several tasks and may thus leak sensitive information. The fixcrlf and replaceregexp tasks also copy files fr...
CVE-2020-3327
- EPSS 14.14%
- Published 13.05.2020 03:15:11
- Last modified 21.11.2024 05:30:48
A vulnerability in the ARJ archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a heap bu...
CVE-2020-3341
- EPSS 5.71%
- Published 13.05.2020 03:15:11
- Last modified 21.11.2024 05:30:50
A vulnerability in the PDF archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.101 - 0.102.2 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerability is due to a...
CVE-2020-12823
- EPSS 1.51%
- Published 12.05.2020 18:15:13
- Last modified 21.11.2024 05:00:20
OpenConnect 8.09 has a buffer overflow, causing a denial of service (application crash) or possibly unspecified other impact, via crafted certificate data to get_cert_name in gnutls.c.
- EPSS 0.26%
- Published 12.05.2020 13:15:13
- Last modified 21.11.2024 05:38:24
A missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in the middle attack.
CVE-2020-8151
- EPSS 0.29%
- Published 12.05.2020 13:15:12
- Last modified 21.11.2024 05:38:23
There is a possible information disclosure issue in Active Resource <v5.1.1 that could allow an attacker to create specially crafted requests to access data in an unexpected way and possibly leak information.
CVE-2020-8153
- EPSS 0.37%
- Published 12.05.2020 13:15:12
- Last modified 21.11.2024 05:38:23
Improper access control in Groupfolders app 4.0.3 allowed to delete hidden directories when when renaming an accessible item to the same name.
CVE-2018-1285
- EPSS 49.81%
- Published 11.05.2020 17:15:10
- Last modified 21.11.2024 03:59:32
Apache log4net versions before 2.0.10 do not disable XML external entities when parsing log4net configuration files. This allows for XXE-based attacks in applications that accept attacker-controlled log4net configuration files.
CVE-2020-11863
- EPSS 0.44%
- Published 11.05.2020 16:15:12
- Last modified 21.11.2024 04:58:46
libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 1 of 2).
CVE-2020-11864
- EPSS 0.44%
- Published 11.05.2020 16:15:12
- Last modified 21.11.2024 04:58:46
libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 2 of 2).