Search Results (322292 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2020-17364 1 Usvn 1 User-friendly Svn 2024-11-21 6.1 Medium
USVN (aka User-friendly SVN) before 1.0.9 allows XSS via SVN logs.
CVE-2020-17363 1 Usvn 1 Usvn 2024-11-21 9.9 Critical
USVN (aka User-friendly SVN) before 1.0.9 allows remote code execution via shell metacharacters in the number_start or number_end parameter to LastHundredRequest (aka lasthundredrequestAction) in the Timeline module. NOTE: this may overlap CVE-2020-25069.
CVE-2020-17362 1 Themeinprogress 1 Nova Lite 2024-11-21 6.1 Medium
search.php in the Nova Lite theme before 1.3.9 for WordPress allows Reflected XSS.
CVE-2020-17361 1 Readytalk 1 Avian 2024-11-21 5.5 Medium
An issue was discovered in ReadyTalk Avian 1.2.0. The vm::arrayCopy method defined in classpath-common.h returns silently when a negative length is provided (instead of throwing an exception). This could result in data being lost during the copy, with varying consequences depending on the subsequent use of the destination buffer. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVE-2020-17360 1 Readytalk 1 Avian 2024-11-21 7.8 High
An issue was discovered in ReadyTalk Avian 1.2.0. The vm::arrayCopy method defined in classpath-common.h contains multiple boundary checks that are performed to prevent out-of-bounds memory read/write. However, two of these boundary checks contain an integer overflow that leads to a bypass of these checks, and out-of-bounds read/write. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVE-2020-17355 1 Arista 1 Eos 2024-11-21 7.5 High
Arista EOS before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23.5M, and 4.24.x before 4.24.2F allows remote attackers to cause a denial of service (restart of agents) by crafting a malformed DHCP packet which leads to an incorrect route being installed.
CVE-2020-17353 4 Debian, Fedoraproject, Lilypond and 1 more 5 Debian Linux, Fedora, Lilypond and 2 more 2024-11-21 9.8 Critical
scm/define-stencil-commands.scm in LilyPond through 2.20.0, and 2.21.x through 2.21.4, when -dsafe is used, lacks restrictions on embedded-ps and embedded-svg, as demonstrated by including dangerous PostScript code.
CVE-2020-17352 1 Sophos 1 Xg Firewall Firmware 2024-11-21 8.8 High
Two OS command injection vulnerabilities in the User Portal of Sophos XG Firewall through 2020-08-05 potentially allow an authenticated attacker to remotely execute arbitrary code.
CVE-2020-17162 1 Microsoft 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more 2024-11-21 8.8 High
Microsoft Windows Security Feature Bypass Vulnerability
CVE-2020-17113 1 Microsoft 7 Windows 10, Windows 10 1507, Windows 10 1607 and 4 more 2024-11-21 5.5 Medium
Windows Camera Codec Information Disclosure Vulnerability
CVE-2020-17110 1 Microsoft 1 Hevc Video Extensions 2024-11-21 7.8 High
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2020-17109 1 Microsoft 1 Hevc Video Extensions 2024-11-21 7.8 High
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2020-17108 1 Microsoft 1 Hevc Video Extensions 2024-11-21 7.8 High
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2020-17107 1 Microsoft 1 Hevc Video Extensions 2024-11-21 7.8 High
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2020-17106 1 Microsoft 1 Hevc Video Extensions 2024-11-21 7.8 High
HEVC Video Extensions Remote Code Execution Vulnerability
CVE-2020-17105 1 Microsoft 1 Av1 Video Extension 2024-11-21 7.8 High
AV1 Video Extension Remote Code Execution Vulnerability
CVE-2020-17104 1 Microsoft 1 Visual Studio Code 2024-11-21 7.8 High
Visual Studio Code JSHint Extension Remote Code Execution Vulnerability
CVE-2020-17102 1 Microsoft 1 Webp Image Extension 2024-11-21 5.5 Medium
WebP Image Extensions Information Disclosure Vulnerability
CVE-2020-17101 1 Microsoft 1 Heif Image Extension 2024-11-21 7.8 High
HEIF Image Extensions Remote Code Execution Vulnerability
CVE-2020-17100 1 Microsoft 2 Visual Studio 2017, Visual Studio 2019 2024-11-21 5.5 Medium
Visual Studio Tampering Vulnerability