Search Results (325056 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2020-19609 2 Artifex, Debian 2 Mupdf, Debian Linux 2024-11-21 5.5 Medium
Artifex MuPDF before 1.18.0 has a heap based buffer over-write in tiff_expand_colormap() function when parsing TIFF files allowing attackers to cause a denial of service.
CVE-2020-19596 1 Coreftp 1 Core Ftp 2024-11-21 9.8 Critical
Buffer overflow vulnerability in Core FTP Server v1.2 Build 583, via a crafted username.
CVE-2020-19595 1 Coreftp 1 Core Ftp 2024-11-21 7.5 High
Buffer overflow vulnerability in Core FTP Server v2 Build 697, via a crafted username.
CVE-2020-19587 1 Idera 1 Yellowfin Business Intelligence 2024-11-21 5.4 Medium
Cross Site Scripting (XSS) vulnerability in configMap parameters in Yellowfin Business Intelligence 7.3 allows remote attackers to run arbitrary code via MIAdminStyles.i4 Admin UI.
CVE-2020-19586 1 Yellowfinbi 1 Business Intelligence 2024-11-21 9.0 Critical
Incorrect Access Control issue in Yellowfin Business Intelligence 7.3 allows remote attackers to escalate privilege via MIAdminStyles.i4 Admin UI.
CVE-2020-19559 1 Dieboldnixdorf 1 Agilis Xfs For Opteva 2024-11-21 9.8 Critical
An issue in Diebold Aglis XFS for Opteva v.4.1.61.1 allows a remote attacker to execute arbitrary code via a crafted payload to the ResolveMethod() parameter.
CVE-2020-19554 1 Manageengine 1 Opmanager 2024-11-21 6.1 Medium
Cross Site Scripting (XSS) vulnerability exists in ManageEngine OPManager <=12.5.174 when the API key contains an XML-based XSS payload.
CVE-2020-19553 1 Wuzhicms 1 Wuzhicms 2024-11-21 5.4 Medium
Cross Site Scripting (XSS) vlnerability exists in WUZHI CMS up to and including 4.1.0 in the config function in coreframe/app/attachment/libs/class/ckditor.class.php.
CVE-2020-19551 1 Wuzhicms 1 Wuzhicms 2024-11-21 8.8 High
Blacklist bypass issue exists in WUZHI CMS up to and including 4.1.0 in common.func.php, which when uploaded can cause remote code executiong.
CVE-2020-19547 1 Popojicms 1 Popojicms 2024-11-21 6.5 Medium
Directory Traversal vulnerability exists in PopojiCMS 2.0.1 via the id parameter in admin.php.
CVE-2020-19527 1 Idreamsoft 1 Icms 2024-11-21 9.8 Critical
iCMS 7.0.14 attackers to execute arbitrary OS commands via shell metacharacters in the DB_NAME parameter to install/install.php.
CVE-2020-19515 1 Qdpm 1 Qdpm 2024-11-21 6.1 Medium
qdPM V9.1 is vulnerable to Cross Site Scripting (XSS) via qdPM\install\modules\database_config.php.
CVE-2020-19513 1 Aida64 1 Aida64 2024-11-21 7.8 High
Buffer overflow in FinalWire Ltd AIDA64 Engineer 6.00.5100 allows attackers to execute arbitrary code by creating a crafted input that will overwrite the SEH handler.
CVE-2020-19511 1 Typesettercms 1 Typesetter 2024-11-21 6.1 Medium
Cross Site Scriptiong vulnerability in Typesetter 5.1 via the !1) className and !2) Description fields in index.php/Admin/Classes,
CVE-2020-19510 2 Microsoft, Textpattern 2 Windows, Textpattern 2024-11-21 9.8 Critical
Textpattern 4.7.3 contains an aribtrary file load via the file_insert function in include/txp_file.php.
CVE-2020-19499 1 Struktur 1 Libheif 2024-11-21 8.8 High
An issue was discovered in heif::Box_iref::get_references in libheif 1.4.0, allows attackers to cause a Denial of Service or possibly other unspecified impact due to an invalid memory read.
CVE-2020-19498 1 Struktur 1 Libheif 2024-11-21 8.8 High
Floating point exception in function Fraction in libheif 1.4.0, allows attackers to cause a Denial of Service or possibly other unspecified impacts.
CVE-2020-19497 1 Matio Project 1 Matio 2024-11-21 8.8 High
Integer overflow vulnerability in Mat_VarReadNextInfo5 in mat5.c in tbeu matio (aka MAT File I/O Library) 1.5.17, allows attackers to cause a Denial of Service or possibly other unspecified impacts.
CVE-2020-19492 1 Sam2p Project 1 Sam2p 2024-11-21 7.8 High
There is a floating point exception in ReadImage that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial of service or possibly unspecified other impact.
CVE-2020-19491 1 Sam2p Project 1 Sam2p 2024-11-21 7.8 High
There is an invalid memory access bug in cgif.c that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will lead to a denial of service or possibly unspecified other impact.