Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 25 045

Количество 25 045

msrc логотип

CVE-2020-1379

почти 6 лет назад

Media Foundation Memory Corruption Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-13791

почти 6 лет назад

hw/pci/pci.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access by providing an address near the end of the PCI configuration space.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-1378

почти 6 лет назад

Windows Registry Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-1377

почти 6 лет назад

Windows Registry Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-13777

почти 6 лет назад

GnuTLS 3.6.x before 3.6.14 uses incorrect cryptography for encrypting a session ticket (a loss of confidentiality in TLS 1.2 and an authentication bypass in TLS 1.3). The earliest affected version is 3.6.4 (2018-09-24) because of an error in a 2018-09-18 commit. Until the first key rotation the TLS server always uses wrong data in place of an encryption key derived from an application.

CVSS3: 7.4
EPSS: Средний
msrc логотип

CVE-2020-13776

почти 6 лет назад

systemd through v245 mishandles numerical usernames such as ones composed of decimal digits or 0x followed by hex digits as demonstrated by use of root privileges when privileges of the 0x0 user account were intended. NOTE: this issue exists because of an incomplete fix for CVE-2017-1000082.

CVSS3: 6.7
EPSS: Низкий
msrc логотип

CVE-2020-1376

почти 6 лет назад

Windows Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-1375

около 6 лет назад

Windows COM Server Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-13754

почти 6 лет назад

hw/pci/msix.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access via a crafted address in an msi-x mmio operation.

CVSS3: 6.7
EPSS: Низкий
msrc логотип

CVE-2020-1374

около 6 лет назад

Remote Desktop Client Remote Code Execution Vulnerability

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2020-1373

около 6 лет назад

Windows Network Connections Service Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-1372

около 6 лет назад

Windows Mobile Device Management Diagnostics Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-1371

около 6 лет назад

Windows Event Logging Service Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-1370

около 6 лет назад

Windows Runtime Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-1369

около 6 лет назад

Windows WalletService Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-1368

около 6 лет назад

Windows Credential Enrollment Manager Service Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-1367

около 6 лет назад

Windows Kernel Information Disclosure Vulnerability

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-1366

около 6 лет назад

Windows Print Workflow Service Elevation of Privilege Vulnerability

CVSS3: 7
EPSS: Низкий
msrc логотип

CVE-2020-1365

около 6 лет назад

Windows Event Logging Service Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2020-13659

почти 6 лет назад

address_space_map in exec.c in QEMU 4.2.0 can trigger a NULL pointer dereference related to BounceBuffer.

CVSS3: 2.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2020-1379

Media Foundation Memory Corruption Vulnerability

CVSS3: 7.8
3%
Низкий
почти 6 лет назад
msrc логотип
CVE-2020-13791

hw/pci/pci.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access by providing an address near the end of the PCI configuration space.

CVSS3: 5.5
0%
Низкий
почти 6 лет назад
msrc логотип
CVE-2020-1378

Windows Registry Elevation of Privilege Vulnerability

CVSS3: 7.8
4%
Низкий
почти 6 лет назад
msrc логотип
CVE-2020-1377

Windows Registry Elevation of Privilege Vulnerability

CVSS3: 7.8
2%
Низкий
почти 6 лет назад
msrc логотип
CVE-2020-13777

GnuTLS 3.6.x before 3.6.14 uses incorrect cryptography for encrypting a session ticket (a loss of confidentiality in TLS 1.2 and an authentication bypass in TLS 1.3). The earliest affected version is 3.6.4 (2018-09-24) because of an error in a 2018-09-18 commit. Until the first key rotation the TLS server always uses wrong data in place of an encryption key derived from an application.

CVSS3: 7.4
18%
Средний
почти 6 лет назад
msrc логотип
CVE-2020-13776

systemd through v245 mishandles numerical usernames such as ones composed of decimal digits or 0x followed by hex digits as demonstrated by use of root privileges when privileges of the 0x0 user account were intended. NOTE: this issue exists because of an incomplete fix for CVE-2017-1000082.

CVSS3: 6.7
0%
Низкий
почти 6 лет назад
msrc логотип
CVE-2020-1376

Windows Elevation of Privilege Vulnerability

CVSS3: 7.8
1%
Низкий
почти 6 лет назад
msrc логотип
CVE-2020-1375

Windows COM Server Elevation of Privilege Vulnerability

CVSS3: 7.8
7%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-13754

hw/pci/msix.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access via a crafted address in an msi-x mmio operation.

CVSS3: 6.7
0%
Низкий
почти 6 лет назад
msrc логотип
CVE-2020-1374

Remote Desktop Client Remote Code Execution Vulnerability

CVSS3: 7.5
8%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-1373

Windows Network Connections Service Elevation of Privilege Vulnerability

CVSS3: 7.8
1%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-1372

Windows Mobile Device Management Diagnostics Elevation of Privilege Vulnerability

CVSS3: 7.8
1%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-1371

Windows Event Logging Service Elevation of Privilege Vulnerability

CVSS3: 7.8
1%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-1370

Windows Runtime Elevation of Privilege Vulnerability

CVSS3: 7.8
1%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-1369

Windows WalletService Elevation of Privilege Vulnerability

CVSS3: 7.8
1%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-1368

Windows Credential Enrollment Manager Service Elevation of Privilege Vulnerability

CVSS3: 7.8
1%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-1367

Windows Kernel Information Disclosure Vulnerability

CVSS3: 5.5
1%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-1366

Windows Print Workflow Service Elevation of Privilege Vulnerability

CVSS3: 7
1%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-1365

Windows Event Logging Service Elevation of Privilege Vulnerability

CVSS3: 7.8
1%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-13659

address_space_map in exec.c in QEMU 4.2.0 can trigger a NULL pointer dereference related to BounceBuffer.

CVSS3: 2.5
0%
Низкий
почти 6 лет назад

Уязвимостей на страницу