Show filters
224 Total Results
Displaying 101-110 of 224
Sort by:
Attacker Value
Unknown
CVE-2020-28275
Disclosure Date: December 29, 2020 (last updated November 08, 2023)
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none
0
Attacker Value
Unknown
CVE-2020-29172
Disclosure Date: December 26, 2020 (last updated February 22, 2025)
A cross-site scripting (XSS) vulnerability in the LiteSpeed Cache plugin before 3.6.1 for WordPress can be exploited via the Server IP setting.
0
Attacker Value
Unknown
CVE-2020-35197
Disclosure Date: December 17, 2020 (last updated February 22, 2025)
The official memcached docker images before 1.5.11-alpine (Alpine specific) contain a blank password for a root user. System using the memcached docker container deployed by affected versions of the docker image may allow a remote attacker to achieve root access with a blank password.
0
Attacker Value
Unknown
CVE-2020-15771
Disclosure Date: September 18, 2020 (last updated February 22, 2025)
An issue was discovered in Gradle Enterprise 2018.2 and Gradle Enterprise Build Cache Node 4.1. Cross-site transmission of cookie containing CSRF token allows remote attacker to bypass CSRF mitigation.
0
Attacker Value
Unknown
CVE-2020-15768
Disclosure Date: September 18, 2020 (last updated February 22, 2025)
An issue was discovered in Gradle Enterprise 2017.3 - 2020.2.4 and Gradle Enterprise Build Cache Node 1.0 - 9.2. Unrestricted HTTP header reflection in Gradle Enterprise allows remote attackers to obtain authentication cookies, if they are able to discover a separate XSS vulnerability. This potentially allows an attacker to impersonate another user. Gradle Enterprise affected application request paths:/info/headers, /cache-info/headers, /admin-info/headers, /distribution-broker-info/headers. Gradle Enterprise Build Cache Node affected application request paths:/cache-node-info/headers.
0
Attacker Value
Unknown
CVE-2019-20637
Disclosure Date: April 08, 2020 (last updated February 21, 2025)
An issue was discovered in Varnish Cache before 6.0.5 LTS, 6.1.x and 6.2.x before 6.2.2, and 6.3.x before 6.3.1. It does not clear a pointer between the handling of one client request and the next request within the same connection. This sometimes causes information to be disclosed from the connection workspace, such as data structures associated with previous requests within this connection or VCL-related temporary headers.
0
Attacker Value
Unknown
CVE-2020-11653
Disclosure Date: April 08, 2020 (last updated February 21, 2025)
An issue was discovered in Varnish Cache before 6.0.6 LTS, 6.1.x and 6.2.x before 6.2.3, and 6.3.x before 6.3.2. It occurs when communication with a TLS termination proxy uses PROXY version 2. There can be an assertion failure and daemon restart, which causes a performance loss.
0
Attacker Value
Unknown
CVE-2020-10931
Disclosure Date: March 24, 2020 (last updated February 21, 2025)
Memcached 1.6.x before 1.6.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted binary protocol header to try_read_command_binary in memcached.c.
0
Attacker Value
Unknown
CVE-2013-4090
Disclosure Date: February 12, 2020 (last updated February 21, 2025)
Varnish HTTP cache before 3.0.4: ACL bug
0
Attacker Value
Unknown
CVE-2013-2010
Disclosure Date: February 12, 2020 (last updated February 21, 2025)
WordPress W3 Total Cache Plugin 0.9.2.8 has a Remote PHP Code Execution Vulnerability
0