Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 55 892

Количество 55 892

redhat логотип

CVE-2020-35477

больше 5 лет назад

MediaWiki before 1.35.1 blocks legitimate attempts to hide log entries in some situations. If one sets MediaWiki:Mainpage to Special:MyLanguage/Main Page, visits a log entry on Special:Log, and toggles the "Change visibility of selected log entries" checkbox (or a tags checkbox) next to it, there is a redirection to the main page's action=historysubmit (instead of the desired behavior in which a revision-deletion form appears).

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2020-35475

больше 5 лет назад

In MediaWiki before 1.35.1, the messages userrights-expiry-current and userrights-expiry-none can contain raw HTML. XSS can happen when a user visits Special:UserRights but does not have rights to change all userrights, and the table on the left side has unchangeable groups in it. (The right column with the changeable groups is not affected and is escaped correctly.)

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2020-35474

больше 5 лет назад

In MediaWiki before 1.35.1, the combination of Html::rawElement and Message::text leads to XSS because the definition of MediaWiki:recentchanges-legend-watchlistexpiry can be changed onwiki so that the output is raw HTML.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2020-35471

почти 6 лет назад

Envoy before 1.16.1 mishandles dropped and truncated datagrams, as demonstrated by a segmentation fault for a UDP packet size larger than 1500.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2020-35470

почти 6 лет назад

Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the information in the proxy protocol header. This affects situations with tcp-proxy as the network filter (not HTTP filters).

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2020-35453

больше 5 лет назад

HashiCorp Vault Enterprise’s Sentinel EGP policy feature incorrectly allowed requests to be processed in parent and sibling namespaces. Fixed in 1.5.6 and 1.6.1.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2020-35452

около 5 лет назад

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byte) of the overflow

CVSS3: 7.3
EPSS: Средний
redhat логотип

CVE-2020-35448

почти 6 лет назад

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2020-35381

больше 5 лет назад

jsonparser 1.0.0 allows attackers to cause a denial of service (panic: runtime error: slice bounds out of range) via a GET call.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2020-35357

около 3 лет назад

A buffer overflow can occur when calculating the quantile value using the Statistics Library of GSL (GNU Scientific Library), versions 2.5 and 2.6. Processing a maliciously crafted input data for gsl_stats_quantile_from_sorted_data of the library may lead to unexpected application termination or arbitrary code execution.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2020-35342

больше 6 лет назад

GNU Binutils before 2.34 has an uninitialized-heap vulnerability in function tic4x_print_cond (file opcodes/tic4x-dis.c) which could allow attackers to make an information leak.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2020-35269

больше 5 лет назад

Nagios Core application version 4.2.4 is vulnerable to Site-Wide Cross-Site Request Forgery (CSRF) in many functions, like adding – deleting for hosts or servers.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2020-35217

больше 5 лет назад

Vert.x-Web framework v4.0 milestone 1-4 does not perform a correct CSRF verification. Instead of comparing the CSRF token in the request with the CSRF token in the cookie, it compares the CSRF token in the cookie against a CSRF token that is stored in the session. An attacker does not even need to provide a CSRF token in the request because the framework does not consider it. The cookies are automatically sent by the browser and the verification will always succeed, leading to a successful CSRF attack.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2020-35216

больше 4 лет назад

An issue in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via false member down event messages.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2020-35215

больше 4 лет назад

An issue in Atomix v3.1.5 allows attackers to access sensitive information when a malicious Atomix node queries distributed variable primitives which contain the entire primitive lists that ONOS nodes use to share important states.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2020-35214

больше 4 лет назад

An issue in Atomix v3.1.5 allows a malicious Atomix node to remove states of ONOS storage via abuse of primitive operations.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2020-35213

больше 4 лет назад

An issue in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via false link event messages sent to a master ONOS node.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2020-35211

больше 4 лет назад

An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to become the lead node in a target cluster via manipulation of the variable terms in RaftContext.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2020-35210

больше 4 лет назад

A vulnerability in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via a Raft session flooding attack using Raft OpenSessionRequest messages.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2020-35209

больше 4 лет назад

An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to join a target cluster via providing configuration information.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-35477

MediaWiki before 1.35.1 blocks legitimate attempts to hide log entries in some situations. If one sets MediaWiki:Mainpage to Special:MyLanguage/Main Page, visits a log entry on Special:Log, and toggles the "Change visibility of selected log entries" checkbox (or a tags checkbox) next to it, there is a redirection to the main page's action=historysubmit (instead of the desired behavior in which a revision-deletion form appears).

CVSS3: 5.3
2%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-35475

In MediaWiki before 1.35.1, the messages userrights-expiry-current and userrights-expiry-none can contain raw HTML. XSS can happen when a user visits Special:UserRights but does not have rights to change all userrights, and the table on the left side has unchangeable groups in it. (The right column with the changeable groups is not affected and is escaped correctly.)

CVSS3: 7.5
2%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-35474

In MediaWiki before 1.35.1, the combination of Html::rawElement and Message::text leads to XSS because the definition of MediaWiki:recentchanges-legend-watchlistexpiry can be changed onwiki so that the output is raw HTML.

CVSS3: 6.1
1%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-35471

Envoy before 1.16.1 mishandles dropped and truncated datagrams, as demonstrated by a segmentation fault for a UDP packet size larger than 1500.

CVSS3: 7.5
2%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-35470

Envoy before 1.16.1 logs an incorrect downstream address because it considers only the directly connected peer, not the information in the proxy protocol header. This affects situations with tcp-proxy as the network filter (not HTTP filters).

CVSS3: 8.8
1%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-35453

HashiCorp Vault Enterprise’s Sentinel EGP policy feature incorrectly allowed requests to be processed in parent and sibling namespaces. Fixed in 1.5.6 and 1.6.1.

CVSS3: 5.3
1%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-35452

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_digest. There is no report of this overflow being exploitable, nor the Apache HTTP Server team could create one, though some particular compiler and/or compilation option might make it possible, with limited consequences anyway due to the size (a single byte) and the value (zero byte) of the overflow

CVSS3: 7.3
53%
Средний
около 5 лет назад
redhat логотип
CVE-2020-35448

An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35.1. A heap-based buffer over-read can occur in bfd_getl_signed_32 in libbfd.c because sh_entsize is not validated in _bfd_elf_slurp_secondary_reloc_section in elf.c.

CVSS3: 3.3
1%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-35381

jsonparser 1.0.0 allows attackers to cause a denial of service (panic: runtime error: slice bounds out of range) via a GET call.

CVSS3: 7.5
2%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-35357

A buffer overflow can occur when calculating the quantile value using the Statistics Library of GSL (GNU Scientific Library), versions 2.5 and 2.6. Processing a maliciously crafted input data for gsl_stats_quantile_from_sorted_data of the library may lead to unexpected application termination or arbitrary code execution.

CVSS3: 6.5
1%
Низкий
около 3 лет назад
redhat логотип
CVE-2020-35342

GNU Binutils before 2.34 has an uninitialized-heap vulnerability in function tic4x_print_cond (file opcodes/tic4x-dis.c) which could allow attackers to make an information leak.

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
redhat логотип
CVE-2020-35269

Nagios Core application version 4.2.4 is vulnerable to Site-Wide Cross-Site Request Forgery (CSRF) in many functions, like adding – deleting for hosts or servers.

CVSS3: 8.8
2%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-35217

Vert.x-Web framework v4.0 milestone 1-4 does not perform a correct CSRF verification. Instead of comparing the CSRF token in the request with the CSRF token in the cookie, it compares the CSRF token in the cookie against a CSRF token that is stored in the session. An attacker does not even need to provide a CSRF token in the request because the framework does not consider it. The cookies are automatically sent by the browser and the verification will always succeed, leading to a successful CSRF attack.

CVSS3: 8.8
1%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-35216

An issue in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via false member down event messages.

CVSS3: 5.9
1%
Низкий
больше 4 лет назад
redhat логотип
CVE-2020-35215

An issue in Atomix v3.1.5 allows attackers to access sensitive information when a malicious Atomix node queries distributed variable primitives which contain the entire primitive lists that ONOS nodes use to share important states.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
redhat логотип
CVE-2020-35214

An issue in Atomix v3.1.5 allows a malicious Atomix node to remove states of ONOS storage via abuse of primitive operations.

CVSS3: 8.1
1%
Низкий
больше 4 лет назад
redhat логотип
CVE-2020-35213

An issue in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via false link event messages sent to a master ONOS node.

CVSS3: 8.1
1%
Низкий
больше 4 лет назад
redhat логотип
CVE-2020-35211

An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to become the lead node in a target cluster via manipulation of the variable terms in RaftContext.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
redhat логотип
CVE-2020-35210

A vulnerability in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via a Raft session flooding attack using Raft OpenSessionRequest messages.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
redhat логотип
CVE-2020-35209

An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to join a target cluster via providing configuration information.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу