Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 868 869 870 871 872 873 874 875 876 877 [878] 879 880 881 882 883 884 885 886 887 888 ... Result(s) : 43550

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
9.1 2020-07-01 CVE-2020-15473 cve In nDPI through 3.2, the OpenVPN dissector is vulnerable to a heap-based buffer over-read in ndpi_search_openvpn in lib/protocols/openvpn.c.
9.1 2020-07-01 CVE-2020-15471 cve In nDPI through 3.2, the packet parsing code is vulnerable to a heap-based buffer over-read in ndpi_parse_packet_line_info in lib/ndpi_main.c.
9.8 2020-07-01 CVE-2019-15311 cve An issue was discovered on Zolo Halo devices via the Linkplay firmware. There is Zolo Halo LAN remote code execution. The Zolo Halo Bluetooth speaker had a GoAhead web server li...
9.8 2020-07-01 CVE-2020-15475 cve In nDPI through 3.2, ndpi_reset_packet_line_info in lib/ndpi_main.c omits certain reinitialization, leading to a use-after-free.
9.8 2020-06-30 CVE-2017-18922 cve It was discovered that websockets.c in LibVNCServer prior to 0.9.12 did not properly decode certain WebSocket frames. A malicious attacker could exploit this by sending speciall...
9.8 2020-06-30 CVE-2019-20893 cve An issue was discovered in Activision Infinity Ward Call of Duty Modern Warfare 2 through 2019-12-11. PartyHost_HandleJoinPartyRequest has a buffer overflow vulnerability and ca...
9.8 2020-06-30 CVE-2020-15411 cve An issue was discovered in MISP 2.4.128. app/Controller/AttributesController.php has insufficient ACL checks in the attachment downloader.
9.8 2020-06-30 CVE-2020-15415 cve On DrayTek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1, cgi-bin/mainfunction.cgi/cvmcfgupload allows remote command execution via shell metacharacters in a filename...
9.6 2020-06-30 CVE-2020-9413 cve The MFT Browser file transfer client and MFT Browser admin client components of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center and TIBCO Managed File Tran...
9.1 2020-06-30 CVE-2020-15084 cve In express-jwt (NPM package) up and including version 5.3.3, the algorithms entry to be specified in the configuration is not being enforced. When algorithms is not specified in...
9.8 2020-06-29 CVE-2020-15324 cve Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a world-readable axess/opt/axXMPPHandler/config/xmpp_config.py file that stores hardcoded credentials.
9.8 2020-06-29 CVE-2020-15362 cve wifiscanner.js in thingsSDK WiFi Scanner 1.0.1 allows Code Injection because it can be used with options to overwrite the default executable/binary path and its arguments. An at...
9.8 2020-06-29 DSA-4711 Debian coturn security update
9.8 2020-06-29 CVE-2020-15321 cve Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the axzyxel password for the livedbuser account.
9.8 2020-06-29 CVE-2018-6446 cve A vulnerability in Brocade Network Advisor Version Before 14.3.1 could allow an unauthenticated, remote attacker to log in to the JBoss Administration interface of an affected s...
9.8 2020-06-29 CVE-2020-15320 cve Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the axiros password for the root account.
9.8 2020-06-29 CVE-2020-15323 cve Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the cloud1234 password for the a1@chopin account default credentials.
9.8 2020-06-29 CVE-2020-15322 cve Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has the wbboEZ4BN3ssxAfM hardcoded password for the debian-sys-maint account.
10 2020-06-29 CVE-2020-2021 cve When Security Assertion Markup Language (SAML) authentication is enabled and the 'Validate Identity Provider Certificate' option is disabled (unchecked), improper veri...
9.8 2020-06-29 CVE-2020-15069 cve Sophos XG Firewall 17.x through v17.5 MR12 allows a Buffer Overflow and remote code execution via the HTTP/S Bookmarks feature for clientless access. Hotfix HF062020.1 was publi...
Page(s) : 1 ... 868 869 870 871 872 873 874 875 876 877 [878] 879 880 881 882 883 884 885 886 887 888 ... Result(s) : 43550